Latest CVE Feed
-
7.5
HIGHCVE-2001-1309
Buffer overflows in IBM SecureWay 3.2.1 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, as demonstrated by the PROTOS LDAPv3 test suite.... Read more
Affected Products : secureway_directory- EPSS Score: %8.33
- Published: Jul. 16, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1317
Teamware Office Enterprise Directory allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, via invalid encodings for certain BER object types, as demonstrated by the PROTOS LDAPv3 test suite.... Read more
Affected Products : teamware_office- EPSS Score: %7.87
- Published: Jul. 16, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1320
Network Associates PGP Keyserver 7.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via exceptional BER encodings (possibly buffer overflows), as demonstrated by the PROTOS LDAPv3 test suite.... Read more
Affected Products : keyserver- EPSS Score: %66.69
- Published: Jul. 16, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1307
Buffer overflows in iPlanet Directory Server 4.1.4 and earlier (LDAP) allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, as demonstrated by the PROTOS LDAPv3 test suite.... Read more
Affected Products : iplanet_directory_server- EPSS Score: %7.47
- Published: Jul. 16, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1308
Format string vulnerabilities in iPlanet Directory Server 4.1.4 and earlier (LDAP) allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, as demonstrated by the PROTOS LDAPv3 test suite.... Read more
Affected Products : iplanet_directory_server- EPSS Score: %17.52
- Published: Jul. 16, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0975
Buffer overflow vulnerabilities in Oracle Internet Directory Server (LDAP) 2.1.1.x and 3.0.1 allow remote attackers to execute arbitrary code, as demonstrated by the PROTOS LDAPv3 test suite.... Read more
Affected Products : internet_directory- EPSS Score: %7.16
- Published: Jul. 16, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-1181
Dynamically Loadable Kernel Module (dlkm) static kernel symbol table in HP-UX 11.11 is not properly configured, which allows local users to gain privileges.... Read more
Affected Products : hp-ux- EPSS Score: %0.05
- Published: Jul. 16, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1319
Microsoft Exchange 5.5 2000 allows remote attackers to cause a denial of service (hang) via exceptional BER encodings for the LDAP filter type field, as demonstrated by the PROTOS LDAPv3 test suite.... Read more
Affected Products : exchange_server- EPSS Score: %16.96
- Published: Jul. 16, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1314
Buffer overflows in Critical Path (1) InJoin Directory Server or (2) LiveContent Directory allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, as demonstrated by the PROTOS LDAPv3 test suite.... Read more
- EPSS Score: %13.08
- Published: Jul. 16, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1310
IBM SecureWay 3.2.1 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, via invalid encodings for the L field of a BER encoding, as demonstrated by the PROTOS LDAPv3 test suite.... Read more
Affected Products : secureway_directory- EPSS Score: %11.55
- Published: Jul. 16, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1321
Oracle Internet Directory Server 2.1.1.x and 3.0.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via invalid encodings of BER OBJECT-IDENTIFIER values, as demonstrated by the PROTOS LDAPv3 test suite.... Read more
Affected Products : internet_directory- EPSS Score: %5.25
- Published: Jul. 16, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1306
iPlanet Directory Server 4.1.4 and earlier (LDAP) allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via invalid BER length of length fields, as demonstrated by the PROTOS LDAPv3 test suite.... Read more
Affected Products : iplanet_directory_server- EPSS Score: %8.06
- Published: Jul. 16, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1315
Critical Path (1) InJoin Directory Server or (2) LiveContent Directory allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via malformed BER encodings, as demonstrated by the PROTOS LDAPv3 test suite.... Read more
- EPSS Score: %11.26
- Published: Jul. 16, 2001
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2001-1053
AdLogin.pm in AdCycle 1.15 and earlier allows remote attackers to bypass authentication and gain privileges by injecting SQL code in the $password argument.... Read more
Affected Products : adcycle- EPSS Score: %0.46
- Published: Jul. 13, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1082
Directory traversal vulnerability in Livingston/Lucent RADIUS before 2.1.va.1 may allow attackers to read arbitrary files via a .. (dot dot) attack.... Read more
- EPSS Score: %0.58
- Published: Jul. 13, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1142
ArGoSoft FTP Server 1.2.2.2 uses weak encryption for user passwords, which allows an attacker with access to the password file to gain privileges.... Read more
Affected Products : ftp_server- EPSS Score: %1.79
- Published: Jul. 12, 2001
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2001-1291
The telnet server for 3Com hardware such as PS40 SuperStack II does not delay or disconnect remote attackers who provide an incorrect username or password, which makes it easier to break into the server via brute force password guessing.... Read more
- EPSS Score: %9.89
- Published: Jul. 12, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1176
Format string vulnerability in Check Point VPN-1/FireWall-1 4.1 allows a remote authenticated firewall administrator to execute arbitrary code via format strings in the control connection.... Read more
- EPSS Score: %2.31
- Published: Jul. 12, 2001
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2001-1267
Directory traversal vulnerability in GNU tar 1.13.19 and earlier allows local users to overwrite arbitrary files during archive extraction via a tar file whose filenames contain a .. (dot dot).... Read more
Affected Products : tar- EPSS Score: %0.12
- Published: Jul. 12, 2001
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2001-1269
Info-ZIP UnZip 5.42 and earlier allows attackers to overwrite arbitrary files during archive extraction via filenames in the archive that begin with the '/' (slash) character.... Read more
Affected Products : unzip- EPSS Score: %0.14
- Published: Jul. 12, 2001
- Modified: Apr. 03, 2025