Логотип exploitDog
source:"redhat"
Консоль
Логотип exploitDog

exploitDog

source:"redhat"

Количество 44 272

Количество 44 272

redhat логотип

CVE-2001-0309

около 25 лет назад

inetd in Red Hat 6.2 does not properly close sockets for internal services such as chargen, daytime, echo, etc., which allows remote attackers to cause a denial of service via a series of connections to the internal services.

EPSS: Низкий
redhat логотип

CVE-2001-0301

почти 25 лет назад

Buffer overflow in Analog before 4.16 allows remote attackers to execute arbitrary commands by using the ALIAS command to construct large strings.

EPSS: Низкий
redhat логотип

CVE-2001-0289

почти 25 лет назад

Joe text editor 2.8 searches the current working directory (CWD) for the .joerc configuration file, which could allow local users to gain privileges of other users by placing a Trojan Horse .joerc file into a directory, then waiting for users to execute joe from that directory.

EPSS: Низкий
redhat логотип

CVE-2001-0279

почти 25 лет назад

Buffer overflow in sudo earlier than 1.6.3p6 allows local users to gain root privileges.

EPSS: Низкий
redhat логотип

CVE-2001-0233

около 25 лет назад

Buffer overflow in micq client 0.4.6 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long Description field.

EPSS: Средний
redhat логотип

CVE-2001-0197

около 25 лет назад

Format string vulnerability in print_client in icecast 1.3.8beta2 and earlier allows remote attackers to execute arbitrary commands.

EPSS: Низкий
redhat логотип

CVE-2001-0191

около 25 лет назад

gnuserv before 3.12, as shipped with XEmacs, does not properly check the specified length of an X Windows MIT-MAGIC-COOKIE cookie, which allows remote attackers to execute arbitrary commands via a buffer overflow, or brute force authentication by using a short cookie length.

EPSS: Низкий
redhat логотип

CVE-2001-0170

около 25 лет назад

glibc 2.1.9x and earlier does not properly clear the RESOLV_HOST_CONF, HOSTALIASES, or RES_OPTIONS environmental variables when executing setuid/setgid programs, which could allow local users to read arbitrary files.

EPSS: Низкий
redhat логотип

CVE-2001-0169

около 25 лет назад

When using the LD_PRELOAD environmental variable in SUID or SGID applications, glibc does not verify that preloaded libraries in /etc/ld.so.cache are also SUID/SGID, which could allow a local user to overwrite arbitrary files by loading a library from /lib or /usr/lib.

EPSS: Низкий
redhat логотип

CVE-2001-0141

около 25 лет назад

mgetty 1.1.22 allows local users to overwrite arbitrary files via a symlink attack in some configurations.

EPSS: Низкий
redhat логотип

CVE-2001-0131

около 25 лет назад

htpasswd and htdigest in Apache 2.0a9, 1.3.14, and others allows local users to overwrite arbitrary files via a symlink attack.

CVSS3: 2.9
EPSS: Низкий
redhat логотип

CVE-2001-0128

около 25 лет назад

Zope before 2.2.4 does not properly compute local roles, which could allow users to bypass specified access restrictions and gain privileges.

EPSS: Низкий
redhat логотип

CVE-2001-0117

около 25 лет назад

sdiff 2.7 in the diffutils package allows local users to overwrite files via a symlink attack.

EPSS: Низкий
redhat логотип

CVE-2001-0108

около 25 лет назад

PHP Apache module 4.0.4 and earlier allows remote attackers to bypass .htaccess access restrictions via a malformed HTTP request on an unrestricted page that causes PHP to use those access controls on the next page that is requested.

EPSS: Низкий
redhat логотип

CVE-2001-0101

около 25 лет назад

Vulnerability in fetchmail 5.5.0-2 and earlier in the AUTHENTICATE GSSAPI command.

EPSS: Низкий
redhat логотип

CVE-2001-0072

около 25 лет назад

gpg (aka GnuPG) 1.0.4 and other versions imports both public and private keys from public key servers without notifying the user about the private keys, which could allow an attacker to break the web of trust.

EPSS: Низкий
redhat логотип

CVE-2001-0071

около 25 лет назад

gpg (aka GnuPG) 1.0.4 and other versions does not properly verify detached signatures, which allows attackers to modify the contents of a file without detection.

EPSS: Низкий
redhat логотип

CVE-2001-0066

около 25 лет назад

Secure Locate (slocate) allows local users to corrupt memory via a malformed database file that specifies an offset value that accesses memory outside of the intended buffer.

EPSS: Низкий
redhat логотип

CVE-2001-0060

около 25 лет назад

Format string vulnerability in stunnel 3.8 and earlier allows attackers to execute arbitrary commands via a malformed ident username.

EPSS: Низкий
redhat логотип

CVE-2001-0050

около 25 лет назад

Buffer overflow in BitchX IRC client allows remote attackers to cause a denial of service and possibly execute arbitrary commands via an IP address that resolves to a long DNS hostname or domain name.

EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2001-0309

inetd in Red Hat 6.2 does not properly close sockets for internal services such as chargen, daytime, echo, etc., which allows remote attackers to cause a denial of service via a series of connections to the internal services.

1%
Низкий
около 25 лет назад
redhat логотип
CVE-2001-0301

Buffer overflow in Analog before 4.16 allows remote attackers to execute arbitrary commands by using the ALIAS command to construct large strings.

5%
Низкий
почти 25 лет назад
redhat логотип
CVE-2001-0289

Joe text editor 2.8 searches the current working directory (CWD) for the .joerc configuration file, which could allow local users to gain privileges of other users by placing a Trojan Horse .joerc file into a directory, then waiting for users to execute joe from that directory.

0%
Низкий
почти 25 лет назад
redhat логотип
CVE-2001-0279

Buffer overflow in sudo earlier than 1.6.3p6 allows local users to gain root privileges.

0%
Низкий
почти 25 лет назад
redhat логотип
CVE-2001-0233

Buffer overflow in micq client 0.4.6 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long Description field.

15%
Средний
около 25 лет назад
redhat логотип
CVE-2001-0197

Format string vulnerability in print_client in icecast 1.3.8beta2 and earlier allows remote attackers to execute arbitrary commands.

10%
Низкий
около 25 лет назад
redhat логотип
CVE-2001-0191

gnuserv before 3.12, as shipped with XEmacs, does not properly check the specified length of an X Windows MIT-MAGIC-COOKIE cookie, which allows remote attackers to execute arbitrary commands via a buffer overflow, or brute force authentication by using a short cookie length.

1%
Низкий
около 25 лет назад
redhat логотип
CVE-2001-0170

glibc 2.1.9x and earlier does not properly clear the RESOLV_HOST_CONF, HOSTALIASES, or RES_OPTIONS environmental variables when executing setuid/setgid programs, which could allow local users to read arbitrary files.

1%
Низкий
около 25 лет назад
redhat логотип
CVE-2001-0169

When using the LD_PRELOAD environmental variable in SUID or SGID applications, glibc does not verify that preloaded libraries in /etc/ld.so.cache are also SUID/SGID, which could allow a local user to overwrite arbitrary files by loading a library from /lib or /usr/lib.

0%
Низкий
около 25 лет назад
redhat логотип
CVE-2001-0141

mgetty 1.1.22 allows local users to overwrite arbitrary files via a symlink attack in some configurations.

0%
Низкий
около 25 лет назад
redhat логотип
CVE-2001-0131

htpasswd and htdigest in Apache 2.0a9, 1.3.14, and others allows local users to overwrite arbitrary files via a symlink attack.

CVSS3: 2.9
0%
Низкий
около 25 лет назад
redhat логотип
CVE-2001-0128

Zope before 2.2.4 does not properly compute local roles, which could allow users to bypass specified access restrictions and gain privileges.

0%
Низкий
около 25 лет назад
redhat логотип
CVE-2001-0117

sdiff 2.7 in the diffutils package allows local users to overwrite files via a symlink attack.

0%
Низкий
около 25 лет назад
redhat логотип
CVE-2001-0108

PHP Apache module 4.0.4 and earlier allows remote attackers to bypass .htaccess access restrictions via a malformed HTTP request on an unrestricted page that causes PHP to use those access controls on the next page that is requested.

0%
Низкий
около 25 лет назад
redhat логотип
CVE-2001-0101

Vulnerability in fetchmail 5.5.0-2 and earlier in the AUTHENTICATE GSSAPI command.

0%
Низкий
около 25 лет назад
redhat логотип
CVE-2001-0072

gpg (aka GnuPG) 1.0.4 and other versions imports both public and private keys from public key servers without notifying the user about the private keys, which could allow an attacker to break the web of trust.

1%
Низкий
около 25 лет назад
redhat логотип
CVE-2001-0071

gpg (aka GnuPG) 1.0.4 and other versions does not properly verify detached signatures, which allows attackers to modify the contents of a file without detection.

0%
Низкий
около 25 лет назад
redhat логотип
CVE-2001-0066

Secure Locate (slocate) allows local users to corrupt memory via a malformed database file that specifies an offset value that accesses memory outside of the intended buffer.

0%
Низкий
около 25 лет назад
redhat логотип
CVE-2001-0060

Format string vulnerability in stunnel 3.8 and earlier allows attackers to execute arbitrary commands via a malformed ident username.

1%
Низкий
около 25 лет назад
redhat логотип
CVE-2001-0050

Buffer overflow in BitchX IRC client allows remote attackers to cause a denial of service and possibly execute arbitrary commands via an IP address that resolves to a long DNS hostname or domain name.

19%
Средний
около 25 лет назад

Уязвимостей на страницу