Latest CVE Feed
-
7.2
HIGHCVE-2001-1091
The (1) dump and (2) dump_lfs commands in NetBSD 1.4.x through 1.5.1 do not properly drop privileges, which could allow local users to gain privileges via the RCMD_CMD environment variable.... Read more
Affected Products : netbsd- Published: Aug. 23, 2001
- Modified: Apr. 03, 2025
-
9.8
CRITICALCVE-2001-1155
TCP Wrappers (tcp_wrappers) in FreeBSD 4.1.1 through 4.3 with the PARANOID ACL option enabled does not properly check the result of a reverse DNS lookup, which could allow remote attackers to bypass intended access restrictions via DNS spoofing.... Read more
Affected Products : freebsd- Published: Aug. 23, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-0577
recon in SCO OpenServer 5.0 through 5.0.6 can allow a local attacker to gain additional privileges via a buffer overflow attack in the first command line argument.... Read more
Affected Products : openserver- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0579
lpadmin in SCO OpenServer 5.0.6 can allow a local attacker to gain additional privileges via a buffer overflow attack in the first argument to the command.... Read more
Affected Products : openserver- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0606
Vulnerability in iPlanet Web Server 4.X in HP-UX 11.04 (VVOS) with VirtualVault A.04.00 allows a remote attacker to create a denial of service via the HTTPS service.... Read more
- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2001-0584
IMAP server in Alt-N Technologies MDaemon 3.5.6 allows a local user to cause a denial of service (hang) via long (1) SELECT or (2) EXAMINE commands.... Read more
Affected Products : mdaemon- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0585
Gordano NTMail 6.0.3c allows a remote attacker to create a denial of service via a long (>= 255 characters) URL request to port 8000 or port 9000.... Read more
Affected Products : ntmail- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0632
Sun Chili!Soft 3.5.2 on Linux and 3.6 on AIX creates a default admin username and password in the default installation, which can allow a remote attacker to gain additional privileges.... Read more
Affected Products : chilisoft- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2001-0575
Buffer overflow in lpshut in SCO OpenServer 5.0.6 can allow a local attacker to gain additional privileges via a long first argument to lpshut.... Read more
Affected Products : openserver- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0605
Headlight Software MyGetright prior to 1.0b allows a remote attacker to upload and/or overwrite arbitrary files via a malicious .dld (skins-data) file which contains long strings of random data.... Read more
Affected Products : mygetright- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0581
Spytech Spynet Chat Server 6.5 allows a remote attacker to create a denial of service (crash) via a large number of connections to port 6387.... Read more
Affected Products : spynet_chat- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0564
APC Web/SNMP Management Card prior to Firmware 310 only supports one telnet connection, which allows a remote attacker to create a denial of service via repeated failed logon attempts which temporarily locks the card.... Read more
Affected Products : ap9606- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2001-0607
asecure as included with HP-UX 10.01 through 11.00 can allow a local attacker to create a denial of service and gain additional privileges via unsafe permissions on the asecure program, a different vulnerability than CVE-2000-0083.... Read more
Affected Products : hp-ux- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2001-0626
O'Reilly Website Professional 2.5.4 and earlier allows remote attackers to determine the physical path to the root directory via a URL request containing a ":" character.... Read more
Affected Products : website_professional- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-0587
deliver program in MMDF 2.43.3b in SCO OpenServer 5.0.6 can allow a local attacker to gain additional privileges via a buffer overflow in the first argument to the command.... Read more
Affected Products : openserver- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0583
Alt-N Technologies MDaemon 3.5.4 allows a remote attacker to create a denial of service via the URL request of a MS-DOS device (such as GET /aux) to (1) the Worldclient service at port 3000, or (2) the Webconfig service at port 3001.... Read more
Affected Products : mdaemon- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
3.7
LOWCVE-2001-0627
vi as included with SCO OpenServer 5.0 - 5.0.6 allows a local attacker to overwrite arbitrary files via a symlink attack.... Read more
Affected Products : openserver- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2001-0630
Directory traversal vulnerability in MIMAnet viewsrc.cgi 2.0 allows a remote attacker to read arbitrary files via a '..' (dot dot) attack in the 'loc' variable.... Read more
Affected Products : source_viewer- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-0625
ftpdownload in Computer Associates InoculateIT 6.0 allows a local attacker to overwrite arbitrary files via a symlink attack on /tmp/ftpdownload.log .... Read more
Affected Products : inoculateit- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2001-0569
Digital Creations Zope 2.3.1 b1 and earlier contains a problem in the method return values related to the classes (1) ObjectManager, (2) PropertyManager, and (3) PropertySheet.... Read more
Affected Products : zope- Published: Aug. 22, 2001
- Modified: Apr. 03, 2025