| OSVDB ID | Disclosure Date | Title |
|
1769
Description:
(Description Provided by CVE) : NetWin SurgeFTP prior to 1.1h allows a remote attacker to cause a denial of service (crash) via an 'ls ..' command.
|
2001-02-28
|
NetWin SurgeFTP Malformed ls Command Remote DoS
|
|
7705
Description:
(Description Provided by CVE) : Directory traversal vulnerability in FtpXQ FTP server 2.0.93 allows remote attackers to read arbitrary files via a .. (dot dot) in the GET command.
|
2001-02-28
|
FtpXQ FTP Server GET Command Traversal Arbitrary File Access
|
|
570
Description:
(Description Provided by CVE) : Cisco IOS 12.0(5)XU through 12.1(2) allows remote attackers to read system administration and topology information via an "snmp-server host" command, which creates a readable "community" community string if one has not been previously created.
|
2001-02-28
|
Cisco IOS snmp-server host Command Community String Creation
|
|
6018
Description:
HP OpenView OmniBack contains a flaw that may allow a remote attacker to gain unauthorized access. The issue is triggered due to an unspecified flaw in the OmniBack client, which may allow a remote attacker to gain administrative access to the system and execute arbitrary commands resulting in a loss of confidentiality and/or integrity.
|
2001-02-28
|
HP OpenView OmniBack Unauthorized ImniBack Client Access
|
|
6033
Description:
Software Distributor SD-UX in HP-UX contains a flaw that may allow a malicious user to gain access to unauthorized privileges. This flaw may lead to a loss of confidentiality and integrity. No further details have been provided.
|
2001-02-28
|
HP-UX Software Distributor SD-UX Local Privilege Escalation
|
|
6799
Description:
(Description Provided by CVE) : Directory traversal vulnerability in TYPSoft FTP Server 0.85 allows remote attackers to read arbitrary files via (1) a .. (dot dot) in a GET command, or (2) a ... in a CWD command.
|
2001-02-28
|
TYPSoft FTP Server Arbitrary File Access
|
|
88578
Description:
Mailx contains an overflow condition in /usr/bin/mail that is triggered as user-supplied input is not properly validated . This may allow a local attacker to cause a buffer overflow, resulting in a denial of service or potentially execution of arbitrary code.
|
2001-02-28
|
mailx /usr/bin/mail Input Parsing Local Overflow
|
|
1857
Description:
(Description Provided by CVE) : Thibault Godouet FCron prior to 1.1.1 allows a local user to corrupt another user's crontab file via a symlink attack on the fcrontab temporary file.
|
2001-02-27
|
Fcron fcrontab Symlink File Corruption DoS
|
|
6665
Description:
(Description Provided by CVE) : Orange Web Server 2.1, based on GoAhead, allows a remote attacker to perform a denial of service via an HTTP GET request that does not include the HTTP version.
|
2001-02-27
|
Orange Web Server Malformed HTTP Request Remote DoS
|
|
8817
Description:
(Description Provided by CVE) : Crosscom/Olicom XLT-F running XL 80 IM Version 5.5 Build Level 2 allows a remote attacker SNMP read and write access via a default, undocumented community string 'ILMI'.
|
2001-02-27
|
Crosscom/Olicom XLT-F ILMI Default SNMP Community String
|
|
8820
Description:
By default, Cisco IOS versions that support ATM install with a default SNMP string of ILMI enabled. The ILMI SNMP string is publicly known and documented, though not documented by Cisco with the rest of the release. This allows attackers to trivially access the program or system, and to cause denial of service conditions at will.
|
2001-02-27
|
Cisco IOS ILMI Default Community String Remote Configuration Manipulation
|
|
13860
Description:
(Description Provided by CVE) : Buffer overflow in WebReflex 1.55 HTTPd allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long HTTP GET request.
|
2001-02-27
|
WebReflex HTTPd Long HTTP GET Request Overflow
|
|
523
Description:
Lotus Domino contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered when the default installation sets the default ACL of the administration databases to 'Designer', which will disclose configuration information resulting in a loss of confidentiality.
|
2001-02-27
|
IBM Lotus Domino Administration Databases Anonymous Access
|
|
1766
Description:
(Description Provided by CVE) : Sun Chili!Soft ASP has weak permissions on various configuration files, which allows a local attacker to gain additional privileges and create a denial of service.
|
2001-02-27
|
Chili!Soft ASP Configuration File Disclosure and DoS
|
|
1768
Description:
(Description Provided by CVE) : APC Web/SNMP Management Card prior to Firmware 310 only supports one telnet connection, which allows a remote attacker to create a denial of service via repeated failed logon attempts which temporarily locks the card.
|
2001-02-26
|
APC Card Telnet Administration Lockout Remote DoS
|
|
6022
Description:
(Description Provided by CVE) : Joe text editor 2.8 searches the current working directory (CWD) for the .joerc configuration file, which could allow local users to gain privileges of other users by placing a Trojan Horse .joerc file into a directory, then waiting for users to execute joe from that directory.
|
2001-02-26
|
Joe's Own Editor (joe) .joerc Path Subversion Arbitrary Command Execution
|
|
6761
Description:
A1 Server contains a flaw that allows a remote attacker to arbitrary access files outside of the web path. The issue is due to the program not properly sanitizing user input, specifically traversal style attacks (../../).
|
2001-02-26
|
A1 HTTP Server Traversal Arbitrary File Access
|
|
6762
Description:
A1 Server contains a flaw that may allow a remote denial of service. The issue is triggered when sending an overly long string containing 1,000 or more characters via telnet, which would cause the application to crash, and will result in loss of availability for the service.
|
2001-02-26
|
A1 HTTP Server Long HTTP Request Overflow
|
|
7179
Description:
(Description Provided by CVE) : Buffer overflow in Windows 2000 event viewer snap-in allows attackers to execute arbitrary commands via a malformed field that is improperly handled during the detailed view of event records.
|
2001-02-26
|
Microsoft Windows 2000 Event Viewer Snap-in Overflow
|
|
13898
Description:
MyGetright accepts custom 'skins' from remote websites. A *.dld file is used to specify paths to various resources, including graphics, file permissions, etc. If the maliciously-composed *.dld file lists pathnames which contain long sequences of extraneous data, the programs skin data can be mis-parsed, causing the programs user interface to freeze while the program itself continues to operate. *.dld files can specify download paths via a field called filepath. If a file is specified for download, and the file already exists on the users system, the frozen UI will fail to notify the user, and the file will be overwritten without user prompting or confirmation. If this field contains values including /../ sequences, the filepath specified can extend beyond the normal directory structure used by My Getright, to the entire filesystem. As a result, arbitrary files on the target may be overwritten.
|
2001-02-26
|
Headlight Software MyGetright Malformed .dld File Arbitrary File Manipulation
|
|
13910
Description:
(Description Provided by CVE) : Memory leak in Netscape Collabra Server 3.5.4 and earlier allows a remote attacker to cause a denial of service (memory exhaustion) by repeatedly sending approximately 5K of data to TCP port 5238.
|
2001-02-26
|
Netscape Collabra Server Port 5238 Malformed Data Saturation DoS
|
|
13911
Description:
Netscape Collabra Server contains a flaw that may allow a remote denial of service. The issue is triggered when a null character is sent to port 5239 followed by at least seven characters, and will result in loss of availability for the platform due to 100% CPU consumption.
|
2001-02-26
|
Netscape Collabra Server Port 5239 Malformed Data DoS
|
|
18175
Description:
(Description Provided by CVE) : inetd in Compaq Tru64 UNIX 5.1 allows attackers to cause a denial of service (network connection loss) by causing one of the services handled by inetd to core dump during startup, which causes inetd to stop accepting connections to all of its services.
|
2001-02-23
|
Compaq Tru64 UNIX inetd Service Termination Network Connection DoS
|
|
6027
Description:
A remote overflow exists in MERCUR SMTP Server. By sending a EXPN command containing a overly long string of random characters, an attacker can cause arbitrary code execution with LocalSystem privileges resulting in a loss of integrity.
|
2001-02-23
|
MERCUR SMTP Server EXPN Command Remote Overflow
|
|
524
Description:
PHP-Nuke contains a flaw that allows a remote attacker to read arbitrary files or execute arbitrary commands. The issue is due to the bb_smilies.php not sanitizing input passed to the $user variable. By altering values for this variable, an attacker could execute SQL queries to change user settings and gain administrative privileges.
|
2001-02-23
|
PHP-Nuke bb_smilies.php Execute Arbitrary Command
|
|
3412
Description:
PHP-Nuke contains a flaw that allows a remote attacker to read arbitrary files or execute arbitrary commands. The issue is due to the bbcode_ref.php not sanitizing input passed to the $user variable. By altering values for this variable, an attacker could execute SQL queries to change user settings and gain administrative privileges.
|
2001-02-23
|
PHP-Nuke bbcode_ref.php Execute Arbitrary Command
|
|
5582
Description:
AIX contains a flaw that may allow a malicious user to gain access to unauthorized privileges. The issue is triggered when the command lsfs is installed with the SUID bit and calls commands modified by an attacker. This flaw may lead to a loss of confidentiality and/or integrity.
|
2001-02-23
|
IBM AIX lsfs Environment Path Local Privilege Escalation
|
|
6286
Description:
Digital Creations Zope contains a flaw that may allow a malicious user to alter the method return values for affected classes. The issue is triggered because of a vulnerability in the handling of the method return values for the ObjectManager, PropertyManager, and PropertySheet classes. It is possible that the flaw may allow data manipulation in the classes resulting in a loss of integrity.
|
2001-02-23
|
Zope Class Return Value Modification
|
|
7700
Description:
(Description Provided by CVE) : Directory traversal vulnerability in Simple Server HTTPd 1.0 (originally Free Java Server) allows remote attackers to read arbitrary files via a .. (dot dot) in the URL.
|
2001-02-23
|
Simple Server HTTPd Double Dot Traversal Arbitrary File Access
|
|
11637
Description:
(Description Provided by CVE) : SEDUM 2.1 HTTP server allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long HTTP request.
|
2001-02-23
|
SEDUM HTTP Server Long HTTP Request Overflow DoS
|
|
5688
Description:
A local overflow exists in sudo utility. The sudo version prior to 1.63p6 fails to split a log entry into smaller pieces resulting in a buffer overflow. By sending a specially crafted long command to sudo, an attacker can overflow a buffer and execute arbitrary commands with root privileges resulting in a loss of confidentiality, integrity, and confidentiality.
|
2001-02-22
|
sudo Long Argument Local Overflow
|
|
5601
Description:
A remote overflow exists in licq. The logging function fails to validate input resulting in a buffer overflow. With a specially crafted request, an attacker can cause arbitrary code execution resulting in a loss of confidentiality, integrity, and/or availability.
|
2001-02-21
|
licq Logging Functions Remote Overflow
|
|
1767
Description:
(Description Provided by CVE) : Centrinity First Class Internet Services 5.50 allows for the circumventing of the default 'spam' filters via the presence of '<@>' in the 'From:' field, which allows remote attackers to send spoofed email with the identity of local users.
|
2001-02-21
|
Centrinity FirstClass Local User Mail Spoofing
|
|
6203
Description:
Ultimate Bulletin Board contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the [IMG] tags upon submission to any cgi script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server, allowing an attacker to craft a URL that uses image tags to access cookies.
|
2001-02-21
|
Ultimate Bulletin Board IMG Tag XSS
|
|
13857
Description:
(Description Provided by CVE) : Format string vulnerability in DbgPrint function, used in debug messages for some Windows NT drivers (possibly when called through DebugMessage), may allow local users to gain privileges.
|
2001-02-21
|
Windows NT Drivers DbgPrint Function Debug Message Format String
|
|
1764
Description:
(Description Provided by CVE) : Windows 2000 domain controller in Windows 2000 Server, Advanced Server, or Datacenter Server allows remote attackers to cause a denial of service via a flood of malformed service requests.
|
2001-02-20
|
Microsoft Windows 2000 Domain Controller DoS
|
|
6028
Description:
(Description Provided by CVE) : Vulnerability in linkeditor in HP MPE/iX 6.5 and earlier allows local users to gain privileges.
|
2001-02-20
|
HP MPE/iX linkeditor Local Privilege Escalation
|
|
6032
Description:
The NM debug program contains a flaw that may allow a malicious user to gain access to unauthorized privileges. This flaw may lead to a loss of confidentiality and integrity. No further details have been provided.
|
2001-02-20
|
HP MPE/iX NM Debug Breakpoint Local Privilege Escalation
|
|
7747
Description:
(Description Provided by CVE) : Directory traversal vulnerability in Sun Chili!Soft ASP on multiple Unixes allows a remote attacker to read arbitrary files above the web root via a '..' (dot dot) attack in the sample script 'codebrws.asp'.
|
2001-02-20
|
Sun Chili!Soft ASP codebrws.asp Arbitrary File Access
|
|
8009
Description:
(Description Provided by CVE) : Sun Chili!Soft 3.5.2 on Linux and 3.6 on AIX creates a default admin username and password in the default installation, which can allow a remote attacker to gain additional privileges.
|
2001-02-20
|
Sun Chili!Soft Default Admin Account
|