Latest CVE Feed
-
5.0
MEDIUMCVE-2001-1335
Directory traversal vulnerability in CesarFTP 0.98b and earlier allows remote authenticated users (such as anonymous) to read arbitrary files via a GET with a filename that contains a ...%5c (modified dot dot).... Read more
Affected Products : cesarftp- EPSS Score: %3.45
- Published: May. 27, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1338
Beck IPC GmbH IPC@CHIP TelnetD server generates different responses when given valid and invalid login names, which allows remote attackers to determine accounts on the system.... Read more
Affected Products : ipc_at_chip_telnetd_server- EPSS Score: %4.25
- Published: May. 24, 2001
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2001-1327
pmake before 2.1.35 in Turbolinux 6.05 and earlier is installed with setuid root privileges, which could allow local users to gain privileges by exploiting vulnerabilities in pmake or programs that are used by pmake.... Read more
Affected Products : pmake- EPSS Score: %0.14
- Published: May. 24, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1428
The (1) FTP and (2) Telnet services in Beck GmbH IPC@Chip are shipped with a default password, which allows remote attackers to gain unauthorized access.... Read more
Affected Products : ipc_at_chip_embedded-webserver- EPSS Score: %4.78
- Published: May. 24, 2001
- Modified: Apr. 03, 2025
-
9.8
CRITICALCVE-2001-1339
Beck IPC GmbH IPC@CHIP telnet service does not delay or disconnect users from the service when bad passwords are entered, which makes it easier for remote attackers to conduct brute force password guessing attacks.... Read more
- EPSS Score: %24.28
- Published: May. 24, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1341
The Beck GmbH IPC@Chip embedded web server installs the chipcfg.cgi program by default, which allows remote attackers to obtain sensitive network information via a request to the program.... Read more
Affected Products : ipc_at_chip_embedded-webserver- EPSS Score: %2.48
- Published: May. 24, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0749
Beck IPC GmbH IPC@CHIP Embedded-Webserver allows remote attackers to read arbitrary files via a webserver root directory set to system root.... Read more
Affected Products : ipc_at_chip_embedded-webserver- EPSS Score: %1.02
- Published: May. 24, 2001
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2001-1347
Windows 2000 allows local users to cause a denial of service and possibly gain privileges by setting a hardware breakpoint that is handled using global debug registers, which could cause other processes to terminate due to an exception, and allow hijackin... Read more
Affected Products : windows_2000- EPSS Score: %0.52
- Published: May. 24, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-0551
Buffer overflow in CDE Print Viewer (dtprintinfo) allows local users to execute arbitrary code by copying text from the clipboard into the Help window.... Read more
Affected Products : hp-ux- EPSS Score: %0.11
- Published: May. 22, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1337
Beck IPC GmbH IPC@CHIP Embedded-Webserver allows remote attackers to cause a denial of service via a long HTTP request.... Read more
Affected Products : ipc_at_chip_embedded-webserver- EPSS Score: %0.72
- Published: May. 21, 2001
- Modified: Apr. 03, 2025
-
1.2
LOWCVE-2001-1346
Computer Associates ARCserveIT 6.61 and 6.63 (also called ARCservIT) allows local users to overwrite arbitrary files via a symlink attack on the temporary files (1) asagent.tmp or (2) inetd.tmp.... Read more
- EPSS Score: %0.23
- Published: May. 18, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1323
Buffer overflow in MIT Kerberos 5 (krb5) 1.2.2 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via base-64 encoded data, which is not properly handled when the radix_encode function processes file glob ... Read more
Affected Products : kerberos_5- EPSS Score: %2.12
- Published: May. 16, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1342
Apache before 1.3.20 on Windows and OS/2 systems allows remote attackers to cause a denial of service (GPF) via an HTTP request for a URI that contains a large number of / (slash) or other characters, which causes certain functions to dereference a null p... Read more
Affected Products : http_server- EPSS Score: %11.10
- Published: May. 12, 2001
- Modified: Apr. 03, 2025
-
2.6
LOWCVE-2001-1450
Microsoft Internet Explorer 5.0 through 6.0 allows attackers to cause a denial of service (browser crash) via a crafted FTP URL such as "/.#./".... Read more
Affected Products : internet_explorer- EPSS Score: %8.66
- Published: May. 11, 2001
- Modified: Apr. 03, 2025
-
1.2
LOWCVE-2001-1333
Linux CUPS before 1.1.6 does not securely handle temporary files, possibly due to a symlink vulnerability that could allow local users to overwrite files.... Read more
Affected Products : cups- EPSS Score: %0.07
- Published: May. 10, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1332
Buffer overflows in Linux CUPS before 1.1.6 may allow remote attackers to execute arbitrary code.... Read more
Affected Products : cups- EPSS Score: %4.26
- Published: May. 10, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0292
PHP-Nuke 4.4.1a allows remote attackers to modify a user's email address and obtain the password by guessing the user id (UID) and calling user.php with the saveuser operator.... Read more
Affected Products : php-nuke- EPSS Score: %0.04
- Published: May. 03, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0154
HTML e-mail feature in Internet Explorer 5.5 and earlier allows attackers to execute attachments by setting an unusual MIME type for the attachment, which Internet Explorer does not process correctly.... Read more
Affected Products : internet_explorer- EPSS Score: %16.80
- Published: May. 03, 2001
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2001-0194
Buffer overflow in httpGets function in CUPS 1.1.5 allows remote attackers to execute arbitrary commands via a long input line.... Read more
Affected Products : cups- EPSS Score: %2.46
- Published: May. 03, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0319
orderdspc.d2w macro in IBM Net.Commerce 3.x allows remote attackers to execute arbitrary SQL queries by inserting them into the order_rn option of the report capability.... Read more
- EPSS Score: %9.25
- Published: May. 03, 2001
- Modified: Apr. 03, 2025