Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2001-08-24 CVE-2001-1455 Unspecified vulnerability in Netegrity Siteminder
Netegrity SiteMinder 3.6 through 4.5.1 allows remote attackers to bypass filtering via URLs containing Unicode characters.
network
low complexity
netegrity
7.5
2001-08-23 CVE-2001-1155 Incorrect Authorization vulnerability in Freebsd 4.1.1/4.2/4.3
TCP Wrappers (tcp_wrappers) in FreeBSD 4.1.1 through 4.3 with the PARANOID ACL option enabled does not properly check the result of a reverse DNS lookup, which could allow remote attackers to bypass intended access restrictions via DNS spoofing.
network
low complexity
freebsd CWE-863
critical
9.8
2001-08-23 CVE-2001-1091 Local Security vulnerability in NetBSD
The (1) dump and (2) dump_lfs commands in NetBSD 1.4.x through 1.5.1 do not properly drop privileges, which could allow local users to gain privileges via the RCMD_CMD environment variable.
local
low complexity
netbsd
7.2
2001-08-22 CVE-2001-1294 Buffer Overflow vulnerability in Avtronics Inetserv 3.0/3.1.1/3.2.1
Buffer overflow in A-V Tronics Inetserv 3.2.1 and earlier allows remote attackers to cause a denial of service (crash) in the Webmail interface via a long username and password.
network
low complexity
avtronics
5.0
2001-08-22 CVE-2001-1150 Unspecified vulnerability in Trend Micro Officescan and Virus Buster
Vulnerability in cgiWebupdate.exe in Trend Micro OfficeScan Corporate Edition (aka Virus Buster) 3.5.2 through 3.5.4 allows remote attackers to read arbitrary files.
network
low complexity
trend-micro
5.0
2001-08-22 CVE-2001-1140 Unspecified vulnerability in Working Resources Inc. Badblue 1.02Beta
BadBlue Personal Edition v1.02 beta allows remote attackers to read source code for executable programs by appending a %00 (null byte) to the request.
network
low complexity
working-resources-inc
5.0
2001-08-22 CVE-2001-1139 Unspecified vulnerability in Ascii NT Winwrapper Professional 2.0
Directory traversal vulnerability in ASCII NT WinWrapper Professional allows remote attackers to read arbitrary files via a ..
network
low complexity
ascii-nt
5.0
2001-08-22 CVE-2001-0634 Unspecified vulnerability in SUN Chilisoft 3.5.2
Sun Chili!Soft ASP has weak permissions on various configuration files, which allows a local attacker to gain additional privileges and create a denial of service.
local
low complexity
sun
7.2
2001-08-22 CVE-2001-0633 Directory Traversal vulnerability in SUN Chilisoft 3.5.2
Directory traversal vulnerability in Sun Chili!Soft ASP on multiple Unixes allows a remote attacker to read arbitrary files above the web root via a '..' (dot dot) attack in the sample script 'codebrws.asp'.
network
low complexity
sun
5.0
2001-08-22 CVE-2001-0632 Remote Security vulnerability in SUN Chilisoft 3.5.2/3.6
Sun Chili!Soft 3.5.2 on Linux and 3.6 on AIX creates a default admin username and password in the default installation, which can allow a remote attacker to gain additional privileges.
network
low complexity
sun
7.5