Latest CVE Feed
-
5.0
MEDIUMCVE-2001-0606
Vulnerability in iPlanet Web Server 4.X in HP-UX 11.04 (VVOS) with VirtualVault A.04.00 allows a remote attacker to create a denial of service via the HTTPS service.... Read more
- EPSS Score: %0.46
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0633
Directory traversal vulnerability in Sun Chili!Soft ASP on multiple Unixes allows a remote attacker to read arbitrary files above the web root via a '..' (dot dot) attack in the sample script 'codebrws.asp'.... Read more
Affected Products : chilisoft- EPSS Score: %0.42
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0626
O'Reilly Website Professional 2.5.4 and earlier allows remote attackers to determine the physical path to the root directory via a URL request containing a ":" character.... Read more
Affected Products : website_professional- EPSS Score: %3.06
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2001-0584
IMAP server in Alt-N Technologies MDaemon 3.5.6 allows a local user to cause a denial of service (hang) via long (1) SELECT or (2) EXAMINE commands.... Read more
Affected Products : mdaemon- EPSS Score: %0.23
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2001-0568
Digital Creations Zope 2.3.1 b1 and earlier allows a local attacker (Zope user) with through-the-web scripting capabilities to alter ZClasses class attributes.... Read more
Affected Products : zope- EPSS Score: %0.11
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2001-0569
Digital Creations Zope 2.3.1 b1 and earlier contains a problem in the method return values related to the classes (1) ObjectManager, (2) PropertyManager, and (3) PropertySheet.... Read more
Affected Products : zope- EPSS Score: %0.13
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0613
Omnicron Technologies OmniHTTPD Professional 2.08 and earlier allows a remote attacker to create a denial of service via a long POST URL request.... Read more
Affected Products : omnihttpd- EPSS Score: %0.89
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2001-0582
Ben Spink CrushFTP FTP Server 2.1.6 and earlier allows a local attacker to access arbitrary files via a '..' (dot dot) attack, or variations, in (1) GET, (2) CD, (3) NLST, (4) SIZE, (5) RETR.... Read more
Affected Products : crushftp_ftp_server- EPSS Score: %0.08
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0581
Spytech Spynet Chat Server 6.5 allows a remote attacker to create a denial of service (crash) via a large number of connections to port 6387.... Read more
Affected Products : spynet_chat- EPSS Score: %4.72
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2001-0588
sendmail 8.9.3, as included with the MMDF 2.43.3b package in SCO OpenServer 5.0.6, can allow a local attacker to gain additional privileges via a buffer overflow in the first argument to the command.... Read more
Affected Products : openserver- EPSS Score: %0.10
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0632
Sun Chili!Soft 3.5.2 on Linux and 3.6 on AIX creates a default admin username and password in the default installation, which can allow a remote attacker to gain additional privileges.... Read more
Affected Products : chilisoft- EPSS Score: %0.55
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0630
Directory traversal vulnerability in MIMAnet viewsrc.cgi 2.0 allows a remote attacker to read arbitrary files via a '..' (dot dot) attack in the 'loc' variable.... Read more
Affected Products : source_viewer- EPSS Score: %6.18
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0614
Carello E-Commerce 1.2.1 and earlier allows a remote attacker to gain additional privileges and execute arbitrary commands via a specially constructed URL.... Read more
Affected Products : e-commerce- EPSS Score: %4.38
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0579
lpadmin in SCO OpenServer 5.0.6 can allow a local attacker to gain additional privileges via a buffer overflow attack in the first argument to the command.... Read more
Affected Products : openserver- EPSS Score: %2.13
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0605
Headlight Software MyGetright prior to 1.0b allows a remote attacker to upload and/or overwrite arbitrary files via a malicious .dld (skins-data) file which contains long strings of random data.... Read more
Affected Products : mygetright- EPSS Score: %0.64
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0357
FormMail.pl in FormMail 1.6 and earlier allows a remote attacker to send anonymous email (spam) by modifying the recipient and message parameters.... Read more
Affected Products : formmail- EPSS Score: %0.64
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1150
Vulnerability in cgiWebupdate.exe in Trend Micro OfficeScan Corporate Edition (aka Virus Buster) 3.5.2 through 3.5.4 allows remote attackers to read arbitrary files.... Read more
- EPSS Score: %0.83
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0591
Directory traversal vulnerability in Oracle JSP 1.0.x through 1.1.1 and Oracle 8.1.7 iAS Release 1.0.2 can allow a remote attacker to read or execute arbitrary .jsp files via a '..' (dot dot) attack.... Read more
- EPSS Score: %0.92
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0572
The SSH protocols 1 and 2 (aka SSH-2) as implemented in OpenSSH and other packages have various weaknesses which can allow a remote attacker to obtain the following information via sniffing: (1) password lengths or ranges of lengths, which simplifies brut... Read more
- EPSS Score: %15.04
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0593
Anaconda Partners Clipper 3.3 and earlier allows a remote attacker to read arbitrary files via a '..' (dot dot) attack in the template parameter.... Read more
Affected Products : clipper- EPSS Score: %6.96
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025