2001 CVE Vulnerabilities

1,556 CVEs published in 2001.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2001-1546HIGH7.8Pathways Homecare 6.5 uses weak encryption for user names and passwords, which allows local users to gain privileges by ...
CVE-2001-1537HIGH7.5The default "basic" security setting' in config.php for TWIG webmail 2.7.4 and earlier stores cleartext usernames and pa...
CVE-2001-1515HIGH7.5Macintosh clients, when using NT file system volumes on Windows 2000 SP1, create subdirectories and automatically modify...
CVE-2001-1536HIGH7.5Autogalaxy stores usernames and passwords in cleartext in cookies, which makes it easier for remote attackers to obtain ...
CVE-2001-0827HIGH7.5Cerberus FTP server 1.0 - 1.5 allows remote attackers to cause a denial of service (crash) via a large number of "PASV" ...
CVE-2001-0830HIGH7.56tunnel 0.08 and earlier does not properly close sockets that were initiated by a client, which allows remote attackers ...
CVE-2001-0950HIGH7.5ValiCert Enterprise Validation Authority (EVA) Administration Server 3.3 through 4.2.1 uses insufficiently random data t...
CVE-2001-0667HIGH7.3Internet Explorer 6 and earlier, when used with the Telnet client in Services for Unix (SFU) 2.0, allows remote attacker...
CVE-2001-0795HIGH7.5Perception LiteServe 1.25 allows remote attackers to obtain source code of CGI scripts via URLs that contain MS-DOS conv...
CVE-2001-1452HIGH7.5By default, DNS servers on Windows NT 4.0 and Windows 2000 Server cache glue records received from non-delegated name se...
CVE-2001-1471HIGH8.8prefs.php in phpBB 1.4.0 and earlier allows remote authenticated users to execute arbitrary PHP code via an invalid lang...
CVE-2001-0497HIGH7.8dnskeygen in BIND 8.2.4 and earlier, and dnssec-keygen in BIND 9.1.2 and earlier, set insecure permissions for a HMAC-MD...
CVE-2001-1238HIGH7.8Task Manager in Windows 2000 does not allow local users to end processes with uppercase letters named (1) winlogon.exe, ...
CVE-2001-1042HIGH7.5Transsoft Broker 5.9.5.0 allows remote attackers to read arbitrary files and directories by uploading a .lnk (link) file...
CVE-2001-1386HIGH7.5WFTPD 3.00 allows remote attackers to read arbitrary files by uploading a (link) file that ends in a ".lnk." extension, ...
CVE-2001-1043HIGH7.5ArGoSoft FTP Server 1.2.2.2 allows remote attackers to read arbitrary files and directories by uploading a .lnk (link) f...
CVE-2001-0334HIGH7.5FTP service in IIS 5.0 and earlier allows remote attackers to cause a denial of service via a wildcard sequence that gen...
CVE-2001-0195HIGH7.8sash before 3.4-4 in Debian GNU/Linux does not properly clone /etc/shadow, which makes it world-readable and could allow...
CVE-2001-0006HIGH7.1The Winsock2ProtocolCatalogMutex mutex in Windows NT 4.0 has inappropriate Everyone/Full Control permissions, which allo...

Check if your code is affected by 2001 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now