Monthly Archive: March 2002

CVE-2001-0644

Maxum Rumpus FTP Server 1.3.3 and 2.0.3 dev 3 stores passwords in plaintext in the "Rumpus User Database" file in the prefs folder, which could allow attackers to gain privileges on the server. Date...

CVE-2001-0635

Red Hat Linux 7.1 sets insecure permissions on swap files created during installation, which can allow a local attacker to gain additional privileges by reading sensitive information from the swap file, such as passwords....

CVE-2001-0631

Centrinity First Class Internet Services 5.50 allows for the circumventing of the default ‘spam’ filters via the presence of ‘‘ in the ‘From:’ field, which allows remote attackers to send spoofed email with the...

CVE-2001-0629

HP Event Correlation Service (ecsd) as included with OpenView Network Node Manager 6.1 allows a remote attacker to gain addition privileges via a buffer overflow attack in the ‘-restore_config’ command line parameter. Date published...

CVE-2001-0622

The web management service on Cisco Content Service series 11000 switches (CSS) before WebNS 4.01B29s or WebNS 4.10B17s allows a remote attacker to gain additional privileges by directly requesting the web management URL instead...

CVE-2001-0621

The FTP server on Cisco Content Service 11000 series switches (CSS) before WebNS 4.01B23s and WebNS 4.10B13s allows an attacker who is an FTP user to read and write arbitrary files via GET or...