search menu icon-carat-right cmu-wordmark

CERT Coordination Center

CERT/CC Vulnerability Notes Database


Published Public Updated ID CVSS Title
2001-11-15 2001-11-15 2001-11-27 VU#399355 Cisco IOS and CatOS fail to properly validate ARP packets thereby overwriting device's MAC address in ARP table
2001-11-19 2001-11-19 2002-11-15 VU#279763 RhinoSoft Serv-U remote administration client transmits password in plaintext
2002-08-01 2001-11-20 2002-08-10 VU#176363 ncompress vulnerable to buffer overflow via long filename
2001-11-20 2001-11-20 2002-12-06 VU#898480 MandrakeSoft Mandrake Linux Apache default configuration sample programs disclose server information
2001-11-21 2001-11-20 2002-12-06 VU#913704 MandrakeSoft Mandrake Linux Apache default configuration enables directory indexing
2001-11-21 2001-11-20 2001-12-06 VU#638011 HP-UX Line Printer Daemon Vulnerable to Directory Traversal
2001-11-21 2001-11-20 2002-05-28 VU#927256 MandrakeSoft Mandrake Linux Apache default configuration enables Perl ProxyPass server on 8200/tcp
2001-11-28 2001-11-28 2004-03-30 VU#362483 Cisco IOS Firewall Feature Set fails to check IP protocol type thereby allowing packets to bypass dynamic access control lists
2003-08-19 2001-11-28 2003-08-19 VU#705771 gtop daemon contains buffer overflow
2002-03-04 2001-11-29 2002-04-16 VU#936683 Multiple implementations of the RADIUS protocol do not adequately validate the vendor-length of the vendor-specific attributes
2002-09-27 2001-11-29 2003-09-18 VU#220715 Alchemy Eye HTTP Server does not adequately validate user input thereby allowing remote command execution
2002-09-27 2001-11-29 2003-04-15 VU#453475 PGPMail.pl does not adequately validate user input thereby allowing arbitrary command execution
2001-12-04 2001-11-30 2001-12-04 VU#332299 Lotus Domino R5 Server vulnerable to DoS via nmap RPC scan on port 443/tcp
2002-09-24 2001-12-01 2002-09-24 VU#597795 Easynews does not adequately validate user input thereby disclosing server installation path via crafted URL request
2001-12-04 2001-12-04 2002-01-02 VU#157447 OpenSSH UseLogin directive permits privilege escalation

Sponsored by CISA.