Page 3 of 17 results (0.005 seconds)

CVSS: 2.1EPSS: 0%CPEs: 1EXPL: 0

iPlanet Calendar Server 5.0p2 and earlier allows a local attacker to gain access to the Netscape Admin Server (NAS) LDAP database and read arbitrary files by obtaining the cleartext administrator username and password from the configuration file, which has insecure permissions. • http://archives.neohapsis.com/archives/bugtraq/2001-04/0320.html https://exchange.xforce.ibmcloud.com/vulnerabilities/6402 •

CVSS: 5.0EPSS: 1%CPEs: 1EXPL: 0

iPlanet Web Server Enterprise Edition 4.1 and earlier allows remote attackers to retrieve sensitive data from memory allocation pools, or cause a denial of service, via a URL-encoded Host: header in the HTTP request, which reveals memory in the Location: header that is returned by the server. • http://www.atstake.com/research/advisories/2001/a041601-1.txt http://www.iplanet.com/products/iplanet_web_enterprise/iwsalert4.16.html http://www.kb.cert.org/vuls/id/276767 http://www.osvdb.org/5704 •

CVSS: 5.0EPSS: 0%CPEs: 1EXPL: 0

Vulnerability in iPlanet Web Server 4 included in Virtualvault Operating System (VVOS) 4.0 running HP-UX 11.04 could allow attackers to corrupt data. • http://archives.neohapsis.com/archives/hp/2001-q2/0059.html https://exchange.xforce.ibmcloud.com/vulnerabilities/6697 •

CVSS: 5.0EPSS: 1%CPEs: 1EXPL: 0

iPlanet (formerly Netscape) Enterprise Server 4.1 allows remote attackers to cause a denial of service via a long HTTP GET request that contains many "/../" (dot dot) sequences. • http://marc.info/?l=bugtraq&m=98035833331446&w=2 http://www.securityfocus.com/archive/1/157641 http://www.securityfocus.com/bid/2282 https://exchange.xforce.ibmcloud.com/vulnerabilities/5983 •

CVSS: 10.0EPSS: 1%CPEs: 1EXPL: 0

Vulnerability in iPlanet Web Server Enterprise Edition 4.x. • http://www.iplanet.com/products/iplanet_web_enterprise/iwsalert4.16.html •