272331
|
- |
|
bell_communications_research
|
s_key
|
keyinit in S/Key does not require authentication to initialize a one-time password sequence, which allows an attacker who has gained privileges to a user account to create new one-time passwords for …
|
NVD-CWE-Other
|
CVE-2001-1169
|
2008-09-6 05:25 |
2001-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
272332
|
- |
|
checkpoint
|
firewall-1
|
Check Point Firewall-1 3.0b through 4.0 SP1 follows symlinks and creates a world-writable temporary .cpp file when compiling Policy rules, which could allow local users to gain privileges or modify t…
|
NVD-CWE-Other
|
CVE-2001-1171
|
2008-09-6 05:25 |
2002-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
272333
|
- |
|
xfree86_project
|
x11r6
|
xman allows local users to gain privileges by modifying the MANPATH to point to a man page whose filename contains shell metacharacters.
|
NVD-CWE-Other
|
CVE-2001-1179
|
2008-09-6 05:25 |
2001-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
272334
|
- |
|
denicomp
|
winsock_rshd_nt
|
wrshdsp.exe in Denicomp Winsock RSHD/NT 2.21.00 and earlier allows remote attackers to cause a denial of service (CPU consumption) via (1) in 2.20.00 and earlier, an invalid port number such as a neg…
|
NVD-CWE-Other
|
CVE-2001-1184
|
2008-09-6 05:25 |
2001-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
272335
|
- |
|
freebsd
|
freebsd
|
Some AIO operations in FreeBSD 4.4 may be delayed until after a call to execve, which could allow a local user to overwrite memory of the new process and gain privileges.
|
NVD-CWE-Other
|
CVE-2001-1185
|
2008-09-6 05:25 |
2001-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
272336
|
- |
|
brian_dorricott
|
mailto
|
mailto.exe in Brian Dorricott MAILTO 1.0.9 and earlier allows remote attackers to send SPAM e-mail through remote servers by modifying the sendto, email, server, subject, and resulturl hidden form fi…
|
NVD-CWE-Other
|
CVE-2001-1188
|
2008-09-6 05:25 |
2001-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
272337
|
- |
|
ibm
|
websphere_application_server
|
IBM Websphere Application Server 3.5.3 and earlier stores a password in cleartext in the sas.server.props file, which allows local users to obtain the passwords via a JSP script.
|
NVD-CWE-Other
|
CVE-2001-1189
|
2008-09-6 05:25 |
2001-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
272338
|
- |
|
mandrakesoft
|
mandrake_linux
|
The default PAM files included with passwd in Mandrake Linux 8.1 do not support MD5 passwords, which could result in a lower level of password security than intended.
|
NVD-CWE-Other
|
CVE-2001-1190
|
2008-09-6 05:25 |
2001-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
272339
|
- |
|
ibm
|
tivoli_secureway_policy_director
|
WebSeal in IBM Tivoli SecureWay Policy Director 3.8 allows remote attackers to cause a denial of service (crash) via a URL that ends in %2e.
|
NVD-CWE-Other
|
CVE-2001-1191
|
2008-09-6 05:25 |
2001-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
272340
|
- |
|
microsoft
|
windows_xp
|
Microsoft Windows XP allows local users to bypass a locked screen and run certain programs that are associated with Hot Keys.
|
NVD-CWE-Other
|
CVE-2001-1200
|
2008-09-6 05:25 |
2001-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|