|
353201
|
7.2 |
HIGH
|
rational_software
|
clearcase
|
Buffer overflow in db_loader in ClearCase 4.2 and earlier allows local users to gain root privileges via a long TERM environment variable.
|
NVD-CWE-Other
|
CVE-2001-0855
|
2016-10-18 11:12 |
2001-12-6 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353202
|
4.6 |
MEDIUM
|
ibm
|
4758
|
Common Cryptographic Architecture (CCA) in IBM 4758 allows an attacker with physical access to the system and Combine_Key_Parts permissions, to steal DES and 3DES keys by using a brute force attack t…
|
NVD-CWE-Other
|
CVE-2001-0856
|
2016-10-18 11:12 |
2001-12-6 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353203
|
4.6 |
MEDIUM
|
caldera
|
unixware openunix
|
Buffer overflow in pppattach and other linked PPP utilities in Caldera Open Unix 8.0 and UnixWare 7.1.0 and 7.1.1 allows local users to gain privileges.
|
NVD-CWE-Other
|
CVE-2001-0858
|
2016-10-18 11:12 |
2001-12-6 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353204
|
5.0 |
MEDIUM
|
opera_software
|
opera_web_browser
|
Opera 6.0 and earlier allows remote attackers to access sensitive information such as cookies and links for other domains via Javascript that uses setTimeout to (1) access data after a new window to …
|
NVD-CWE-Other
|
CVE-2001-0898
|
2016-10-18 11:12 |
2001-11-15 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353205
|
7.5 |
HIGH
|
trend_micro
|
virus_buster_2001
|
Buffer overflow in Trend Micro Virus Buster 2001 8.02 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long "From" header.
|
NVD-CWE-Other
|
CVE-2001-0410
|
2016-10-18 11:11 |
2001-06-18 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353206
|
5.0 |
MEDIUM
|
siemens
|
reliant_unix
|
Reliant Unix 5.44 and earlier allows remote attackers to cause a denial of service via an ICMP port unreachable packet, which causes Reliant to drop all connections to the source address of the packe…
|
NVD-CWE-Other
|
CVE-2001-0411
|
2016-10-18 11:11 |
2001-06-18 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353207
|
7.5 |
HIGH
|
oracle
|
application_server
|
Buffer overflow in shared library ndwfn4.so for iPlanet Web Server (iWS) 4.1, when used as a web listener for Oracle application server 4.0.8.2, allows remote attackers to execute arbitrary commands …
|
NVD-CWE-Other
|
CVE-2001-0419
|
2016-10-18 11:11 |
2001-07-2 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353208
|
7.2 |
HIGH
|
timecop freebsd
|
bubblemon freebsd
|
BubbleMon 1.31 does not properly drop group privileges before executing programs, which allows local users to execute arbitrary commands with the kmem group id.
|
NVD-CWE-Other
|
CVE-2001-0424
|
2016-10-18 11:11 |
2001-07-2 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353209
|
7.5 |
HIGH
|
micheal_lamont
|
savant_webserver
|
Buffer overflow in Savant 3.0 web server allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long Host HTTP header.
|
NVD-CWE-Other
|
CVE-2001-0433
|
2016-10-18 11:11 |
2001-06-18 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353210
|
4.6 |
MEDIUM
|
pgp
|
pgp
|
The split key mechanism used by PGP 7.0 allows a key share holder to obtain access to the entire key by setting the "Cache passphrase while logged on" option and capturing the passphrases of other sh…
|
NVD-CWE-Other
|
CVE-2001-0435
|
2016-10-18 11:11 |
2001-07-2 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353211
|
5.0 |
MEDIUM
|
ibm
|
websphere_commerce_suite
|
IBM WCS (WebSphere Commerce Suite) 4.0.1 with Application Server 3.0.2 allows remote attackers to read source code for .jsp files by appending a / to the requested URL.
|
NVD-CWE-Other
|
CVE-2001-0446
|
2016-10-18 11:11 |
2001-06-18 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353212
|
10.0 |
HIGH
|
crosswind
|
cyberscheduler
|
Buffer overflow in websync.exe in Cyberscheduler allows remote attackers to execute arbitrary commands via a long tzs (timezone) parameter.
|
NVD-CWE-Other
|
CVE-2001-0464
|
2016-10-18 11:11 |
2001-07-2 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353213
|
5.0 |
MEDIUM
|
microburst
|
ustorekeeper_online_shopping_system
|
Directory traversal vulnerability in ustorekeeper 1.61 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.
|
NVD-CWE-Other
|
CVE-2001-0466
|
2016-10-18 11:11 |
2001-06-18 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353214
|
10.0 |
HIGH
|
hp ibm
|
openview_network_node_manager tivoli_netview
|
ovactiond in HP OpenView Network Node Manager (NNM) 6.1 and Tivoli Netview 5.x and 6.x allows remote attackers to execute arbitrary commands via shell metacharacters in a certain SNMP trap message.
|
NVD-CWE-Other
|
CVE-2001-0552
|
2016-10-18 11:11 |
2001-09-20 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353215
|
5.0 |
MEDIUM
|
elron
|
im_anti_virus im_message_inspector
|
Directory traversal vulnerability in the web server for (1) Elron Internet Manager (IM) Message Inspector and (2) Anti-Virus before 3.0.4 allows remote attackers to read arbitrary files via a .. (dot…
|
NVD-CWE-Other
|
CVE-2001-0571
|
2016-10-18 11:11 |
2001-08-22 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353216
|
7.5 |
HIGH
|
headlight_software
|
mygetright
|
Headlight Software MyGetright prior to 1.0b allows a remote attacker to upload and/or overwrite arbitrary files via a malicious .dld (skins-data) file which contains long strings of random data.
|
NVD-CWE-Other
|
CVE-2001-0605
|
2016-10-18 11:11 |
2001-08-22 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353217
|
7.5 |
HIGH
|
cisco iss snort enterasys
|
catalyst_6000_intrusion_detection_system_module secure_intrusion_detection_system realsecure_network_sensor realsecure_server_sensor snort dragon
|
Various Intrusion Detection Systems (IDS) including (1) Cisco Secure Intrusion Detection System, (2) Cisco Catalyst 6000 Intrusion Detection System Module, (3) Dragon Sensor 4.x, (4) Snort before 1.8…
|
NVD-CWE-Other
|
CVE-2001-0669
|
2016-10-18 11:11 |
2001-10-30 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353218
|
7.5 |
HIGH
|
virtualcart
|
virtualcatalog
|
CatalogMgr.pl in VirtualCatalog (incorrectly claimed to be in VirtualCart) allows remote attackers to execute arbitrary code via the template parameter.
|
NVD-CWE-Other
|
CVE-2001-0756
|
2016-10-18 11:11 |
2001-10-18 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353219
|
5.0 |
MEDIUM
|
aol
|
aol_server
|
Directory traversal vulnerability in AOLserver 3.2 and earlier allows remote attackers to read arbitrary files by inserting "..." into the requested pathname, a modified .. (dot dot) attack.
|
NVD-CWE-Other
|
CVE-2001-0205
|
2016-10-18 11:10 |
2001-05-3 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353220
|
5.0 |
MEDIUM
|
fastream
|
ftp\+\+_server
|
FaSTream FTP++ Server 2.0 allows remote attackers to obtain the real pathname of the server via the "pwd" command.
|
NVD-CWE-Other
|
CVE-2001-0254
|
2016-10-18 11:10 |
2001-06-2 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353221
|
10.0 |
HIGH
|
working_resources_inc.
|
badblue
|
Buffer overflow in ext.dll in BadBlue 1.02.07 Personal Edition allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long HTTP GET request.
|
NVD-CWE-Other
|
CVE-2001-0277
|
2016-10-18 11:10 |
2001-05-3 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353222
|
5.0 |
MEDIUM
|
jarle_aase
|
war_ftpd
|
Directory traversal vulnerability in War FTP 1.67.04 allows remote attackers to list directory contents and possibly read files via a "dir *./../.." command.
|
NVD-CWE-Other
|
CVE-2001-0295
|
2016-10-18 11:10 |
2001-05-3 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353223
|
5.0 |
MEDIUM
|
caucho_technology
|
resin
|
Directory traversal vulnerability in Caucho Resin 1.2.2 allows remote attackers to read arbitrary files via a "\.." (dot dot) in a URL request.
|
NVD-CWE-Other
|
CVE-2001-0304
|
2016-10-18 11:10 |
2001-05-3 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353224
|
5.0 |
MEDIUM
|
novell
|
groupwise
|
Novell Groupwise 5.5 (sp1 and sp2) allows a remote user to access arbitrary files via an implementation error in Groupwise system policies.
|
NVD-CWE-Other
|
CVE-2001-0355
|
2016-10-18 11:10 |
2001-06-27 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353225
|
5.0 |
MEDIUM
|
mirabilis
|
icq
|
Mirabilis ICQ WebFront Plug-in ICQ2000b Build 3278 allows a remote attacker to create a denial of service via HTTP URL requests containing a large number of % characters.
|
NVD-CWE-Other
|
CVE-2001-0367
|
2016-10-18 11:10 |
2001-06-27 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353226
|
5.0 |
MEDIUM
|
navision
|
financials_server
|
Navision Financials Server 2.60 and earlier allows remote attackers to cause a denial of service by sending a null character and a long string to the server port (2407), which causes the server to cr…
|
NVD-CWE-Other
|
CVE-2001-0392
|
2016-10-18 11:10 |
2001-06-18 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353227
|
5.0 |
MEDIUM
|
navision
|
financials_server
|
Navision Financials Server 2.0 allows remote attackers to cause a denial of service via a series of connections to the server without providing a username/password combination, which consumes the lic…
|
NVD-CWE-Other
|
CVE-2001-0393
|
2016-10-18 11:10 |
2001-06-18 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353228
|
5.0 |
MEDIUM
|
caucho_technology
|
resin
|
Caucho Resin 1.3b1 and earlier allows remote attackers to read source code for Javabean files by inserting a .jsp before the WEB-INF specifier in an HTTP request.
|
NVD-CWE-Other
|
CVE-2001-0399
|
2016-10-18 11:10 |
2001-06-18 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353229
|
5.0 |
MEDIUM
|
sun
|
javaserver_web_dev_kit
|
Directory traversal vulnerability in JavaServer Web Dev Kit (JSWDK) 1.0.1 allows remote attackers to read arbitrary files via a .. (dot dot) in an HTTP request to the WEB-INF directory.
|
NVD-CWE-Other
|
CVE-2001-0404
|
2016-10-18 11:10 |
2001-06-18 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353230
|
7.5 |
HIGH
|
ibm
|
http_server
|
IBM HTTP Server 1.3.6 (based on Apache) allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long GET request.
|
NVD-CWE-Other
|
CVE-2000-1168
|
2016-10-18 11:09 |
2001-01-9 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353231
|
2.1 |
LOW
|
jon_atkins
|
imwheel
|
imwheel-solo in imwheel package allows local users to modify arbitrary files via a symlink attack from the .imwheelrc file.
|
NVD-CWE-Other
|
CVE-2000-1190
|
2016-10-18 11:09 |
2001-08-31 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353232
|
2.1 |
LOW
|
university_of_washington
|
imap
|
POP2 or POP3 server (pop3d) in imap-uw IMAP package on FreeBSD and other operating systems creates lock files with predictable names, which allows local users to cause a denial of service (lack of ma…
|
NVD-CWE-Other
|
CVE-2000-1197
|
2016-10-18 11:09 |
2001-08-31 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353233
|
7.2 |
HIGH
|
redhat
|
linux
|
userhelper in the usermode package on Red Hat Linux executes non-setuid programs as root, which does not activate the security measures in glibc and allows the programs to be exploited via format str…
|
NVD-CWE-Other
|
CVE-2000-1207
|
2016-10-18 11:09 |
2000-09-30 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353234
|
7.2 |
HIGH
|
immunix netbsd openbsd redhat
|
immunix netbsd openbsd linux
|
Format string vulnerability in startprinting() function of printjob.c in BSD-based lpr lpd package may allow local users to gain privileges via an improper syslog call that uses format strings from t…
|
NVD-CWE-Other
|
CVE-2000-1208
|
2016-10-18 11:09 |
2002-08-12 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353235
|
5.0 |
MEDIUM
|
apache
|
tomcat
|
Directory traversal vulnerability in source.jsp of Apache Tomcat before 3.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the argument to source.jsp.
|
NVD-CWE-Other
|
CVE-2000-1210
|
2016-10-18 11:09 |
2002-03-22 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353236
|
7.5 |
HIGH
|
immunix iputils redhat
|
immunix iputils linux
|
ping in iputils before 20001010, as distributed on Red Hat Linux 6.2 through 7J and other operating systems, does not drop privileges after acquiring a raw socket, which increases ping's exposure to …
|
NVD-CWE-Other
|
CVE-2000-1213
|
2016-10-18 11:09 |
2000-10-18 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353237
|
4.6 |
MEDIUM
|
immunix iputils redhat
|
immunix iputils linux
|
Buffer overflows in the (1) outpack or (2) buf variables of ping in iputils before 20001010, as distributed on Red Hat Linux 6.2 through 7J and other operating systems, may allow local users to gain …
|
NVD-CWE-Other
|
CVE-2000-1214
|
2016-10-18 11:09 |
2000-10-18 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353238
|
5.0 |
MEDIUM
|
symantec_veritas
|
backup
|
Veritas Backup agent on Linux allows remote attackers to cause a denial of service by establishing a connection without sending any data, which causes the process to hang.
|
NVD-CWE-Other
|
CVE-2001-0107
|
2016-10-18 11:09 |
2001-03-12 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353239
|
7.2 |
HIGH
|
sam_lantinga debian
|
splitvt debian_linux
|
Multiple buffer overflows in splitvt before 1.6.5 allow local users to execute arbitrary commands.
|
NVD-CWE-Other
|
CVE-2001-0112
|
2016-10-18 11:09 |
2001-03-12 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353240
|
10.0 |
HIGH
|
compaq digital
|
armada_insight_manager enterprise_volume_manager-command_scripter foundation_agents insight_management_agent insight_management_desktop_web_agent insight_manager_lc insight_manager_…
|
Buffer overflow in cpqlogin.htm in web-enabled agents for various Compaq management software products such as Insight Manager and Management Agents allows remote attackers to execute arbitrary comman…
|
NVD-CWE-Other
|
CVE-2001-0134
|
2016-10-18 11:09 |
2001-03-12 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353241
|
2.1 |
LOW
|
ultrascripts
|
ultraboard
|
The default installation of Ultraboard 2000 2.11 creates the Skins, Database, and Backups directories with world-writeable permissions, which could allow local users to modify sensitive information o…
|
NVD-CWE-Other
|
CVE-2001-0135
|
2016-10-18 11:09 |
2001-03-12 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353242
|
10.0 |
HIGH
|
typsoft
|
typsoft
|
Buffer overflows in TYPSoft FTP Server 0.78 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long USER, PASS, or CWD command.
|
NVD-CWE-Other
|
CVE-2000-1035
|
2016-10-18 11:08 |
2000-12-11 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353243
|
5.0 |
MEDIUM
|
macromedia
|
jrun
|
Allaire JRun 2.3 server allows remote attackers to obtain source code for executable content by directly calling the SSIFilter servlet.
|
NVD-CWE-Other
|
CVE-2000-1052
|
2016-10-18 11:08 |
2000-12-11 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353244
|
7.2 |
HIGH
|
ibm
|
aix
|
Buffer overflow in setclock command in IBM AIX 4.3.x and earlier may allow local users to execute arbitrary commands via a long argument.
|
NVD-CWE-Other
|
CVE-2000-1122
|
2016-10-18 11:08 |
2001-01-9 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353245
|
7.2 |
HIGH
|
redhat
|
linux
|
restore 0.4b15 and earlier in Red Hat Linux 6.2 trusts the pathname specified by the RSH environmental variable, which allows local users to obtain root privileges by modifying the RSH variable to po…
|
NVD-CWE-Other
|
CVE-2000-1125
|
2016-10-18 11:08 |
2001-01-9 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353246
|
5.0 |
MEDIUM
|
flicks_software
|
authentix
|
Authentix Authentix100 allows remote attackers to bypass authentication by inserting a . (dot) into the URL for a protected directory.
|
NVD-CWE-Other
|
CVE-2000-1133
|
2016-10-18 11:08 |
2001-01-9 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353247
|
7.5 |
HIGH
|
ibm
|
lotus_notes
|
Lotus Notes R5 client R5.0.5 and earlier does not properly warn users when an S/MIME email message has been modified, which could allow an attacker to modify the email in transit without being detect…
|
NVD-CWE-Other
|
CVE-2000-1138
|
2016-10-18 11:08 |
2001-01-9 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353248
|
5.0 |
MEDIUM
|
netwin
|
dnews
|
Buffer overflow in Netwin DNEWSWEB CGI program allows remote attackers to execute arbitrary commands via long parameters such as group, cmd, and utag.
|
NVD-CWE-Other
|
CVE-2000-0423
|
2016-10-18 11:07 |
2000-05-5 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353249
|
7.5 |
HIGH
|
mcmurtrey_whitaker_and_associates
|
cart32
|
A backdoor password in Cart32 3.0 and earlier allows remote attackers to execute arbitrary commands.
|
NVD-CWE-Other
|
CVE-2000-0429
|
2016-10-18 11:07 |
2000-04-27 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
353250
|
5.0 |
MEDIUM
|
mcmurtrey_whitaker_and_associates
|
cart32
|
Cart32 allows remote attackers to access sensitive debugging information by appending /expdate to the URL request.
|
NVD-CWE-Other
|
CVE-2000-0430
|
2016-10-18 11:07 |
2000-05-3 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|