Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2001-07-16 CVE-2001-1181 Local Security vulnerability in HP Hp-Ux 11.11
Dynamically Loadable Kernel Module (dlkm) static kernel symbol table in HP-UX 11.11 is not properly configured, which allows local users to gain privileges.
local
low complexity
hp
7.2
2001-07-16 CVE-2001-0975 Buffer Overflow vulnerability in Oracle Internet Directory 2.1.1/3.0.1
Buffer overflow vulnerabilities in Oracle Internet Directory Server (LDAP) 2.1.1.x and 3.0.1 allow remote attackers to execute arbitrary code, as demonstrated by the PROTOS LDAPv3 test suite.
network
low complexity
oracle
7.5
2001-07-12 CVE-2001-1176 Unspecified vulnerability in Checkpoint Firewall-1, Provider-1 and Vpn-1
Format string vulnerability in Check Point VPN-1/FireWall-1 4.1 allows a remote authenticated firewall administrator to execute arbitrary code via format strings in the control connection.
network
low complexity
checkpoint
7.5
2001-07-11 CVE-2001-1427 Unspecified vulnerability in Macromedia Coldfusion
Unknown vulnerability in ColdFusion Server 2.0 through 4.5.1 SP2 allows remote attackers to overwrite templates with zero byte files via unknown attack vectors.
network
low complexity
macromedia
7.5
2001-07-11 CVE-2001-1178 Unspecified vulnerability in Xfree86 Project X11R6 3.3.2
Buffer overflow in xman allows local users to gain privileges via a long MANPATH environment variable.
local
low complexity
xfree86-project
7.2
2001-07-10 CVE-2001-1180 Unspecified vulnerability in Freebsd
FreeBSD 4.3 does not properly clear shared signal handlers when executing a process, which allows local users to gain privileges by calling rfork with a shared signal handler, having the child process execute a setuid program, and sending a signal to the child.
local
low complexity
freebsd
7.2
2001-07-09 CVE-2001-1158 Unspecified vulnerability in Checkpoint Firewall-1 4.1/4.1Build41439
Check Point VPN-1/FireWall-1 4.1 base.def contains a default macro, accept_fw1_rdp, which can allow remote attackers to bypass intended restrictions with forged RDP (internal protocol) headers to UDP port 259 of arbitrary hosts.
network
low complexity
checkpoint
7.5
2001-07-09 CVE-2001-1026 Unspecified vulnerability in Trend Micro Interscan Applettrap 2.0
Trend Micro InterScan AppletTrap 2.0 does not properly filter URLs when they are modified in certain ways such as (1) using a double slash (//) instead of a single slash, (2) URL-encoded characters, (3) requesting the IP address instead of the domain name, or (4) using a leading 0 in an octet of an IP address.
network
low complexity
trend-micro
7.5
2001-07-06 CVE-2001-1081 Format string vulnerabilities in Livingston/Lucent RADIUS before 2.1.va.1 may allow local or remote attackers to cause a denial of service and possibly execute arbitrary code via format specifiers that are injected into log messages.
network
low complexity
lucent simon-horms
7.5
2001-07-05 CVE-2001-1087 Unspecified vulnerability in Network Appliance Netcache
The default configuration of the config.http.tunnel.allow_ports option on NetCache devices is set to +all, which allows remote attackers to connect to arbitrary ports on remote systems behind the device.
network
low complexity
network-appliance
7.5