Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 5.0
CVE-2000-1215
The default configuration of Lotus Domino server 5.0.8 includes system information (version, operating system, and build date) in the HTTP headers of…
Lotus Domino
Mitigation only
HIGH 10.0
CVE-2001-1061
Vulnerability in lsmcode in unknown versions of AIX, possibly related to a usage error.
Aix
No fix yet
HIGH 7.2
CVE-2000-1202
ikeyman in IBM IBMHSSSB 1.0 sets the CLASSPATH environmental variable to include the user's own CLASSPATH directories before the system's directories…
Http Server Ssl Module Common
Patch available
HIGH 7.2
CVE-2001-0533
Buffer overflow in libi18n library in IBM AIX 5.1 and 4.3.x allows local users to gain root privileges via a long LANG environmental variable.
Aix
Mitigation only
MEDIUM 5.0
CVE-2001-0982
Directory traversal vulnerability in IBM Tivoli WebSEAL Policy Director 3.01 through 3.7.1 allows remote attackers to read arbitrary files or directo…
Tivoli Secureway Policy Director
Patch available
HIGH 7.5
CVE-2000-0891
A default ECL in Lotus Notes before 5.02 allows remote attackers to execute arbitrary commands by attaching a malicious program in an email message t…
Lotus Notes
after 5.02
HIGH 7.5
CVE-2001-1265
Directory traversal vulnerability in IBM alphaWorks Java TFTP server 1.21 allows remote attackers to conduct unauthorized operations on arbitrary fil…
Alphaworks Tftp Server
No fix yet
HIGH 7.5
CVE-2001-1309EPSS 5%
Buffer overflows in IBM SecureWay 3.2.1 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, as demonstra…
Secureway Directory
Mitigation only
HIGH 7.5
CVE-2001-1310
IBM SecureWay 3.2.1 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, via invalid encodings for the L …
Secureway Directory
Patch available
HIGH 7.5
CVE-2001-1311EPSS 7%
Buffer overflows in Lotus Domino R5 before R5.0.7a allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, a…
Lotus Domino R5
after 5.0.7a
HIGH 7.5
CVE-2001-1312
Format string vulnerabilities in Lotus Domino R5 before R5.0.7a allow remote attackers to cause a denial of service (crash) and possibly execute arbi…
Lotus Domino R5
after 5.0.7a
HIGH 7.5
CVE-2001-1313
Lotus Domino R5 before R5.0.7a allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via miscellaneous pac…
Lotus Domino R5
after 5.0.7a
MEDIUM 5.0
CVE-2001-1143
IBM DB2 7.0 allows a remote attacker to cause a denial of service (crash) via a single byte to (1) db2ccs.exe on port 6790, or (2) db2jds.exe on port…
Db2 Universal Database
Mitigation only
MEDIUM 6.8
CVE-2001-1441
Cross-site scripting (XSS) vulnerability in VisualAge for Java 3.5 Professional allows remote attackers to execute JavaScript on other clients via th…
Visualage For Java
No fix yet
MEDIUM 5.0
CVE-2001-0389
IBM Websphere/NetCommerce3 3.1.2 allows remote attackers to determine the real path of the server by directly calling the macro.d2w macro with a NOEX…
Net.commerce
No fix yet
MEDIUM 5.0
CVE-2001-0390EPSS 5%
IBM Websphere/NetCommerce3 3.1.2 allows remote attackers to cause a denial of service by directly calling the macro.d2w macro with a long string of %…
Net.commerce
No fix yet
MEDIUM 5.0
CVE-2001-0472
Hursley Software Laboratories Consumer Transaction Framework (HSLCTF) HTTP object allows remote attackers to cause a denial of service (crash) via an…
High Availability Cluster Multiprocessing
Patch available
MEDIUM 5.0
CVE-2001-0487
AIX SNMP server snmpd allows remote attackers to cause a denial of service via a RST during the TCP connection.
Aix Snmp
Mitigation only
HIGH 10.0
CVE-2001-1080EPSS 6%
diagrpt in AIX 4.3.x and 5.1 uses the DIAGDATADIR environment variable to find and execute certain programs, which allows local users to gain privile…
Aix
Mitigation only
MEDIUM 5.0
CVE-2001-0446
IBM WCS (WebSphere Commerce Suite) 4.0.1 with Application Server 3.0.2 allows remote attackers to read source code for .jsp files by appending a / to…
Websphere Commerce Suite
Mitigation only
HIGH 7.2
CVE-2001-1329
Buffer overflow in rsh on AIX 4.2.0.0 may allow local users to gain root privileges via a long command line argument.
Aix
No fix yet
HIGH 7.2
CVE-2001-1330
Buffer overflow in rsh on AIX 4.2.0.0 may allow local users to gain root privileges via a long command line argument.
Aix
No fix yet
MEDIUM 5.0
CVE-2001-0312
IBM WebSphere plugin for Netscape Enterprise server allows remote attackers to read source code for JSP files via an HTTP request that contains a hos…
Websphere Plugin
Patch available
HIGH 7.5
CVE-2001-0319EPSS 7%
orderdspc.d2w macro in IBM Net.Commerce 3.x allows remote attackers to execute arbitrary SQL queries by inserting them into the order_rn option of th…
Net.commerce
No fix yet
MEDIUM 5.0
CVE-2001-0122
Kernel leak in AfpaCache module of the Fast Response Cache Accelerator (FRCA) component of IBM HTTP Server 1.3.x and Websphere 3.52 allows remote att…
HTTP Server
Patch available
MEDIUM 6.2
CVE-1999-0718
IBM GINA, when used for OS/2 domain authentication of Windows NT users, allows local users to gain administrator privileges by changing the GroupMapp…
Gina
Patch available
MEDIUM 5.0
CVE-1999-0729
Buffer overflow in Lotus Notes LDAP (NLDAP) allows an attacker to conduct a denial of service through the ldap_search request.
Lotus Domino Server
No fix yet
HIGH 7.5
CVE-2001-0051
IBM DB2 Universal Database version 6.1 creates an account with a default user name and password, which allows remote attackers to gain access to the …
Db2 Universal Database
No fix yet
HIGH 7.5
CVE-2000-1138
Lotus Notes R5 client R5.0.5 and earlier does not properly warn users when an S/MIME email message has been modified, which could allow an attacker t…
Lotus Notes
after 5.0.5
HIGH 7.5
CVE-2000-1168
IBM HTTP Server 1.3.6 (based on Apache) allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long GET r…
HTTP Server
Mitigation only