2001 CVE Vulnerabilities

1,556 CVEs published in 2001.

CVE IDSeverityCVSSDescription
CVE-2001-1020edit_image.php in Vibechild Directory Manager before 0.91 allows remote attackers to execute arbitrary commands via shel...
CVE-2001-1152Baltimore Technologies WEBsweeper 4.02, when used to manage URL blacklists, allows remote attackers to bypass blacklist ...
CVE-2001-1012Vulnerability in screen before 3.9.10, related to a multi-attach error, allows local users to gain root privileges when ...
CVE-2001-0992shopplus.cgi in ShopPlus shopping cart allows remote attackers to execute arbitrary commands via shell metacharacters in...
CVE-2001-0990Inter7 vpopmail 4.10.35 and earlier, when using the MySQL module, compiles authentication information in cleartext into ...
CVE-2001-1016PGP Corporate Desktop before 7.1, Personal Security before 7.0.3, Freeware before 7.0.3, and E-Business Server before 7....
CVE-2001-1017rmuser utility in FreeBSD 4.2 and 4.3 creates a copy of the master.passwd file with world-readable permissions while upd...
CVE-2001-0994Marconi ForeThought 7.1 allows remote attackers to cause a denial of service by causing both telnet sessions to be locke...
CVE-2001-1456Buffer overflow in the (1) smap/smapd and (2) CSMAP daemons for Gauntlet Firewall 5.0 through 6.0 allows remote attacker...
CVE-2001-0978login in HP-UX 10.26 does not record failed login attempts in /var/adm/btmp, which could allow attackers to conduct brut...
CVE-2001-0979Buffer overflow in swverify in HP-UX 11.0, and possibly other programs, allows local users to gain privileges via a long...
CVE-2001-1169keyinit in S/Key does not require authentication to initialize a one-time password sequence, which allows an attacker wh...
CVE-2001-0996POP3Lite before 0.2.4 does not properly quote a . (dot) in an email message, which could allow a remote attacker to appe...
CVE-2001-0983UltraEdit uses weak encryption to record FTP passwords in the uedit32.ini file, which allows local users who can read th...
CVE-2001-1036GNU locate in findutils 4.1 on Slackware 7.1 and 8.0 allows local users to gain privileges via an old formatted filename...
CVE-2001-1025PHP-Nuke 5.x allows remote attackers to perform arbitrary SQL operations by modifying the "prefix" variable when calling...
CVE-2001-1073Webridge PX Application Suite allows remote attackers to obtain sensitive information via a malformed request that gener...
CVE-2001-1072Apache with mod_rewrite enabled on most UNIX systems allows remote attackers to bypass RewriteRules by inserting extra /...
CVE-2001-0973BSCW groupware system 3.3 through 4.0.2 beta allows remote attackers to read or modify arbitrary files by uploading and ...
CVE-2001-0972Surf-Net ASP Forum before 2.30 uses easily guessable cookies based on the UserID, which allows remote attackers to gain ...
CVE-2001-0981HP CIFS/9000 Server (SAMBA) A.01.07 and earlier with the "unix password sync" option enabled calls the passwd program wi...
CVE-2001-0971Directory traversal vulnerability in ACI 4d webserver allows remote attackers to read arbitrary files via a .. (dot dot)...
CVE-2001-1027Buffer overflow in WindowMaker (aka wmaker) 0.64 and earlier allows remote attackers to execute arbitrary code via a lon...
CVE-2001-0976Vulnerability in HP Process Resource Manager (PRM) C.01.08.2 and earlier, as used by HP-UX Workload Manager (WLM), allow...
CVE-2001-1070Sage Software MAS 200 allows remote attackers to cause a denial of service by connecting to port 10000 and entering a se...

Check if your code is affected by 2001 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now