Latest CVE Feed
-
10.0
HIGHCVE-2001-0187
Format string vulnerability in wu-ftp 2.6.1 and earlier, when running with debug mode enabled, allows remote attackers to execute arbitrary commands via a malformed argument that is recorded in a PASV port assignment.... Read more
Affected Products : wu-ftpd- Published: Mar. 26, 2001
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2001-0169
When using the LD_PRELOAD environmental variable in SUID or SGID applications, glibc does not verify that preloaded libraries in /etc/ld.so.cache are also SUID/SGID, which could allow a local user to overwrite arbitrary files by loading a library from /li... Read more
- Published: Mar. 26, 2001
- Modified: Apr. 03, 2025
-
2.6
LOWCVE-2001-0184
eEye Iris 1.01 beta allows remote attackers to cause a denial of service via a malformed packet, which causes Iris to crash when a user views the packet.... Read more
Affected Products : iris- Published: Mar. 26, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1230
Buffer overflows in Icecast before 1.3.10 allow remote attackers to cause a denial of service (crash) and execute arbitrary code.... Read more
Affected Products : icecast- Published: Mar. 13, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0122
Kernel leak in AfpaCache module of the Fast Response Cache Accelerator (FRCA) component of IBM HTTP Server 1.3.x and Websphere 3.52 allows remote attackers to cause a denial of service via a series of malformed HTTP requests that generate a "bad request" ... Read more
- Published: Mar. 13, 2001
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2000-0306
Buffer overflow in calserver in SCO OpenServer allows remote attackers to gain root access via a long message.... Read more
Affected Products : openserver- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0307
Vulnerability in xserver in SCO UnixWare 2.1.x and OpenServer 5.05 and earlier allows an attacker to cause a denial of service which prevents access to reserved port numbers below 1024.... Read more
- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0114
statsconfig.pl in OmniHTTPd 2.07 allows remote attackers to overwrite arbitrary files via the cgidir parameter.... Read more
Affected Products : omnihttpd- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
5.1
MEDIUMCVE-2001-0137
Windows Media Player 7 allows remote attackers to execute malicious Java applets in Internet Explorer clients by enclosing the applet in a skin file named skin.wmz, then referencing that skin in the codebase parameter to an applet tag, aka the Windows Med... Read more
Affected Products : windows_media_player- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-0115
Buffer overflow in arp command in Solaris 7 and earlier allows local users to execute arbitrary commands via a long -f parameter.... Read more
- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
1.2
LOWCVE-2001-0109
rctab in SuSE 7.0 and earlier allows local users to create or overwrite arbitrary files via a symlink attack on the rctmp temporary file.... Read more
Affected Products : suse_linux- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
1.2
LOWCVE-2001-0132
Interscan VirusWall 3.6.x and earlier follows symbolic links when uninstalling the product, which allows local users to overwrite arbitrary files via a symlink attack.... Read more
Affected Products : interscan_viruswall- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-1999-0924
The Syntax Checker in ColdFusion Server 4.0 allows remote attackers to conduct a denial of service.... Read more
Affected Products : coldfusion_server- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2000-0368
Classic Cisco IOS 9.1 and later allows attackers with access to the login prompt to obtain portions of the command history of previous users, which may allow the attacker to access sensitive data.... Read more
Affected Products : ios- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0925
The default installation of Apache before 1.3.19 allows remote attackers to list directories instead of the multiview index.html file via an HTTP request for a path that contains many / (slash) characters, which causes the path to be mishandled by (1) mod... Read more
- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2000-0312
cron in OpenBSD 2.5 allows local users to gain root privileges via an argv[] that is not NULL terminated, which is passed to cron's fake popen function.... Read more
Affected Products : openbsd- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0314
traceroute in NetBSD 1.3.3 and Linux systems allows local users to flood other systems by providing traceroute with a large waittime (-w) option, which is not parsed properly and sets the time delay for sending packets to zero.... Read more
- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
1.2
LOWCVE-2001-0117
sdiff 2.7 in the diffutils package allows local users to overwrite files via a symlink attack.... Read more
- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2000-0348
A vulnerability in the Sendmail configuration file sendmail.cf as installed in SCO UnixWare 7.1.0 and earlier allows an attacker to gain root privileges.... Read more
Affected Products : unixware- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-1999-0922
An example application in ColdFusion Server 4.0 allows remote attackers to view source code via the sourcewindow.cfm file.... Read more
Affected Products : coldfusion_server- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025