CSV
173,053 results for "vulnerability" Page 15
CVE-2001-0013

Format string vulnerability in nslookupComplain function in BIND 4 allows remote attackers to gain root privileges.

Feb 12, 2001 5 affected product(s) NVD
10.0
CVSS
18.7%
EPSS
⚡ 45.6
CVE-2001-0197

Format string vulnerability in print_client in icecast 1.3.8beta2 and earlier allows remote attackers to execute arbitrary commands.

Mar 26, 2001 6 affected product(s) NVD
10.0
CVSS
9.5%
EPSS
⚡ 42.9
CVE-2001-0187

Format string vulnerability in wu-ftp 2.6.1 and earlier, when running with debug mode enabled, allows remote attackers to execute arbitrary commands via a malformed argument that is recorded in a PASV port assignment.

Mar 26, 2001 19 affected product(s) NVD
10.0
CVSS
8.9%
EPSS
⚡ 42.7
CVE-2001-0032

Format string vulnerability in ssldump possibly allows remote attackers to cause a denial of service and possibly gain root privileges via malicious format string specifiers in a URL.

Feb 16, 2001 1 affected product(s) NVD
10.0
CVSS
7.7%
EPSS
⚡ 42.3
CVE-2001-0181

Format string vulnerability in the error logging code of DHCP server and client in Caldera Linux allows remote attackers to execute arbitrary commands.

Mar 26, 2001 3 affected product(s) NVD
10.0
CVSS
2.3%
EPSS
⚡ 40.7
CVE-2001-0060

Format string vulnerability in stunnel 3.8 and earlier allows attackers to execute arbitrary commands via a malformed ident username.

Feb 12, 2001 4 affected product(s) NVD
10.0
CVSS
1.1%
EPSS
⚡ 40.3
CVE-2001-0101

Vulnerability in fetchmail 5.5.0-2 and earlier in the AUTHENTICATE GSSAPI command.

Feb 12, 2001 52 affected product(s) NVD
10.0
CVSS
0.4%
EPSS
⚡ 40.1
CVE-2000-0348

A vulnerability in the Sendmail configuration file sendmail.cf as installed in SCO UnixWare 7.1.0 and earlier allows an attacker to gain root privileges.

Mar 12, 2001 1 affected product(s) NVD
10.0
CVSS
0.5%
EPSS
⚡ 40.1
CVE-2001-0096

FrontPage Server Extensions (FPSE) in IIS 4.0 and 5.0 allows remote attackers to cause a denial of service via a malformed form, aka the "Malformed Web Form Submission" vulnerability.

Feb 12, 2001 2 affected product(s) NVD
5.0
CVSS
55.9%
EPSS
⚡ 36.8
CVE-2001-1445

Unknown vulnerability in the SMTP server in Lotus Domino 5.0 through 5.7 allows remote attackers to bypass mail relaying restrictions via crafted e-mail addresses in "RCPT TO" commands.

Mar 1, 2001 9 affected product(s) NVD
7.5
CVSS
0.9%
EPSS
⚡ 30.3
CVE-2001-0048

The "Configure Your Server" tool in Microsoft 2000 domain controllers installs a blank password for the Directory Service Restore Mode, which allows attackers with physical access to the controller to install malicious programs, aka the "Directory Service Restore Mode Password" vulnerability.

Feb 12, 2001 1 affected product(s) NVD
7.2
CVSS
0.4%
EPSS
⚡ 28.9
CVE-2001-0093

Vulnerability in telnetd in FreeBSD 1.5 allows local users to gain root privileges by modifying critical environmental variables that affect the behavior of telnetd.

Feb 12, 2001 1 affected product(s) NVD
7.2
CVSS
0.4%
EPSS
⚡ 28.9
CVE-2001-0111

Format string vulnerability in splitvt before 1.6.5 allows local users to execute arbitrary commands via the -rcfile command line argument.

Mar 12, 2001 7 affected product(s) NVD
7.2
CVSS
0.2%
EPSS
⚡ 28.9
CVE-2001-0006 HIGH

The Winsock2ProtocolCatalogMutex mutex in Windows NT 4.0 has inappropriate Everyone/Full Control permissions, which allows local users to modify the permissions to "No Access" and disable Winsock network connectivity to cause a denial of service, aka the "Winsock Mutex" vulnerability.

Feb 12, 2001 1 affected product(s) NVD
7.1
CVSS
0.1%
EPSS
⚡ 28.4
CVE-2001-0014

Remote Data Protocol (RDP) in Windows 2000 Terminal Service does not properly handle certain malformed packets, which allows remote attackers to cause a denial of service, aka the "Invalid RDP Data" vulnerability.

Feb 12, 2001 1 affected product(s) NVD
5.0
CVSS
20.9%
EPSS
⚡ 26.3
CVE-2001-0083

Windows Media Unicast Service in Windows Media Services 4.0 and 4.1 does not properly shut down some types of connections, producing a memory leak that allows remote attackers to cause a denial of service via a series of severed connections, aka the "Severed Windows Media Server Connection" vulnerability.

Feb 12, 2001 2 affected product(s) NVD
5.0
CVSS
19.1%
EPSS
⚡ 25.7
CVE-2001-0017

Memory leak in PPTP server in Windows NT 4.0 allows remote attackers to cause a denial of service via a malformed data packet, aka the "Malformed PPTP Packet Stream" vulnerability.

Mar 12, 2001 1 affected product(s) NVD
5.0
CVSS
19.1%
EPSS
⚡ 25.7
CVE-2001-1390

Unknown vulnerability in binfmt_misc in the Linux kernel before 2.2.19, related to user pages.

Apr 17, 2001 1 affected product(s) NVD
6.2
CVSS
0.1%
EPSS
⚡ 24.8
CVE-2001-0090

The Print Templates feature in Internet Explorer 5.5 executes arbitrary custom print templates without prompting the user, which could allow an attacker to execute arbitrary ActiveX controls, aka the "Browser Print Template" vulnerability.

Feb 16, 2001 1 affected product(s) NVD
5.1
CVSS
8.0%
EPSS
⚡ 22.8
CVE-2001-0137

Windows Media Player 7 allows remote attackers to execute malicious Java applets in Internet Explorer clients by enclosing the applet in a skin file named skin.wmz, then referencing that skin in the codebase parameter to an applet tag, aka the Windows Media Player Skins File Download" vulnerability.

Mar 12, 2001 1 affected product(s) NVD
5.1
CVSS
7.4%
EPSS
⚡ 22.6