Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2001-05-03 CVE-2001-0280 Unspecified vulnerability in Atrium Software Mercur
Buffer overflow in MERCUR SMTP server 3.30 allows remote attackers to execute arbitrary commands via a long EXPN command.
network
low complexity
atrium-software
critical
10.0
2001-05-03 CVE-2001-0279 Buffer overflow in sudo earlier than 1.6.3p6 allows local users to gain root privileges.
local
low complexity
debian mandrakesoft
7.2
2001-05-03 CVE-2001-0278 Local Security vulnerability in MPE/iX
Vulnerability in linkeditor in HP MPE/iX 6.5 and earlier allows local users to gain privileges.
local
low complexity
hp
4.6
2001-05-03 CVE-2001-0277 Unspecified vulnerability in Working Resources Inc. Badblue 1.2.7
Buffer overflow in ext.dll in BadBlue 1.02.07 Personal Edition allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long HTTP GET request.
network
low complexity
working-resources-inc
critical
10.0
2001-05-03 CVE-2001-0276 Unspecified vulnerability in Working Resources Inc. Badblue 1.2.7
ext.dll in BadBlue 1.02.07 Personal Edition web server allows remote attackers to determine the physical path of the server by directly calling ext.dll without any arguments, which produces an error message that contains the path.
network
low complexity
working-resources-inc
6.4
2001-05-03 CVE-2001-0275 Denial-Of-Service vulnerability in Moby Netsuite web Server 1.02
Moby Netsuite Web Server 1.02 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long HTTP request.
local
low complexity
moby
2.1
2001-05-03 CVE-2001-0274 Unspecified vulnerability in Kicq 1.0.0
kicq IRC client 1.0.0, and possibly later versions, allows remote attackers to execute arbitrary commands via shell metacharacters in a URL.
network
low complexity
kicq
7.5
2001-05-03 CVE-2001-0273 Unspecified vulnerability in Holger Lamm Pgp4Pine 1.75.6
pgp4pine Pine/PGP interface version 1.75-6 does not properly check to see if a public key has expired when obtaining the keys via Gnu Privacy Guard (GnuPG), which causes the message to be sent in cleartext.
network
high complexity
holger-lamm
2.6
2001-05-03 CVE-2001-0272 Directory Traversal vulnerability in Sendtemp.Pl
Directory traversal vulnerability in sendtemp.pl in W3.org Anaya Web development server allows remote attackers to read arbitrary files via a ..
network
low complexity
w3-org
5.0
2001-05-03 CVE-2001-0271 Unspecified vulnerability in Mailnews.Cgi
mailnews.cgi 1.3 and earlier allows remote attackers to execute arbitrary commands via a user name that contains shell metacharacters.
network
low complexity
mailnews-cgi
critical
10.0