Search: "iplanet"

46 CVEs found

CVE-2000-0182
5.0 MEDIUM

iPlanet Web Server 4.1 allows remote attackers to cause a denial of service via a large number of GET commands, which consumes memory and causes a kernel panic.

Published: 2000-02-23
Products: 1
Vendors:
iplanet
CVE-2000-1075
5.0 MEDIUM

Directory traversal vulnerability in iPlanet Certificate Management System 4.2 and Directory Server 4.12 allows remote attackers to read arbitrary files via a .. (dot dot) attack in the Agent, End Ent...

Published: 2000-12-11
Products: 2
Vendors:
netscape sun
CVE-2000-1077
10.0 HIGH

Buffer overflow in the SHTML logging functionality of iPlanet Web Server 4.x allows remote attackers to execute arbitrary commands via a long filename with a .shtml extension.

Published: 2000-12-11
Products: 1
Vendors:
iplanet
CVE-2001-0252
5.0 MEDIUM

iPlanet (formerly Netscape) Enterprise Server 4.1 allows remote attackers to cause a denial of service via a long HTTP GET request that contains many "/../" (dot dot) sequences.

Published: 2001-06-02
Products: 1
Vendors:
iplanet
CVE-2001-1368
5.0 MEDIUM

Vulnerability in iPlanet Web Server 4 included in Virtualvault Operating System (VVOS) 4.0 running HP-UX 11.04 could allow attackers to corrupt data.

Published: 2001-06-11
Products: 1
Vendors:
iplanet
CVE-2001-0327
5.0 MEDIUM

iPlanet Web Server Enterprise Edition 4.1 and earlier allows remote attackers to retrieve sensitive data from memory allocation pools, or cause a denial of service, via a URL-encoded Host: header in t...

Published: 2001-07-02
Products: 1
Vendors:
iplanet

Buffer overflow in shared library ndwfn4.so for iPlanet Web Server (iWS) 4.1, when used as a web listener for Oracle application server 4.0.8.2, allows remote attackers to execute arbitrary commands v...

Published: 2001-07-02
Products: 1
Vendors:
oracle
CVE-2001-0431
10.0 HIGH

Vulnerability in iPlanet Web Server Enterprise Edition 4.x.

Published: 2001-07-02
Products: 1
Vendors:
iplanet

iPlanet Directory Server 4.1.4 and earlier (LDAP) allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via invalid BER length of length fields, as demonstra...

Published: 2001-07-16
Products: 1
Vendors:
sun

Buffer overflows in iPlanet Directory Server 4.1.4 and earlier (LDAP) allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, as demonstrated by the PROTOS LDA...

Published: 2001-07-16
Products: 1
Vendors:
sun

Format string vulnerabilities in iPlanet Directory Server 4.1.4 and earlier (LDAP) allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, as demonstrated by t...

Published: 2001-07-16
Products: 1
Vendors:
sun

iPlanet Calendar Server 5.0p2 and earlier allows a local attacker to gain access to the Netscape Admin Server (NAS) LDAP database and read arbitrary files by obtaining the cleartext administrator user...

Published: 2001-08-02
Products: 1
Vendors:
iplanet
CVE-2001-0606
5.0 MEDIUM

Vulnerability in iPlanet Web Server 4.X in HP-UX 11.04 (VVOS) with VirtualVault A.04.00 allows a remote attacker to create a denial of service via the HTTPS service.

Published: 2001-08-22
Products: 2
Vendors:
hp sun
CVE-2001-0746
10.0 HIGH

Buffer overflow in Web Publisher in iPlanet Web Server Enterprise Edition 4.1 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a request for a l...

Published: 2001-10-18
Products: 5
Vendors:
iplanet

Buffer overflow in iPlanet Web Server (iWS) Enterprise Edition 4.1, service packs 3 through 7, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long metho...

Published: 2001-10-18
Products: 1
Vendors:
iplanet
CVE-2001-1510
5.0 MEDIUM

Allaire JRun 2.3.3, 3.0 and 3.1 running on IIS 4.0 and 5.0, iPlanet, Apache, JRun web server (JWS), and possibly other web servers allows remote attackers to read arbitrary files and directories by ap...

Published: 2001-12-31
Products: 3
Vendors:
macromedia

Buffer overflow in the search component for iPlanet Web Server (iWS) 4.1 and Sun ONE Web Server 6.0 allows remote attackers to execute arbitrary code via a long argument to the NS-rel-doc-name paramet...

Published: 2002-07-23
Products: 2
Vendors:
iplanet

Buffer overflow in Sun ONE / iPlanet Web Server 4.1 and 6.0 allows remote attackers to execute arbitrary code via an HTTP request using chunked transfer encoding.

Published: 2002-08-12
Products: 2
Vendors:
iplanet
CVE-2002-1042
5.0 MEDIUM

Directory traversal vulnerability in search engine for iPlanet web server 6.0 SP2 and 4.1 SP9, and Netscape Enterprise Server 3.6, when running on Windows platforms, allows remote attackers to read ar...

Published: 2002-10-04
Products: 26
Vendors:
netscape sun
CVE-2002-1315
6.8 MEDIUM

Cross-site scripting (XSS) vulnerability in the Admin Server for iPlanet WebServer 4.x, up to SP11, allows remote attackers to execute web script or HTML as the iPlanet administrator by injecting the ...

Published: 2002-11-29
Products: 12
Vendors:
iplanet