Skip to main content

Severity archive

Critical severity CVEs

Critical

44,133 critical severity CVEs — 44,133 Critical, 127,725 High, 162,948 Medium, 18,064 Low, 1,717 Unrated across the current result set.

CVE-2001-1440

Published Dec 21, 2001

Unknown vulnerability in login for AIX 5.1L, when using loadable authentication modules, allows remote attackers to gain access to the system.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2001-1196

Published Dec 17, 2001

Directory traversal vulnerability in edit_action.cgi of Webmin Directory 0.91 allows attackers to gain privileges via a '..' (dot dot) in the argument.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2001-0953

Published Dec 8, 2001

Kebi WebMail allows remote attackers to access the administrator menu and gain privileges via the /a/ hidden directory, which is installed under the web document root.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2001-0671

Published Dec 6, 2001

Buffer overflows in (1) send_status, (2) kill_print, and (3) chk_fhost in lpd in AIX 4.3 and 5.1 allow remote attackers to gain root privileges.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2001-0799

Published Dec 6, 2001

Buffer overflows in lpsched in IRIX 6.5.13f and earlier allow remote attackers to execute arbitrary commands via a long argument.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2001-0800

Published Dec 6, 2001

lpsched in IRIX 6.5.13f and earlier allows remote attackers to execute arbitrary commands via shell metacharacters.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2001-0808

Published Dec 6, 2001

gnatsweb.pl in GNATS GnatsWeb 2.7 through 3.95 allows remote attackers to execute arbitrary commands via certain characters in the help_file parameter.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2001-0817

Published Dec 6, 2001

Vulnerability in HP-UX line printer daemon (rlpdaemon) in HP-UX 10.01 through 11.11 allows remote attackers to modify arbitrary files and gain root privileges via a certain print…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2001-0825

Published Dec 6, 2001

Buffer overflow in internal string handling routines of xinetd before 2.1.8.8 allows remote attackers to execute arbitrary commands via a length argument of zero or less, which di…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2001-0840

Published Dec 6, 2001

Buffer overflow in Compaq Insight Manager XE 2.1b and earlier allows remote attackers to execute arbitrary code via (1) SNMP and (2) DMI.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2001-0846

Published Dec 6, 2001

Lotus Domino 5.x allows remote attackers to read files or execute arbitrary code by requesting the ReplicaID of the Web Administrator template file (webadmin.ntf).

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2001-0850

Published Dec 6, 2001

A configuration error in the libdb1 package in OpenLinux 3.1 uses insecure versions of the snprintf and vsnprintf functions, which could allow local or remote users to exploit tho…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2001-0717

Published Oct 30, 2001

Format string vulnerability in ToolTalk database server rpc.ttdbserverd allows remote attackers to execute arbitrary commands via format string specifiers that are passed to the s…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2001-0746

Published Oct 18, 2001

Buffer overflow in Web Publisher in iPlanet Web Server Enterprise Edition 4.1 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2001-0766

Published Oct 18, 2001

Apache on MacOS X Client 10.0.3 with the HFS+ file system allows remote attackers to bypass access restrictions via a URL that contains some characters whose case is not matched b…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2001-0779

Published Oct 18, 2001

Buffer overflow in rpc.yppasswdd (yppasswd server) in Solaris 2.6, 7 and 8 allows remote attackers to gain root access via a long username.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2001-0789

Published Oct 18, 2001

Format string vulnerability in avpkeeper in Kaspersky KAV 3.5.135.2 for Sendmail allows remote attackers to cause a denial of service or possibly execute arbitrary code via a malf…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2001-1125

Published Oct 5, 2001

Symantec LiveUpdate before 1.6 does not use cryptography to ensure the integrity of download files, which allows remote attackers to execute arbitrary code via DNS spoofing of the…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2001-1252

Published Sep 28, 2001

Network Associates PGP Keyserver 7.0 allows remote attackers to bypass authentication and access the administrative web interface via URLs that directly access cgi-bin instead of…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2001-0961

Published Sep 18, 2001

Buffer overflow in tab expansion capability of the most program allows local or remote attackers to execute arbitrary code via a malformed file that is viewed with most.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2001-0966

Published Aug 31, 2001

Directory traversal vulnerability in Nudester 1.10 and earlier allows remote attackers to read or write arbitrary files via a .. (dot dot) in the CD (CWD) command.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort
Showing 43,676-43,700 of 44,133 CVEsPage 1748 of 1766