Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 395 079

Количество 395 079

nvd логотип

CVE-2001-0179

больше 25 лет назад

Allaire JRun 3.0 allows remote attackers to list contents of the WEB-INF directory, and the web.xml file in the WEB-INF directory, via a malformed URL that contains a "."

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0178

больше 25 лет назад

kdesu program in KDE2 (KDE before 2.2.0-6) does not properly verify the owner of a UNIX socket that is used to send a password, which allows local users to steal passwords and gain privileges.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2001-0177

больше 25 лет назад

WebMaster ConferenceRoom 1.8.1 allows remote attackers to cause a denial of service via a buddy relationship between the IRC server and a server clone.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0176

больше 25 лет назад

The setuid doroot program in Voyant Sonata 3.x executes arbitrary command line arguments, which allows local users to gain root privileges.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-0175

больше 25 лет назад

The caching module in Netscape Fasttrack Server 4.1 allows remote attackers to cause a denial of service (resource exhaustion) by requesting a large number of non-existent URLs.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0174

больше 25 лет назад

Buffer overflow in Trend Micro Virus Buster 2001 8.00 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a large "To" address.

CVSS2: 7.6
EPSS: Низкий
nvd логотип

CVE-2001-0173

больше 25 лет назад

Buffer overflow in qDecoder library 5.08 and earlier, as used in CrazyWWWBoard, CrazySearch, and other CGI programs, allows remote attackers to execute arbitrary commands via a long MIME Content-Type header.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2001-0172

больше 25 лет назад

Buffer overflow in ReiserFS 3.5.28 in SuSE Linux allows local users to cause a denial of service and possibly execute arbitrary commands by via a long directory name.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-0171

больше 25 лет назад

Buffer overflow in SlimServe HTTPd 1.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long GET request.

CVSS2: 10
EPSS: Средний
nvd логотип

CVE-2001-0170

больше 25 лет назад

glibc 2.1.9x and earlier does not properly clear the RESOLV_HOST_CONF, HOSTALIASES, or RES_OPTIONS environmental variables when executing setuid/setgid programs, which could allow local users to read arbitrary files.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2001-0169

больше 25 лет назад

When using the LD_PRELOAD environmental variable in SUID or SGID applications, glibc does not verify that preloaded libraries in /etc/ld.so.cache are also SUID/SGID, which could allow a local user to overwrite arbitrary files by loading a library from /lib or /usr/lib.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2001-0168

больше 25 лет назад

Buffer overflow in AT&T WinVNC (Virtual Network Computing) server 3.3.3r7 and earlier allows remote attackers to execute arbitrary commands via a long HTTP GET request when the DebugLevel registry key is greater than 0.

CVSS2: 10
EPSS: Высокий
nvd логотип

CVE-2001-0167

больше 25 лет назад

Buffer overflow in AT&T WinVNC (Virtual Network Computing) client 3.3.3r7 and earlier allows remote attackers to execute arbitrary commands via a long rfbConnFailed packet with a long reason string.

CVSS2: 7.6
EPSS: Средний
nvd логотип

CVE-2001-0166

больше 25 лет назад

Macromedia Shockwave Flash plugin version 8 and earlier allows remote attackers to cause a denial of service via malformed tag length specifiers in a SWF file.

CVSS2: 7.6
EPSS: Низкий
nvd логотип

CVE-2001-0165

больше 25 лет назад

Buffer overflow in ximp40 shared library in Solaris 7 and Solaris 8 allows local users to gain privileges via a long "arg0" (process name) argument.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-0164

больше 25 лет назад

Buffer overflow in Netscape Directory Server 4.12 and earlier allows remote attackers to cause a denial of service or execute arbitrary commands via a malformed recipient field.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0163

больше 25 лет назад

Cisco AP340 base station produces predictable TCP Initial Sequence Numbers (ISNs), which allows remote attackers to spoof or hijack TCP connections.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2001-0162

больше 25 лет назад

WinCE 3.0.9348 generates predictable TCP Initial Sequence Numbers (ISNs), which allows remote attackers to spoof or hijack TCP connections.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2001-0161

больше 25 лет назад

Cisco 340-series Aironet access point using firmware 11.01 does not use 6 of the 24 available IV bits for WEP encryption, which makes it easier for remote attackers to mount brute force attacks.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0160

больше 25 лет назад

Lucent/ORiNOCO WaveLAN cards generate predictable Initialization Vector (IV) values for the Wireless Encryption Protocol (WEP) which allows remote attackers to quickly compile information that will let them decrypt messages.

CVSS2: 5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2001-0179

Allaire JRun 3.0 allows remote attackers to list contents of the WEB-INF directory, and the web.xml file in the WEB-INF directory, via a malformed URL that contains a "."

CVSS2: 5
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0178

kdesu program in KDE2 (KDE before 2.2.0-6) does not properly verify the owner of a UNIX socket that is used to send a password, which allows local users to steal passwords and gain privileges.

CVSS2: 2.1
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0177

WebMaster ConferenceRoom 1.8.1 allows remote attackers to cause a denial of service via a buddy relationship between the IRC server and a server clone.

CVSS2: 5
7%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0176

The setuid doroot program in Voyant Sonata 3.x executes arbitrary command line arguments, which allows local users to gain root privileges.

CVSS2: 7.2
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0175

The caching module in Netscape Fasttrack Server 4.1 allows remote attackers to cause a denial of service (resource exhaustion) by requesting a large number of non-existent URLs.

CVSS2: 5
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0174

Buffer overflow in Trend Micro Virus Buster 2001 8.00 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a large "To" address.

CVSS2: 7.6
3%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0173

Buffer overflow in qDecoder library 5.08 and earlier, as used in CrazyWWWBoard, CrazySearch, and other CGI programs, allows remote attackers to execute arbitrary commands via a long MIME Content-Type header.

CVSS2: 10
6%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0172

Buffer overflow in ReiserFS 3.5.28 in SuSE Linux allows local users to cause a denial of service and possibly execute arbitrary commands by via a long directory name.

CVSS2: 7.2
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0171

Buffer overflow in SlimServe HTTPd 1.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long GET request.

CVSS2: 10
12%
Средний
больше 25 лет назад
nvd логотип
CVE-2001-0170

glibc 2.1.9x and earlier does not properly clear the RESOLV_HOST_CONF, HOSTALIASES, or RES_OPTIONS environmental variables when executing setuid/setgid programs, which could allow local users to read arbitrary files.

CVSS2: 2.1
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0169

When using the LD_PRELOAD environmental variable in SUID or SGID applications, glibc does not verify that preloaded libraries in /etc/ld.so.cache are also SUID/SGID, which could allow a local user to overwrite arbitrary files by loading a library from /lib or /usr/lib.

CVSS2: 2.1
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0168

Buffer overflow in AT&T WinVNC (Virtual Network Computing) server 3.3.3r7 and earlier allows remote attackers to execute arbitrary commands via a long HTTP GET request when the DebugLevel registry key is greater than 0.

CVSS2: 10
71%
Высокий
больше 25 лет назад
nvd логотип
CVE-2001-0167

Buffer overflow in AT&T WinVNC (Virtual Network Computing) client 3.3.3r7 and earlier allows remote attackers to execute arbitrary commands via a long rfbConnFailed packet with a long reason string.

CVSS2: 7.6
51%
Средний
больше 25 лет назад
nvd логотип
CVE-2001-0166

Macromedia Shockwave Flash plugin version 8 and earlier allows remote attackers to cause a denial of service via malformed tag length specifiers in a SWF file.

CVSS2: 7.6
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0165

Buffer overflow in ximp40 shared library in Solaris 7 and Solaris 8 allows local users to gain privileges via a long "arg0" (process name) argument.

CVSS2: 7.2
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0164

Buffer overflow in Netscape Directory Server 4.12 and earlier allows remote attackers to cause a denial of service or execute arbitrary commands via a malformed recipient field.

CVSS2: 7.5
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0163

Cisco AP340 base station produces predictable TCP Initial Sequence Numbers (ISNs), which allows remote attackers to spoof or hijack TCP connections.

CVSS2: 4.6
3%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0162

WinCE 3.0.9348 generates predictable TCP Initial Sequence Numbers (ISNs), which allows remote attackers to spoof or hijack TCP connections.

CVSS2: 7.5
15%
Средний
больше 25 лет назад
nvd логотип
CVE-2001-0161

Cisco 340-series Aironet access point using firmware 11.01 does not use 6 of the 24 available IV bits for WEP encryption, which makes it easier for remote attackers to mount brute force attacks.

CVSS2: 5
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0160

Lucent/ORiNOCO WaveLAN cards generate predictable Initialization Vector (IV) values for the Wireless Encryption Protocol (WEP) which allows remote attackers to quickly compile information that will let them decrypt messages.

CVSS2: 5
1%
Низкий
больше 25 лет назад

Уязвимостей на страницу