Latest CVE Feed
-
7.5
HIGHCVE-2001-1032
admin.php in PHP-Nuke 5.2 and earlier, except 5.0RC1, does not check login credentials for upload operations, which allows remote attackers to copy and upload arbitrary files and read the PHP-Nuke configuration file by directly calling admin.php with an u... Read more
Affected Products : php-nuke- EPSS Score: %23.19
- Published: Sep. 24, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1035
Binary decoding feature of slrn 0.9 and earlier allows remote attackers to execute commands via shell scripts that are inserted into a news post.... Read more
Affected Products : slrn- EPSS Score: %0.98
- Published: Sep. 24, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0998
IBM HACMP 4.4 allows remote attackers to cause a denial of service via a completed TCP connection to HACMP ports (e.g., using a port scan) that does not send additional data, which causes a failure in snmpd.... Read more
- EPSS Score: %0.52
- Published: Sep. 24, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-1034
Format string vulnerability in Hylafax on FreeBSD allows local users to execute arbitrary code via format specifiers in the -h hostname argument for (1) faxrm or (2) faxalter.... Read more
Affected Products : freebsd- EPSS Score: %0.05
- Published: Sep. 23, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-0955
Buffer overflow in fbglyph.c in XFree86 before 4.2.0, related to glyph clipping for large origins, allows attackers to cause a denial of service and possibly gain privileges via a large number of characters, possibly through the web page search form of KD... Read more
- EPSS Score: %0.08
- Published: Sep. 22, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1023
Xcache 2.1 allows remote attackers to determine the absolute path of web server documents by requesting a URL that is not cached by Xcache, which returns the full pathname in the Content-PageName header.... Read more
Affected Products : xcache- EPSS Score: %0.68
- Published: Sep. 21, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0940
Buffer overflow in the GUI authentication code of Check Point VPN-1/FireWall-1 Management Server 4.0 and 4.1 allows remote attackers to execute arbitrary code via a long user name.... Read more
- EPSS Score: %8.46
- Published: Sep. 21, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0648
Directory traversal vulnerability in PHProjekt 2.1 and earlier allows a remote attacker to conduct unauthorized activities via a dot dot (..) attack on the file module.... Read more
Affected Products : phprojekt- EPSS Score: %0.50
- Published: Sep. 20, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0695
WFTPD 3.00 R5 allows a remote attacker to cause a denial of service by making repeated requests to cd to the floppy drive (A:\).... Read more
Affected Products : wftpd- EPSS Score: %0.79
- Published: Sep. 20, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0668
Buffer overflow in line printer daemon (rlpdaemon) in HP-UX 10.01 through 11.11 allows remote attackers to execute arbitrary commands.... Read more
Affected Products : hp-ux- EPSS Score: %1.76
- Published: Sep. 20, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0704
tradecli.dll in Arcadia Internet Store 1.0 allows a remote attacker to discover the full path to the working directory via a URL with a template argument for a file that does not exist.... Read more
Affected Products : arcadia_internet_store- EPSS Score: %3.06
- Published: Sep. 20, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0677
Eudora 5.0.2 allows a remote attacker to read arbitrary files via an email with the path of the target file in the "Attachment Converted" MIME header, which sends the file when the email is forwarded to the attacker by the user.... Read more
Affected Products : eudora- EPSS Score: %0.98
- Published: Sep. 20, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-0506
Buffer overflow in ssinc.dll in IIS 5.0 and 4.0 allows local users to gain system privileges via a Server-Side Includes (SSI) directive for a long filename, which triggers the overflow when the directory name is added, aka the "SSI privilege elevation" vu... Read more
- EPSS Score: %37.94
- Published: Sep. 20, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0659
Buffer overflow in IrDA driver providing infrared data exchange on Windows 2000 allows attackers who are physically close to the machine to cause a denial of service (reboot) via a malformed IrDA packet.... Read more
Affected Products : windows_2000- EPSS Score: %14.41
- Published: Sep. 20, 2001
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2001-0653
Sendmail 8.10.0 through 8.11.5, and 8.12.0 beta, allows local users to modify process memory and possibly gain privileges via a large value in the 'category' part of debugger (-d) command line arguments, which is interpreted as a negative number.... Read more
Affected Products : sendmail- EPSS Score: %0.33
- Published: Sep. 20, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-0507
IIS 5.0 uses relative paths to find system files that will run in-process, which allows local users to gain privileges via a Trojan horse file, aka the "System file listing privilege elevation" vulnerability.... Read more
- EPSS Score: %1.15
- Published: Sep. 20, 2001
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2001-0641
Buffer overflow in man program in various distributions of Linux allows local user to execute arbitrary code as group man via a long -S option.... Read more
- EPSS Score: %0.25
- Published: Sep. 20, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0546
Memory leak in H.323 Gatekeeper Service in Microsoft Internet Security and Acceleration (ISA) Server 2000 allows remote attackers to cause a denial of service (resource exhaustion) via a large amount of malformed H.323 data.... Read more
Affected Products : isa_server- EPSS Score: %19.07
- Published: Sep. 20, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0688
Broker FTP Server 5.9.5.0 allows a remote attacker to cause a denial of service by repeatedly issuing an invalid CD or CWD ("CD . .") command.... Read more
Affected Products : broker_ftp_server- EPSS Score: %2.96
- Published: Sep. 20, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0683
Memory leak in Netscape Collabra Server 3.5.4 and earlier allows a remote attacker to cause a denial of service (memory exhaustion) by repeatedly sending approximately 5K of data to TCP port 5238.... Read more
Affected Products : collabra_server- EPSS Score: %0.79
- Published: Sep. 20, 2001
- Modified: Apr. 03, 2025