Latest CVE Feed
-
7.5
HIGHCVE-2001-0737
A long 'synch' delay in Logitech wireless mice and keyboard receivers allows a remote attacker to hijack connections via a man-in-the-middle attack.... Read more
Affected Products : cordless_freedom cordless_freedom_navigator cordless_freedom_pro cordless_itouch_keyboard- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
9.8
CRITICALCVE-2001-0766
Apache on MacOS X Client 10.0.3 with the HFS+ file system allows remote attackers to bypass access restrictions via a URL that contains some characters whose case is not matched by Apache's filters.... Read more
- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
6.2
MEDIUMCVE-2001-0905
Race condition in signal handling of procmail 3.20 and earlier, when running setuid, allows local users to cause a denial of service or gain root privileges by sending a signal while a signal handling routine is already running.... Read more
- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0738
LogLine function in klogd in sysklogd 1.3 in various Linux distributions allows an attacker to cause a denial of service (hang) by causing null bytes to be placed in log messages.... Read more
- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0770
Buffer overflow in GuildFTPd Server 0.97 allows remote attacker to execute arbitrary code via a long SITE command.... Read more
Affected Products : guildftpd- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0786
Internet Software Solutions Air Messenger LAN Server (AMLServer) 3.4.2 stores user passwords in plaintext in the pUser.Dat file.... Read more
Affected Products : air_messenger_lan_server- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-0782
KDE ktvision 0.1.1-271 and earlier allows local attackers to gain root privileges via a symlink attack on a user configuration file.... Read more
Affected Products : ktv- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0769
Memory leak in GuildFTPd Server 0.97 allows remote attackers to cause a denial of service via a request containing a null character.... Read more
Affected Products : guildftpd- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0752
Cisco CBOS 2.3.8 and earlier allows remote attackers to cause a denial of service via an ICMP ECHO REQUEST (ping) with the IP Record Route option set.... Read more
Affected Products : cbos- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2001-0768
GuildFTPd 0.9.7 stores user names and passwords in plaintext in the default.usr file, which allows local users to gain privileges as other FTP users by reading the file.... Read more
Affected Products : guildftpd- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0783
Cisco TFTP server 1.1 allows remote attackers to read arbitrary files via a ..(dot dot) attack in the GET command.... Read more
Affected Products : tftp_server- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0795
Perception LiteServe 1.25 allows remote attackers to obtain source code of CGI scripts via URLs that contain MS-DOS conventions such as (1) upper case letters or (2) 8.3 file names.... Read more
Affected Products : liteserve- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0733
The #sinclude directive in Embedded Perl (ePerl) 2.2.14 and earlier allows a remote attacker to execute arbitrary code by modifying the 'sinclude' file to point to another file that contains a #include directive that references a file that contains the co... Read more
Affected Products : eperl- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2001-0789
Format string vulnerability in avpkeeper in Kaspersky KAV 3.5.135.2 for Sendmail allows remote attackers to cause a denial of service or possibly execute arbitrary code via a malformed mail message.... Read more
Affected Products : kaspersky_anti-virus- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2001-0787
LPRng in Red Hat Linux 7.0 and 7.1 does not properly drop memberships in supplemental groups when lowering privileges, which could allow a local user to elevate privileges.... Read more
Affected Products : linux- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0792
Format string vulnerability in XChat 1.2.x allows remote attackers to execute arbitrary code via a malformed nickname.... Read more
Affected Products : xchat- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0753
Cisco CBOS 2.3.8 and earlier stores the passwords for (1) exec and (2) enable in cleartext in the NVRAM and a configuration file, which could allow unauthorized users to obtain the passwords and gain privileges.... Read more
Affected Products : cbos- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2001-0772
Buffer overflows and other vulnerabilities in multiple Common Desktop Environment (CDE) modules in HP-UX 10.10 through 11.11 allow attackers to cause a denial of service and possibly gain additional privileges.... Read more
Affected Products : hp-ux- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-0739
Guardian Digital WebTool in EnGarde Secure Linux 1.0.1 allows restarted services to inherit some environmental variables, which could allow local users to gain root privileges.... Read more
Affected Products : secure_linux- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0771
Spytech SpyAnywhere 1.50 allows remote attackers to gain administrator access via a single character in the "loginpass" field.... Read more
Affected Products : spyanywhere- Published: Oct. 18, 2001
- Modified: Apr. 03, 2025