Vulnerabilities (CVE)

Filtered by NVD-CWE-Other
Total 28799 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2001-0320 1 Francisco Burzi 1 Php-nuke 2008-09-05 10.0 HIGH N/A
bb_smilies.php and bbcode_ref.php in PHP-Nuke 4.4 allows remote attackers to read arbitrary files and gain PHP administrator privileges by inserting a null character and .. (dot dot) sequences into a malformed username argument.
CVE-2001-0312 1 Ibm 1 Websphere Plugin 2008-09-05 5.0 MEDIUM N/A
IBM WebSphere plugin for Netscape Enterprise server allows remote attackers to read source code for JSP files via an HTTP request that contains a host header that references a host that is not in WebSphere's host aliases list, which will bypass WebSphere processing.
CVE-2001-0306 1 Itafrica 1 Webactive 2008-09-05 5.0 MEDIUM N/A
Directory traversal vulnerability in ITAfrica WEBactive HTTP Server 1.00 allows remote attackers to read arbitrary files via a .. (dot dot) in a URL.
CVE-2001-0305 1 Thinking Arts 1 Es.one 2008-09-05 5.0 MEDIUM N/A
Directory traversal vulnerability in store.cgi in Thinking Arts ES.One package allows remote attackers to read arbitrary files via a .. (dot dot) in the StartID parameter.
CVE-2001-0303 1 Pi3 1 Pi3web 2008-09-05 5.0 MEDIUM N/A
tstisapi.dll in Pi3Web 1.0.1 web server allows remote attackers to determine the physical path of the server via a URL that requests a non-existent file.
CVE-2001-0302 1 Pi3 1 Pi3web 2008-09-05 5.0 MEDIUM N/A
Buffer overflow in tstisapi.dll in Pi3Web 1.0.1 web server allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long URL.
CVE-2001-0298 1 Sapio Design Ltd 1 Webreflex 2008-09-05 5.0 MEDIUM N/A
Buffer overflow in WebReflex 1.55 HTTPd allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long HTTP GET request.
CVE-2001-0297 1 Dattaraj Rao 1 Simple Server 2008-09-05 5.0 MEDIUM N/A
Directory traversal vulnerability in Simple Server HTTPd 1.0 (originally Free Java Server) allows remote attackers to read arbitrary files via a .. (dot dot) in the URL.
CVE-2001-0296 1 Texas Imperial Software 1 Wftpd Pro 2008-09-05 10.0 HIGH N/A
Buffer overflow in WFTPD Pro 3.00 allows remote attackers to execute arbitrary commands via a long CWD command.
CVE-2001-0294 1 Typsoft 1 Typsoft Ftp Server 2008-09-05 5.0 MEDIUM N/A
Directory traversal vulnerability in TYPSoft FTP Server 0.85 allows remote attackers to read arbitrary files via (1) a .. (dot dot) in a GET command, or (2) a ... in a CWD command.
CVE-2001-0293 1 Datawizard 1 Ftpxq 2008-09-05 5.0 MEDIUM N/A
Directory traversal vulnerability in FtpXQ FTP server 2.0.93 allows remote attackers to read arbitrary files via a .. (dot dot) in the GET command.
CVE-2001-0292 1 Francisco Burzi 1 Php-nuke 2008-09-05 7.5 HIGH N/A
PHP-Nuke 4.4.1a allows remote attackers to modify a user's email address and obtain the password by guessing the user id (UID) and calling user.php with the saveuser operator.
CVE-2001-0290 1 Gnu 1 Mailman 2008-09-05 4.6 MEDIUM N/A
Vulnerability in Mailman 2.0.1 and earlier allows list administrators to obtain user passwords.
CVE-2001-0289 1 Joseph Allen 1 Joe 2008-09-05 4.6 MEDIUM N/A
Joe text editor 2.8 searches the current working directory (CWD) for the .joerc configuration file, which could allow local users to gain privileges of other users by placing a Trojan Horse .joerc file into a directory, then waiting for users to execute joe from that directory.
CVE-2001-0288 1 Cisco 1 Ios 2008-09-05 7.5 HIGH N/A
Cisco switches and routers running IOS 12.1 and earlier produce predictable TCP Initial Sequence Numbers (ISNs), which allows remote attackers to spoof or hijack TCP connections.
CVE-2001-0287 1 Symantec Veritas 1 Cluster Server 2008-09-05 2.1 LOW N/A
VERITAS Cluster Server (VCS) 1.3.0 on Solaris allows local users to cause a denial of service (system panic) via the -L option to the lltstat command.
CVE-2001-0286 1 A1webserver 1 Http Server 2008-09-05 5.0 MEDIUM N/A
Directory traversal vulnerability in A1 HTTP server 1.0a allows remote attackers to read arbitrary files via a .. (dot dot) in an HTTP GET request.
CVE-2001-0285 1 A1webserver 1 Http Server 2008-09-05 10.0 HIGH N/A
Buffer overflow in A1 HTTP server 1.0a allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long HTTP request.
CVE-2001-0283 1 Sun 1 Sun Ftp 2008-09-05 6.4 MEDIUM N/A
Directory traversal vulnerability in SunFTP build 9 allows remote attackers to read arbitrary files via .. (dot dot) characters in various commands, including (1) GET, (2) MKDIR, (3) RMDIR, (4) RENAME, or (5) PUT.
CVE-2001-0281 1 Microsoft 1 Windows Nt 2008-09-05 7.2 HIGH N/A
Format string vulnerability in DbgPrint function, used in debug messages for some Windows NT drivers (possibly when called through DebugMessage), may allow local users to gain privileges.