NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
78676 | CVE-2001-1241 | Un-CGI 1.9 and earlier does not verify that a CGI script has the execution bits set before executing it, which allows remote attackers to execute arbitrary commands by directing Un-CGI to a document that begins with "#!" and the desired program name. | 2 | 7.5 | High | 2017-01-05 | 2008-09-10 | View | |
78677 | CVE-2001-1242 | Directory traversal vulnerability in Un-CGI 1.9 and earlier allows remote attackers to execute arbitrary code via a .. (dot dot) in an HTML form. | 2 | 7.5 | High | 2017-01-05 | 2008-09-10 | View | |
78678 | CVE-2001-1243 | Scripting.FileSystemObject in asp.dll for Microsoft IIS 4.0 and 5.0 allows local or remote attackers to cause a denial of service (crash) via (1) creating an ASP program that uses Scripting.FileSystemObject to open a file with an MS-DOS device name, or (2) remotely injecting the device name into ASP programs that internally use Scripting.FileSystemObject. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
78679 | CVE-2001-1244 | Multiple TCP implementations could allow remote attackers to cause a denial of service (bandwidth and CPU exhaustion) by setting the maximum segment size (MSS) to a very small number and requesting large amounts of data, which generates more packets with less TCP-level data that amplify network traffic and consume more server CPU to process. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
78680 | CVE-2001-1245 | Opera 5.0 for Linux does not properly handle malformed HTTP headers, which allows remote attackers to cause a denial of service, possibly with a header whose value is the same as a MIME header name. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View |
Page 802 of 17672, showing 5 records out of 88360 total, starting on record 4006, ending on 4010