Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 2.1

    LOW
    CVE-2001-0261

    Microsoft Windows 2000 Encrypted File System does not properly destroy backups of files that are encrypted, which allows a local attacker to recover the text of encrypted files.... Read more

    Affected Products : windows_2000
    • EPSS Score: %1.10
    • Published: Jun. 02, 2001
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2001-0149

    Windows Scripting Host in Internet Explorer 5.5 and earlier allows remote attackers to read arbitrary files via the GetObject Javascript function and the htmlfile ActiveX object.... Read more

    Affected Products : internet_explorer
    • EPSS Score: %43.56
    • Published: Jun. 02, 2001
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2001-0781

    Buffer overflow in SpoonFTP 1.0.0.12 allows remote attackers to execute arbitrary code via a long argument to the commands (1) CWD or (2) LIST.... Read more

    Affected Products : spoonftp
    • EPSS Score: %2.84
    • Published: May. 30, 2001
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2001-1326

    Eudora 5.1 allows remote attackers to execute arbitrary code when the "Use Microsoft Viewer" option is enabled and the "allow executables in HTML content" option is disabled, via an HTML email with a form that is activated from an image that the attacker ... Read more

    Affected Products : eudora
    • EPSS Score: %3.75
    • Published: May. 29, 2001
    • Modified: Apr. 03, 2025
  • 3.7

    LOW
    CVE-2001-1349

    Sendmail before 8.11.4, and 8.12.0 before 8.12.0.Beta10, allows local users to cause a denial of service and possibly corrupt the heap and gain privileges via race conditions in signal handlers.... Read more

    Affected Products : sendmail
    • EPSS Score: %0.08
    • Published: May. 28, 2001
    • Modified: Apr. 03, 2025
  • 7.2

    HIGH
    CVE-2001-1074

    Webmin 0.84 and earlier does not properly clear the HTTP_AUTHORIZATION environment variable when the web server is restarted, which makes authentication information available to all CGI programs and allows local users to gain privileges.... Read more

    Affected Products : webmin
    • EPSS Score: %0.05
    • Published: May. 28, 2001
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2001-1336

    CesarFTP 0.98b and earlier stores usernames and passwords in plaintext in the settings.ini file, which allows attackers to gain privileges.... Read more

    Affected Products : cesarftp
    • EPSS Score: %0.53
    • Published: May. 28, 2001
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2001-1348

    TWIG 2.6.2 and earlier allows remote attackers to perform unauthorized database operations via a SQL injection attack on the id parameter.... Read more

    Affected Products : twig
    • EPSS Score: %0.60
    • Published: May. 28, 2001
    • Modified: Apr. 03, 2025
  • 7.2

    HIGH
    CVE-2001-1028

    Buffer overflow in ultimate_source function of man 1.5 and earlier allows local users to gain privileges.... Read more

    Affected Products : linux
    • EPSS Score: %0.18
    • Published: May. 28, 2001
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2001-1335

    Directory traversal vulnerability in CesarFTP 0.98b and earlier allows remote authenticated users (such as anonymous) to read arbitrary files via a GET with a filename that contains a ...%5c (modified dot dot).... Read more

    Affected Products : cesarftp
    • EPSS Score: %3.45
    • Published: May. 27, 2001
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2001-0749

    Beck IPC GmbH IPC@CHIP Embedded-Webserver allows remote attackers to read arbitrary files via a webserver root directory set to system root.... Read more

    Affected Products : ipc_at_chip_embedded-webserver
    • EPSS Score: %1.02
    • Published: May. 24, 2001
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2001-1341

    The Beck GmbH IPC@Chip embedded web server installs the chipcfg.cgi program by default, which allows remote attackers to obtain sensitive network information via a request to the program.... Read more

    Affected Products : ipc_at_chip_embedded-webserver
    • EPSS Score: %2.48
    • Published: May. 24, 2001
    • Modified: Apr. 03, 2025
  • 4.6

    MEDIUM
    CVE-2001-1347

    Windows 2000 allows local users to cause a denial of service and possibly gain privileges by setting a hardware breakpoint that is handled using global debug registers, which could cause other processes to terminate due to an exception, and allow hijackin... Read more

    Affected Products : windows_2000
    • EPSS Score: %0.52
    • Published: May. 24, 2001
    • Modified: Apr. 03, 2025
  • 4.6

    MEDIUM
    CVE-2001-1327

    pmake before 2.1.35 in Turbolinux 6.05 and earlier is installed with setuid root privileges, which could allow local users to gain privileges by exploiting vulnerabilities in pmake or programs that are used by pmake.... Read more

    Affected Products : pmake
    • EPSS Score: %0.14
    • Published: May. 24, 2001
    • Modified: Apr. 03, 2025
  • 9.8

    CRITICAL
    CVE-2001-1339

    Beck IPC GmbH IPC@CHIP telnet service does not delay or disconnect users from the service when bad passwords are entered, which makes it easier for remote attackers to conduct brute force password guessing attacks.... Read more

    Affected Products : ipc\@chip_firmware ipc\@chip
    • EPSS Score: %24.28
    • Published: May. 24, 2001
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2001-1428

    The (1) FTP and (2) Telnet services in Beck GmbH IPC@Chip are shipped with a default password, which allows remote attackers to gain unauthorized access.... Read more

    Affected Products : ipc_at_chip_embedded-webserver
    • EPSS Score: %4.78
    • Published: May. 24, 2001
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2001-1338

    Beck IPC GmbH IPC@CHIP TelnetD server generates different responses when given valid and invalid login names, which allows remote attackers to determine accounts on the system.... Read more

    Affected Products : ipc_at_chip_telnetd_server
    • EPSS Score: %4.25
    • Published: May. 24, 2001
    • Modified: Apr. 03, 2025
  • 7.2

    HIGH
    CVE-2001-0551

    Buffer overflow in CDE Print Viewer (dtprintinfo) allows local users to execute arbitrary code by copying text from the clipboard into the Help window.... Read more

    Affected Products : hp-ux
    • EPSS Score: %0.11
    • Published: May. 22, 2001
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2001-1337

    Beck IPC GmbH IPC@CHIP Embedded-Webserver allows remote attackers to cause a denial of service via a long HTTP request.... Read more

    Affected Products : ipc_at_chip_embedded-webserver
    • EPSS Score: %0.72
    • Published: May. 21, 2001
    • Modified: Apr. 03, 2025
  • 1.2

    LOW
    CVE-2001-1346

    Computer Associates ARCserveIT 6.61 and 6.63 (also called ARCservIT) allows local users to overwrite arbitrary files via a symlink attack on the temporary files (1) asagent.tmp or (2) inetd.tmp.... Read more

    Affected Products : arcserve_backup arcserve_backup
    • EPSS Score: %0.23
    • Published: May. 18, 2001
    • Modified: Apr. 03, 2025
Showing 20 of 291128 Results