NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
78806 | CVE-2001-1371 | The default configuration of Oracle Application Server 9iAS 1.0.2.2 enables SOAP and allows anonymous users to deploy applications by default via urn:soap-service-manager and urn:soap-provider-manager. | 2 | 7.5 | High | 2017-01-05 | 2016-10-17 | View | |
78807 | CVE-2001-1372 | Oracle 9i Application Server 1.0.2 allows remote attackers to obtain the physical path of a file under the server root via a request for a non-existent .JSP file, which leaks the pathname in an error message. | 2 | 5 | Medium | 2017-01-05 | 2016-10-17 | View | |
78808 | CVE-2001-1373 | MailSafe in Zone Labs ZoneAlarm 2.6 and earlier and ZoneAlarm Pro 2.6 and 2.4 does not block prohibited file types with long file names, which allows remote attackers to send potentially dangerous attachments. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
78809 | CVE-2001-1374 | expect before 5.32 searches for its libraries in /var/tmp before other directories, which could allow local users to gain root privileges via a Trojan horse library that is accessed by mkpasswd. | 2 | 7.2 | High | 2017-01-05 | 2008-09-05 | View | |
78810 | CVE-2001-1375 | tcl/tk package (tcltk) 8.3.1 searches for its libraries in the current working directory before other directories, which could allow local users to execute arbitrary code via a Trojan horse library that is under a user-controlled directory. | 2 | 4.6 | Medium | 2017-01-05 | 2008-09-05 | View |
Page 828 of 17672, showing 5 records out of 88360 total, starting on record 4136, ending on 4140