search menu icon-carat-right cmu-wordmark

CERT Coordination Center

CERT/CC Vulnerability Notes Database


Published Public Updated ID CVSS Title
2001-08-21 2001-06-12 2001-11-15 VU#655259 OpenSSH allows arbitrary file deletion via symlink redirection of temporary file
2001-09-28 2001-06-10 2003-06-02 VU#439395 Apache web server performs case sensitive filtering on Mac OS X HFS+ case insensitive filesystem
2001-06-21 2001-06-08 2001-09-06 VU#952171 Hewlett Packard OpenView and Tivoli NetView do not adequately validate SNMP trap arguments
2001-09-18 2001-06-07 2001-09-18 VU#648131 Microsoft Windows 2000 Telnet Service allows unprivileged local users to terminate sessions via unprotected system calls
2001-09-18 2001-06-07 2001-09-18 VU#573155 Microsoft Windows 2000 Telnet Service searches all trusted domains for user accounts
2001-09-18 2001-06-07 2001-09-18 VU#405075 Microsoft Windows 2000 Telnet Service fails to reject oversized username input values
2001-09-18 2001-06-07 2001-09-18 VU#855723 Microsoft Windows 2000 Telnet Service fails to enforce timeouts on idle telnet sessions
2001-09-18 2001-06-07 2001-09-18 VU#215259 Microsoft Windows 2000 Telnet Service contains handle leak
2002-09-27 2001-06-07 2002-09-27 VU#771771 Shambala FTP Server does not adequately validate user input thereby allowing directory traversal
2001-09-18 2001-06-07 2001-09-18 VU#587587 Microsoft Windows 2000 Telnet Service uses named pipes with predictable names
2001-08-29 2001-06-06 2001-08-30 VU#149424 Outlook Web Access (OWA) executes scripts contained in email attachment opened via Microsoft Internet Explorer (IE)
2001-07-31 2001-06-04 2001-08-01 VU#127435 HPUX kmmodreg allows arbitrary file overwriting via symlink redirection of temporary file
2002-09-27 2001-06-02 2003-09-23 VU#255915 WebBoard does not adequately validate user input thereby permitting arbitrary JavaScript execution
2001-10-09 2001-05-31 2001-10-09 VU#747736 SCO OpenServer/UnixWare vi creates temporary files insecurely
2002-03-29 2001-05-29 2002-03-29 VU#233200 GnuPG contains format-string vulnerability in handling of encrypted data filename

Sponsored by CISA.