Vulnerability index

Browse CVEs

43 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Linux MEDIUM 6.4
CVE-2001-0834

htsearch CGI program in htdig (ht://Dig) 3.1.5 and earlier allows remote attackers to use the -c option to specify an alternate configuration file, w…

Fix: after 3.1.5
Fix from $1,600 2001-12-06
Linux HIGH 7.5
CVE-2001-0690EPSS 12%

Format string vulnerability in exim (3.22-10 in Red Hat, 3.12 in Debian and 3.16 in Conectiva) in batched SMTP mode allows a remote attacker to execu…

Fix: after 3.22
Fix from $1,950 2001-09-20
Linux HIGH 7.2
CVE-2001-1374

expect before 5.32 searches for its libraries in /var/tmp before other directories, which could allow local users to gain root privileges via a Troja…

Patch available
Fix from $1,950 2001-07-19
Linux HIGH 7.5
CVE-2001-0439

licq before 1.0.3 allows remote attackers to execute arbitrary commands via shell metacharacters in a URL.

Fix: after 1.0.2
Fix from $1,950 2001-07-02
Linux HIGH 7.5
CVE-2001-0440

Buffer overflow in logging functions of licq before 1.0.3 allows remote attackers to cause a denial of service, and possibly execute arbitrary comman…

Fix: after 1.0.2
Fix from $1,950 2001-07-02
Linux HIGH 7.5
CVE-2001-0473

Format string vulnerability in Mutt before 1.2.5 allows a remote malicious IMAP server to execute arbitrary commands.

Fix: after 1.2.5
Fix from $1,950 2001-06-27
Linux MEDIUM 5.0
CVE-2001-0136EPSS 45%

Memory leak in ProFTPd 1.2.0rc2 allows remote attackers to cause a denial of service via a series of USER commands, and possibly SIZE commands if the…

No fix yet
Fix from $1,600 2001-03-12
Linux HIGH 7.2
CVE-2000-1095

modprobe in the modutils 2.3.x package on Linux systems allows a local user to execute arbitrary commands via shell metacharacters.

Patch available
Fix from $1,950 2001-01-09
Linux HIGH 7.2
CVE-2000-1134

Multiple shell programs on various Unix systems, including (1) tcsh, (2) csh, (3) sh, and (4) bash, follow symlinks when processing << redirects (aka…

Patch available
Fix from $1,950 2001-01-09
Linux HIGH 10.0
CVE-2000-0844EPSS 15%

Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to exe…

Patch available
Fix from $1,950 2000-11-14
Linux HIGH 10.0
CVE-2000-0747

The logrotate script for OpenLDAP before 1.2.11 in Conectiva Linux sends an improper signal to the kernel log daemon (klogd) and kills it.

Patch available
Fix from $1,950 2000-10-20
Linux MEDIUM 5.0
CVE-2000-0668EPSS 7%

pam_console PAM module in Linux systems allows a user to access the system console and reboot the system when a display manager such as gdm or kdm ha…

Patch available
Fix from $1,600 2000-07-27
Linux HIGH 10.0
CVE-2000-0666EPSS 26%

rpc.statd in the nfs-utils package in various Linux distributions does not properly cleanse untrusted format strings, which allows remote attackers t…

Patch available
Fix from $1,950 2000-07-16