Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2001-06-27 CVE-2001-0449 Local Security vulnerability in Winzip 8.0
Buffer overflow in WinZip 8.0 allows attackers to execute arbitrary commands via a long file name that is processed by the /zipandemail command line option.
local
low complexity
winzip
4.6
2001-06-27 CVE-2001-0415 Locally Readable Username/Password vulnerability in Redi Rediplus 1.0
REDIPlus program, REDI.exe, stores passwords and user names in cleartext in the StartLog.txt log file, which allows local users to gain access to other accounts.
local
low complexity
redi
4.6
2001-06-27 CVE-2001-0407 Symbolic Link File Overwriting vulnerability in MySQL Root Operation
Directory traversal vulnerability in MySQL before 3.23.36 allows local users to modify arbitrary files and gain privileges by creating a database whose name starts with ..
local
low complexity
oracle
4.6
2001-06-27 CVE-2001-0381 Unspecified vulnerability in PGP Openpgp
The OpenPGP PGP standard allows an attacker to determine the private signature key via a cryptanalytic attack in which the attacker alters the encrypted private key file and captures a single message signed with the signature key.
local
low complexity
pgp
4.6
2001-06-27 CVE-2001-0370 Local Security vulnerability in FCheck
fcheck prior to 2.57.59 calls the file signature checking program insecurely, which can allow a local user to run arbitrary commands via a file name that contains shell metacharacters.
local
low complexity
michael-a-gumienny
4.6
2001-06-27 CVE-2001-0368 Directory Traversal vulnerability in Free Peers Bearshare 2.2/2.2.1
Directory traversal vulnerability in BearShare 2.2.2 and earlier allows a remote attacker to read certain files via a URL containing a series of .
network
low complexity
free-peers
5.0
2001-06-27 CVE-2001-0367 Unspecified vulnerability in Mirabilis ICQ 2000.0Bbuild3278
Mirabilis ICQ WebFront Plug-in ICQ2000b Build 3278 allows a remote attacker to create a denial of service via HTTP URL requests containing a large number of % characters.
network
low complexity
mirabilis
5.0
2001-06-27 CVE-2001-0364 Denial of Service vulnerability in SSH Ssh2 2.4
SSH Communications Security sshd 2.4 for Windows allows remote attackers to create a denial of service via a large number of simultaneous connections.
network
low complexity
ssh
5.0
2001-06-27 CVE-2001-0361 Cryptographic Issues vulnerability in multiple products
Implementations of SSH version 1.5, including (1) OpenSSH up to version 2.3.0, (2) AppGate, and (3) ssh-1 up to version 1.2.31, in certain configurations, allow a remote attacker to decrypt and/or alter traffic via a "Bleichenbacher attack" on PKCS#1 version 1.5.
network
high complexity
openbsd ssh CWE-310
4.0
2001-06-27 CVE-2001-0360 Remote File Disclosure vulnerability in Ikonboard
Directory traversal vulnerability in help.cgi in Ikonboard 2.1.7b and earlier allows a remote attacker to read arbitrary files via a ..
network
low complexity
ikonboard-com
5.0