Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2001-12-15 CVE-2001-1214 Unspecified vulnerability in Marcus S. Xenakis Unix Manual 1.0
manual.php in Marcus S.
network
low complexity
marcus-s-xenakis
7.5
2001-12-15 CVE-2001-1198 Unspecified vulnerability in HP Hp-Ux
RLPDaemon in HP-UX 10.20 and 11.0 allows local users to overwrite arbitrary files and gain privileges by specifying the target file in the -L option.
local
low complexity
hp
7.2
2001-12-15 CVE-2001-1195 Authentication vulnerability in Novell Groupwise Servlet Gateway Default
Novell Groupwise 5.5 and 6.0 Servlet Gateway is installed with a default username and password for the servlet manager, which allows remote attackers to gain privileges.
network
low complexity
novell
7.5
2001-12-14 CVE-2001-0727 Unspecified vulnerability in Microsoft Internet Explorer 5.5/6.0
Internet Explorer 6.0 allows remote attackers to execute arbitrary code by modifying the Content-Disposition and Content-Type header fields in a way that causes Internet Explorer to believe that the file is safe to open without prompting the user, aka the "File Execution Vulnerability."
network
low complexity
microsoft
7.5
2001-12-13 CVE-2001-1192 Unspecified vulnerability in Citrix ICA Client 6.1
Citrix Independent Computing Architecture (ICA) Client for Windows 6.1 allows remote malicious web sites to execute arbitrary code via a .ICA file, which is downloaded and automatically executed by the client.
network
low complexity
citrix
7.5
2001-12-11 CVE-2001-1188 Unspecified vulnerability in Brian Dorricott Mailto 1.0.7/1.0.8/1.0.9
mailto.exe in Brian Dorricott MAILTO 1.0.9 and earlier allows remote attackers to send SPAM e-mail through remote servers by modifying the sendto, email, server, subject, and resulturl hidden form fields.
network
low complexity
brian-dorricott
7.5
2001-12-11 CVE-2001-1187 Remote Arbitrary Command Execution vulnerability in Mutasem Abudahab Csvform and Csvform Plus
csvform.pl 0.1 allows remote attackers to execute arbitrary commands via metacharacters in the file parameter.
network
low complexity
mutasem-abudahab
7.5
2001-12-06 CVE-2001-0867 Unspecified vulnerability in Cisco 12000 Router
Cisco 12000 with IOS 12.0 and line cards based on Engine 2 does not properly filter does not properly filter packet fragments even when the "fragment" keyword is used in an ACL, which allows remote attackers to bypass the intended access controls.
network
low complexity
cisco
7.5
2001-12-06 CVE-2001-0866 Unspecified vulnerability in Cisco 12000 Router
Cisco 12000 with IOS 12.0 and lines card based on Engine 2 does not properly handle an outbound ACL when an input ACL is not configured on all the interfaces of a multi port line card, which could allow remote attackers to bypass the intended access controls.
network
low complexity
cisco
7.5
2001-12-06 CVE-2001-0865 Unspecified vulnerability in Cisco 12000 Router
Cisco 12000 with IOS 12.0 and line cards based on Engine 2 does not support the "fragment" keyword in an outgoing ACL, which could allow fragmented packets in violation of the intended access.
network
low complexity
cisco
7.5