Page 7 of 90 results (0.003 seconds)

CVSS: 7.5EPSS: 3%CPEs: 39EXPL: 0

16 Jul 2001 — slapd in OpenLDAP 1.x before 1.2.12, and 2.x before 2.0.8, allows remote attackers to cause a denial of service (crash) via an invalid Basic Encoding Rules (BER) length field. • http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000417 •

CVSS: 9.8EPSS: 1%CPEs: 12EXPL: 0

02 Jul 2001 — licq before 1.0.3 allows remote attackers to execute arbitrary commands via shell metacharacters in a URL. • http://archives.neohapsis.com/archives/freebsd/2001-04/0607.html •

CVSS: 9.8EPSS: 11%CPEs: 12EXPL: 1

02 Jul 2001 — Buffer overflow in logging functions of licq before 1.0.3 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands. • https://www.exploit-db.com/exploits/20646 •

CVSS: 9.8EPSS: 0%CPEs: 15EXPL: 0

27 Jun 2001 — Format string vulnerability in Mutt before 1.2.5 allows a remote malicious IMAP server to execute arbitrary commands. • http://archives.neohapsis.com/archives/bugtraq/2001-03/0246.html •

CVSS: 9.8EPSS: 1%CPEs: 9EXPL: 0

24 May 2001 — Buffer overflow in (1) wrapping and (2) unwrapping functions of slrn news reader before 0.9.7.0 allows remote attackers to execute arbitrary commands via a long message header. • http://archives.neohapsis.com/archives/freebsd/2001-04/0610.html •

CVSS: 5.5EPSS: 0%CPEs: 13EXPL: 2

26 Mar 2001 — glibc 2.1.9x and earlier does not properly clear the RESOLV_HOST_CONF, HOSTALIASES, or RES_OPTIONS environmental variables when executing setuid/setgid programs, which could allow local users to read arbitrary files. • https://www.exploit-db.com/exploits/258 •

CVSS: 7.8EPSS: 0%CPEs: 13EXPL: 0

26 Mar 2001 — kdesu program in KDE2 (KDE before 2.2.0-6) does not properly verify the owner of a UNIX socket that is used to send a password, which allows local users to steal passwords and gain privileges. • http://www.calderasystems.com/support/security/advisories/CSSA-2001-005.0.txt •

CVSS: 10.0EPSS: 9%CPEs: 6EXPL: 3

26 Mar 2001 — Format string vulnerability in print_client in icecast 1.3.8beta2 and earlier allows remote attackers to execute arbitrary commands. • https://www.exploit-db.com/exploits/20582 •

CVSS: 10.0EPSS: 14%CPEs: 6EXPL: 1

26 Mar 2001 — Buffer overflow in micq client 0.4.6 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long Description field. • https://www.exploit-db.com/exploits/20569 •

CVSS: 5.5EPSS: 0%CPEs: 7EXPL: 0

12 Mar 2001 — gpm 1.19.3 allows local users to overwrite arbitrary files via a symlink attack. • http://marc.info/?l=bugtraq&m=97916374410647&w=2 •