Filtered by vendor Ibm
Subscriptions
Total
7471 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2002-0086 | 1 Ibm | 1 Lotus Domino | 2024-11-20 | N/A |
Buffer overflow in bindsock in Lotus Domino 5.0.4 and 5.0.7 on Linux allows local users to gain root privileges via a long (1) Notes_ExecDirectory or (2) PATH environment variable. | ||||
CVE-2002-0037 | 1 Ibm | 1 Lotus Domino Server | 2024-11-20 | N/A |
Lotus Domino Servers 5.x, 4.6x, and 4.5x allows attackers to bypass the intended Reader and Author access list for a document's object via a Notes API call (NSFDbReadObject) that directly accesses the object. | ||||
CVE-2001-1567 | 1 Ibm | 2 Lotus Domino, Lotus Domino Server | 2024-11-20 | N/A |
Lotus Domino server 5.0.9a and earlier allows remote attackers to bypass security restrictions and view Notes database files and possibly sensitive Notes template files (.ntf) via an HTTP request with a large number of "+" characters before the .nsf file extension, which are converted to spaces by Domino. | ||||
CVE-2001-1557 | 1 Ibm | 1 Aix | 2024-11-20 | N/A |
Buffer overflow in ftpd in IBM AIX 4.3 and 5.1 allows attackers to gain privileges. | ||||
CVE-2001-1554 | 1 Ibm | 1 Aix | 2024-11-20 | N/A |
IBM AIX 430 does not properly unlock IPPMTU_LOCK, which allows remote attackers to cause a denial of service (hang) via Path Maximum Transmit Unit (PMTU) IP packets. | ||||
CVE-2001-1529 | 1 Ibm | 1 Aix | 2024-11-20 | N/A |
Buffer overflow in rpc.yppasswdd (yppasswd server) in AIX allows attackers to gain unauthorized access via a long string. NOTE: due to lack of details in the vendor advisory, it is not clear if this is the same issue as CVE-2001-0779. | ||||
CVE-2001-1504 | 1 Ibm | 1 Lotus Notes | 2024-11-20 | N/A |
Lotus Notes R5 Client 4.6 allows remote attackers to execute arbitrary commands via a Lotus Notes object with code in an event, which is automatically executed when the user processes the e-mail message. | ||||
CVE-2001-1441 | 1 Ibm | 1 Visualage For Java | 2024-11-20 | N/A |
Cross-site scripting (XSS) vulnerability in VisualAge for Java 3.5 Professional allows remote attackers to execute JavaScript on other clients via the URL, which injects the script in the resulting error message. | ||||
CVE-2001-1440 | 1 Ibm | 1 Aix | 2024-11-20 | N/A |
Unknown vulnerability in login for AIX 5.1L, when using loadable authentication modules, allows remote attackers to gain access to the system. | ||||
CVE-2001-1330 | 1 Ibm | 1 Aix | 2024-11-20 | N/A |
Buffer overflow in rsh on AIX 4.2.0.0 may allow local users to gain root privileges via a long command line argument. | ||||
CVE-2001-1329 | 1 Ibm | 1 Aix | 2024-11-20 | N/A |
Buffer overflow in rsh on AIX 4.2.0.0 may allow local users to gain root privileges via a long command line argument. | ||||
CVE-2001-1313 | 1 Ibm | 1 Lotus Domino R5 | 2024-11-20 | N/A |
Lotus Domino R5 before R5.0.7a allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via miscellaneous packets with semi-valid BER encodings, as demonstrated by the PROTOS LDAPv3 test suite. | ||||
CVE-2001-1312 | 1 Ibm | 1 Lotus Domino R5 | 2024-11-20 | N/A |
Format string vulnerabilities in Lotus Domino R5 before R5.0.7a allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, as demonstrated by the PROTOS LDAPv3 test suite. | ||||
CVE-2001-1311 | 1 Ibm | 1 Lotus Domino R5 | 2024-11-20 | N/A |
Buffer overflows in Lotus Domino R5 before R5.0.7a allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, as demonstrated by the PROTOS LDAPv3 test suite. | ||||
CVE-2001-1310 | 1 Ibm | 1 Secureway Directory | 2024-11-20 | N/A |
IBM SecureWay 3.2.1 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, via invalid encodings for the L field of a BER encoding, as demonstrated by the PROTOS LDAPv3 test suite. | ||||
CVE-2001-1309 | 1 Ibm | 1 Secureway Directory | 2024-11-20 | N/A |
Buffer overflows in IBM SecureWay 3.2.1 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, as demonstrated by the PROTOS LDAPv3 test suite. | ||||
CVE-2001-1265 | 1 Ibm | 1 Alphaworks Tftp Server | 2024-11-20 | N/A |
Directory traversal vulnerability in IBM alphaWorks Java TFTP server 1.21 allows remote attackers to conduct unauthorized operations on arbitrary files via a .. (dot dot) attack. | ||||
CVE-2001-1191 | 1 Ibm | 1 Tivoli Secureway Policy Director | 2024-11-20 | N/A |
WebSeal in IBM Tivoli SecureWay Policy Director 3.8 allows remote attackers to cause a denial of service (crash) via a URL that ends in %2e. | ||||
CVE-2001-1189 | 1 Ibm | 1 Websphere Application Server | 2024-11-20 | N/A |
IBM Websphere Application Server 3.5.3 and earlier stores a password in cleartext in the sas.server.props file, which allows local users to obtain the passwords via a JSP script. | ||||
CVE-2001-1143 | 1 Ibm | 1 Db2 Universal Database | 2024-11-20 | N/A |
IBM DB2 7.0 allows a remote attacker to cause a denial of service (crash) via a single byte to (1) db2ccs.exe on port 6790, or (2) db2jds.exe on port 6789. |