Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2001-05-03 CVE-2001-1331 mandb in the man-db package before 2.3.16-3 allows local users to overwrite arbitrary files via the command line options (1) -u or (2) -c, which do not drop privileges and follow symlinks.
local
high complexity
debian progeny
1.2
2001-05-03 CVE-2001-0326 Remote Security vulnerability in Oracle Application Server and Oracle8I
Oracle Java Virtual Machine (JVM ) for Oracle 8.1.7 and Oracle Application Server 9iAS Release 1.0.2.0.1 allows remote attackers to read arbitrary files via the .jsp and .sqljsp file extensions when the server is configured to use the <<ALL FILES>> FilePermission.
network
low complexity
oracle
7.5
2001-05-03 CVE-2001-0325 Buffer Overflow vulnerability in QNX RTP 5.60
Buffer overflow in QNX RTP 5.60 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a large number of arguments to the stat command.
network
low complexity
qnx
7.5
2001-05-03 CVE-2001-0324 Unspecified vulnerability in Microsoft Windows 2000 and Windows 98
Windows 98 and Windows 2000 Java clients allow remote attackers to cause a denial of service via a Java applet that opens a large number of UDP sockets, which prevents the host from establishing any additional UDP connections, and possibly causes a crash.
network
high complexity
microsoft
2.6
2001-05-03 CVE-2001-0321 Remote Security vulnerability in Francisco Burzi PHP-Nuke 8.0Final
opendir.php script in PHP-Nuke allows remote attackers to read arbitrary files by specifying the filename as an argument to the requesturl parameter.
network
low complexity
francisco-burzi
5.0
2001-05-03 CVE-2001-0320 Remote Security vulnerability in PHP-Nuke 4.0.4/4.4
bb_smilies.php and bbcode_ref.php in PHP-Nuke 4.4 allows remote attackers to read arbitrary files and gain PHP administrator privileges by inserting a null character and ..
network
low complexity
francisco-burzi
critical
10.0
2001-05-03 CVE-2001-0319 Unspecified vulnerability in IBM products
orderdspc.d2w macro in IBM Net.Commerce 3.x allows remote attackers to execute arbitrary SQL queries by inserting them into the order_rn option of the report capability.
network
low complexity
ibm
7.5
2001-05-03 CVE-2001-0317 Unspecified vulnerability in Linux Kernel 2.2.0/2.4.0
Race condition in ptrace in Linux kernel 2.4 and 2.2 allows local users to gain privileges by using ptrace to track and modify a running setuid process.
local
high complexity
linux
3.7
2001-05-03 CVE-2001-0316 Unspecified vulnerability in Linux Kernel 2.2.0/2.4.0
Linux kernel 2.4 and 2.2 allows local users to read kernel memory and possibly gain privileges via a negative argument to the sysctl call.
local
low complexity
linux
4.6
2001-05-03 CVE-2001-0308 Code Injection vulnerability in Bajie Java Http Server
UploadServlet in Bajie HTTP JServer 0.78, and possibly other versions before 0.80, allows remote attackers to execute arbitrary commands by calling the servlet to upload a program, then using a ...
network
low complexity
bajie CWE-94
7.5