Latest CVE Feed
-
5.0
MEDIUMCVE-1999-0800
The GetFile.cfm file in Allaire Forums allows remote attackers to read files through a parameter to GetFile.cfm.... Read more
Affected Products : forums- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-0111
Format string vulnerability in splitvt before 1.6.5 allows local users to execute arbitrary commands via the -rcfile command line argument.... Read more
- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-0016
NTLM Security Support Provider (NTLMSSP) service does not properly check the function number in an LPC request, which could allow local users to gain administrator level access.... Read more
Affected Products : windows_nt- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
1.2
LOWCVE-2001-0120
useradd program in shadow-utils program may allow local users to overwrite arbitrary files via a symlink attack.... Read more
- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
1.2
LOWCVE-2001-0125
exmh 2.2 and earlier allows local users to overwrite arbitrary files via a symlink attack on the exmhErrorMsg temporary file.... Read more
- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
1.2
LOWCVE-2001-0140
arpwatch 2.1a4 allows local users to overwrite arbitrary files via a symlink attack in some configurations.... Read more
- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
1.2
LOWCVE-2001-0139
inn 2.2.3 allows local users to overwrite arbitrary files via a symlink attack in some configurations.... Read more
Affected Products : debian_linux linux mandrake_linux openlinux_desktop openlinux_edesktop openlinux_eserver immunix- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0017
Memory leak in PPTP server in Windows NT 4.0 allows remote attackers to cause a denial of service via a malformed data packet, aka the "Malformed PPTP Packet Stream" vulnerability.... Read more
Affected Products : windows_nt- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0925
The default installation of Apache before 1.3.19 allows remote attackers to list directories instead of the multiview index.html file via an HTTP request for a path that contains many / (slash) characters, which causes the path to be mishandled by (1) mod... Read more
- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2000-0312
cron in OpenBSD 2.5 allows local users to gain root privileges via an argv[] that is not NULL terminated, which is passed to cron's fake popen function.... Read more
Affected Products : openbsd- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-1999-0757
The ColdFusion CFCRYPT program for encrypting CFML templates has weak encryption, allowing attackers to decrypt the templates.... Read more
Affected Products : coldfusion_server- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
1.2
LOWCVE-2001-0118
rdist 6.1.5 allows local users to overwrite arbitrary files via a symlink attack.... Read more
- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0136
Memory leak in ProFTPd 1.2.0rc2 allows remote attackers to cause a denial of service via a series of USER commands, and possibly SIZE commands if the server has been improperly installed.... Read more
- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-0112
Multiple buffer overflows in splitvt before 1.6.5 allow local users to execute arbitrary commands.... Read more
- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2001-0135
The default installation of Ultraboard 2000 2.11 creates the Skins, Database, and Backups directories with world-writeable permissions, which could allow local users to modify sensitive information or possibly insert and execute CGI programs.... Read more
Affected Products : ultraboard- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-1999-0756
ColdFusion Administrator with Advanced Security enabled allows remote users to stop the ColdFusion server via the Start/Stop utility.... Read more
Affected Products : coldfusion_server- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-1999-0784
Denial of service in Oracle TNSLSNR SQL*Net Listener via a malformed string to the listener port, aka NERP.... Read more
Affected Products : database_server- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-1999-0758
Netscape Enterprise 3.5.1 and FastTrack 3.01 servers allow a remote attacker to view source code to scripts by appending a %20 to the script's URL.... Read more
- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2000-0308
Insecure file permissions for Netscape FastTrack Server 2.x, Enterprise Server 2.0, and Proxy Server 2.5 in SCO UnixWare 7.0.x and 2.1.3 allow an attacker to gain root privileges.... Read more
- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-1999-0945
Buffer overflow in Internet Mail Service (IMS) for Microsoft Exchange 5.5 and 5.0 allows remote attackers to conduct a denial of service via AUTH or AUTHINFO commands.... Read more
Affected Products : exchange_server- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025