Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2001-10-18 CVE-2001-0736 Local Security vulnerability in Linux Mandrake
Vulnerability in (1) pine before 4.33 and (2) the pico editor, included with pine, allows local users local users to overwrite arbitrary files via a symlink attack.
2.1
2001-10-10 CVE-2001-1098 Unspecified vulnerability in Cisco PIX Firewall Manager 4.3(2)G
Cisco PIX firewall manager (PFM) 4.3(2)g logs the enable password in plaintext in the pfm.log file, which could allow local users to obtain the password by reading the file.
local
low complexity
cisco
2.1
2001-09-20 CVE-2001-1029 libutil in OpenSSH on FreeBSD 4.4 and earlier does not drop privileges before verifying the capabilities for reading the copyright and welcome files, which allows local users to bypass the capabilities checks and read arbitrary files by specifying alternate copyright or welcome files.
local
low complexity
openbsd freebsd
2.1
2001-09-20 CVE-2001-0706 Stack Overflow DoS vulnerability in Rumpus FTP Server
Maximum Rumpus FTP Server 2.0.3 dev and before allows an attacker to cause a denial of service (crash) via a mkdir command that specifies a large number of sub-folders.
local
low complexity
maxum-development-corporation
2.1
2001-09-20 CVE-2001-0685 Symbolic Link vulnerability in Thibault Godouet Fcron
Thibault Godouet FCron prior to 1.1.1 allows a local user to corrupt another user's crontab file via a symlink attack on the fcrontab temporary file.
local
high complexity
thibault-godouet
2.6
2001-09-20 CVE-2001-0642 Directory Traversal vulnerability in Incredimail 2.0
Directory traversal vulnerability in IncrediMail version 1400185 and earlier allows local users to overwrite files on the local hard drive by appending ..
local
low complexity
incredimail
2.1
2001-09-20 CVE-2001-0547 Denial of Service vulnerability in Microsoft ISA Server 2000
Memory leak in the proxy service in Microsoft Internet Security and Acceleration (ISA) Server 2000 allows local attackers to cause a denial of service (resource exhaustion).
local
low complexity
microsoft
2.1
2001-09-18 CVE-2001-1353 Unspecified vulnerability in Aladdin Enterprises Ghostscript
ghostscript before 6.51 allows local users to read and write arbitrary files as the 'lp' user via the file operator, even with -dSAFER enabled.
local
high complexity
aladdin-enterprises
2.6
2001-09-13 CVE-2001-1136 Denial of Service vulnerability in HP Hp-Ux 11.04
The libsecurity library in HP-UX 11.04 (VVOS) allows attackers to cause a denial of service.
local
low complexity
hp
2.1
2001-09-10 CVE-2001-1406 Local Security vulnerability in Bugzilla
process_bug.cgi in Bugzilla before 2.14 does not set the "groupset" bit when a bug is moved between product groups, which will cause the bug to have the old group's restrictions, which might not be as stringent.
local
low complexity
mozilla
2.1