Latest CVE Feed
-
5.0
MEDIUMCVE-2001-0386
AnalogX SimpleServer:WWW 1.08 allows remote attackers to cause a denial of service via an HTTP request to the /aux directory.... Read more
Affected Products : simpleserver_www- Published: Jul. 02, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0440
Buffer overflow in logging functions of licq before 1.0.3 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands.... Read more
- Published: Jul. 02, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1386
WFTPD 3.00 allows remote attackers to read arbitrary files by uploading a (link) file that ends in a ".lnk." extension, which bypasses WFTPD's check for a ".lnk" extension.... Read more
Affected Products : wftpd- Published: Jul. 01, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1043
ArGoSoft FTP Server 1.2.2.2 allows remote attackers to read arbitrary files and directories by uploading a .lnk (link) file that points to the target file.... Read more
Affected Products : ftp_server- Published: Jul. 01, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-1246
PHP 4.0.5 through 4.1.0 in safe mode does not properly cleanse the 5th parameter to the mail() function, which allows local users and possibly remote attackers to execute arbitrary commands via shell metacharacters.... Read more
Affected Products : php- Published: Jun. 30, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1248
vWebServer 1.2.0 allows remote attackers to view arbitrary ASP scripts via a request for an ASP script that ends with a URL-encoded space character (%20).... Read more
Affected Products : vwebserver- Published: Jun. 29, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1251
SmallHTTP 1.204 through 3.00 beta 8 allows remote attackers to cause a denial of service via multiple long URL requests.... Read more
- Published: Jun. 29, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1250
vWebServer 1.2.0 allows remote attackers to cause a denial of service (hang) via a small number of long URL requests, possibly due to a buffer overflow.... Read more
Affected Products : vwebserver- Published: Jun. 29, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1239
PowerNet IX allows remote attackers to cause a denial of service via a port scan.... Read more
Affected Products : powernet_ix- Published: Jun. 29, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1249
vWebServer 1.2.0 allows remote attackers to cause a denial of service via a URL that contains MS-DOS device names.... Read more
Affected Products : vwebserver- Published: Jun. 29, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-1290
admin.cgi in Active Classifieds Free Edition 1.0, and possibly commercial versions, allows remote attackers to modify the configuration, gain privileges, and execute arbitrary Perl code via the table_width parameter.... Read more
Affected Products : active_classifieds- Published: Jun. 28, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0335
FTP service in IIS 5.0 and earlier allows remote attackers to enumerate Guest accounts in trusted domains by preceding the username with a special sequence of characters.... Read more
- Published: Jun. 27, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0490
Buffer overflow in WINAMP 2.6x and 2.7x allows attackers to execute arbitrary code via a long string in an AIP file.... Read more
Affected Products : winamp- Published: Jun. 27, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0475
index.php in Jelsoft vBulletin does not properly initialize a PHP variable that is used to store template information, which allows remote attackers to execute arbitrary PHP code via special characters in the templatecache parameter.... Read more
Affected Products : vbulletin- Published: Jun. 27, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-0485
Unknown vulnerability in netprint in IRIX 6.2, and possibly other versions, allows local users with lp privileges attacker to execute arbitrary commands via the -n option.... Read more
Affected Products : irix- Published: Jun. 27, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-0366
saposcol in SAP R/3 Web Application Server Demo before 1.5 trusts the PATH environmental variable to find and execute the expand program, which allows local users to obtain root access by modifying the PATH to point to a Trojan horse expand program.... Read more
- Published: Jun. 27, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0333
Directory traversal vulnerability in IIS 5.0 and earlier allows remote attackers to execute arbitrary commands by encoding .. (dot dot) and "\" characters twice.... Read more
- Published: Jun. 27, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0473
Format string vulnerability in Mutt before 1.2.5 allows a remote malicious IMAP server to execute arbitrary commands.... Read more
- Published: Jun. 27, 2001
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2001-0496
kdesu in kdelibs package creates world readable temporary files containing authentication info, which can allow local users to gain privileges.... Read more
- Published: Jun. 27, 2001
- Modified: Apr. 03, 2025
-
6.4
MEDIUMCVE-2001-0450
Directory traversal vulnerability in Transsoft FTP Broker before 5.5 allows attackers to (1) delete arbitrary files via DELETE, or (2) list arbitrary directories via LIST, via a .. (dot dot) in the file name.... Read more
Affected Products : broker_ftp_server- Published: Jun. 27, 2001
- Modified: Apr. 03, 2025