Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2001-07-16 CVE-2001-1307 Buffer Overflow vulnerability in iPlanet Directory Server
Buffer overflows in iPlanet Directory Server 4.1.4 and earlier (LDAP) allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, as demonstrated by the PROTOS LDAPv3 test suite.
network
low complexity
sun
7.5
2001-07-16 CVE-2001-1306 Denial-Of-Service vulnerability in Iplanet Directory Server
iPlanet Directory Server 4.1.4 and earlier (LDAP) allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via invalid BER length of length fields, as demonstrated by the PROTOS LDAPv3 test suite.
network
low complexity
sun
7.5
2001-07-16 CVE-2001-1238 Improper Handling of Case Sensitivity vulnerability in Microsoft Windows 2000
Task Manager in Windows 2000 does not allow local users to end processes with uppercase letters named (1) winlogon.exe, (2) csrss.exe, (3) smss.exe and (4) services.exe via the Process tab which could allow local users to install Trojan horses that cannot be stopped with the Task Manager.
local
low complexity
microsoft CWE-178
7.8
2001-07-16 CVE-2001-1181 Local Security vulnerability in HP Hp-Ux 11.11
Dynamically Loadable Kernel Module (dlkm) static kernel symbol table in HP-UX 11.11 is not properly configured, which allows local users to gain privileges.
local
low complexity
hp
7.2
2001-07-16 CVE-2001-0977 Denial of Service vulnerability in OpenLDAP
slapd in OpenLDAP 1.x before 1.2.12, and 2.x before 2.0.8, allows remote attackers to cause a denial of service (crash) via an invalid Basic Encoding Rules (BER) length field.
network
low complexity
mandrakesoft openldap debian redhat
5.0
2001-07-16 CVE-2001-0975 Buffer Overflow vulnerability in Oracle Internet Directory 2.1.1/3.0.1
Buffer overflow vulnerabilities in Oracle Internet Directory Server (LDAP) 2.1.1.x and 3.0.1 allow remote attackers to execute arbitrary code, as demonstrated by the PROTOS LDAPv3 test suite.
network
low complexity
oracle
7.5
2001-07-13 CVE-2001-1082 Directory Traversal vulnerability in RADIUS
Directory traversal vulnerability in Livingston/Lucent RADIUS before 2.1.va.1 may allow attackers to read arbitrary files via a ..
network
low complexity
lucent simon-horms
5.0
2001-07-13 CVE-2001-1053 Unspecified vulnerability in Adcycle
AdLogin.pm in AdCycle 1.15 and earlier allows remote attackers to bypass authentication and gain privileges by injecting SQL code in the $password argument.
network
low complexity
adcycle
critical
10.0
2001-07-12 CVE-2001-1291 Improper Restriction of Excessive Authentication Attempts vulnerability in 3Com Superstack II PS HUB 40 Firmware
The telnet server for 3Com hardware such as PS40 SuperStack II does not delay or disconnect remote attackers who provide an incorrect username or password, which makes it easier to break into the server via brute force password guessing.
network
low complexity
3com CWE-307
critical
9.8
2001-07-12 CVE-2001-1271 Directory Traversal vulnerability in Rar
Directory traversal vulnerability in rar 2.02 and earlier allows attackers to overwrite arbitrary files during archive extraction via a ..
local
low complexity
rarsoft
2.1