Latest CVE Feed
-
5.5
MEDIUMCVE-2000-1198
qpopper POP server creates lock files with predictable names, which allows local users to cause a denial of service for other users (lack of mail access) by creating lock files for other mail boxes.... Read more
Affected Products : qpopper- EPSS Score: %0.26
- Published: Aug. 31, 2001
- Modified: Apr. 03, 2025
-
9.8
CRITICALCVE-2001-0967
Knox Arkeia server 4.2, and possibly other versions, uses a constant salt when encrypting passwords using the crypt() function, which makes it easier for an attacker to conduct brute force password guessing.... Read more
Affected Products : arkeia- EPSS Score: %0.36
- Published: Aug. 31, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1002
The default configuration of the DVI print filter (dvips) in Red Hat Linux 7.0 and earlier does not run dvips in secure mode when dvips is executed by lpd, which could allow remote attackers to gain privileges by printing a DVI file that contains maliciou... Read more
Affected Products : linux- EPSS Score: %4.74
- Published: Aug. 31, 2001
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2001-1027
Buffer overflow in WindowMaker (aka wmaker) 0.64 and earlier allows remote attackers to execute arbitrary code via a long window title.... Read more
Affected Products : windowmaker- EPSS Score: %23.72
- Published: Aug. 31, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-1191
htsearch program in htDig 3.2 beta, 3.1.6, 3.1.5, and earlier allows remote attackers to determine the physical path of the server by requesting a non-existent configuration file using the config parameter, which generates an error message that includes t... Read more
Affected Products : htdig- EPSS Score: %2.00
- Published: Aug. 31, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1154
Cyrus 2.0.15, 2.0.16, and 1.6.24 on BSDi 4.2, with IMAP enabled, allows remote attackers to cause a denial of service (hang) using PHP IMAP clients.... Read more
- EPSS Score: %0.74
- Published: Aug. 30, 2001
- Modified: Apr. 03, 2025
-
5.5
MEDIUMCVE-2001-0682
ZoneAlarm and ZoneAlarm Pro allows a local attacker to cause a denial of service by running a trojan to initialize a ZoneAlarm mutex object which prevents ZoneAlarm from starting.... Read more
- EPSS Score: %0.13
- Published: Aug. 29, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1389
Multiple vulnerabilities in xinetd 2.3.0 and earlier, and additional variants until 2.3.3, may allow remote attackers to cause a denial of service or execute arbitrary code, primarily via buffer overflows or improper NULL termination.... Read more
- EPSS Score: %2.44
- Published: Aug. 29, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1379
The PostgreSQL authentication modules (1) mod_auth_pgsql 0.9.5, and (2) mod_auth_pgsql_sys 0.9.4, allow remote attackers to bypass authentication and execute arbitrary SQL via a SQL injection attack on the user name.... Read more
Affected Products : mod_auth_pgsql- EPSS Score: %1.72
- Published: Aug. 29, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1168
Directory traversal vulnerability in index.php in PhpMyExplorer before 1.2.1 allows remote attackers to read arbitrary files via a ..%2F (modified dot dot) in the chemin parameter.... Read more
- EPSS Score: %0.49
- Published: Aug. 29, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-1153
lpsystem in OpenUnix 8.0.0 allows local users to cause a denial of service and possibly execute arbitrary code via a long command line argument.... Read more
Affected Products : openunix- EPSS Score: %0.05
- Published: Aug. 28, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1443
KTH Kerberos IV and Kerberos V (Heimdal) for Telnet clients do not encrypt connections if the server does not support the requested encryption, which allows remote attackers to read communications via a man-in-the-middle attack.... Read more
Affected Products : kth_kerberos- EPSS Score: %0.70
- Published: Aug. 27, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1444
The Kerberos Telnet protocol, as implemented by KTH Kerberos IV and Kerberos V (Heimdal), does not encrypt authentication and encryption options sent from the server, which allows remote attackers to downgrade authentication and encryption mechanisms via ... Read more
Affected Products : kth_kerberos- EPSS Score: %0.68
- Published: Aug. 27, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1455
Netegrity SiteMinder 3.6 through 4.5.1 allows remote attackers to bypass filtering via URLs containing Unicode characters.... Read more
Affected Products : siteminder- EPSS Score: %0.76
- Published: Aug. 24, 2001
- Modified: Apr. 03, 2025
-
9.8
CRITICALCVE-2001-1155
TCP Wrappers (tcp_wrappers) in FreeBSD 4.1.1 through 4.3 with the PARANOID ACL option enabled does not properly check the result of a reverse DNS lookup, which could allow remote attackers to bypass intended access restrictions via DNS spoofing.... Read more
Affected Products : freebsd- EPSS Score: %0.47
- Published: Aug. 23, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-1091
The (1) dump and (2) dump_lfs commands in NetBSD 1.4.x through 1.5.1 do not properly drop privileges, which could allow local users to gain privileges via the RCMD_CMD environment variable.... Read more
Affected Products : netbsd- EPSS Score: %0.06
- Published: Aug. 23, 2001
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2001-0576
lpusers as included with SCO OpenServer 5.0 through 5.0.6 allows a local attacker to gain additional privileges via a buffer overflow attack in the '-u' command line parameter.... Read more
Affected Products : openserver- EPSS Score: %0.26
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0630
Directory traversal vulnerability in MIMAnet viewsrc.cgi 2.0 allows a remote attacker to read arbitrary files via a '..' (dot dot) attack in the 'loc' variable.... Read more
Affected Products : source_viewer- EPSS Score: %6.18
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2001-0575
Buffer overflow in lpshut in SCO OpenServer 5.0.6 can allow a local attacker to gain additional privileges via a long first argument to lpshut.... Read more
Affected Products : openserver- EPSS Score: %0.26
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0626
O'Reilly Website Professional 2.5.4 and earlier allows remote attackers to determine the physical path to the root directory via a URL request containing a ":" character.... Read more
Affected Products : website_professional- EPSS Score: %3.06
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025