Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2001-06-02 CVE-2001-0314 Denial-Of-Service vulnerability in AOL Server 5.0
Buffer overflow in www.tol module in America Online (AOL) 5.0 may allow remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long URL in a link.
network
low complexity
aol
7.5
2001-06-02 CVE-2001-0313 Denial-Of-Service vulnerability in Borderware Firewall Server 6.1.2
Borderware Firewall Server 6.1.2 allows remote attackers to cause a denial of service via a ping to the broadcast address of the public network on which the server is placed, which causes the server to continuously send pings (echo requests) to the network.
network
low complexity
borderware
5.0
2001-06-02 CVE-2001-0312 Remote Security vulnerability in Websphere Plugin
IBM WebSphere plugin for Netscape Enterprise server allows remote attackers to read source code for JSP files via an HTTP request that contains a host header that references a host that is not in WebSphere's host aliases list, which will bypass WebSphere processing.
network
low complexity
ibm
5.0
2001-06-02 CVE-2001-0311 Local Security vulnerability in HP Hp-Ux and Omniback II
Vulnerability in OmniBackII A.03.50 in HP 11.x and earlier allows attackers to gain unauthorized access to an OmniBack client.
local
low complexity
hp
4.6
2001-06-02 CVE-2001-0310 Unspecified vulnerability in Freebsd 3.5.1/4.1.1
sort in FreeBSD 4.1.1 and earlier, and possibly other operating systems, uses predictable temporary file names and does not properly handle when the temporary file already exists, which causes sort to crash and possibly impacts security-sensitive scripts.
local
low complexity
freebsd
2.1
2001-06-02 CVE-2001-0309 Unspecified vulnerability in Redhat Linux 6.2
inetd in Red Hat 6.2 does not properly close sockets for internal services such as chargen, daytime, echo, etc., which allows remote attackers to cause a denial of service via a series of connections to the internal services.
network
low complexity
redhat
5.0
2001-06-02 CVE-2001-0300 Local Security vulnerability in Oracle Internet Directory 2.1.1.1
oidldapd 2.1.1.1 in Oracle 8.1.7 records log files in a directory (ldaplog) that has world-writable permissions, which may allow local users to delete logs and/or overwrite other files via a symlink attack.
local
low complexity
oracle
2.1
2001-06-02 CVE-2001-0299 Unspecified vulnerability in Nokia Ip440 Firewall VPN Appliance 1.0
Buffer overflow in Voyager web administration server for Nokia IP440 allows local users to cause a denial of service, and possibly execute arbitrary commands, via a long URL.
network
low complexity
nokia
7.5
2001-06-02 CVE-2001-0261 Unspecified vulnerability in Microsoft Windows 2000
Microsoft Windows 2000 Encrypted File System does not properly destroy backups of files that are encrypted, which allows a local attacker to recover the text of encrypted files.
local
low complexity
microsoft
2.1
2001-06-02 CVE-2001-0260 Unspecified vulnerability in Lotus Domino Mail Server
Buffer overflow in Lotus Domino Mail Server 5.0.5 and earlier allows a remote attacker to crash the server or execute arbitrary code via a long "RCPT TO" command.
network
low complexity
lotus
7.5