Latest CVE Feed
-
5.0
MEDIUMCVE-2001-0108
PHP Apache module 4.0.4 and earlier allows remote attackers to bypass .htaccess access restrictions via a malformed HTTP request on an unrestricted page that causes PHP to use those access controls on the next page that is requested.... Read more
- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2001-0129
Buffer overflow in Tinyproxy HTTP proxy 1.3.3 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long connect request.... Read more
Affected Products : tinyproxy- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0123
Directory traversal vulnerability in eXtropia bbs_forum.cgi 1.0 allows remote attackers to read arbitrary files via a .. (dot dot) attack on the file parameter.... Read more
Affected Products : bbs_forum.cgi- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
1.2
LOWCVE-2001-0116
gpm 1.19.3 allows local users to overwrite arbitrary files via a symlink attack.... Read more
- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2000-0309
The i386 trace-trap handling in OpenBSD 2.4 with DDB enabled allows a local user to cause a denial of service.... Read more
Affected Products : openbsd- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
1.2
LOWCVE-2001-0119
getty_ps 2.0.7j allows local users to overwrite arbitrary files via a symlink attack.... Read more
- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2000-0351
Some packaging commands in SCO UnixWare 7.1.0 have insecure privileges, which allows local users to add or remove software packages.... Read more
Affected Products : unixware- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-0110
Buffer overflow in jaZip Zip/Jaz drive manager allows local users to gain root privileges via a long DISPLAY environmental variable.... Read more
Affected Products : jazip- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0126
Oracle XSQL servlet 1.0.3.0 and earlier allows remote attackers to execute arbitrary Java code by redirecting the XSQL server to another source via the xml-stylesheet parameter in the xslt stylesheet.... Read more
Affected Products : oracle8i- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0310
IP fragment assembly in OpenBSD 2.4 allows a remote attacker to cause a denial of service by sending a large number of fragmented packets.... Read more
Affected Products : openbsd- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
7.6
HIGHCVE-2001-0127
Buffer overflow in Olivier Debon Flash plugin (not the Macromedia plugin) allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long DefineSound tag.... Read more
Affected Products : flash- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0314
traceroute in NetBSD 1.3.3 and Linux systems allows local users to flood other systems by providing traceroute with a large waittime (-w) option, which is not parsed properly and sets the time delay for sending packets to zero.... Read more
- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2000-0312
cron in OpenBSD 2.5 allows local users to gain root privileges via an argv[] that is not NULL terminated, which is passed to cron's fake popen function.... Read more
Affected Products : openbsd- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2000-0368
Classic Cisco IOS 9.1 and later allows attackers with access to the login prompt to obtain portions of the command history of previous users, which may allow the attacker to access sensitive data.... Read more
Affected Products : ios- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-1999-0760
Undocumented ColdFusion Markup Language (CFML) tags and functions in the ColdFusion Administrator allow users to gain additional privileges.... Read more
Affected Products : coldfusion_server- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-1999-0922
An example application in ColdFusion Server 4.0 allows remote attackers to view source code via the sourcewindow.cfm file.... Read more
Affected Products : coldfusion_server- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0349
Vulnerability in the passthru driver in SCO UnixWare 7.1.0 allows an attacker to cause a denial of service.... Read more
Affected Products : unixware- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
1.2
LOWCVE-2001-0125
exmh 2.2 and earlier allows local users to overwrite arbitrary files via a symlink attack on the exmhErrorMsg temporary file.... Read more
- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0017
Memory leak in PPTP server in Windows NT 4.0 allows remote attackers to cause a denial of service via a malformed data packet, aka the "Malformed PPTP Packet Stream" vulnerability.... Read more
Affected Products : windows_nt- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-1999-0800
The GetFile.cfm file in Allaire Forums allows remote attackers to read files through a parameter to GetFile.cfm.... Read more
Affected Products : forums- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025