Total
210374 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2001-1389 | 1 Xinetd | 1 Xinetd | 2016-10-17 | 7.5 HIGH | N/A |
Multiple vulnerabilities in xinetd 2.3.0 and earlier, and additional variants until 2.3.3, may allow remote attackers to cause a denial of service or execute arbitrary code, primarily via buffer overflows or improper NULL termination. | |||||
CVE-2001-0903 | 1 Intel | 1 High-bandwidth Digital Content Protection | 2016-10-17 | 7.5 HIGH | N/A |
Linear key exchange process in High-bandwidth Digital Content Protection (HDCP) System allows remote attackers to access data as plaintext, avoid device blacklists, clone devices, and create new device keyvectors by computing and using alternate key combinations for authentication. | |||||
CVE-2001-0913 | 1 Network Solutions | 1 Rwhoisd | 2016-10-17 | 7.5 HIGH | N/A |
Format string vulnerability in Network Solutions Rwhoisd 1.5.7.2 and earlier, when using syslog, allows remote attackers to corrupt memory and possibly execute arbitrary code via a rwhois request that contains format specifiers. | |||||
CVE-2001-0915 | 1 Berkeley | 1 Pmake | 2016-10-17 | 7.2 HIGH | N/A |
Format string vulnerability in Berkeley parallel make (pmake) 2.1.33 and earlier allows a local user to gain root privileges via format specifiers in the check argument of a shell definition. | |||||
CVE-2001-0916 | 1 Berkeley | 1 Pmake | 2016-10-17 | 7.2 HIGH | N/A |
Buffer overflow in Berkeley parallel make (pmake) 2.1.33 and earlier allows a local user to gain root privileges via a long check argument of a shell definition. | |||||
CVE-2001-0927 | 1 Gnome | 1 Libgtop Daemon | 2016-10-17 | 7.5 HIGH | N/A |
Format string vulnerability in the permitted function of GNOME libgtop_daemon in libgtop 1.0.12 and earlier allows remote attackers to execute arbitrary code via an argument that contains format specifiers that are passed into the (1) syslog_message and (2) syslog_io_message functions. | |||||
CVE-2001-0928 | 1 Gnome | 1 Libgtop Daemon | 2016-10-17 | 7.5 HIGH | N/A |
Buffer overflow in the permitted function of GNOME gtop daemon (libgtop_daemon) in libgtop 1.0.13 and earlier may allow remote attackers to execute arbitrary code via long authentication data. | |||||
CVE-2001-0930 | 1 Sendpage | 1 Sendpage.pl | 2016-10-17 | 7.5 HIGH | N/A |
Sendpage.pl allows remote attackers to execute arbitrary commands via a message containing shell metacharacters. | |||||
CVE-2001-0933 | 1 Cooolsoft | 1 Powerftp | 2016-10-17 | 7.5 HIGH | N/A |
Cooolsoft PowerFTP Server 2.03 allows remote attackers to list the contents of arbitrary drives via a ls (LIST) command that includes the drive letter as an argument, e.g. "ls C:". | |||||
CVE-2001-0934 | 1 Cooolsoft | 1 Powerftp | 2016-10-17 | 7.5 HIGH | N/A |
Cooolsoft PowerFTP Server 2.03 allows remote attackers to obtain the physical path of the server root via the pwd command, which lists the full pathname. | |||||
CVE-2001-0937 | 1 Matt Wright | 1 Pgpmail.pl | 2016-10-17 | 7.5 HIGH | N/A |
PGPMail.pl 1.31 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) recipient or (2) pgpuserid parameters. | |||||
CVE-2001-0938 | 1 Persits | 1 Aspupload | 2016-10-17 | 6.4 MEDIUM | N/A |
Directory traversal vulnerability in AspUpload 2.1, in certain configurations, allows remote attackers to upload and read arbitrary files, and list arbitrary directories, via a .. (dot dot) in the Filename parameter in (1) UploadScript11.asp or (2) DirectoryListing.asp. | |||||
CVE-2001-0944 | 1 Khaled Mardam-bey | 1 Mirc | 2016-10-17 | 7.2 HIGH | N/A |
DDE in mIRC allows local users to launch applications under another user's account via a DDE message that executes a command, which may be executed by the other user's process. | |||||
CVE-2001-0945 | 1 Microsoft | 1 Outlook Express | 2016-10-17 | 5.0 MEDIUM | N/A |
Buffer overflow in Outlook Express 5.0 through 5.02 for Macintosh allows remote attackers to cause a denial of service via an e-mail message that contains a long line. | |||||
CVE-2001-0831 | 1 Oracle | 1 Database Server | 2016-10-17 | 4.6 MEDIUM | N/A |
Unknown vulnerability in Oracle Label Security in Oracle 8.1.7 and 9.0.1, when audit functionality, SET_LABEL, or SQL*Predicate is being used, allows local users to gain additional access. | |||||
CVE-2001-0832 | 1 Oracle | 1 Database Server | 2016-10-17 | 2.1 LOW | N/A |
Vulnerability in Oracle 8.0.x through 9.0.1 on Unix allows local users to overwrite arbitrary files, possibly via a symlink attack or incorrect file permissions in (1) the ORACLE_HOME/rdbms/log directory or (2) an alternate directory as specified in the ORACLE_HOME environmental variable, aka the "Oracle File Overwrite Security Vulnerability." | |||||
CVE-2001-0841 | 1 Ikonboard.com | 1 Ikonboard | 2016-10-17 | 7.5 HIGH | N/A |
Directory traversal vulnerability in Search.cgi in Ikonboard ib219 and earlier allows remote attackers to overwrite files and gain privileges via .. (dot dot) sequences in the amembernamecookie cookie. | |||||
CVE-2001-0842 | 1 Leoboard | 1 Lb5000 | 2016-10-17 | 7.5 HIGH | N/A |
Directory traversal vulnerability in Search.cgi in Leoboard LB5000 LB5000II 1029 and earlier allows remote attackers to overwrite files and gain privileges via .. (dot dot) sequences in the amembernamecookie cookie. | |||||
CVE-2001-0844 | 1 Seth Leonard | 2 Book Of Guests, Post It | 2016-10-17 | 7.5 HIGH | N/A |
Vulnerability in (1) Book of guests and (2) Post it! allows remote attackers to execute arbitrary code via shell metacharacters in the email parameter. | |||||
CVE-2001-0848 | 1 E-zone Media | 1 Fuse Talk | 2016-10-17 | 4.6 MEDIUM | N/A |
join.cfm in e-Zone Media Fuse Talk allows a local user to execute arbitrary SQL code via a semi-colon (;) in a form variable. |