Latest CVE Feed
-
7.5
HIGHCVE-2001-1187
csvform.pl 0.1 allows remote attackers to execute arbitrary commands via metacharacters in the file parameter.... Read more
- EPSS Score: %3.12
- Published: Dec. 11, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1186
Microsoft IIS 5.0 allows remote attackers to cause a denial of service via an HTTP request with a content-length value that is larger than the size of the request, which prevents IIS from timing out the connection.... Read more
Affected Products : internet_information_services- EPSS Score: %32.41
- Published: Dec. 11, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1191
WebSeal in IBM Tivoli SecureWay Policy Director 3.8 allows remote attackers to cause a denial of service (crash) via a URL that ends in %2e.... Read more
Affected Products : tivoli_secureway_policy_director- EPSS Score: %0.61
- Published: Dec. 11, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1188
mailto.exe in Brian Dorricott MAILTO 1.0.9 and earlier allows remote attackers to send SPAM e-mail through remote servers by modifying the sendto, email, server, subject, and resulturl hidden form fields.... Read more
Affected Products : mailto- EPSS Score: %2.37
- Published: Dec. 11, 2001
- Modified: Apr. 03, 2025
-
6.2
MEDIUMCVE-2001-1185
Some AIO operations in FreeBSD 4.4 may be delayed until after a call to execve, which could allow a local user to overwrite memory of the new process and gain privileges.... Read more
Affected Products : freebsd- EPSS Score: %0.13
- Published: Dec. 10, 2001
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2001-0953
Kebi WebMail allows remote attackers to access the administrator menu and gain privileges via the /a/ hidden directory, which is installed under the web document root.... Read more
Affected Products : kebi_community- EPSS Score: %1.10
- Published: Dec. 08, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1184
wrshdsp.exe in Denicomp Winsock RSHD/NT 2.21.00 and earlier allows remote attackers to cause a denial of service (CPU consumption) via (1) in 2.20.00 and earlier, an invalid port number such as a negative number, which causes a connection attempt to that ... Read more
Affected Products : winsock_rshd_nt- EPSS Score: %19.48
- Published: Dec. 08, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0951
Windows 2000 allows remote attackers to cause a denial of service (CPU consumption) by flooding Internet Key Exchange (IKE) UDP port 500 with packets that contain a large number of dot characters.... Read more
Affected Products : windows_2000- EPSS Score: %56.34
- Published: Dec. 07, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0952
THQ Volition Red Faction Game allows remote attackers to cause a denial of service (hang) of a client or server via packets to UDP port 7755.... Read more
Affected Products : red_faction- EPSS Score: %4.72
- Published: Dec. 07, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0954
Lotus Domino 5.0.5 and 5.0.8, and possibly other versions, allows remote attackers to cause a denial of service (block access to databases that have not been previously accessed) via a URL that includes the . (dot) directory.... Read more
Affected Products : domino- EPSS Score: %0.91
- Published: Dec. 07, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0853
Directory traversal vulnerability in Entrust GetAccess allows remote attackers to read arbitrary files via a .. (dot dot) in the locale parameter to (1) helpwin.gas.bat or (2) AboutBox.gas.bat.... Read more
Affected Products : getaccess- EPSS Score: %3.87
- Published: Dec. 06, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0842
Directory traversal vulnerability in Search.cgi in Leoboard LB5000 LB5000II 1029 and earlier allows remote attackers to overwrite files and gain privileges via .. (dot dot) sequences in the amembernamecookie cookie.... Read more
Affected Products : lb5000- EPSS Score: %1.96
- Published: Dec. 06, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0859
2.4.3-12 kernel in Red Hat Linux 7.1 Korean installation program sets the setting default umask for init to 000, which installs files with world-writeable permissions.... Read more
Affected Products : linux- EPSS Score: %0.47
- Published: Dec. 06, 2001
- Modified: Apr. 03, 2025
-
3.6
LOWCVE-2001-0806
Apple MacOS X 10.0 and 10.1 allow a local user to read and write to a user's desktop folder via insecure default permissions for the Desktop when it is created in some languages.... Read more
Affected Products : mac_os_x- EPSS Score: %0.08
- Published: Dec. 06, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0726
Outlook Web Access (OWA) in Microsoft Exchange 5.5 Server, when used with Internet Explorer, does not properly detect certain inline script, which can allow remote attackers to perform arbitrary actions on a user's Exchange mailbox via an HTML e-mail mess... Read more
Affected Products : exchange_server- EPSS Score: %9.90
- Published: Dec. 06, 2001
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2001-0800
lpsched in IRIX 6.5.13f and earlier allows remote attackers to execute arbitrary commands via shell metacharacters.... Read more
Affected Products : irix- EPSS Score: %78.03
- Published: Dec. 06, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-0823
The pmpost program in Performance Co-Pilot (PCP) before 2.2.1-3 allows a local user to gain privileges via a symlink attack on the NOTICES file in the PCP log directory (PCP_LOG_DIR).... Read more
Affected Products : performance_co-pilot- EPSS Score: %0.24
- Published: Dec. 06, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0716
Citrix MetaFrame 1.8 Server with Service Pack 3, and XP Server Service Pack 1 and earlier, allows remote attackers to cause a denial of service (crash) via a large number of incomplete connections to the server.... Read more
Affected Products : metaframe- EPSS Score: %1.11
- Published: Dec. 06, 2001
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2001-0831
Unknown vulnerability in Oracle Label Security in Oracle 8.1.7 and 9.0.1, when audit functionality, SET_LABEL, or SQL*Predicate is being used, allows local users to gain additional access.... Read more
Affected Products : database_server- EPSS Score: %0.30
- Published: Dec. 06, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0663
Terminal Server in Windows NT and Windows 2000 allows remote attackers to cause a denial of service via a sequence of invalid Remote Desktop Protocol (RDP) packets.... Read more
- EPSS Score: %23.05
- Published: Dec. 06, 2001
- Modified: Apr. 03, 2025