Skip to main content

Year archive

CVEs published in 2001

Archive summary

1,676 CVEs published in 2001 — 157 Critical, 631 High, 706 Medium, 182 Low, 0 Unrated.

CVE-2001-1389

Published Aug 29, 2001

Multiple vulnerabilities in xinetd 2.3.0 and earlier, and additional variants until 2.3.3, may allow remote attackers to cause a denial of service or execute arbitrary code, prima…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2001-1153

Published Aug 28, 2001

lpsystem in OpenUnix 8.0.0 allows local users to cause a denial of service and possibly execute arbitrary code via a long command line argument.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2001-1443

Published Aug 27, 2001

KTH Kerberos IV and Kerberos V (Heimdal) for Telnet clients do not encrypt connections if the server does not support the requested encryption, which allows remote attackers to re…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-1444

Published Aug 27, 2001

The Kerberos Telnet protocol, as implemented by KTH Kerberos IV and Kerberos V (Heimdal), does not encrypt authentication and encryption options sent from the server, which allows…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2001-1455

Published Aug 24, 2001

Netegrity SiteMinder 3.6 through 4.5.1 allows remote attackers to bypass filtering via URLs containing Unicode characters.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2001-1091

Published Aug 23, 2001

The (1) dump and (2) dump_lfs commands in NetBSD 1.4.x through 1.5.1 do not properly drop privileges, which could allow local users to gain privileges via the RCMD_CMD environment…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2001-1155

Published Aug 23, 2001

TCP Wrappers (tcp_wrappers) in FreeBSD 4.1.1 through 4.3 with the PARANOID ACL option enabled does not properly check the result of a reverse DNS lookup, which could allow remote…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2001-0357

Published Aug 22, 2001

FormMail.pl in FormMail 1.6 and earlier allows a remote attacker to send anonymous email (spam) by modifying the recipient and message parameters.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2001-0394

Published Aug 22, 2001

Remote manager service in Website Pro 3.0.37 allows remote attackers to cause a denial of service via a series of malformed HTTP requests to the /dyn directory.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-0556

Published Aug 22, 2001

The Nirvana Editor (NEdit) 5.1.1 and earlier allows a local attacker to overwrite other users' files via a symlink attack on (1) backup files or (2) temporary files used when nedi…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2001-0560

Published Aug 22, 2001

Buffer overflow in Vixie cron 3.0.1-56 and earlier could allow a local attacker to gain additional privileges via a long username (> 20 characters).

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-0564

Published Aug 22, 2001

APC Web/SNMP Management Card prior to Firmware 310 only supports one telnet connection, which allows a remote attacker to create a denial of service via repeated failed logon atte…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-0568

Published Aug 22, 2001

Digital Creations Zope 2.3.1 b1 and earlier allows a local attacker (Zope user) with through-the-web scripting capabilities to alter ZClasses class attributes.

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2001-0569

Published Aug 22, 2001

Digital Creations Zope 2.3.1 b1 and earlier contains a problem in the method return values related to the classes (1) ObjectManager, (2) PropertyManager, and (3) PropertySheet.

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2001-0571

Published Aug 22, 2001

Directory traversal vulnerability in the web server for (1) Elron Internet Manager (IM) Message Inspector and (2) Anti-Virus before 3.0.4 allows remote attackers to read arbitrary…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-0572

Published Aug 22, 2001

The SSH protocols 1 and 2 (aka SSH-2) as implemented in OpenSSH and other packages have various weaknesses which can allow a remote attacker to obtain the following information vi…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2001-0575

Published Aug 22, 2001

Buffer overflow in lpshut in SCO OpenServer 5.0.6 can allow a local attacker to gain additional privileges via a long first argument to lpshut.

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-0576

Published Aug 22, 2001

lpusers as included with SCO OpenServer 5.0 through 5.0.6 allows a local attacker to gain additional privileges via a buffer overflow attack in the '-u' command line parameter.

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-0577

Published Aug 22, 2001

recon in SCO OpenServer 5.0 through 5.0.6 can allow a local attacker to gain additional privileges via a buffer overflow attack in the first command line argument.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2001-0578

Published Aug 22, 2001

Buffer overflow in lpforms in SCO OpenServer 5.0-5.0.6 can allow a local attacker to gain additional privileges via a long first argument to the lpforms command.

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort
Showing 651-675 of 1,676 CVEsPage 27 of 68