2001 CVE Vulnerabilities

1,556 CVEs published in 2001.

CVE IDSeverityCVSSDescription
CVE-2001-1513Macromedia JRun 3.0 and 3.1 allows remote attackers to obtain duplicate active user session IDs and perform actions as o...
CVE-2001-1482SQL injection vulnerability in bb_memberlist.php for phpBB 1.4.2 allows remote attackers to execute arbitrary SQL querie...
CVE-2001-1505tinc 1.0pre3 and 1.0pre4 allows remote attackers to inject data into user sessions by sniffing and replaying packets.
CVE-2001-1507OpenSSH before 3.0.1 with Kerberos V enabled does not properly authenticate users, which could allow remote attackers to...
CVE-2001-1498Buffer overflow in mod_bf 0.2 allows local users to execute arbitrary commands via a long script.
CVE-2001-1506Unknown vulnerability in the file system protection subsystem in HP Secure OS Software for Linux 1.0 allows additional u...
CVE-2001-1497Microsoft Internet Explorer 4.0 through 6.0 could allow local users to differentiate between alphanumeric and non-alphan...
CVE-2001-1508Buffer overflow in lpstat in SCO OpenServer 5.0 through 5.0.6a allows local users to execute arbitrary code as group bin...
CVE-2001-1209Directory traversal vulnerability in zml.cgi allows remote attackers to read arbitrary files via a .. (dot dot) in the f...
CVE-2001-1211Ipswitch IMail 7.0.4 and earlier allows attackers with administrator privileges to read and modify user alias and mailin...
CVE-2001-1514ColdFusion 4.5 and 5, when running on Windows with the advanced security sandbox type set to "operating system," does no...
CVE-2001-1495network_query.php in Network Query Tool 1.0 allows remote attackers to execute arbitrary commands via shell metacharacte...
CVE-2001-1502webcart.cgi in Mountain Network Systems WebCart 8.4 allows remote attackers to execute arbitrary commands via shell meta...
CVE-2001-1480Java Runtime Environment (JRE) and SDK 1.2 through 1.3.0_04 allows untrusted applets to access the system clipboard.
CVE-2001-1494MEDIUM5.5script command in the util-linux package before 2.11n allows local users to overwrite arbitrary files by setting a hardl...
CVE-2001-1500ProFTPD 1.2.2rc2, and possibly other versions, does not properly verify reverse-resolved hostnames by performing forward...
CVE-2001-1503The finger daemon (in.fingerd) in Sun Solaris 2.5 through 8 and SunOS 5.5 through 5.8 allows remote attackers to list al...
CVE-2001-1477The Domain gateway in BEA Tuxedo 7.1 does not perform authorization checks for imported services and qspaces on remote d...
CVE-2001-1478Buffer overflow in xlock in UnixWare 7.1.0 and 7.1.1 and Open Unix 8.0.0 allows local users to execute arbitrary code.
CVE-2001-1492Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2001-1460. Reason: This candidate is a refinement d...
CVE-2001-1488Open Projects Network Internet Relay Chat (IRC) daemon u2.10.05.18 does not perform a double-reverse DNS lookup, which a...
CVE-2001-1489Microsoft Internet Explorer 6 allows remote attackers to cause a denial of service (CPU consumption and memory leak) via...
CVE-2001-1490Mozilla 0.9.6 allows remote attackers to cause a denial of service (CPU consumption and memory leak) via a web page with...
CVE-2001-1491Opera 5.11 allows remote attackers to cause a denial of service (CPU consumption and memory leak) via a web page with a ...
CVE-2001-1483One-Time Passwords In Everything (a.k.a OPIE) 2.32 and 2.4 allows remote attackers to determine the existence of user ac...

Check if your code is affected by 2001 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now