Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2001-08-22 CVE-2001-0607 Denial-Of-Service vulnerability in HP-UX
asecure as included with HP-UX 10.01 through 11.00 can allow a local attacker to create a denial of service and gain additional privileges via unsafe permissions on the asecure program, a different vulnerability than CVE-2000-0083.
local
low complexity
hp
4.6
2001-08-22 CVE-2001-0606 Vulnerability in iPlanet Web Server 4.X in HP-UX 11.04 (VVOS) with VirtualVault A.04.00 allows a remote attacker to create a denial of service via the HTTPS service.
network
low complexity
hp sun
5.0
2001-08-22 CVE-2001-0593 Directory Traversal vulnerability in Anaconda Clipper
Anaconda Partners Clipper 3.3 and earlier allows a remote attacker to read arbitrary files via a '..' (dot dot) attack in the template parameter.
network
low complexity
anaconda-partners
5.0
2001-08-22 CVE-2001-0588 Local Security vulnerability in SCO Openserver 5.0.6
sendmail 8.9.3, as included with the MMDF 2.43.3b package in SCO OpenServer 5.0.6, can allow a local attacker to gain additional privileges via a buffer overflow in the first argument to the command.
local
low complexity
sco
4.6
2001-08-22 CVE-2001-0586 Denial-Of-Service vulnerability in Trend Micro Scanmail Exchange 3.5
TrendMicro ScanMail for Exchange 3.5 Evaluation allows a local attacker to recover the administrative credentials for ScanMail via a combination of unprotected registry keys and weakly encrypted passwords.
local
low complexity
trend-micro
4.6
2001-08-22 CVE-2001-0585 Unspecified vulnerability in Gordano Ntmail 6.0.3C
Gordano NTMail 6.0.3c allows a remote attacker to create a denial of service via a long (>= 255 characters) URL request to port 8000 or port 9000.
network
low complexity
gordano
5.0
2001-08-22 CVE-2001-0583 Denial-Of-Service vulnerability in Alt-N Mdaemon 3.5.4
Alt-N Technologies MDaemon 3.5.4 allows a remote attacker to create a denial of service via the URL request of a MS-DOS device (such as GET /aux) to (1) the Worldclient service at port 3000, or (2) the Webconfig service at port 3001.
network
low complexity
alt-n
5.0
2001-08-22 CVE-2001-0582 Unspecified vulnerability in BEN Spink Crushftp FTP Server 2.1.4
Ben Spink CrushFTP FTP Server 2.1.6 and earlier allows a local attacker to access arbitrary files via a '..' (dot dot) attack, or variations, in (1) GET, (2) CD, (3) NLST, (4) SIZE, (5) RETR.
local
low complexity
ben-spink
4.6
2001-08-22 CVE-2001-0581 Connection Denial Of Service vulnerability in SpyNet Chat Server
Spytech Spynet Chat Server 6.5 allows a remote attacker to create a denial of service (crash) via a large number of connections to port 6387.
network
low complexity
spytech
5.0
2001-08-22 CVE-2001-0580 Unspecified vulnerability in Hughes Technologies DSL Vdns 1.0
Hughes Technologies Virtual DNS (VDNS) Server 1.0 allows a remote attacker to create a denial of service by connecting to port 6070, sending some data, and closing the connection.
network
low complexity
hughes-technologies
5.0