Latest CVE Feed
-
6.2
MEDIUMCVE-2001-1383
initscript in setserial 2.17-4 and earlier uses predictable temporary file names, which could allow local users to conduct unauthorized operations on files.... Read more
Affected Products : linux- EPSS Score: %0.05
- Published: Sep. 26, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1033
Compaq TruCluster 1.5 allows remote attackers to cause a denial of service via a port scan from a system that does not have a DNS PTR record, which causes the cluster to enter a "split-brain" state.... Read more
- EPSS Score: %0.74
- Published: Sep. 25, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1032
admin.php in PHP-Nuke 5.2 and earlier, except 5.0RC1, does not check login credentials for upload operations, which allows remote attackers to copy and upload arbitrary files and read the PHP-Nuke configuration file by directly calling admin.php with an u... Read more
Affected Products : php-nuke- EPSS Score: %23.19
- Published: Sep. 24, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0998
IBM HACMP 4.4 allows remote attackers to cause a denial of service via a completed TCP connection to HACMP ports (e.g., using a port scan) that does not send additional data, which causes a failure in snmpd.... Read more
- EPSS Score: %0.52
- Published: Sep. 24, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1035
Binary decoding feature of slrn 0.9 and earlier allows remote attackers to execute commands via shell scripts that are inserted into a news post.... Read more
Affected Products : slrn- EPSS Score: %0.98
- Published: Sep. 24, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-1034
Format string vulnerability in Hylafax on FreeBSD allows local users to execute arbitrary code via format specifiers in the -h hostname argument for (1) faxrm or (2) faxalter.... Read more
Affected Products : freebsd- EPSS Score: %0.05
- Published: Sep. 23, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-0955
Buffer overflow in fbglyph.c in XFree86 before 4.2.0, related to glyph clipping for large origins, allows attackers to cause a denial of service and possibly gain privileges via a large number of characters, possibly through the web page search form of KD... Read more
- EPSS Score: %0.08
- Published: Sep. 22, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0940
Buffer overflow in the GUI authentication code of Check Point VPN-1/FireWall-1 Management Server 4.0 and 4.1 allows remote attackers to execute arbitrary code via a long user name.... Read more
- EPSS Score: %8.46
- Published: Sep. 21, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1023
Xcache 2.1 allows remote attackers to determine the absolute path of web server documents by requesting a URL that is not cached by Xcache, which returns the full pathname in the Content-PageName header.... Read more
Affected Products : xcache- EPSS Score: %0.68
- Published: Sep. 21, 2001
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2001-0686
Buffer overflow in mail included with SunOS 5.8 for x86 allows a local user to gain privileges via a long HOME environment variable.... Read more
Affected Products : solaris- EPSS Score: %0.13
- Published: Sep. 20, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0646
Maxum Rumpus FTP Server 1.3.3 and 2.0.3 dev 3 allows a remote attacker to perform a denial of service (hang) by creating a directory name of a specific length.... Read more
Affected Products : rumpus_ftp_server- EPSS Score: %9.00
- Published: Sep. 20, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0509
Vulnerabilities in RPC servers in (1) Microsoft Exchange Server 2000 and earlier, (2) Microsoft SQL Server 2000 and earlier, (3) Windows NT 4.0, and (4) Windows 2000 allow remote attackers to cause a denial of service via malformed inputs.... Read more
- EPSS Score: %11.18
- Published: Sep. 20, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0658
Cross-site scripting (CSS) vulnerability in Microsoft Internet Security and Acceleration (ISA) Server 2000 allows remote attackers to cause other clients to execute certain script or read cookies via malicious script in an invalid URL that is not properly... Read more
Affected Products : isa_server- EPSS Score: %11.67
- Published: Sep. 20, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0636
Buffer overflows in Raytheon SilentRunner allow remote attackers to (1) cause a denial of service in the collector (cle.exe) component of SilentRunner 2.0 via traffic containing long passwords, or (2) execute arbitrary commands via long HTTP queries in th... Read more
Affected Products : silentrunner- EPSS Score: %0.99
- Published: Sep. 20, 2001
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2001-0706
Maximum Rumpus FTP Server 2.0.3 dev and before allows an attacker to cause a denial of service (crash) via a mkdir command that specifies a large number of sub-folders.... Read more
Affected Products : rumpus_ftp_server- EPSS Score: %0.88
- Published: Sep. 20, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0543
Memory leak in NNTP service in Windows NT 4.0 and Windows 2000 allows remote attackers to cause a denial of service (memory exhaustion) via a large number of malformed posts.... Read more
- EPSS Score: %7.76
- Published: Sep. 20, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0963
Directory traversal vulnerability in SpoonFTP 1.1 allows local and sometimes remote attackers to access files outside of the FTP root via a ... (modified dot dot) in the CD (CWD) command.... Read more
Affected Products : spoonftp- EPSS Score: %1.19
- Published: Sep. 20, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0707
Denicomp RSHD 2.18 and earlier allows a remote attacker to cause a denial of service (crash) via a long string to port 514.... Read more
Affected Products : rshd- EPSS Score: %0.66
- Published: Sep. 20, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0689
Vulnerability in TrendMicro Virus Control System 1.8 allows a remote attacker to view configuration files and change the configuration via a certain CGI program.... Read more
Affected Products : virus_control_system- EPSS Score: %0.64
- Published: Sep. 20, 2001
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2001-0653
Sendmail 8.10.0 through 8.11.5, and 8.12.0 beta, allows local users to modify process memory and possibly gain privileges via a large value in the 'category' part of debugger (-d) command line arguments, which is interpreted as a negative number.... Read more
Affected Products : sendmail- EPSS Score: %0.33
- Published: Sep. 20, 2001
- Modified: Apr. 03, 2025