Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2001-02-16 CVE-2001-0089 Unspecified vulnerability in Microsoft Internet Explorer
Internet Explorer 5.0 through 5.5 allows remote attackers to read arbitrary files from the client via the INPUT TYPE element in an HTML form, aka the "File Upload via Form" vulnerability.
network
high complexity
microsoft
2.6
2001-02-16 CVE-2001-0088 Authentication Bypass vulnerability in Jason Hines PHPweblog 0.4.2
common.inc.php in phpWebLog 0.4.2 does not properly initialize the $CONF array, which inadvertently sets the password to a single character, allowing remote attackers to easily guess the SiteKey and gain administrative privileges to phpWebLog.
network
low complexity
jason-hines
7.5
2001-02-16 CVE-2001-0066 Unspecified vulnerability in Kevin Lindsay Secure Locate
Secure Locate (slocate) allows local users to corrupt memory via a malformed database file that specifies an offset value that accesses memory outside of the intended buffer.
local
low complexity
kevin-lindsay
7.2
2001-02-16 CVE-2001-0058 Unspecified vulnerability in Cisco Broadband Operating System and Cisco 6XX Routers
The Web interface to Cisco 600 routers running CBOS 2.4.1 and earlier allow remote attackers to cause a denial of service via a URL that does not end in a space character.
network
low complexity
cisco
5.0
2001-02-16 CVE-2001-0057 Unspecified vulnerability in Cisco Broadband Operating System and Cisco 6XX Routers
Cisco 600 routers running CBOS 2.4.1 and earlier allow remote attackers to cause a denial of service via a large ICMP echo (ping) packet.
network
low complexity
cisco
5.0
2001-02-16 CVE-2001-0056 Unspecified vulnerability in Cisco Broadband Operating System 2.3.8/2.4.1
The Cisco Web Management interface in routers running CBOS 2.4.1 and earlier does not log invalid logins, which allows remote attackers to guess passwords without detection.
network
low complexity
cisco
7.5
2001-02-16 CVE-2001-0055 Unspecified vulnerability in Cisco Broadband Operating System and Cisco 6XX Routers
CBOS 2.4.1 and earlier in Cisco 600 routers allows remote attackers to cause a denial of service via a slow stream of TCP SYN packets.
network
low complexity
cisco
5.0
2001-02-16 CVE-2001-0054 Path Traversal vulnerability in Solarwinds Serv-U File Server 3.0.0.16
Directory traversal vulnerability in FTP Serv-U before 2.5i allows remote attackers to escape the FTP root and read arbitrary files by appending a string such as "/..%20." to a CD command, a variant of a ..
network
low complexity
solarwinds CWE-22
5.0
2001-02-16 CVE-2001-0052 Unspecified vulnerability in IBM DB2 Universal Database 6.1/7.1
IBM DB2 Universal Database version 6.1 allows users to cause a denial of service via a malformed query.
local
low complexity
ibm
2.1
2001-02-16 CVE-2001-0051 Unspecified vulnerability in IBM DB2 Universal Database 6.1
IBM DB2 Universal Database version 6.1 creates an account with a default user name and password, which allows remote attackers to gain access to the database.
network
low complexity
ibm
7.5