Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by NVD-CWE-Other
Total 27865 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2000-0874 1 Qualcomm 1 Eudora 2017-10-09 5.0 MEDIUM N/A
Eudora mail client includes the absolute path of the sender's host within a virtual card (VCF).
CVE-2001-0365 1 Qualcomm 1 Eudora 2017-10-09 7.5 HIGH N/A
Eudora before 5.1 allows a remote attacker to execute arbitrary code, when the 'Use Microsoft Viewer' and 'allow executables in HTML content' options are enabled, via an HTML email message containing Javascript, with ActiveX controls and malicious code within IMG tags.
CVE-2001-0071 1 Gnu 1 Privacy Guard 2017-10-09 2.1 LOW N/A
gpg (aka GnuPG) 1.0.4 and other versions does not properly verify detached signatures, which allows attackers to modify the contents of a file without detection.
CVE-2001-0981 1 Hp 1 Cifs-9000 Server 2017-10-09 10.0 HIGH N/A
HP CIFS/9000 Server (SAMBA) A.01.07 and earlier with the "unix password sync" option enabled calls the passwd program without specifying the username of the user making the request, which could cause the server to change the password of a different user.
CVE-2001-0741 1 Cisco 1 Hsrp 2017-10-09 2.1 LOW N/A
Cisco Hot Standby Routing Protocol (HSRP) allows local attackers to cause a denial of service by spoofing HSRP packets.
CVE-2000-0773 1 Bajie 1 Java Http Server 2017-10-09 5.0 MEDIUM N/A
Bajie HTTP web server 0.30a allows remote attackers to read arbitrary files via a URL that contains a "....", a variant of the dot dot directory traversal attack.
CVE-2001-0980 1 Caldera 2 Openlinux Server, Openlinux Workstation 2017-10-09 7.5 HIGH N/A
docview before 1.0-15 allows remote attackers to execute arbitrary commands via shell metacharacters that are processed when converting a man page to a web page.
CVE-2001-0987 1 Nathan Neulinger 1 Cgiwrap 2017-10-09 7.5 HIGH N/A
Cross-site scripting vulnerability in CGIWrap before 3.7 allows remote attackers to execute arbitrary Javascript on other web clients by causing the Javascript to be inserted into error messages that are generated by CGIWrap.
CVE-2001-0650 1 Cisco 1 Ios 2017-10-09 5.0 MEDIUM N/A
Cisco devices IOS 12.0 and earlier allow a remote attacker to cause a crash, or bad route updates, via malformed BGP updates with unrecognized transitive attribute.
CVE-2000-0776 1 Mediahouse Software 1 Statistics Server Livestats 2017-10-09 7.5 HIGH N/A
Mediahouse Statistics Server 5.02x allows remote attackers to execute arbitrary commands via a long HTTP GET request.
CVE-2001-0764 1 Juergen Schoenwaelder 1 Scotty 2017-10-09 7.2 HIGH N/A
Buffer overflow in ntping in scotty 2.1.0 allows local users to execute arbitrary code via a long hostname as a command line argument.
CVE-1999-1316 1 Microsoft 1 Windows Nt 2017-10-09 7.5 HIGH N/A
Passfilt.dll in Windows NT SP2 allows users to create a password that contains the user's name, which could make it easier for an attacker to guess.
CVE-2000-0781 1 Ca 1 Arcserve Backup 2017-10-09 7.2 HIGH N/A
uagentsetup in ARCServeIT Client Agent 6.62 does not properly check for the existence or ownership of a temporary file which is moved to the agent.cfg configuration file, which allows local users to execute arbitrary commands by modifying the temporary file before it is moved.
CVE-2001-0126 1 Oracle 1 Oracle8i 2017-10-09 7.5 HIGH N/A
Oracle XSQL servlet 1.0.3.0 and earlier allows remote attackers to execute arbitrary Java code by redirecting the XSQL server to another source via the xml-stylesheet parameter in the xslt stylesheet.
CVE-2000-0782 1 Netwin 1 Netauth 2017-10-09 5.0 MEDIUM N/A
netauth.cgi program in Netwin Netauth 4.2e and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack.
CVE-2000-0783 1 Watchguard 1 Firebox 2017-10-09 5.0 MEDIUM N/A
Watchguard Firebox II allows remote attackers to cause a denial of service by sending a malformed URL to the authentication service on port 4100.
CVE-1999-1317 1 Microsoft 1 Windows Nt 2017-10-09 4.6 MEDIUM N/A
Windows NT 4.0 SP4 and earlier allows local users to gain privileges by modifying the symbolic link table in the \?? object folder using a different case letter (upper or lower) to point to a different device.
CVE-2001-0648 1 Phprojekt 1 Phprojekt 2017-10-09 5.0 MEDIUM N/A
Directory traversal vulnerability in PHProjekt 2.1 and earlier allows a remote attacker to conduct unauthorized activities via a dot dot (..) attack on the file module.
CVE-2000-0920 1 Boa 1 Boa Webserver 2017-10-09 5.0 MEDIUM N/A
Directory traversal vulnerability in BOA web server 0.94.8.2 and earlier allows remote attackers to read arbitrary files via a modified .. (dot dot) attack in the GET HTTP request that uses a "%2E" instead of a "."
CVE-2001-0993 1 Netbsd 1 Netbsd 2017-10-09 2.1 LOW N/A
sendmsg function in NetBSD 1.3 through 1.5 allows local users to cause a denial of service (kernel trap or panic) via a msghdr structure with a large msg_controllen length.