Latest CVE Feed
-
5.0
MEDIUMCVE-2001-1073
Webridge PX Application Suite allows remote attackers to obtain sensitive information via a malformed request that generates a server error message, which includes full pathname or internal IP address information in the variables (1) APPL_PHYSICAL_PATH, (... Read more
Affected Products : px_application_suite- EPSS Score: %0.81
- Published: Aug. 31, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0995
PHProjekt before 2.4a allows remote attackers to perform actions as other PHProjekt users by modifying the ID number in an HTTP request to PHProjekt CGI programs.... Read more
Affected Products : phpprojekt- EPSS Score: %0.87
- Published: Aug. 31, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1065
Web-based configuration utility in Cisco 600 series routers running CBOS 2.0.1 through 2.4.2ap binds itself to port 80 even when web-based configuration services are disabled, which could leave the router open to attack.... Read more
Affected Products : cbos- EPSS Score: %0.48
- Published: Aug. 31, 2001
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2001-1061
Vulnerability in lsmcode in unknown versions of AIX, possibly related to a usage error.... Read more
Affected Products : aix- EPSS Score: %0.56
- Published: Aug. 31, 2001
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2001-1025
PHP-Nuke 5.x allows remote attackers to perform arbitrary SQL operations by modifying the "prefix" variable when calling any scripts that do not already define the prefix variable (e.g., by including mainfile.php), such as article.php.... Read more
Affected Products : php-nuke- EPSS Score: %0.07
- Published: Aug. 31, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1068
qpopper 4.01 with PAM based authentication on Red Hat systems generates different error messages when an invalid username is provided instead of a valid name, which allows remote attackers to determine valid usernames on the system.... Read more
Affected Products : qpopper- EPSS Score: %1.22
- Published: Aug. 31, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-1191
htsearch program in htDig 3.2 beta, 3.1.6, 3.1.5, and earlier allows remote attackers to determine the physical path of the server by requesting a non-existent configuration file using the config parameter, which generates an error message that includes t... Read more
Affected Products : htdig- EPSS Score: %2.00
- Published: Aug. 31, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2000-1192
Buffer overflow in BTT Software SNMP Trap Watcher 1.16 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long string trap.... Read more
Affected Products : snmp_trap_watcher- EPSS Score: %2.28
- Published: Aug. 31, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1154
Cyrus 2.0.15, 2.0.16, and 1.6.24 on BSDi 4.2, with IMAP enabled, allows remote attackers to cause a denial of service (hang) using PHP IMAP clients.... Read more
- EPSS Score: %0.74
- Published: Aug. 30, 2001
- Modified: Apr. 03, 2025
-
5.5
MEDIUMCVE-2001-0682
ZoneAlarm and ZoneAlarm Pro allows a local attacker to cause a denial of service by running a trojan to initialize a ZoneAlarm mutex object which prevents ZoneAlarm from starting.... Read more
- EPSS Score: %0.13
- Published: Aug. 29, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1168
Directory traversal vulnerability in index.php in PhpMyExplorer before 1.2.1 allows remote attackers to read arbitrary files via a ..%2F (modified dot dot) in the chemin parameter.... Read more
- EPSS Score: %0.49
- Published: Aug. 29, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1379
The PostgreSQL authentication modules (1) mod_auth_pgsql 0.9.5, and (2) mod_auth_pgsql_sys 0.9.4, allow remote attackers to bypass authentication and execute arbitrary SQL via a SQL injection attack on the user name.... Read more
Affected Products : mod_auth_pgsql- EPSS Score: %1.72
- Published: Aug. 29, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1389
Multiple vulnerabilities in xinetd 2.3.0 and earlier, and additional variants until 2.3.3, may allow remote attackers to cause a denial of service or execute arbitrary code, primarily via buffer overflows or improper NULL termination.... Read more
- EPSS Score: %2.44
- Published: Aug. 29, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-1153
lpsystem in OpenUnix 8.0.0 allows local users to cause a denial of service and possibly execute arbitrary code via a long command line argument.... Read more
Affected Products : openunix- EPSS Score: %0.05
- Published: Aug. 28, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1443
KTH Kerberos IV and Kerberos V (Heimdal) for Telnet clients do not encrypt connections if the server does not support the requested encryption, which allows remote attackers to read communications via a man-in-the-middle attack.... Read more
Affected Products : kth_kerberos- EPSS Score: %0.70
- Published: Aug. 27, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1444
The Kerberos Telnet protocol, as implemented by KTH Kerberos IV and Kerberos V (Heimdal), does not encrypt authentication and encryption options sent from the server, which allows remote attackers to downgrade authentication and encryption mechanisms via ... Read more
Affected Products : kth_kerberos- EPSS Score: %0.68
- Published: Aug. 27, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1455
Netegrity SiteMinder 3.6 through 4.5.1 allows remote attackers to bypass filtering via URLs containing Unicode characters.... Read more
Affected Products : siteminder- EPSS Score: %0.76
- Published: Aug. 24, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-1091
The (1) dump and (2) dump_lfs commands in NetBSD 1.4.x through 1.5.1 do not properly drop privileges, which could allow local users to gain privileges via the RCMD_CMD environment variable.... Read more
Affected Products : netbsd- EPSS Score: %0.06
- Published: Aug. 23, 2001
- Modified: Apr. 03, 2025
-
9.8
CRITICALCVE-2001-1155
TCP Wrappers (tcp_wrappers) in FreeBSD 4.1.1 through 4.3 with the PARANOID ACL option enabled does not properly check the result of a reverse DNS lookup, which could allow remote attackers to bypass intended access restrictions via DNS spoofing.... Read more
Affected Products : freebsd- EPSS Score: %0.16
- Published: Aug. 23, 2001
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2001-0575
Buffer overflow in lpshut in SCO OpenServer 5.0.6 can allow a local attacker to gain additional privileges via a long first argument to lpshut.... Read more
Affected Products : openserver- EPSS Score: %0.26
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025