2001 CVE Vulnerabilities

1,556 CVEs published in 2001.

CVE IDSeverityCVSSDescription
CVE-2001-0965glFTPD 1.23 allows remote attackers to cause a denial of service (CPU consumption) via a LIST command with an argument t...
CVE-2001-0967CRITICAL9.8Knox Arkeia server 4.2, and possibly other versions, uses a constant salt when encrypting passwords using the crypt() fu...
CVE-2001-1066ns6install installation script for Netscape 6.01 on Solaris, and other versions including 6.2.1 beta, allows local users...
CVE-2001-1041oracle program in Oracle 8.0.x, 8.1.x and 9.0.1 allows local users to overwrite arbitrary files via a symlink attack on ...
CVE-2001-1036GNU locate in findutils 4.1 on Slackware 7.1 and 8.0 allows local users to gain privileges via an old formatted filename...
CVE-2001-1039The JetAdmin web interface for HP JetDirect does not set a password for the telnet interface when the admin password is ...
CVE-2001-0995PHProjekt before 2.4a allows remote attackers to perform actions as other PHProjekt users by modifying the ID number in ...
CVE-2001-1008Java Plugin 1.4 for JRE 1.3 executes signed applets even if the certificate is expired, which could allow remote attacke...
CVE-2001-1040HP LaserJet, and possibly other JetDirect devices, resets the admin password when the device is turned off, which could ...
CVE-2001-0943dbsnmp in Oracle 8.0.5 and 8.1.5, under certain conditions, trusts the PATH environment variable to find and execute the...
CVE-2001-1025PHP-Nuke 5.x allows remote attackers to perform arbitrary SQL operations by modifying the "prefix" variable when calling...
CVE-2001-1027Buffer overflow in WindowMaker (aka wmaker) 0.64 and earlier allows remote attackers to execute arbitrary code via a lon...
CVE-2001-1070Sage Software MAS 200 allows remote attackers to cause a denial of service by connecting to port 10000 and entering a se...
CVE-2001-1069libCoolType library as used in Adobe Acrobat (acroread) on Linux creates the AdobeFnt.lst file with world-writable permi...
CVE-2001-1072Apache with mod_rewrite enabled on most UNIX systems allows remote attackers to bypass RewriteRules by inserting extra /...
CVE-2001-1067Buffer overflow in AOLserver 3.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary co...
CVE-2001-1068qpopper 4.01 with PAM based authentication on Red Hat systems generates different error messages when an invalid usernam...
CVE-2001-1073Webridge PX Application Suite allows remote attackers to obtain sensitive information via a malformed request that gener...
CVE-2001-0966Directory traversal vulnerability in Nudester 1.10 and earlier allows remote attackers to read or write arbitrary files ...
CVE-2001-0983UltraEdit uses weak encryption to record FTP passwords in the uedit32.ini file, which allows local users who can read th...
CVE-2001-0981HP CIFS/9000 Server (SAMBA) A.01.07 and earlier with the "unix password sync" option enabled calls the passwd program wi...
CVE-2001-1452HIGH7.5By default, DNS servers on Windows NT 4.0 and Windows 2000 Server cache glue records received from non-delegated name se...
CVE-2001-0973BSCW groupware system 3.3 through 4.0.2 beta allows remote attackers to read or modify arbitrary files by uploading and ...
CVE-2001-0971Directory traversal vulnerability in ACI 4d webserver allows remote attackers to read arbitrary files via a .. (dot dot)...
CVE-2001-0972Surf-Net ASP Forum before 2.30 uses easily guessable cookies based on the UserID, which allows remote attackers to gain ...

Check if your code is affected by 2001 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now