iPlanet Web Server Enterprise Edition
by Iplanet
CVEs (4)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2001-0746 | 0.04 | — | 0.15 | Oct 18, 2001 | Buffer overflow in Web Publisher in iPlanet Web Server Enterprise Edition 4.1 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a request for a long URI with (1) GETPROPERTIES, (2) GETATTRIBUTENAMES, or other methods. | |||
| CVE-2001-0747 | 0.00 | — | 0.03 | Oct 18, 2001 | Buffer overflow in iPlanet Web Server (iWS) Enterprise Edition 4.1, service packs 3 through 7, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long method name in an HTTP request. | |||
| CVE-2001-0431 | 0.00 | — | 0.02 | Jul 2, 2001 | Vulnerability in iPlanet Web Server Enterprise Edition 4.x. | |||
| CVE-2001-0327 | 0.00 | — | 0.03 | Jul 2, 2001 | iPlanet Web Server Enterprise Edition 4.1 and earlier allows remote attackers to retrieve sensitive data from memory allocation pools, or cause a denial of service, via a URL-encoded Host: header in the HTTP request, which reveals memory in the Location: header that is returned… |
- CVE-2001-0746Oct 18, 2001risk 0.04cvss —epss 0.15
Buffer overflow in Web Publisher in iPlanet Web Server Enterprise Edition 4.1 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a request for a long URI with (1) GETPROPERTIES, (2) GETATTRIBUTENAMES, or other methods.
- CVE-2001-0747Oct 18, 2001risk 0.00cvss —epss 0.03
Buffer overflow in iPlanet Web Server (iWS) Enterprise Edition 4.1, service packs 3 through 7, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long method name in an HTTP request.
- CVE-2001-0431Jul 2, 2001risk 0.00cvss —epss 0.02
Vulnerability in iPlanet Web Server Enterprise Edition 4.x.
- CVE-2001-0327Jul 2, 2001risk 0.00cvss —epss 0.03
iPlanet Web Server Enterprise Edition 4.1 and earlier allows remote attackers to retrieve sensitive data from memory allocation pools, or cause a denial of service, via a URL-encoded Host: header in the HTTP request, which reveals memory in the Location: header that is returned…