2001 CVE Vulnerabilities

1,556 CVEs published in 2001.

CVE IDSeverityCVSSDescription
CVE-2001-1514ColdFusion 4.5 and 5, when running on Windows with the advanced security sandbox type set to "operating system," does no...
CVE-2001-1479smcboot in Sun SMC (Sun Management Center) 2.0 in Solaris 8 allows local users to delete arbitrary files via a symlink a...
CVE-2001-1487popauth utility in Qualcomm Qpopper 4.0 and earlier allows local users to overwrite arbitrary files and execute commands...
CVE-2001-1483One-Time Passwords In Everything (a.k.a OPIE) 2.32 and 2.4 allows remote attackers to determine the existence of user ac...
CVE-2001-1498Buffer overflow in mod_bf 0.2 allows local users to execute arbitrary commands via a long script.
CVE-2001-1501The glob functionality in ProFTPD 1.2.1, and possibly other versions allows remote attackers to cause a denial of servic...
CVE-2001-1515HIGH7.5Macintosh clients, when using NT file system volumes on Windows 2000 SP1, create subdirectories and automatically modify...
CVE-2001-1484Alcatel ADSL modems allow remote attackers to access the Trivial File Transfer Protocol (TFTP) to modify firmware and co...
CVE-2001-1489Microsoft Internet Explorer 6 allows remote attackers to cause a denial of service (CPU consumption and memory leak) via...
CVE-2001-1490Mozilla 0.9.6 allows remote attackers to cause a denial of service (CPU consumption and memory leak) via a web page with...
CVE-2001-1494MEDIUM5.5script command in the util-linux package before 2.11n allows local users to overwrite arbitrary files by setting a hardl...
CVE-2001-1513Macromedia JRun 3.0 and 3.1 allows remote attackers to obtain duplicate active user session IDs and perform actions as o...
CVE-2001-1529Buffer overflow in rpc.yppasswdd (yppasswd server) in AIX allows attackers to gain unauthorized access via a long string...
CVE-2001-1209Directory traversal vulnerability in zml.cgi allows remote attackers to read arbitrary files via a .. (dot dot) in the f...
CVE-2001-1208Format string vulnerability in DayDream BBS allows remote attackers to execute arbitrary code via format string specifie...
CVE-2001-1211Ipswitch IMail 7.0.4 and earlier allows attackers with administrator privileges to read and modify user alias and mailin...
CVE-2001-1492Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2001-1460. Reason: This candidate is a refinement d...
CVE-2001-1500ProFTPD 1.2.2rc2, and possibly other versions, does not properly verify reverse-resolved hostnames by performing forward...
CVE-2001-1503The finger daemon (in.fingerd) in Sun Solaris 2.5 through 8 and SunOS 5.5 through 5.8 allows remote attackers to list al...
CVE-2001-1538SpeedXess HA-120 DSL router has a default administrative password of "speedxess", which allows remote attackers to gain ...
CVE-2001-1481CRITICAL9.8Xitami 2.4 through 2.5 b4 stores the Administrator password in plaintext in the default.aut file, whose default permissi...
CVE-2001-1477The Domain gateway in BEA Tuxedo 7.1 does not perform authorization checks for imported services and qspaces on remote d...
CVE-2001-1482SQL injection vulnerability in bb_memberlist.php for phpBB 1.4.2 allows remote attackers to execute arbitrary SQL querie...
CVE-2001-1532WebX stores authentication information in the HTTP_REFERER variable, which is included in URL links within bulletin boar...
CVE-2001-1478Buffer overflow in xlock in UnixWare 7.1.0 and 7.1.1 and Open Unix 8.0.0 allows local users to execute arbitrary code.

Check if your code is affected by 2001 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now