2001 CVE Vulnerabilities

1,556 CVEs published in 2001.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2001-1432Directory traversal vulnerability in Cherokee Web Server allows remote attackers to read arbitrary files via a .. (dot d...
CVE-2001-1433Cherokee web server before 0.2.7 does not properly drop root privileges after binding to port 80, which could allow remo...
CVE-2001-1202Cross-site scripting vulnerability in DeleGate 7.7.0 and 7.7.1 does not quote scripting commands within a "403 Forbidden...
CVE-2001-1204Directory traversal vulnerability in phprocketaddin in Total PC Solutions PHP Rocket Add-in for FrontPage 1.0 allows rem...
CVE-2001-1352Cross-site scripting vulnerability in Namazu 2.0.9 and earlier allows remote attackers to execute arbitrary Javascript a...
CVE-2001-1203Format string vulnerability in gpm-root in gpm 1.17.8 through 1.17.18 allows local users to gain root privileges.
CVE-2001-1225Hughes Technology Mini SQL 2.0.10 through 2.0.12 allows local users to cause a denial of service by creating a very larg...
CVE-2001-1223The web administration server for ELSA Lancom 1100 Office does not require authentication, which allows arbitrary remote...
CVE-2001-1351Cross-site scripting vulnerability in Namazu 2.0.8 and earlier allows remote attackers to execute arbitrary Javascript a...
CVE-2001-1226AdCycle 1.17 and earlier allow remote attackers to modify SQL queries, which are not properly sanitized before being pas...
CVE-2001-1224get_input in adrotate.pm for Les VanBrunt AdRotate Pro 2.0 allows remote attackers to modify the database and possibly e...
CVE-2001-0871Directory traversal vulnerability in HTTP server for Alchemy Eye and Alchemy Network Monitor allows remote attackers to ...
CVE-2001-0872OpenSSH 3.0.1 and earlier with UseLogin enabled does not properly cleanse critical environment variables such as LD_PREL...
CVE-2001-0873uuxqt in Taylor UUCP package does not properly remove dangerous long options, which allows local users to gain privilege...
CVE-2001-0869Format string vulnerability in the default logging callback function _sasl_syslog in common.c in Cyrus SASL library (cyr...
CVE-2001-0870HTTP server in Alchemy Eye and Alchemy Network Monitor 1.9x through 2.6.18 is enabled without authentication by default,...
CVE-2001-1221D-Link DWL-1000AP Firmware 3.2.28 #483 Wireless LAN Access Point uses a default SNMP community string of 'public' which ...
CVE-2001-1217Directory traversal vulnerability in PL/SQL Apache module in Oracle Oracle 9i Application Server allows remote attackers...
CVE-2001-1216Buffer overflow in PL/SQL Apache module in Oracle 9i Application Server allows remote attackers to execute arbitrary cod...
CVE-2001-1220D-Link DWL-1000AP Firmware 3.2.28 #483 Wireless LAN Access Point stores the administrative password in plaintext in the ...
CVE-2001-0888Atmel Firmware 1.3 Wireless Access Point (WAP) allows remote attackers to cause a denial of service via a SNMP request w...
CVE-2001-0884Cross-site scripting vulnerability in Mailman email archiver before 2.08 allows attackers to obtain sensitive informatio...
CVE-2001-0886Buffer overflow in glob function of glibc allows attackers to cause a denial of service (crash) and possibly execute arb...
CVE-2001-1440Unknown vulnerability in login for AIX 5.1L, when using loadable authentication modules, allows remote attackers to gain...
CVE-2001-1215Format string vulnerability in PFinger 0.7.5 through 0.7.7 allows remote attackers to execute arbitrary code via format ...

Check if your code is affected by 2001 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now