NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
78760 | CVE-2001-1325 | Internet Explorer 5.0 and 5.5, and Outlook Express 5.0 and 5.5, allow remote attackers to execute scripts when Active Scripting is disabled by including the scripts in XML stylesheets (XSL) that are referenced using an IFRAME tag, possibly due to a vulnerability in Windows Scripting Host (WSH). | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View | |
78759 | CVE-2001-1324 | cvmlogin and statfile in Paul Jarc idtools before 2001.06.27 do not properly check the return value of a call to the pathexec_env function, which could cause the setstate utility to setuid to the UID environment variable and allow local users to gain privileges. | 2 | 4.6 | Medium | 2017-01-05 | 2008-09-10 | View | |
78758 | CVE-2001-1323 | Buffer overflow in MIT Kerberos 5 (krb5) 1.2.2 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via base-64 encoded data, which is not properly handled when the radix_encode function processes file glob output from the ftpglob function. | 2 | 7.5 | High | 2017-01-05 | 2016-10-17 | View | |
78757 | CVE-2001-1322 | xinetd 2.1.8 and earlier runs with a default umask of 0, which could allow local users to read or modify files that are created by an application that runs under xinetd but does not set its own safe umask. | 2 | 3.6 | Low | 2017-01-05 | 2008-09-10 | View | |
78756 | CVE-2001-1321 | Oracle Internet Directory Server 2.1.1.x and 3.0.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via invalid encodings of BER OBJECT-IDENTIFIER values, as demonstrated by the PROTOS LDAPv3 test suite. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View |
Page 16855 of 17672, showing 5 records out of 88360 total, starting on record 84271, ending on 84275