2001 CVE Vulnerabilities
1,556 CVEs published in 2001.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2001-1582 | — | — | 1.3% | Dec 31, 2001 | Buffer overflow in the LDAP naming services library (libsldap) in Sun Solaris 8 allows local users to execute arbitrary ... |
| CVE-2001-1559 | MEDIUM | 5.5 | 1.5% | Dec 31, 2001 | The uipc system calls (uipc_syscalls.c) in OpenBSD 2.9 and 3.0 provide user mode return instead of versus rval kernel mo... |
| CVE-2001-1512 | — | — | 2.1% | Dec 31, 2001 | Unknown vulnerability in Allaire JRun 3.1 allows remote attackers to directly access the WEB-INF and META-INF directorie... |
| CVE-2001-1585 | — | — | 1.9% | Dec 31, 2001 | SSH protocol 2 (aka SSH-2) public key authentication in the development snapshot of OpenSSH 2.3.1, available from 2001-0... |
| CVE-2001-1207 | — | — | 3.9% | Dec 30, 2001 | Buffer overflows in DayDream BBS 2.9 through 2.13 allow remote attackers to possibly execute arbitrary code via the cont... |
| CVE-2001-1466 | — | — | 4.0% | Dec 30, 2001 | Buffer overflow in VanDyke SecureCRT before 3.4.2, when using the SSH-1 protocol, allows remote attackers to execute arb... |
| CVE-2001-1205 | — | — | 2.6% | Dec 30, 2001 | Directory traversal vulnerability in lastlines.cgi for Last Lines 2.0 allows remote attackers to read arbitrary files vi... |
| CVE-2001-1206 | — | — | 1.9% | Dec 30, 2001 | Matrix CGI vault Last Lines 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the $e... |
| CVE-2001-1210 | — | — | 2.3% | Dec 30, 2001 | Cisco ubr900 series routers that conform to the Data-over-Cable Service Interface Specifications (DOCSIS) standard must ... |
| CVE-2001-1432 | — | — | 4.1% | Dec 29, 2001 | Directory traversal vulnerability in Cherokee Web Server allows remote attackers to read arbitrary files via a .. (dot d... |
| CVE-2001-1433 | — | — | 3.4% | Dec 29, 2001 | Cherokee web server before 0.2.7 does not properly drop root privileges after binding to port 80, which could allow remo... |
| CVE-2001-1202 | — | — | 6.7% | Dec 28, 2001 | Cross-site scripting vulnerability in DeleGate 7.7.0 and 7.7.1 does not quote scripting commands within a "403 Forbidden... |
| CVE-2001-1204 | — | — | 2.0% | Dec 28, 2001 | Directory traversal vulnerability in phprocketaddin in Total PC Solutions PHP Rocket Add-in for FrontPage 1.0 allows rem... |
| CVE-2001-1203 | — | — | 0.3% | Dec 27, 2001 | Format string vulnerability in gpm-root in gpm 1.17.8 through 1.17.18 allows local users to gain root privileges. |
| CVE-2001-1352 | — | — | 1.6% | Dec 27, 2001 | Cross-site scripting vulnerability in Namazu 2.0.9 and earlier allows remote attackers to execute arbitrary Javascript a... |
| CVE-2001-1225 | — | — | 0.3% | Dec 26, 2001 | Hughes Technology Mini SQL 2.0.10 through 2.0.12 allows local users to cause a denial of service by creating a very larg... |
| CVE-2001-1223 | — | — | 2.8% | Dec 26, 2001 | The web administration server for ELSA Lancom 1100 Office does not require authentication, which allows arbitrary remote... |
| CVE-2001-1226 | — | — | 1.5% | Dec 25, 2001 | AdCycle 1.17 and earlier allow remote attackers to modify SQL queries, which are not properly sanitized before being pas... |
| CVE-2001-1351 | — | — | 1.6% | Dec 25, 2001 | Cross-site scripting vulnerability in Namazu 2.0.8 and earlier allows remote attackers to execute arbitrary Javascript a... |
| CVE-2001-1224 | — | — | 2.1% | Dec 23, 2001 | get_input in adrotate.pm for Les VanBrunt AdRotate Pro 2.0 allows remote attackers to modify the database and possibly e... |
| CVE-2001-0872 | — | — | 0.9% | Dec 21, 2001 | OpenSSH 3.0.1 and earlier with UseLogin enabled does not properly cleanse critical environment variables such as LD_PREL... |
| CVE-2001-0870 | — | — | 2.4% | Dec 21, 2001 | HTTP server in Alchemy Eye and Alchemy Network Monitor 1.9x through 2.6.18 is enabled without authentication by default,... |
| CVE-2001-1217 | — | — | 54.4% | Dec 21, 2001 | Directory traversal vulnerability in PL/SQL Apache module in Oracle Oracle 9i Application Server allows remote attackers... |
| CVE-2001-0869 | — | — | 3.0% | Dec 21, 2001 | Format string vulnerability in the default logging callback function _sasl_syslog in common.c in Cyrus SASL library (cyr... |
| CVE-2001-1221 | — | — | 1.3% | Dec 21, 2001 | D-Link DWL-1000AP Firmware 3.2.28 #483 Wireless LAN Access Point uses a default SNMP community string of 'public' which ... |
Check if your code is affected by 2001 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now