Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2001-12-31 CVE-2001-1497 Unspecified vulnerability in Microsoft IE and Internet Explorer
Microsoft Internet Explorer 4.0 through 6.0 could allow local users to differentiate between alphanumeric and non-alphanumeric characters used in a password by pressing certain control keys that jump between non-alphanumeric characters, which makes it easier to conduct a brute-force password guessing attack.
local
low complexity
microsoft
2.1
2001-12-31 CVE-2001-1479 Unspecified vulnerability in SUN Management+Center 2.0
smcboot in Sun SMC (Sun Management Center) 2.0 in Solaris 8 allows local users to delete arbitrary files via a symlink attack on /tmp/smc$SMC_PORT.
local
low complexity
sun
2.1
2001-12-26 CVE-2001-1225 Denial of Service vulnerability in Hughes Msql 2.0.10/2.0.11/2.0.12
Hughes Technology Mini SQL 2.0.10 through 2.0.12 allows local users to cause a denial of service by creating a very large array in a table, which causes miniSQL to crash when the table is queried.
local
low complexity
hughes
2.1
2001-12-20 CVE-2001-1218 Denial of Service vulnerability in Microsoft IE 5.0
Microsoft Internet Explorer for Unix 5.0SP1 allows local users to possibly cause a denial of service (crash) in CDE or the X server on Solaris 2.6 by rapidly scrolling Chinese characters or maximizing the window.
local
low complexity
microsoft
2.1
2001-12-11 CVE-2001-0890 Unspecified vulnerability in Sane
Certain backend drivers in the SANE library 1.0.3 and earlier, as used in frontend software such as XSane, allows local users to modify files via a symlink attack on temporary files.
local
low complexity
sane
2.1
2001-12-06 CVE-2001-0837 Information Disclosure vulnerability in Deltathree Pc-To-Phone 3.0.3
DeltaThree Pc-To-Phone 3.0.3 places sensitive data in world-readable locations in the installation directory, which allows local users to read the information in (1) temp.html, (2) the log folder, and (3) the PhoneBook folder.
local
low complexity
deltathree
2.1
2001-12-06 CVE-2001-0832 Local Security vulnerability in Oracle9i Enterprise Edition
Vulnerability in Oracle 8.0.x through 9.0.1 on Unix allows local users to overwrite arbitrary files, possibly via a symlink attack or incorrect file permissions in (1) the ORACLE_HOME/rdbms/log directory or (2) an alternate directory as specified in the ORACLE_HOME environmental variable, aka the "Oracle File Overwrite Security Vulnerability."
local
low complexity
oracle
2.1
2001-12-06 CVE-2001-0809 Local Security vulnerability in HP-Ux 11.00/11.11
Vulnerability in CIFS/9000 Server (SAMBA) A.01.06 and earlier in HP-UX 11.0 and 11.11, when configured as a print server, allows local users to overwrite arbitrary files by modifying certain resources.
local
low complexity
hp
2.1
2001-12-06 CVE-2001-0807 Unspecified vulnerability in Microsoft Internet Explorer 5.0
Internet Explorer 5.0, and possibly other versions, may allow remote attackers (malicious web pages) to read known text files from a client's hard drive via a SCRIPT tag with a SRC value that points to the text file.
network
high complexity
microsoft
2.6
2001-12-06 CVE-2001-0806 Unspecified vulnerability in Apple mac OS X
Apple MacOS X 10.0 and 10.1 allow a local user to read and write to a user's desktop folder via insecure default permissions for the Desktop when it is created in some languages.
local
low complexity
apple
3.6