CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3154  CVE-2001-0333  Entry  Directory traversal vulnerability in IIS 5.0 and earlier allows remote attackers to execute arbitrary commands by encoding .. (dot dot) and "" characters twice.        View
3666  CVE-2001-0860  Entry  Terminal Services Manager MMC in Windows 2000 and XP trusts the Client Address (IP address) that is provided by the client instead of obtaining it from the packet headers, which allows clients to spoof their public IP address, e.g. through a Network Address Translation (NAT).        View
3922  CVE-2001-1118  Entry  A module in Roxen 2.0 before 2.0.92, and 2.1 before 2.1.264, does not properly decode UTF-8, Mac and ISO-2202 encoded URLs, which could allow a remote attacker to execute arbitrary commands or view arbitrary files via an encoded URL.        View
4178  CVE-2001-1374  Entry  expect before 5.32 searches for its libraries in /var/tmp before other directories, which could allow local users to gain root privileges via a Trojan horse library that is accessed by mkpasswd.        View
4434  CVE-2002-0040  Entry  Vulnerability in SGI IRIX 6.5.11 through 6.5.15f allows local users to cause privileged applications to dump core via the HOSTALIASES environment variable, which might allow the users to gain privileges.        View

Page 199 of 20943, showing 5 records out of 104715 total, starting on record 991, ending on 995

Actions