Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2001-06-11 CVE-2001-1368 Remote Security vulnerability in Iplanet web Server 4.0
Vulnerability in iPlanet Web Server 4 included in Virtualvault Operating System (VVOS) 4.0 running HP-UX 11.04 could allow attackers to corrupt data.
network
low complexity
iplanet
5.0
2001-06-06 CVE-2001-1263 Denial of Service vulnerability in Pragma Systems Interaccess 4.0Build5
telnet95.exe in Pragma InterAccess 4.0 build 5 allows remote attackers to cause a denial of service (crash) via a large number of characters to port 23, possibly due to a buffer overflow.
network
low complexity
pragma-systems
5.0
2001-06-05 CVE-2001-1345 Unspecified vulnerability in Jetico Bestcrypt
bctool in Jetico BestCrypt 0.7 and earlier trusts the user-supplied PATH to find and execute an fsck utility program, which allows local users to gain privileges by modifying the PATH to point to a Trojan horse program.
local
low complexity
jetico
4.6
2001-06-02 CVE-2001-0323 Denial-Of-Service vulnerability in Oracle Solaris
The ICMP path MTU (PMTU) discovery feature in various UNIX systems allows remote attackers to cause a denial of service by spoofing "ICMP Fragmentation needed but Don't Fragment (DF) set" packets between two target hosts, which could cause one host to lower its MTU when transmitting to the other host.
network
low complexity
6.4
2001-06-02 CVE-2001-0322 Unspecified vulnerability in Microsoft Internet Explorer, Outlook and Outlook Express
MSHTML.DLL HTML parser in Internet Explorer 4.0, and other versions, allows remote attackers to cause a denial of service (application crash) via a script that creates and deletes an object that is associated with the browser window object.
network
low complexity
microsoft
5.0
2001-06-02 CVE-2001-0313 Denial-Of-Service vulnerability in Borderware Firewall Server 6.1.2
Borderware Firewall Server 6.1.2 allows remote attackers to cause a denial of service via a ping to the broadcast address of the public network on which the server is placed, which causes the server to continuously send pings (echo requests) to the network.
network
low complexity
borderware
5.0
2001-06-02 CVE-2001-0312 Remote Security vulnerability in Websphere Plugin
IBM WebSphere plugin for Netscape Enterprise server allows remote attackers to read source code for JSP files via an HTTP request that contains a host header that references a host that is not in WebSphere's host aliases list, which will bypass WebSphere processing.
network
low complexity
ibm
5.0
2001-06-02 CVE-2001-0311 Local Security vulnerability in HP Hp-Ux and Omniback II
Vulnerability in OmniBackII A.03.50 in HP 11.x and earlier allows attackers to gain unauthorized access to an OmniBack client.
local
low complexity
hp
4.6
2001-06-02 CVE-2001-0309 Unspecified vulnerability in Redhat Linux 6.2
inetd in Red Hat 6.2 does not properly close sockets for internal services such as chargen, daytime, echo, etc., which allows remote attackers to cause a denial of service via a series of connections to the internal services.
network
low complexity
redhat
5.0
2001-06-02 CVE-2001-0258 Denial-Of-Service vulnerability in I-Data International Easycom Safecom Print Server 1.0
The Easycom/Safecom Print Server (firmware 404.590) PrintGuide server allows remote attackers to cause a denial of service via a large number of connections that send null characters.
network
low complexity
i-data-international
5.0