VYPR

CVEs

335,117 total · page 6654 of 6,703

  • CVE-2000-0996Dec 19, 2000
    risk 0.00cvss epss 0.00

    Format string vulnerability in OpenBSD su program (and possibly other BSD-based operating systems) allows local attackers to gain root privileges via a malformed shell.

  • CVE-2000-0997Dec 19, 2000
    risk 0.00cvss epss 0.00

    Format string vulnerabilities in eeprom program in OpenBSD, NetBSD, and possibly other operating systems allows local attackers to gain root privileges.

  • CVE-2000-1212Dec 18, 2000
    risk 0.00cvss epss 0.01

    Zope 2.2.0 through 2.2.4 does not properly protect a data updating method on Image and File objects, which allows attackers with DTML editing privileges to modify the raw data of these objects.

  • CVE-2000-1211Dec 16, 2000
    risk 0.00cvss epss 0.01

    Zope 2.2.0 through 2.2.4 does not properly perform security registration for legacy names of object constructors such as DTML method objects, which could allow attackers to perform unauthorized activities.

  • CVE-1999-1579Dec 14, 2000
    risk 0.03cvss epss 0.42

    The Cenroll ActiveX control (xenroll.dll) for Terminal Server Editions of Windows NT 4.0 and Windows NT Server 4.0 before SP6 allows remote attackers to cause a denial of service (resource consumption) by creating a large number of arbitrary files on the target machine.

  • CVE-2000-0998Dec 11, 2000
    risk 0.03cvss epss 0.00

    Format string vulnerability in top program allows local attackers to gain root privileges via the "kill" or "renice" function.

  • CVE-2000-0999Dec 11, 2000
    risk 0.00cvss epss 0.00

    Format string vulnerabilities in OpenBSD ssh program (and possibly other BSD-based operating systems) allow attackers to gain root privileges.

  • CVE-2000-1000Dec 11, 2000
    risk 0.00cvss epss 0.01

    Format string vulnerability in AOL Instant Messenger (AIM) 4.1.2010 allows remote attackers to cause a denial of service and possibly execute arbitrary commands by transferring a file whose name includes format characters.

  • CVE-2000-1001Dec 11, 2000
    risk 0.00cvss epss 0.01

    add_2_basket.asp in Element InstantShop allows remote attackers to modify price information via the "price" hidden form variable.

  • CVE-2000-1002Dec 11, 2000
    risk 0.03cvss epss 0.04

    POP3 daemon in Stalker CommuniGate Pro 3.3.2 generates different error messages for invalid usernames versus invalid passwords, which allows remote attackers to determine valid email addresses on the server for SPAM attacks.

  • CVE-2000-1003Dec 11, 2000
    risk 0.01cvss epss 0.10

    NETBIOS client in Windows 95 and Windows 98 allows a remote attacker to cause a denial of service by changing a file sharing service to return an unknown driver type, which causes the client to crash.

  • CVE-2000-1004Dec 11, 2000
    risk 0.00cvss epss 0.00

    Format string vulnerability in OpenBSD photurisd allows local users to execute arbitrary commands via a configuration file directory name that contains formatting characters.

  • CVE-2000-1005Dec 11, 2000
    risk 0.03cvss epss 0.06

    Directory traversal vulnerability in html_web_store.cgi and web_store.cgi CGI programs in eXtropia WebStore allows remote attackers to read arbitrary files via a .. (dot dot) attack on the page parameter.

  • CVE-2000-1006Dec 11, 2000
    risk 0.01cvss epss 0.10

    Microsoft Exchange Server 5.5 does not properly handle a MIME header with a blank charset specified, which allows remote attackers to cause a denial of service via a charset="" command, aka the "Malformed MIME Header" vulnerability.

  • CVE-2000-1007Dec 11, 2000
    risk 0.00cvss epss 0.01

    I-gear 3.5.7 and earlier does not properly process log entries in which a URL is longer than 255 characters, which allows an attacker to cause reporting errors.

  • CVE-2000-1008Dec 11, 2000
    risk 0.03cvss epss 0.00

    PalmOS 3.5.2 and earlier uses weak encryption to store the user password, which allows attackers with physical access to the Palm device to decrypt the password and gain access to the device.

  • CVE-2000-1009Dec 11, 2000
    risk 0.03cvss epss 0.00

    dump in Red Hat Linux 6.2 trusts the pathname specified by the RSH environmental variable, which allows local users to obtain root privileges by modifying the RSH variable to point to a Trojan horse program.

  • CVE-2000-1010Dec 11, 2000
    risk 0.00cvss epss 0.02

    Format string vulnerability in talkd in OpenBSD and possibly other BSD-based OSes allows remote attackers to execute arbitrary commands via a user name that contains format characters.

  • CVE-2000-1011Dec 11, 2000
    risk 0.00cvss epss 0.00

    Buffer overflow in catopen() function in FreeBSD 5.0 and earlier, and possibly other OSes, allows local users to gain root privileges via a long environmental variable.

  • CVE-2000-1012Dec 11, 2000
    risk 0.00cvss epss 0.00

    The catopen function in FreeBSD 5.0 and earlier, and possibly other OSes, allows local users to read arbitrary files via the LANG environmental variable.

  • CVE-2000-1013Dec 11, 2000
    risk 0.00cvss epss 0.00

    The setlocale function in FreeBSD 5.0 and earlier, and possibly other OSes, allows local users to read arbitrary files via the LANG environmental variable.

  • CVE-2000-1014Dec 11, 2000
    risk 0.04cvss epss 0.09

    Format string vulnerability in the search97.cgi CGI script in SCO help http server for Unixware 7 allows remote attackers to execute arbitrary commands via format characters in the queryText parameter.

  • CVE-2000-1015Dec 11, 2000
    risk 0.00cvss epss 0.01

    The default configuration of Slashcode before version 2.0 Alpha has a default administrative password, which allows remote attackers to gain Slashcode privileges and possibly execute arbitrary commands.

  • CVE-2000-1016Dec 11, 2000
    risk 0.03cvss epss 0.04

    The default configuration of Apache (httpd.conf) on SuSE 6.4 includes an alias for the /usr/doc directory, which allows remote attackers to read package documentation and obtain system configuration information via an HTTP request for the /doc/packages URL.

  • CVE-2000-1017Dec 11, 2000
    risk 0.00cvss epss 0.01

    Webteachers Webdata allows remote attackers with valid Webdata accounts to read arbitrary files by posting a request to import the file into the WebData database.

  • CVE-2000-1018Dec 11, 2000
    risk 0.00cvss epss 0.00

    shred 1.0 file wiping utility does not properly open a file for overwriting or flush its buffers, which prevents shred from properly replacing the file's data and allows local users to recover the file.

  • CVE-2000-1019Dec 11, 2000
    risk 0.00cvss epss 0.01

    Search engine in Ultraseek 3.1 and 3.1.10 (aka Inktomi Search) allows remote attackers to cause a denial of service via a malformed URL.

  • CVE-2000-1020Dec 11, 2000
    risk 0.00cvss epss 0.01

    Heap overflow in Worldclient in Mdaemon 3.1.1 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long URL.

  • CVE-2000-1021Dec 11, 2000
    risk 0.04cvss epss 0.10

    Heap overflow in WebConfig in Mdaemon 3.1.1 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long URL.

  • CVE-2000-1022Dec 11, 2000
    risk 0.04cvss epss 0.07

    The mailguard feature in Cisco Secure PIX Firewall 5.2(2) and earlier does not properly restrict access to SMTP commands, which allows remote attackers to execute restricted commands by sending a DATA command before sending the restricted commands.

  • CVE-2000-1023Dec 11, 2000
    risk 0.03cvss epss 0.04

    The Alabanza Control Panel does not require passwords to access administrative commands, which allows remote attackers to modify domain name information via the nsManager.cgi CGI program.

  • CVE-2000-1024Dec 11, 2000
    risk 0.00cvss epss 0.02

    eWave ServletExec 3.0C and earlier does not restrict access to the UploadServlet Java/JSP servlet, which allows remote attackers to upload files and execute arbitrary commands.

  • CVE-2000-1025Dec 11, 2000
    risk 0.04cvss epss 0.07

    eWave ServletExec JSP/Java servlet engine, versions 3.0C and earlier, allows remote attackers to cause a denial of service via a URL that contains the "/servlet/" string, which invokes the ServletExec servlet and causes an exception if the servlet is already running.

  • CVE-2000-1026Dec 11, 2000
    risk 0.04cvss epss 0.07

    Multiple buffer overflows in LBNL tcpdump allow remote attackers to execute arbitrary commands.

  • CVE-2000-1027Dec 11, 2000
    risk 0.04cvss epss 0.13

    Cisco Secure PIX Firewall 5.2(2) allows remote attackers to determine the real IP address of a target FTP server by flooding the server with PASV requests, which includes the real IP address in the response when passive mode is established.

  • CVE-2000-1028Dec 11, 2000
    risk 0.03cvss epss 0.00

    Buffer overflow in cu program in HP-UX 11.0 may allow local users to gain privileges via a long -l command line argument.

  • CVE-2000-1029Dec 11, 2000
    risk 0.04cvss epss 0.09

    Buffer overflow in host command allows a remote attacker to execute arbitrary commands via a long response to an AXFR query.

  • CVE-2000-1030Dec 11, 2000
    risk 0.00cvss epss 0.01

    CS&T CorporateTime for the Web returns different error messages for invalid usernames and invalid passwords, which allows remote attackers to determine valid usernames on the server.

  • CVE-2000-1031Dec 11, 2000
    risk 0.00cvss epss 0.01

    Buffer overflow in dtterm in HP-UX 11.0 and HP Tru64 UNIX 4.0f through 5.1a allows local users to execute arbitrary code via a long -tn option.

  • CVE-2000-1032Dec 11, 2000
    risk 0.00cvss epss 0.01

    The client authentication interface for Check Point Firewall-1 4.0 and earlier generates different error messages for invalid usernames versus invalid passwords, which allows remote attackers to identify valid usernames on the firewall.

  • CVE-2000-1033Dec 11, 2000
    risk 0.03cvss epss 0.04

    Serv-U FTP Server allows remote attackers to bypass its anti-hammering feature by first logging on as a valid user (possibly anonymous) and then attempting to guess the passwords of other users.

  • CVE-2000-1034Dec 11, 2000
    risk 0.02cvss epss 0.22

    Buffer overflow in the System Monitor ActiveX control in Windows 2000 allows remote attackers to execute arbitrary commands via a long LogFileName parameter in HTML source code, aka the "ActiveX Parameter Validation" vulnerability.

  • CVE-2000-1035Dec 11, 2000
    risk 0.05cvss epss 0.22

    Buffer overflows in TYPSoft FTP Server 0.78 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long USER, PASS, or CWD command.

  • CVE-2000-1036Dec 11, 2000
    risk 0.04cvss epss 0.13

    Directory traversal vulnerability in Extent RBS ISP web server allows remote attackers to read sensitive information via a .. (dot dot) attack on the Image parameter.

  • CVE-2000-1037Dec 11, 2000
    risk 0.04cvss epss 0.12

    Check Point Firewall-1 session agent 3.0 through 4.1 generates different error messages for invalid user names versus invalid passwords, which allows remote attackers to determine valid usernames and guess a password via a brute force attack.

  • CVE-2000-1038Dec 11, 2000
    risk 0.00cvss epss 0.01

    The web administration interface for IBM AS/400 Firewall allows remote attackers to cause a denial of service via an empty GET request.

  • CVE-2000-1040Dec 11, 2000
    risk 0.00cvss epss 0.02

    Format string vulnerability in logging function of ypbind 3.3, while running in debug mode, leaks file descriptors and allows an attacker to cause a denial of service.

  • CVE-2000-1041Dec 11, 2000
    risk 0.00cvss epss 0.00

    Buffer overflow in ypbind 3.3 possibly allows an attacker to gain root privileges.

  • CVE-2000-1042Dec 11, 2000
    risk 0.00cvss epss 0.01

    Buffer overflow in ypserv in Mandrake Linux 7.1 and earlier, and possibly other Linux operating systems, allows an attacker to gain root privileges when ypserv is built without a vsyslog() function.

  • CVE-2000-1043Dec 11, 2000
    risk 0.00cvss epss 0.00

    Format string vulnerability in ypserv in Mandrake Linux 7.1 and earlier, and possibly other Linux operating systems, allows an attacker to gain root privileges when ypserv is built without a vsyslog() function.