LiveActive security incident?Get immediate response
CVE archive

May 2001

Browse CVE records published in May 2001, with severity, affected products, CWE, KEV, and source-backed vulnerability context.

Showing 50 of 315 matching CVEs · Page 4 of 7.

Unknown · CVSS Not scored

CVE-2001-0376: SonicWALL Tele2 and SOHO firewalls with 6.0.0.0 firmware using IPSEC with IKE pre-shared keys do not allow...

SonicWALL Tele2 and SOHO firewalls with 6.0.0.0 firmware using IPSEC with IKE pre-shared keys do not allow for the use of full 128 byte IKE pre-shared keys, which is the intended design of the IKE pre-shared key, and only support 48 byte keys. This allows a remote attacker to brute force attack the pre-shared keys with significantly less resources than if the full 128 byte IKE pre-shared keys were used.

Published May 24, 2001 · Updated Aug 8, 2024

Unknown · CVSS Not scored

CVE-2001-0374: The HTTP server in Compaq web-enabled management software for (1) Foundation Agents, (2) Survey, (3) Power...

The HTTP server in Compaq web-enabled management software for (1) Foundation Agents, (2) Survey, (3) Power Manager, (4) Availability Agents, (5) Intelligent Cluster Administrator, and (6) Insight Manager can be used as a generic proxy server, which allows remote attackers to bypass access restrictions via the management port, 2301.

Published May 24, 2001 · Updated Aug 8, 2024

Unknown · CVSS Not scored

CVE-2001-0332: Internet Explorer 5.5 and earlier does not properly verify the domain of a frame within a browser window, w...

Internet Explorer 5.5 and earlier does not properly verify the domain of a frame within a browser window, which allows remote web site operators to read certain files on the client by sending information from a local frame to a frame in a different domain using MSScriptControl.ScriptControl and GetObject, aka a variant of the "Frame Domain Verification" vulnerability.

Published May 24, 2001 · Updated Aug 8, 2024

Unknown · CVSS Not scored

CVE-2001-0246: Internet Explorer 5.5 and earlier does not properly verify the domain of a frame within a browser window, w...

Internet Explorer 5.5 and earlier does not properly verify the domain of a frame within a browser window, which allows remote web site operators to read certain files on the client by sending information from a local frame to a frame in a different domain, aka a variant of the "Frame Domain Verification" vulnerability.

Published May 24, 2001 · Updated Aug 8, 2024