Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2001-03-26 CVE-2001-0181 Unspecified vulnerability in Caldera products
Format string vulnerability in the error logging code of DHCP server and client in Caldera Linux allows remote attackers to execute arbitrary commands.
network
low complexity
caldera
critical
10.0
2001-03-12 CVE-2001-0144 CORE SDI SSH1 CRC-32 compensation attack detector allows remote attackers to execute arbitrary commands on an SSH server or client via an integer overflow.
network
low complexity
openbsd ssh
critical
10.0
2001-03-12 CVE-2001-0134 Buffer Overflow vulnerability in Compaq Web Admin
Buffer overflow in cpqlogin.htm in web-enabled agents for various Compaq management software products such as Insight Manager and Management Agents allows remote attackers to execute arbitrary commands via a long user name.
network
low complexity
compaq digital
critical
10.0
2001-03-12 CVE-2001-0133 Unspecified vulnerability in Trend Micro Interscan Viruswall 3.0.1
The web administration interface for Interscan VirusWall 3.6.x and earlier does not use encryption, which could allow remote attackers to obtain the administrator password to sniff the administrator password via the setpasswd.cgi program or other HTTP GET requests that contain base64 encoded usernames and passwords.
network
low complexity
trend-micro
critical
10.0
2001-03-12 CVE-2001-0130 Denial-Of-Service vulnerability in Domino R5 Server
Buffer overflow in HTML parser of the Lotus R5 Domino Server before 5.06, and Domino Client before 5.05, allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a malformed font size specifier.
network
low complexity
lotus
critical
10.0
2001-03-12 CVE-2001-0129 Unspecified vulnerability in Tinyproxy 1.3.3
Buffer overflow in Tinyproxy HTTP proxy 1.3.3 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long connect request.
network
low complexity
tinyproxy
critical
10.0
2001-03-12 CVE-2001-0113 File Corruption and Command Execution vulnerability in Omnicron Omnihttpd 2.0.7
statsconfig.pl in OmniHTTPd 2.07 allows remote attackers to execute arbitrary commands via the mostbrowsers parameter, whose value is used as part of a generated Perl script.
network
low complexity
omnicron
critical
10.0
2001-03-12 CVE-2000-0348 Unspecified vulnerability in SCO Unixware
A vulnerability in the Sendmail configuration file sendmail.cf as installed in SCO UnixWare 7.1.0 and earlier allows an attacker to gain root privileges.
network
low complexity
sco
critical
10.0
2001-03-12 CVE-2000-0308 Insecure file permissions for Netscape FastTrack Server 2.x, Enterprise Server 2.0, and Proxy Server 2.5 in SCO UnixWare 7.0.x and 2.1.3 allow an attacker to gain root privileges.
network
low complexity
netscape sco
critical
10.0
2001-03-12 CVE-1999-0760 Unspecified vulnerability in Allaire Coldfusion Server
Undocumented ColdFusion Markup Language (CFML) tags and functions in the ColdFusion Administrator allow users to gain additional privileges.
network
low complexity
allaire
critical
10.0