Latest CVE Feed
-
7.5
HIGHCVE-2001-0572
The SSH protocols 1 and 2 (aka SSH-2) as implemented in OpenSSH and other packages have various weaknesses which can allow a remote attacker to obtain the following information via sniffing: (1) password lengths or ranges of lengths, which simplifies brut... Read more
- EPSS Score: %15.04
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0608
HP architected interface facility (AIF) as includes with MPE/iX 5.5 through 6.5 running on a HP3000 allows an attacker to gain additional privileges and gain access to databases via the AIF - AIFCHANGELOGON program.... Read more
Affected Products : mpe- EPSS Score: %0.68
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1139
Directory traversal vulnerability in ASCII NT WinWrapper Professional allows remote attackers to read arbitrary files via a .. (dot dot) in the server request.... Read more
Affected Products : winwrapper_professional- EPSS Score: %5.22
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0617
Allied Telesyn AT-AR220e cable/DSL router firmware 1.08a RC14 with the portmapper and the 'Virtual Server' enabled can allow a remote attacker to gain access to mapped services even though the single portmappings may be disabled.... Read more
Affected Products : at-ar220e- EPSS Score: %0.64
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0606
Vulnerability in iPlanet Web Server 4.X in HP-UX 11.04 (VVOS) with VirtualVault A.04.00 allows a remote attacker to create a denial of service via the HTTPS service.... Read more
- EPSS Score: %0.46
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0632
Sun Chili!Soft 3.5.2 on Linux and 3.6 on AIX creates a default admin username and password in the default installation, which can allow a remote attacker to gain additional privileges.... Read more
Affected Products : chilisoft- EPSS Score: %0.55
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2001-0588
sendmail 8.9.3, as included with the MMDF 2.43.3b package in SCO OpenServer 5.0.6, can allow a local attacker to gain additional privileges via a buffer overflow in the first argument to the command.... Read more
Affected Products : openserver- EPSS Score: %0.10
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0581
Spytech Spynet Chat Server 6.5 allows a remote attacker to create a denial of service (crash) via a large number of connections to port 6387.... Read more
Affected Products : spynet_chat- EPSS Score: %4.72
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-0634
Sun Chili!Soft ASP has weak permissions on various configuration files, which allows a local attacker to gain additional privileges and create a denial of service.... Read more
Affected Products : chilisoft- EPSS Score: %0.04
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-0625
ftpdownload in Computer Associates InoculateIT 6.0 allows a local attacker to overwrite arbitrary files via a symlink attack on /tmp/ftpdownload.log .... Read more
Affected Products : inoculateit- EPSS Score: %0.06
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0631
Centrinity First Class Internet Services 5.50 allows for the circumventing of the default 'spam' filters via the presence of '<@>' in the 'From:' field, which allows remote attackers to send spoofed email with the identity of local users.... Read more
Affected Products : centrinity_firstclass- EPSS Score: %0.57
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0583
Alt-N Technologies MDaemon 3.5.4 allows a remote attacker to create a denial of service via the URL request of a MS-DOS device (such as GET /aux) to (1) the Worldclient service at port 3000, or (2) the Webconfig service at port 3001.... Read more
Affected Products : mdaemon- EPSS Score: %0.65
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1294
Buffer overflow in A-V Tronics Inetserv 3.2.1 and earlier allows remote attackers to cause a denial of service (crash) in the Webmail interface via a long username and password.... Read more
Affected Products : inetserv- EPSS Score: %0.71
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1140
BadBlue Personal Edition v1.02 beta allows remote attackers to read source code for executable programs by appending a %00 (null byte) to the request.... Read more
Affected Products : badblue- EPSS Score: %1.00
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2001-0607
asecure as included with HP-UX 10.01 through 11.00 can allow a local attacker to create a denial of service and gain additional privileges via unsafe permissions on the asecure program, a different vulnerability than CVE-2000-0083.... Read more
Affected Products : hp-ux- EPSS Score: %0.06
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0585
Gordano NTMail 6.0.3c allows a remote attacker to create a denial of service via a long (>= 255 characters) URL request to port 8000 or port 9000.... Read more
Affected Products : ntmail- EPSS Score: %0.74
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2001-0576
lpusers as included with SCO OpenServer 5.0 through 5.0.6 allows a local attacker to gain additional privileges via a buffer overflow attack in the '-u' command line parameter.... Read more
Affected Products : openserver- EPSS Score: %0.26
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0614
Carello E-Commerce 1.2.1 and earlier allows a remote attacker to gain additional privileges and execute arbitrary commands via a specially constructed URL.... Read more
Affected Products : e-commerce- EPSS Score: %4.38
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2001-0560
Buffer overflow in Vixie cron 3.0.1-56 and earlier could allow a local attacker to gain additional privileges via a long username (> 20 characters).... Read more
Affected Products : vixie_cron- EPSS Score: %0.22
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-0556
The Nirvana Editor (NEdit) 5.1.1 and earlier allows a local attacker to overwrite other users' files via a symlink attack on (1) backup files or (2) temporary files used when nedit prints a file or portions of a file.... Read more
Affected Products : nedit- EPSS Score: %0.05
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025