Latest CVE Feed
-
7.2
HIGHCVE-2001-0597
Zetetic Secure Tool for Recalling Important Passwords (STRIP) 0.5 and earlier for the PalmOS allows a local attacker to recover passwords via a brute force attack. This attack is made feasible by STRIP's use of SysRandom, which is seeded by TimeGetTicks,... Read more
Affected Products : strip- EPSS Score: %0.32
- Published: Aug. 02, 2001
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2001-0609
Format string vulnerability in Infodrom cfingerd 1.4.3 and earlier allows a remote attacker to gain additional privileges via a malformed ident reply that is passed to the syslog function.... Read more
Affected Products : cfingerd- EPSS Score: %9.91
- Published: Aug. 02, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0602
Lotus Domino R5 prior to 5.0.7 allows a remote attacker to create a denial of service via repeated (>400) URL requests for DOS devices.... Read more
Affected Products : domino_r5_server- EPSS Score: %0.79
- Published: Aug. 02, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0590
Apache Software Foundation Tomcat Servlet prior to 3.2.2 allows a remote attacker to read the source code to arbitrary 'jsp' files via a malformed URL request which does not end with an HTTP protocol specification (i.e. HTTP/1.0).... Read more
Affected Products : tomcat- EPSS Score: %21.84
- Published: Aug. 02, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0601
Lotus Domino R5 prior to 5.0.7 allows a remote attacker to create a denial of service via HTTP requests containing certain combinations of UNICODE characters.... Read more
Affected Products : domino_r5_server- EPSS Score: %0.79
- Published: Aug. 02, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1130
Sdbsearch.cgi in SuSE Linux 6.0-7.2 could allow remote attackers to execute arbitrary commands by uploading a keylist.txt file that contains filenames with shell metacharacters, then causing the file to be searched using a .. in the HTTP referer (from the... Read more
Affected Products : suse_linux- EPSS Score: %4.40
- Published: Aug. 02, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0604
Lotus Domino R5 prior to 5.0.7 allows a remote attacker to create a denial of service via URL requests (>8Kb) containing a large number of '/' characters.... Read more
Affected Products : domino_r5_server- EPSS Score: %0.79
- Published: Aug. 02, 2001
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2001-0573
lsfs in AIX 4.x allows a local user to gain additional privileges by creating Trojan horse programs named (1) grep or (2) lslv in a certain directory that is under the user's control, which cause lsfs to access the programs in that directory.... Read more
Affected Products : aix- EPSS Score: %0.08
- Published: Aug. 02, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0598
Symantec Ghost 6.5 and earlier allows a remote attacker to create a denial of service by sending large (> 45Kb) amounts of data to the Ghost Configuration Server on port 1347, which triggers an error that is not properly handled.... Read more
Affected Products : norton_ghost- EPSS Score: %1.10
- Published: Aug. 02, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0599
Sybase Adaptive Server Anywhere Database Engine 6.0.3.2747 and earlier as included with Symantec Ghost 6.5 allows a remote attacker to create a denial of service by sending large (> 45Kb) amounts of data to port 2638.... Read more
Affected Products : adaptive_server_anywhere- EPSS Score: %0.89
- Published: Aug. 02, 2001
- Modified: Apr. 03, 2025
-
8.8
HIGHCVE-2001-1471
prefs.php in phpBB 1.4.0 and earlier allows remote authenticated users to execute arbitrary PHP code via an invalid language value, which prevents the variables (1) $l_statsblock in prefs.php or (2) $l_privnotify in auth.php from being properly initialize... Read more
Affected Products : phpbb- EPSS Score: %1.17
- Published: Jul. 31, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1060
phpMyAdmin 2.2.0rc3 and earlier allows remote attackers to execute arbitrary commands by inserting them into (1) the strCopyTableOK argument in tbl_copy.php, or (2) the strRenameTableOK argument in tbl_rename.php.... Read more
Affected Products : phpmyadmin- EPSS Score: %0.98
- Published: Jul. 31, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1057
The License Manager (mathlm) for Mathematica 4.0 and 4.1 allows remote attackers to cause a denial of service (resource exhaustion) by connecting to port 16286 and not disconnecting, which prevents users from making license requests.... Read more
Affected Products : mathematica- EPSS Score: %0.74
- Published: Jul. 30, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1055
The Microsoft Windows network stack allows remote attackers to cause a denial of service (CPU consumption) via a flood of malformed ARP request packets with random source IP and MAC addresses, as demonstrated by ARPNuke.... Read more
- EPSS Score: %15.04
- Published: Jul. 30, 2001
- Modified: Apr. 03, 2025
-
3.6
LOWCVE-2001-1059
VMWare creates a temporary file vmware-log.USERNAME with insecure permissions, which allows local users to read or modify license information.... Read more
Affected Products : workstation- EPSS Score: %0.04
- Published: Jul. 30, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1056
IRC DCC helper in the ip_masq_irc IP masquerading module 2.2 allows remote attackers to bypass intended firewall restrictions by causing the target system to send a "DCC SEND" request to a malicious server which listens on port 6667, which may cause the m... Read more
Affected Products : linux_kernel- EPSS Score: %0.53
- Published: Jul. 30, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1289
Quake 3 arena 1.29f and 1.29g allows remote attackers to cause a denial of service (crash) via a malformed connection packet that begins with several char-255 characters.... Read more
Affected Products : quake_3_arena- EPSS Score: %1.22
- Published: Jul. 29, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1024
login.gas.bat and other CGI scripts in Entrust getAccess allow remote attackers to execute Java programs, and possibly arbitrary commands, by specifying an alternate -classpath argument.... Read more
Affected Products : getaccess- EPSS Score: %0.76
- Published: Jul. 27, 2001
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2001-1288
Windows 2000 and Windows NT allows local users to cause a denial of service (reboot) by executing a command at the command prompt and pressing the F7 and enter keys several times while the command is executing, possibly related to an exception handling er... Read more
- EPSS Score: %0.43
- Published: Jul. 27, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-1173
Vulnerability in MasqMail before 0.1.15 allows local users to gain privileges via piped aliases.... Read more
Affected Products : masqmail- EPSS Score: %0.05
- Published: Jul. 26, 2001
- Modified: Apr. 03, 2025