Latest CVE Feed
-
7.5
HIGHCVE-2001-0419
Buffer overflow in shared library ndwfn4.so for iPlanet Web Server (iWS) 4.1, when used as a web listener for Oracle application server 4.0.8.2, allows remote attackers to execute arbitrary commands via a long HTTP request that is passed to the applicatio... Read more
Affected Products : application_server- EPSS Score: %14.52
- Published: Jul. 02, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0327
iPlanet Web Server Enterprise Edition 4.1 and earlier allows remote attackers to retrieve sensitive data from memory allocation pools, or cause a denial of service, via a URL-encoded Host: header in the HTTP request, which reveals memory in the Location: ... Read more
Affected Products : iplanet_web_server- EPSS Score: %1.90
- Published: Jul. 02, 2001
- Modified: Apr. 03, 2025
-
3.6
LOWCVE-2001-0430
Vulnerability in exuberant-ctags before 3.2.4-0.1 insecurely creates temporary files.... Read more
Affected Products : debian_linux- EPSS Score: %0.26
- Published: Jul. 02, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0405
ip_conntrack_ftp in the IPTables firewall for Linux 2.4 allows remote attackers to bypass access restrictions for an FTP server via a PORT command that lists an arbitrary IP address and port number, which is added to the RELATED table and allowed by the f... Read more
- EPSS Score: %14.30
- Published: Jul. 02, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0396
The pre-login mode in the System Administrator interface of Lightwave ConsoleServer 3200 allows remote attackers to obtain sensitive information such as system status, configuration, and users.... Read more
Affected Products : consoleserver- EPSS Score: %0.91
- Published: Jul. 02, 2001
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2001-0435
The split key mechanism used by PGP 7.0 allows a key share holder to obtain access to the entire key by setting the "Cache passphrase while logged on" option and capturing the passphrases of other share holders as they authenticate.... Read more
Affected Products : pgp- EPSS Score: %0.08
- Published: Jul. 02, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-0422
Buffer overflow in Xsun in Solaris 8 and earlier allows local users to execute arbitrary commands via a long HOME environmental variable.... Read more
- EPSS Score: %0.26
- Published: Jul. 02, 2001
- Modified: Apr. 03, 2025
-
6.4
MEDIUMCVE-2001-0421
FTP server in Solaris 8 and earlier allows local and remote attackers to cause a core dump in the root directory, possibly with world-readable permissions, by providing a valid username with an invalid password followed by a CWD ~ command, which could rel... Read more
- EPSS Score: %2.44
- Published: Jul. 02, 2001
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2001-0384
ppd in Reliant Sinix allows local users to corrupt arbitrary files via a symlink attack in the /tmp/ppd.trace file.... Read more
Affected Products : reliant_unix- EPSS Score: %0.13
- Published: Jul. 02, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0400
nph-maillist.pl allows remote attackers to execute arbitrary commands via shell metacharacters ("`") in the email address.... Read more
Affected Products : nph-maillist- EPSS Score: %13.10
- Published: Jul. 02, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0262
Buffer overflow in Netscape SmartDownload 1.3 allows remote attackers (malicious web pages) to execute arbitrary commands via a long URL.... Read more
Affected Products : smartdownload- EPSS Score: %7.79
- Published: Jul. 02, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0428
Cisco VPN 3000 series concentrators before 2.5.2(F) allow remote attackers to cause a denial of service via an IP packet with an invalid IP option.... Read more
Affected Products : vpn_3000_concentrator_series_software- EPSS Score: %0.76
- Published: Jul. 02, 2001
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2001-0438
Preview version of Timbuktu for Mac OS X allows local users to modify System Preferences without logging in via the About Timbuktu menu.... Read more
Affected Products : timbuktu_mac- EPSS Score: %0.09
- Published: Jul. 02, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0418
content.pl script in NCM Content Management System allows remote attackers to read arbitrary contents of the content database by inserting SQL characters into the id parameter.... Read more
Affected Products : ncm_content_management_system- EPSS Score: %2.67
- Published: Jul. 02, 2001
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2001-0444
Cisco CBOS 2.3.0.053 sends output of the "sh nat" (aka "show nat") command to the terminal of the next user who attempts to connect to the router via telnet, which could allow that user to obtain sensitive information.... Read more
Affected Products : cbos- EPSS Score: %0.16
- Published: Jul. 02, 2001
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2001-0432
Buffer overflows in various CGI programs in the remote administration service for Trend Micro Interscan VirusWall 3.01 allow remote attackers to execute arbitrary commands.... Read more
Affected Products : interscan_viruswall- EPSS Score: %6.01
- Published: Jul. 02, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0436
dcboard.cgi in DCForum 2000 1.0 allows remote attackers to execute arbitrary commands by uploading a Perl program to the server and using a .. (dot dot) in the AZ parameter to reference the program.... Read more
- EPSS Score: %2.03
- Published: Jul. 02, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-0387
Format string vulnerability in hfaxd in HylaFAX before 4.1.b2_2 allows local users to gain privileges via the -q command line argument.... Read more
Affected Products : hylafax- EPSS Score: %0.06
- Published: Jul. 02, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0391
Xitami 2.5d4 and earlier allows remote attackers to crash the server via an HTTP request to the /aux directory.... Read more
Affected Products : xitami- EPSS Score: %0.66
- Published: Jul. 02, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0389
IBM Websphere/NetCommerce3 3.1.2 allows remote attackers to determine the real path of the server by directly calling the macro.d2w macro with a NOEXISTINGHTMLBLOCK argument.... Read more
- EPSS Score: %0.66
- Published: Jul. 02, 2001
- Modified: Apr. 03, 2025