Latest CVE Feed
-
5.0
MEDIUMCVE-2001-0603
Lotus Domino R5 prior to 5.0.7 allows a remote attacker to create a denial of service via repeatedly sending large (> 10Kb) amounts of data to the DIIOP - CORBA service on TCP port 63148.... Read more
Affected Products : domino_r5_server- EPSS Score: %0.79
- Published: Aug. 02, 2001
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2001-0624
QNX 2.4 allows a local user to read arbitrary files by directly accessing the mount point for the FAT disk partition, e.g. /fs-dos.... Read more
Affected Products : qnx- EPSS Score: %0.09
- Published: Aug. 02, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0618
Orinoco RG-1000 wireless Residential Gateway uses the last 5 digits of the 'Network Name' or SSID as the default Wired Equivalent Privacy (WEP) encryption key. Since the SSID occurs in the clear during communications, a remote attacker could determine th... Read more
Affected Products : orinoco_rg-1000- EPSS Score: %0.41
- Published: Aug. 02, 2001
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2001-1116
Identix BioLogon 2.03 and earlier does not lock secondary displays on a multi-monitor system running Windows 98 or ME, which allows an attacker with physical access to the system to bypass authentication through a secondary display.... Read more
Affected Products : biologon- EPSS Score: %0.10
- Published: Aug. 02, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-0597
Zetetic Secure Tool for Recalling Important Passwords (STRIP) 0.5 and earlier for the PalmOS allows a local attacker to recover passwords via a brute force attack. This attack is made feasible by STRIP's use of SysRandom, which is seeded by TimeGetTicks,... Read more
Affected Products : strip- EPSS Score: %0.32
- Published: Aug. 02, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1118
A module in Roxen 2.0 before 2.0.92, and 2.1 before 2.1.264, does not properly decode UTF-8, Mac and ISO-2202 encoded URLs, which could allow a remote attacker to execute arbitrary commands or view arbitrary files via an encoded URL.... Read more
Affected Products : roxen_webserver- EPSS Score: %1.25
- Published: Aug. 02, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0601
Lotus Domino R5 prior to 5.0.7 allows a remote attacker to create a denial of service via HTTP requests containing certain combinations of UNICODE characters.... Read more
Affected Products : domino_r5_server- EPSS Score: %0.79
- Published: Aug. 02, 2001
- Modified: Apr. 03, 2025
-
8.8
HIGHCVE-2001-1471
prefs.php in phpBB 1.4.0 and earlier allows remote authenticated users to execute arbitrary PHP code via an invalid language value, which prevents the variables (1) $l_statsblock in prefs.php or (2) $l_privnotify in auth.php from being properly initialize... Read more
Affected Products : phpbb- EPSS Score: %1.17
- Published: Jul. 31, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1060
phpMyAdmin 2.2.0rc3 and earlier allows remote attackers to execute arbitrary commands by inserting them into (1) the strCopyTableOK argument in tbl_copy.php, or (2) the strRenameTableOK argument in tbl_rename.php.... Read more
Affected Products : phpmyadmin- EPSS Score: %0.98
- Published: Jul. 31, 2001
- Modified: Apr. 03, 2025
-
3.6
LOWCVE-2001-1059
VMWare creates a temporary file vmware-log.USERNAME with insecure permissions, which allows local users to read or modify license information.... Read more
Affected Products : workstation- EPSS Score: %0.04
- Published: Jul. 30, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1057
The License Manager (mathlm) for Mathematica 4.0 and 4.1 allows remote attackers to cause a denial of service (resource exhaustion) by connecting to port 16286 and not disconnecting, which prevents users from making license requests.... Read more
Affected Products : mathematica- EPSS Score: %0.74
- Published: Jul. 30, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1055
The Microsoft Windows network stack allows remote attackers to cause a denial of service (CPU consumption) via a flood of malformed ARP request packets with random source IP and MAC addresses, as demonstrated by ARPNuke.... Read more
- EPSS Score: %15.04
- Published: Jul. 30, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1056
IRC DCC helper in the ip_masq_irc IP masquerading module 2.2 allows remote attackers to bypass intended firewall restrictions by causing the target system to send a "DCC SEND" request to a malicious server which listens on port 6667, which may cause the m... Read more
Affected Products : linux_kernel- EPSS Score: %0.53
- Published: Jul. 30, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1289
Quake 3 arena 1.29f and 1.29g allows remote attackers to cause a denial of service (crash) via a malformed connection packet that begins with several char-255 characters.... Read more
Affected Products : quake_3_arena- EPSS Score: %1.22
- Published: Jul. 29, 2001
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2001-1288
Windows 2000 and Windows NT allows local users to cause a denial of service (reboot) by executing a command at the command prompt and pressing the F7 and enter keys several times while the command is executing, possibly related to an exception handling er... Read more
- EPSS Score: %0.43
- Published: Jul. 27, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1024
login.gas.bat and other CGI scripts in Entrust getAccess allow remote attackers to execute Java programs, and possibly arbitrary commands, by specifying an alternate -classpath argument.... Read more
Affected Products : getaccess- EPSS Score: %0.76
- Published: Jul. 27, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1108
Directory traversal vulnerability in SnapStream PVS 1.2a allows remote attackers to read arbitrary files via a .. (dot dot) attack in the requested URL.... Read more
Affected Products : pvs- EPSS Score: %3.88
- Published: Jul. 26, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-1173
Vulnerability in MasqMail before 0.1.15 allows local users to gain privileges via piped aliases.... Read more
Affected Products : masqmail- EPSS Score: %0.05
- Published: Jul. 26, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1022
Format string vulnerability in pic utility in groff 1.16.1 and other versions, and jgroff before 1.15, allows remote attackers to bypass the -S option and execute arbitrary commands via format string specifiers in the plot command.... Read more
- EPSS Score: %21.22
- Published: Jul. 26, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1107
SnapStream PVS 1.2a stores its passwords in plaintext in the file SSD.ini, which could allow a remote attacker to gain privileges on the server.... Read more
Affected Products : pvs- EPSS Score: %3.57
- Published: Jul. 26, 2001
- Modified: Apr. 03, 2025