2001 — CVEs disclosed (Default sort: published descending; newest first.)

Aggregating NVD, CVE, and multi-source threat feeds, this list provides deep analysis of high-risk threats such as RCE. By integrating CVSS and EPSS models, the system dynamically tracks Exp (Exploit) resources and PoC availability to accurately assess Exploitability. Combined with official Patches and remediation strategies, it helps prioritize Vulnerability Management workflows, significantly shortening response cycles and securing your critical assets.

Showing 4160 of 1556 results
«« First « Prev Page 3 / 78 Next »
CVE Description Max CVSS EPSS % Published Updated
CVE-2001-1372 Oracle 9i Application Server 1.0.2 allows remote attackers to obtain the physical path of a file under the server root via a request for a non-existent .JSP file, which leaks the pathname in an error message. 5.0 6.48% 2002-02-06 2026-06-16
CVE-2001-1371 The default configuration of Oracle Application Server 9iAS 1.0.2.2 enables SOAP and allows anonymous users to deploy applications by default via urn:soap-service-manager and urn:soap-provider-manager. 7.5 12.30% 2002-02-06 2026-06-16
CVE-2001-0891 Format string vulnerability in NQS daemon (nqsdaemon) in NQE 3.3.0.16 for CRAY UNICOS and SGI IRIX allows a local user to gain root privileges by using qsub to submit a batch job whose name contains formatting characters. 7.2 0.35% 2002-01-31 2026-06-16
CVE-2001-1457 Buffer overflow in CrazyWWWBoard 2000p4 and 2000LEp5 allows remote attackers to execute arbitrary code via a long HTTP_USER_AGENT CGI environment variable. 7.5 6.28% 2002-01-30 2026-06-16
CVE-2001-0887 xSANE 0.81 and earlier allows local users to modify files of other xSANE users via a symlink attack on temporary files. 1.2 0.32% 2002-01-15 2026-06-16
CVE-2001-1585 SSH protocol 2 (aka SSH-2) public key authentication in the development snapshot of OpenSSH 2.3.1, available from 2001-01-18 through 2001-02-08, does not perform a challenge-response step to ensure that the client has the proper private key, which allows remote attackers to bypass authentication as other users by supplying a public key from that user's authorized_keys file. 6.8 1.92% 2001-12-31 2026-06-16
CVE-2001-1584 CardBoard 2.4 greeting card CGI by Michael Barretto allows remote attackers to execute arbitrary commands via shell metacharacters in the recipient field. 7.5 1.81% 2001-12-31 2026-06-16
CVE-2001-1583 lpd daemon (in.lpd) in Solaris 8 and earlier allows remote attackers to execute arbitrary commands via a job request with a crafted control file that is not properly handled when lpd invokes a mail program. NOTE: this might be the same vulnerability as CVE-2000-1220. 10.0 83.40% 2001-12-31 2026-06-16
CVE-2001-1582 Buffer overflow in the LDAP naming services library (libsldap) in Sun Solaris 8 allows local users to execute arbitrary code via a long LDAP_OPTIONS environment variable to a privileged program that uses libsldap. 7.2 1.30% 2001-12-31 2026-06-16
CVE-2001-1581 The File Blocker feature in Clearswift MAILsweeper for SMTP 4.2 allows remote attackers to bypass e-mail attachment filtering policies via a modified name in a Content-Type header. 7.5 1.26% 2001-12-31 2026-06-16
CVE-2001-1580 Directory traversal vulnerability in ScriptEase viewcode.jse for Netware 5.1 before 5.1 SP3 allows remote attackers to read arbitrary files via ".." sequences in the query string. 5.0 2.88% 2001-12-31 2026-06-16
CVE-2001-1579 The timed program (in.timed) in UnixWare 7 and OpenUnix 8.0.0 does not properly terminate certain strings with a null, which allows remote attackers to cause a denial of service. 5.0 1.24% 2001-12-31 2026-06-16
CVE-2001-1578 Unknown vulnerability in SCO OpenServer 5.0.6 and earlier allows local users to modify critical information such as certain CPU registers and segment descriptors. 2.1 0.29% 2001-12-31 2026-06-16
CVE-2001-1577 Unknown vulnerability in CDE in Caldera OpenUnix 7.1.0, 7.1.1, and 8.0 allows an xterm session to gain privileges when the session is reused. 7.5 1.28% 2001-12-31 2026-06-16
CVE-2001-1576 Buffer overflow in cron in Caldera UnixWare 7 allows local users to execute arbitrary code via a command line argument. 4.6 0.53% 2001-12-31 2026-06-16
CVE-2001-1575 Apple Personal Web Sharing (PWS) 1.1, 1.5, and 1.5.5, when Web Sharing authentication is enabled, allows remote attackers to cause a denial of service via a long password, possibly due to a buffer overflow. 5.0 1.88% 2001-12-31 2026-06-16
CVE-2001-1574 Buffer overflow in (1) HttpSaveCVP.dll and (2) HttpSaveCSP.dll in Trend Micro InterScan VirusWall 3.5.1 allows remote attackers to execute arbitrary code. 10.0 3.62% 2001-12-31 2026-06-16
CVE-2001-1573 Buffer overflow in smtpscan.dll for Trend Micro InterScan VirusWall 3.51 for Windows NT has allows remote attackers to execute arbitrary code via a certain configuration parameter. 10.0 3.62% 2001-12-31 2026-06-16
CVE-2001-1572 The MAC module in Netfilter in Linux kernel 2.4.1 through 2.4.11, when configured to filter based on MAC addresses, allows remote attackers to bypass packet filters via small packets. 7.5 2.75% 2001-12-31 2026-06-16
CVE-2001-1571 The Remote Desktop client in Windows XP sends the most recent user account name in cleartext, which could allow remote attackers to obtain terminal server user account names via sniffing. 5.0 13.09% 2001-12-31 2026-06-16
«« First « Prev Page 3 / 78 Next »
cvelogic Threat Intelligence