2001 CVE Vulnerabilities

1,556 CVEs published in 2001.

CVE IDSeverityCVSSDescription
CVE-2001-1561Buffer overflow in Xvt 2.1 in Debian Linux 2.2 allows local users to execute arbitrary code via long (1) -name and (2) -...
CVE-2001-1580Directory traversal vulnerability in ScriptEase viewcode.jse for Netware 5.1 before 5.1 SP3 allows remote attackers to r...
CVE-2001-1585SSH protocol 2 (aka SSH-2) public key authentication in the development snapshot of OpenSSH 2.3.1, available from 2001-0...
CVE-2001-1562Format string vulnerability in nvi before 1.79 allows local users to gain privileges via format string specifiers in a f...
CVE-2001-1520Xircom REX 6000 allows local users to obtain the 10 digit PIN by starting a serial monitor, connecting to the personal d...
CVE-2001-1211Ipswitch IMail 7.0.4 and earlier allows attackers with administrator privileges to read and modify user alias and mailin...
CVE-2001-1522Cross-site scripting (XSS) vulnerability in im.php in IMessenger for PHP-Nuke allows remote attackers to inject arbitrar...
CVE-2001-1563Unknown vulnerability in Tomcat 3.2.1 running on HP Secure OS for Linux 1.0 allows attackers to access servlet resources...
CVE-2001-1537HIGH7.5The default "basic" security setting' in config.php for TWIG webmail 2.7.4 and earlier stores cleartext usernames and pa...
CVE-2001-1523Cross-site scripting (XSS) vulnerability in the DMOZGateway module for PHP-Nuke allows remote attackers to inject arbitr...
CVE-2001-1564setrlimit in HP-UX 10.01, 10.10, 10.24, 10.20, 11.00, 11.04 and 11.11 does not properly enforce core file size on proces...
CVE-2001-1524Cross-site scripting (XSS) vulnerability in PHP-Nuke 5.3.1 and earlier allows remote attackers to inject arbitrary web s...
CVE-2001-1546HIGH7.8Pathways Homecare 6.5 uses weak encryption for user names and passwords, which allows local users to gain privileges by ...
CVE-2001-1525Directory traversal vulnerability in the comments action in easyNews 1.5 and earlier allows remote attackers to modify n...
CVE-2001-1526Cross-site scripting (XSS) vulnerability in the comments action in index.php in easyNews 1.5 and earlier allows remote a...
CVE-2001-1565Point to Point Protocol daemon (pppd) in MacOS x 10.0 and 10.1 through 10.1.5 provides the username and password on the ...
CVE-2001-1559MEDIUM5.5The uipc system calls (uipc_syscalls.c) in OpenBSD 2.9 and 3.0 provide user mode return instead of versus rval kernel mo...
CVE-2001-1527easyNews 1.5 and earlier stores administration passwords in cleartext in settings.php, which allows local users to obtai...
CVE-2001-1528AmTote International homebet program returns different error messages when invalid account numbers and PIN codes are pro...
CVE-2001-1521Cross-site scripting (XSS) vulnerability in user.php in PostNuke 0.64 allows remote attackers to inject arbitrary web sc...
CVE-2001-1581The File Blocker feature in Clearswift MAILsweeper for SMTP 4.2 allows remote attackers to bypass e-mail attachment filt...
CVE-2001-1583lpd daemon (in.lpd) in Solaris 8 and earlier allows remote attackers to execute arbitrary commands via a job request wit...
CVE-2001-1566Format string vulnerability in libvanessa_logger 0.0.1 in Perdition 0.1.8 allows remote attackers to execute arbitrary c...
CVE-2001-1519RunAs (runas.exe) in Windows 2000 allows local users to create a spoofed named pipe when the service is stopped, then ca...
CVE-2001-1529Buffer overflow in rpc.yppasswdd (yppasswd server) in AIX allows attackers to gain unauthorized access via a long string...

Check if your code is affected by 2001 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now