Page 2 of 17 results (0.005 seconds)

CVSS: 5.5EPSS: 0%CPEs: 1EXPL: 0

27 Jul 2001 — iPlanet Calendar Server 5.0p2 and earlier allows a local attacker to gain access to the Netscape Admin Server (NAS) LDAP database and read arbitrary files by obtaining the cleartext administrator username and password from the configuration file, which has insecure permissions. • http://archives.neohapsis.com/archives/bugtraq/2001-04/0320.html •

CVSS: 7.5EPSS: 1%CPEs: 1EXPL: 0

02 Jul 2001 — iPlanet Web Server Enterprise Edition 4.1 and earlier allows remote attackers to retrieve sensitive data from memory allocation pools, or cause a denial of service, via a URL-encoded Host: header in the HTTP request, which reveals memory in the Location: header that is returned by the server. • http://www.atstake.com/research/advisories/2001/a041601-1.txt •

CVSS: 9.1EPSS: 0%CPEs: 1EXPL: 0

11 Jun 2001 — Vulnerability in iPlanet Web Server 4 included in Virtualvault Operating System (VVOS) 4.0 running HP-UX 11.04 could allow attackers to corrupt data. • http://archives.neohapsis.com/archives/hp/2001-q2/0059.html •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

02 Jun 2001 — iPlanet (formerly Netscape) Enterprise Server 4.1 allows remote attackers to cause a denial of service via a long HTTP GET request that contains many "/../" (dot dot) sequences. • http://marc.info/?l=bugtraq&m=98035833331446&w=2 •

CVSS: 10.0EPSS: 0%CPEs: 1EXPL: 0

24 May 2001 — Vulnerability in iPlanet Web Server Enterprise Edition 4.x. • http://www.iplanet.com/products/iplanet_web_enterprise/iwsalert4.16.html •

CVSS: 10.0EPSS: 3%CPEs: 1EXPL: 0

11 Dec 2000 — Buffer overflow in the SHTML logging functionality of iPlanet Web Server 4.x allows remote attackers to execute arbitrary commands via a long filename with a .shtml extension. • http://www.securityfocus.com/archive/1/141435 •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

23 Feb 2000 — iPlanet Web Server 4.1 allows remote attackers to cause a denial of service via a large number of GET commands, which consumes memory and causes a kernel panic. • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0182 •