Latest CVE Feed
-
7.5
HIGHCVE-2001-0242
Buffer overflows in Microsoft Windows Media Player 7 and earlier allow remote attackers to execute arbitrary commands via (1) a long version tag in an .ASX file, or (2) a long banner tag, a variant of the ".ASX Buffer Overrun" vulnerability as discussed i... Read more
Affected Products : windows_media_player- EPSS Score: %12.67
- Published: Jun. 27, 2001
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2001-0240
Microsoft Word before Word 2002 allows attackers to automatically execute macros without warning the user via a Rich Text Format (RTF) document that links to a template with the embedded macro.... Read more
Affected Products : word- EPSS Score: %0.72
- Published: Jun. 27, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-0468
Buffer overflow in FTPFS allows local users to gain root privileges via a long user name.... Read more
Affected Products : ftpfs- EPSS Score: %0.13
- Published: Jun. 27, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0467
Directory traversal vulnerability in RobTex Viking Web server before 1.07-381 allows remote attackers to read arbitrary files via a \... (modified dot dot) in an HTTP URL request.... Read more
Affected Products : viking_server- EPSS Score: %5.39
- Published: Jun. 27, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0336
The Microsoft MS00-060 patch for IIS 5.0 and earlier introduces an error which allows attackers to cause a denial of service via a malformed request.... Read more
Affected Products : internet_information_server- EPSS Score: %15.75
- Published: Jun. 27, 2001
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2001-0496
kdesu in kdelibs package creates world readable temporary files containing authentication info, which can allow local users to gain privileges.... Read more
- EPSS Score: %0.07
- Published: Jun. 27, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0473
Format string vulnerability in Mutt before 1.2.5 allows a remote malicious IMAP server to execute arbitrary commands.... Read more
- EPSS Score: %0.81
- Published: Jun. 27, 2001
- Modified: Apr. 03, 2025
-
6.4
MEDIUMCVE-2001-0450
Directory traversal vulnerability in Transsoft FTP Broker before 5.5 allows attackers to (1) delete arbitrary files via DELETE, or (2) list arbitrary directories via LIST, via a .. (dot dot) in the file name.... Read more
Affected Products : broker_ftp_server- EPSS Score: %1.51
- Published: Jun. 27, 2001
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2001-0407
Directory traversal vulnerability in MySQL before 3.23.36 allows local users to modify arbitrary files and gain privileges by creating a database whose name starts with .. (dot dot).... Read more
Affected Products : mysql- EPSS Score: %0.71
- Published: Jun. 27, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1083
Icecast 1.3.7, and other versions before 1.3.11 with HTTP server file streaming support enabled allows remote attackers to cause a denial of service (crash) via a URL that ends in . (dot), / (forward slash), or \ (backward slash).... Read more
Affected Products : icecast- EPSS Score: %16.70
- Published: Jun. 26, 2001
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2001-1324
cvmlogin and statfile in Paul Jarc idtools before 2001.06.27 do not properly check the return value of a call to the pathexec_env function, which could cause the setstate utility to setuid to the UID environment variable and allow local users to gain priv... Read more
Affected Products : idtools- EPSS Score: %0.07
- Published: Jun. 26, 2001
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2001-1162
Directory traversal vulnerability in the %m macro in the smb.conf configuration file in Samba before 2.2.0a allows remote attackers to overwrite certain files via a .. in a NETBIOS name, which is used as the name for a .log file.... Read more
- EPSS Score: %30.17
- Published: Jun. 23, 2001
- Modified: Apr. 03, 2025
-
6.2
MEDIUMCVE-2001-0906
teTeX filter before 1.0.7 allows local users to gain privileges via a symlink attack on temporary files that are produced when printing .dvi files using lpr.... Read more
Affected Products : tetex- EPSS Score: %0.22
- Published: Jun. 22, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1328
Buffer overflow in ypbind daemon in Solaris 5.4 through 8 allows remote attackers to execute arbitrary code.... Read more
Affected Products : sunos- EPSS Score: %6.21
- Published: Jun. 22, 2001
- Modified: Apr. 03, 2025
-
1.2
LOWCVE-2001-1276
ispell before 3.1.20 allows local users to overwrite files of other users via a symlink attack on a temporary file.... Read more
Affected Products : ispell- EPSS Score: %0.09
- Published: Jun. 21, 2001
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2001-1078
Format string vulnerability in flog function of eXtremail 1.1.9 and earlier allows remote attackers to gain root privileges via format specifiers in the SMTP commands (1) HELO, (2) EHLO, (3) MAIL FROM, or (4) RCPT TO, and the POP3 commands (5) USER and (6... Read more
Affected Products : extremail- EPSS Score: %4.22
- Published: Jun. 21, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1459
OpenSSH 2.9 and earlier does not initiate a Pluggable Authentication Module (PAM) session if commands are executed with no pty, which allows local users to bypass resource limits (rlimits) set in pam.d.... Read more
Affected Products : openssh- EPSS Score: %0.56
- Published: Jun. 19, 2001
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2001-1080
diagrpt in AIX 4.3.x and 5.1 uses the DIAGDATADIR environment variable to find and execute certain programs, which allows local users to gain privileges by modifying the variable to point to a Trojan horse program.... Read more
Affected Products : aix- EPSS Score: %3.41
- Published: Jun. 19, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0413
BinTec X4000 Access router, and possibly other versions, allows remote attackers to cause a denial of service via a SYN port scan, which causes the router to hang.... Read more
- EPSS Score: %0.91
- Published: Jun. 18, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0483
Configuration error in Axent Raptor Firewall 6.5 allows remote attackers to use the firewall as a proxy to access internal web resources when the http.noproxy Rule is not set.... Read more
Affected Products : raptor_firewall- EPSS Score: %1.20
- Published: Jun. 18, 2001
- Modified: Apr. 03, 2025