Show filters
51 Total Results
Displaying 1-10 of 51
Sort by:
Attacker Value
Unknown
CVE-2003-0658
Disclosure Date: October 20, 2003 (last updated February 22, 2025)
Docview before 1.1-18 in Caldera OpenLinux 3.1.1, SCO Linux 4.0, OpenServer 5.0.7, configures the Apache web server in a way that allows remote attackers to read arbitrary publicly readable files via a certain URL, possibly related to rewrite rules.
0
Attacker Value
Unknown
CVE-2003-0282
Disclosure Date: June 16, 2003 (last updated February 22, 2025)
Directory traversal vulnerability in UnZip 5.50 allows attackers to overwrite arbitrary files via invalid characters between two . (dot) characters, which are filtered and result in a ".." sequence.
0
Attacker Value
Unknown
CVE-2002-1199
Disclosure Date: October 28, 2002 (last updated February 22, 2025)
The getdbm procedure in ypxfrd allows local users to read arbitrary files, and remote attackers to read databases outside /var/yp, via a directory traversal and symlink attack on the domain and map arguments.
0
Attacker Value
Unknown
CVE-2002-0835
Disclosure Date: October 04, 2002 (last updated February 22, 2025)
Preboot eXecution Environment (PXE) server allows remote attackers to cause a denial of service (crash) via certain DHCP packets from Voice-Over-IP (VOIP) phones.
0
Attacker Value
Unknown
CVE-2002-0512
Disclosure Date: August 12, 2002 (last updated February 22, 2025)
startkde in KDE for Caldera OpenLinux 2.3 through 3.1.1 sets the LD_LIBRARY_PATH environment variable to include the current working directory, which could allow local users to gain privileges of other users running startkde via Trojan horse libraries.
0
Attacker Value
Unknown
CVE-2002-0164
Disclosure Date: March 15, 2002 (last updated February 22, 2025)
Vulnerability in the MIT-SHM extension of the X server on Linux (XFree86) 4.2.1 and earlier allows local users to read and write arbitrary shared memory, possibly to cause a denial of service or gain privileges.
0
Attacker Value
Unknown
CVE-2002-0004
Disclosure Date: February 27, 2002 (last updated February 22, 2025)
Heap corruption vulnerability in the "at" program allows local users to execute arbitrary code via a malformed execution time, which causes at to free the same memory twice.
0
Attacker Value
Unknown
CVE-2001-0869
Disclosure Date: December 21, 2001 (last updated February 22, 2025)
Format string vulnerability in the default logging callback function _sasl_syslog in common.c in Cyrus SASL library (cyrus-sasl) may allow remote attackers to execute arbitrary commands.
0
Attacker Value
Unknown
CVE-2001-0850
Disclosure Date: December 06, 2001 (last updated February 22, 2025)
A configuration error in the libdb1 package in OpenLinux 3.1 uses insecure versions of the snprintf and vsnprintf functions, which could allow local or remote users to exploit those functions with a buffer overflow.
0
Attacker Value
Unknown
CVE-2001-0851
Disclosure Date: December 06, 2001 (last updated February 22, 2025)
Linux kernel 2.0, 2.2 and 2.4 with syncookies enabled allows remote attackers to bypass firewall rules by brute force guessing the cookie.
0