National Vulnerability Database

National Vulnerability Database

National Vulnerability
Database

Search Results (Refine Search)

There are 136,434 matching records.
Displaying matches 133241 through 133260.
Vuln ID Summary CVSS Severity
CVE-2001-0491

Directory traversal vulnerability in RaidenFTPD Server 2.1 before build 952 allows attackers to access files outside the ftp root via dot dot attacks, such as (1) .... in CWD, (2) .. in NLST, or (3) ... in NLST.

Published: June 27, 2001; 12:00:00 AM -04:00
    V2: 5.0 MEDIUM
CVE-2001-0492

Netcruiser Web server version 0.1.2.8 and earlier allows remote attackers to determine the physical path of the server via a URL containing (1) con, (2) com2, or (3) com3.

Published: June 27, 2001; 12:00:00 AM -04:00
    V2: 5.0 MEDIUM
CVE-2001-0493

Small HTTP server 2.03 allows remote attackers to cause a denial of service via a URL that contains an MS-DOS device name such as aux.

Published: June 27, 2001; 12:00:00 AM -04:00
    V2: 5.0 MEDIUM
CVE-2001-0494

Buffer overflow in IPSwitch IMail SMTP server 6.06 and possibly prior versions allows remote attackers to execute arbitrary code via a long From: header.

Published: June 27, 2001; 12:00:00 AM -04:00
    V2: 7.5 HIGH
CVE-2001-0495

Directory traversal in DataWizard WebXQ server 1.204 allows remote attackers to view files outside of the web root via a .. (dot dot) attack.

Published: June 27, 2001; 12:00:00 AM -04:00
    V2: 5.0 MEDIUM
CVE-2001-0496

kdesu in kdelibs package creates world readable temporary files containing authentication info, which can allow local users to gain privileges.

Published: June 27, 2001; 12:00:00 AM -04:00
    V2: 4.6 MEDIUM
CVE-2001-1164

Buffer overflow in uucp utilities in UnixWare 7 allows local users to execute arbitrary code via long command line arguments to (1) uucp, (2) uux, (3) bnuconvert, (4) uucico, (5) uuxcmd, or (6) uuxqt.

Published: June 27, 2001; 12:00:00 AM -04:00
    V2: 7.2 HIGH
CVE-2001-1083

Icecast 1.3.7, and other versions before 1.3.11 with HTTP server file streaming support enabled allows remote attackers to cause a denial of service (crash) via a URL that ends in . (dot), / (forward slash), or \ (backward slash).

Published: June 26, 2001; 12:00:00 AM -04:00
    V2: 5.0 MEDIUM
CVE-2001-1324

cvmlogin and statfile in Paul Jarc idtools before 2001.06.27 do not properly check the return value of a call to the pathexec_env function, which could cause the setstate utility to setuid to the UID environment variable and allow local users to gain privileges.

Published: June 26, 2001; 12:00:00 AM -04:00
    V2: 4.6 MEDIUM
CVE-2001-1162

Directory traversal vulnerability in the %m macro in the smb.conf configuration file in Samba before 2.2.0a allows remote attackers to overwrite certain files via a .. in a NETBIOS name, which is used as the name for a .log file.

Published: June 23, 2001; 12:00:00 AM -04:00
    V2: 10.0 HIGH
CVE-2001-0906

teTeX filter before 1.0.7 allows local users to gain privileges via a symlink attack on temporary files that are produced when printing .dvi files using lpr.

Published: June 22, 2001; 12:00:00 AM -04:00
    V2: 6.2 MEDIUM
CVE-2001-1328

Buffer overflow in ypbind daemon in Solaris 5.4 through 8 allows remote attackers to execute arbitrary code.

Published: June 22, 2001; 12:00:00 AM -04:00
    V2: 7.5 HIGH
CVE-2001-1078

Format string vulnerability in flog function of eXtremail 1.1.9 and earlier allows remote attackers to gain root privileges via format specifiers in the SMTP commands (1) HELO, (2) EHLO, (3) MAIL FROM, or (4) RCPT TO, and the POP3 commands (5) USER and (6) other commands that can be executed after POP3 authentication.

Published: June 21, 2001; 12:00:00 AM -04:00
    V2: 10.0 HIGH
CVE-2001-1276

ispell before 3.1.20 allows local users to overwrite files of other users via a symlink attack on a temporary file.

Published: June 21, 2001; 12:00:00 AM -04:00
    V2: 1.2 LOW
CVE-2001-1080

diagrpt in AIX 4.3.x and 5.1 uses the DIAGDATADIR environment variable to find and execute certain programs, which allows local users to gain privileges by modifying the variable to point to a Trojan horse program.

Published: June 19, 2001; 12:00:00 AM -04:00
    V2: 10.0 HIGH
CVE-2001-1459

OpenSSH 2.9 and earlier does not initiate a Pluggable Authentication Module (PAM) session if commands are executed with no pty, which allows local users to bypass resource limits (rlimits) set in pam.d.

Published: June 19, 2001; 12:00:00 AM -04:00
    V2: 7.5 HIGH
CVE-2001-0247

Buffer overflows in BSD-based FTP servers allows remote attackers to execute arbitrary commands via a long pattern string containing a {} sequence, as seen in (1) g_opendir, (2) g_lstat, (3) g_stat, and (4) the glob0 buffer as used in the glob functions glob2 and glob3.

Published: June 18, 2001; 12:00:00 AM -04:00
    V2: 10.0 HIGH
CVE-2001-0248

Buffer overflow in FTP server in HPUX 11 allows remote attackers to execute arbitrary commands by creating a long pathname and calling the STAT command, which uses glob to generate long strings.

Published: June 18, 2001; 12:00:00 AM -04:00
    V2: 10.0 HIGH
CVE-2001-0249

Heap overflow in FTP daemon in Solaris 8 allows remote attackers to execute arbitrary commands by creating a long pathname and calling the LIST command, which uses glob to generate long strings.

Published: June 18, 2001; 12:00:00 AM -04:00
    V2: 10.0 HIGH
CVE-2001-0263

Gene6 G6 FTP Server 2.0 (aka BPFTP Server 2.10) allows attackers to read file attributes outside of the web root via the (1) SIZE and (2) MDTM commands when the "show relative paths" option is not enabled.

Published: June 18, 2001; 12:00:00 AM -04:00
    V2: 7.5 HIGH