| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2000-1044 | 0.00 | — | 0.00 | Dec 11, 2000 | Format string vulnerability in ypbind-mt in SuSE SuSE-6.2, and possibly other Linux operating systems, allows an attacker to gain root privileges. | |||
| CVE-2000-1045 | 0.00 | — | 0.00 | Dec 11, 2000 | nss_ldap earlier than 121, when run with nscd (name service caching daemon), allows remote attackers to cause a denial of service via a flood of LDAP requests. | |||
| CVE-2000-1046 | 0.04 | — | 0.08 | Dec 11, 2000 | Multiple buffer overflows in the ESMTP service of Lotus Domino 5.0.2c and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via long (1) "RCPT TO," (2) "SAML FROM," or (3) "SOML FROM" commands. | |||
| CVE-2000-1047 | 0.00 | — | 0.03 | Dec 11, 2000 | Buffer overflow in SMTP service of Lotus Domino 5.0.4 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long ENVID keyword in the "MAIL FROM" command. | |||
| CVE-2000-1048 | 0.00 | — | 0.01 | Dec 11, 2000 | Directory traversal vulnerability in the logfile service of Wingate 4.1 Beta A and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack via an HTTP GET request that uses encoded characters in the URL. | |||
| CVE-2000-1049 | 0.00 | — | 0.01 | Dec 11, 2000 | Allaire JRun 3.0 http servlet server allows remote attackers to cause a denial of service via a URL that contains a long string of "." characters. | |||
| CVE-2000-1050 | 0.04 | — | 0.14 | Dec 11, 2000 | Allaire JRun 3.0 http servlet server allows remote attackers to directly access the WEB-INF directory via a URL request that contains an extra "/" in the beginning of the request (aka the "extra leading slash"). | |||
| CVE-2000-1051 | 0.00 | — | 0.01 | Dec 11, 2000 | Directory traversal vulnerability in Allaire JRun 2.3 server allows remote attackers to read arbitrary files via the SSIFilter servlet. | |||
| CVE-2000-1052 | 0.00 | — | 0.01 | Dec 11, 2000 | Allaire JRun 2.3 server allows remote attackers to obtain source code for executable content by directly calling the SSIFilter servlet. | |||
| CVE-2000-1053 | 0.04 | — | 0.10 | Dec 11, 2000 | Allaire JRun 2.3.3 server allows remote attackers to compile and execute JSP code by inserting it via a cross-site scripting (CSS) attack and directly calling the com.livesoftware.jrun.plugins.JSP JSP servlet. | |||
| CVE-2000-1054 | 0.04 | — | 0.08 | Dec 11, 2000 | Buffer overflow in CSAdmin module in CiscoSecure ACS Server 2.4(2) and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a large packet. | |||
| CVE-2000-1055 | 0.00 | — | 0.02 | Dec 11, 2000 | Buffer overflow in CiscoSecure ACS Server 2.4(2) and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a large TACACS+ packet. | |||
| CVE-2000-1056 | 0.00 | — | 0.01 | Dec 11, 2000 | CiscoSecure ACS Server 2.4(2) and earlier allows remote attackers to bypass LDAP authentication on the server if the LDAP server allows null passwords. | |||
| CVE-2000-1057 | 0.00 | — | 0.00 | Dec 11, 2000 | Vulnerabilities in database configuration scripts in HP OpenView Network Node Manager (NNM) 6.1 and earlier allows local users to gain privileges, possibly via insecure permissions. | |||
| CVE-2000-1058 | 0.04 | — | 0.11 | Dec 11, 2000 | Buffer overflow in OverView5 CGI program in HP OpenView Network Node Manager (NNM) 6.1 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, in the SNMP service (snmp.exe), aka the "Java SNMP MIB Browser Object ID parsing problem." | |||
| CVE-2000-1059 | 0.00 | — | 0.00 | Dec 11, 2000 | The default configuration of the Xsession file in Mandrake Linux 7.1 and 7.0 bypasses the Xauthority access control mechanism with an "xhost + localhost" command, which allows local users to sniff X Windows events and gain privileges. | |||
| CVE-2000-1060 | 0.00 | — | 0.00 | Dec 11, 2000 | The default configuration of XFCE 3.5.1 bypasses the Xauthority access control mechanism with an "xhost + localhost" command in the xinitrc program, which allows local users to sniff X Windows traffic and gain privileges. | |||
| CVE-2000-1061 | 0.04 | — | 0.15 | Dec 11, 2000 | Microsoft Virtual Machine (VM) in Internet Explorer 4.x and 5.x allows an unsigned applet to create and use ActiveX controls, which allows a remote attacker to bypass Internet Explorer's security settings and execute arbitrary commands via a malicious web page or email, aka the "Microsoft VM ActiveX Component" vulnerability. | |||
| CVE-2000-1062 | 0.00 | — | 0.01 | Dec 11, 2000 | Buffer overflow in the FTP service in HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service. | |||
| CVE-2000-1063 | 0.00 | — | 0.01 | Dec 11, 2000 | Buffer overflow in the Telnet service in HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service. | |||
| CVE-2000-1064 | 0.00 | — | 0.01 | Dec 11, 2000 | Buffer overflow in the LPD service in HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service. | |||
| CVE-2000-1065 | 0.00 | — | 0.01 | Dec 11, 2000 | Vulnerability in IP implementation of HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service (printer crash) via a malformed packet. | |||
| CVE-2000-1066 | 0.00 | — | 0.01 | Dec 11, 2000 | The getnameinfo function in FreeBSD 4.1.1 and earlier, and possibly other operating systems, allows a remote attacker to cause a denial of service via a long DNS hostname. | |||
| CVE-2000-1068 | 0.00 | — | 0.02 | Dec 11, 2000 | pollit.cgi in Poll It 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the poll_options parameter. | |||
| CVE-2000-1069 | 0.04 | — | 0.07 | Dec 11, 2000 | pollit.cgi in Poll It 2.01 and earlier allows remote attackers to access administrative functions without knowing the real password by specifying the same value to the entered_password and admin_password parameters. | |||
| CVE-2000-1070 | 0.00 | — | 0.01 | Dec 11, 2000 | pollit.cgi in Poll It 2.01 and earlier uses data files that are located under the web document root, which allows remote attackers to access sensitive or private information. | |||
| CVE-2000-1071 | 0.00 | — | 0.01 | Dec 11, 2000 | The GUI installation for iCal 2.1 Patch 2 disables access control for the X server using an "xhost +" command, which allows remote attackers to monitor X Windows events and gain privileges. | |||
| CVE-2000-1072 | 0.03 | — | 0.00 | Dec 11, 2000 | iCal 2.1 Patch 2 installs many files with world-writeable permissions, which allows local users to modify the iCal configuration and execute arbitrary commands by replacing the iplncal.sh program with a Trojan horse. | |||
| CVE-2000-1073 | 0.00 | — | 0.00 | Dec 11, 2000 | csstart program in iCal 2.1 Patch 2 searches for the cshttpd program in the current working directory, which allows local users to gain root privileges by creating a Trojan Horse cshttpd program in a directory and calling csstart from that directory. | |||
| CVE-2000-1074 | 0.04 | — | 0.07 | Dec 11, 2000 | csstart program in iCal 2.1 Patch 2 uses relative pathnames to install the libsocket and libnsl libraries, which could allow the icsuser account to gain root privileges by creating a Trojan Horse library in the current or parent directory. | |||
| CVE-2000-1075 | 0.03 | — | 0.04 | Dec 11, 2000 | Directory traversal vulnerability in iPlanet Certificate Management System 4.2 and Directory Server 4.12 allows remote attackers to read arbitrary files via a .. (dot dot) attack in the Agent, End Entity, or Administrator services. | |||
| CVE-2000-1076 | 0.00 | — | 0.01 | Dec 11, 2000 | Netscape (iPlanet) Certificate Management System 4.2 and Directory Server 4.12 stores the administrative password in plaintext, which could allow local and possibly remote attackers to gain administrative privileges on the server. | |||
| CVE-2000-1077 | 0.00 | — | 0.02 | Dec 11, 2000 | Buffer overflow in the SHTML logging functionality of iPlanet Web Server 4.x allows remote attackers to execute arbitrary commands via a long filename with a .shtml extension. | |||
| CVE-2000-1078 | 0.03 | — | 0.05 | Dec 11, 2000 | ICQ Web Front HTTPd allows remote attackers to cause a denial of service by requesting a URL that contains a "?" character. | |||
| CVE-2000-1222 | 0.00 | — | 0.00 | Dec 10, 2000 | AIX sysback before 4.2.1.13 uses a relative path to find and execute the hostname program, which allows local users to gain privileges by modifying the path to point to a malicious hostname program. | |||
| CVE-2000-1224 | 0.04 | — | 0.08 | Nov 23, 2000 | Caucho Technology Resin 1.2 and possibly earlier allows remote attackers to view JSP source via an HTTP request to a .jsp file with certain characters appended to the file name, such as (1) "..", (2) "%2e..", (3) "%81", (4) "%82", and others. | |||
| CVE-2000-1217 | 0.00 | — | 0.01 | Nov 21, 2000 | Microsoft Windows 2000 before Service Pack 2 (SP2), when running in a non-Windows 2000 domain and using NTLM authentication, and when credentials of an account are locally cached, allows local users to bypass account lockout policies and make an unlimited number of login attempts, aka the "Domain Account Lockout" vulnerability. | |||
| CVE-2000-1223 | 0.00 | — | 0.01 | Nov 20, 2000 | quikstore.cgi in Quikstore Shopping Cart allows remote attackers to execute arbitrary commands via shell metacharacters in the URL portion of an HTTP GET request. | |||
| CVE-2000-0824 | 0.03 | — | 0.00 | Nov 14, 2000 | The unsetenv function in glibc 2.1.1 does not properly unset an environmental variable if the variable is provided twice to a program, which could allow local users to execute arbitrary commands in setuid programs by specifying their own duplicate environmental variables such as LD_PRELOAD or LD_LIBRARY_PATH. | |||
| CVE-2000-0804 | 0.00 | — | 0.00 | Nov 14, 2000 | Check Point VPN-1/FireWall-1 4.1 and earlier allows remote attackers to bypass the directionality check via fragmented TCP connection requests or reopening closed TCP connection requests, aka "One-way Connection Enforcement Bypass." | |||
| CVE-2000-0805 | 0.00 | — | 0.01 | Nov 14, 2000 | Check Point VPN-1/FireWall-1 4.1 and earlier improperly retransmits encapsulated FWS packets, even if they do not come from a valid FWZ client, aka "Retransmission of Encapsulated Packets." | |||
| CVE-2000-0806 | 0.00 | — | 0.01 | Nov 14, 2000 | The inter-module authentication mechanism (fwa1) in Check Point VPN-1/FireWall-1 4.1 and earlier may allow remote attackers to conduct a denial of service, aka "Inter-module Communications Bypass." | |||
| CVE-2000-0807 | 0.00 | — | 0.01 | Nov 14, 2000 | The OPSEC communications authentication mechanism (fwn1) in Check Point VPN-1/FireWall-1 4.1 and earlier allows remote attackers to spoof connections, aka the "OPSEC Authentication Vulnerability." | |||
| CVE-2000-0808 | 0.00 | — | 0.01 | Nov 14, 2000 | The seed generation mechanism in the inter-module S/Key authentication mechanism in Check Point VPN-1/FireWall-1 4.1 and earlier allows remote attackers to bypass authentication via a brute force attack, aka "One-time (s/key) Password Authentication." | |||
| CVE-2000-0809 | 0.00 | — | 0.01 | Nov 14, 2000 | Buffer overflow in Getkey in the protocol checker in the inter-module communication mechanism in Check Point VPN-1/FireWall-1 4.1 and earlier allows remote attackers to cause a denial of service. | |||
| CVE-2000-0812 | 0.00 | — | 0.03 | Nov 14, 2000 | The administration module in Sun Java web server allows remote attackers to execute arbitrary commands by uploading Java code to the module and invoke the com.sun.server.http.pagecompile.jsp92.JspServlet by requesting a URL that begins with a /servlet/ tag. | |||
| CVE-2000-0813 | 0.00 | — | 0.00 | Nov 14, 2000 | Check Point VPN-1/FireWall-1 4.1 and earlier allows remote attackers to redirect FTP connections to other servers ("FTP Bounce") via invalid FTP commands that are processed improperly by FireWall-1, aka "FTP Connection Enforcement Bypass." | |||
| CVE-2000-0825 | 0.00 | — | 0.03 | Nov 14, 2000 | Ipswitch Imail 6.0 allows remote attackers to cause a denial of service via a large number of connections in which a long Host: header is sent, which causes a thread to crash. | |||
| CVE-2000-0826 | 0.00 | — | 0.02 | Nov 14, 2000 | Buffer overflow in ddicgi.exe program in Mobius DocumentDirect for the Internet 1.2 allows remote attackers to execute arbitrary commands via a long GET request. | |||
| CVE-2000-0827 | 0.00 | — | 0.03 | Nov 14, 2000 | Buffer overflow in the web authorization form of Mobius DocumentDirect for the Internet 1.2 allows remote attackers to cause a denial of service or execute arbitrary commands via a long username. |
- CVE-2000-1044Dec 11, 2000risk 0.00cvss —epss 0.00
Format string vulnerability in ypbind-mt in SuSE SuSE-6.2, and possibly other Linux operating systems, allows an attacker to gain root privileges.
- CVE-2000-1045Dec 11, 2000risk 0.00cvss —epss 0.00
nss_ldap earlier than 121, when run with nscd (name service caching daemon), allows remote attackers to cause a denial of service via a flood of LDAP requests.
- CVE-2000-1046Dec 11, 2000risk 0.04cvss —epss 0.08
Multiple buffer overflows in the ESMTP service of Lotus Domino 5.0.2c and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via long (1) "RCPT TO," (2) "SAML FROM," or (3) "SOML FROM" commands.
- CVE-2000-1047Dec 11, 2000risk 0.00cvss —epss 0.03
Buffer overflow in SMTP service of Lotus Domino 5.0.4 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long ENVID keyword in the "MAIL FROM" command.
- CVE-2000-1048Dec 11, 2000risk 0.00cvss —epss 0.01
Directory traversal vulnerability in the logfile service of Wingate 4.1 Beta A and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack via an HTTP GET request that uses encoded characters in the URL.
- CVE-2000-1049Dec 11, 2000risk 0.00cvss —epss 0.01
Allaire JRun 3.0 http servlet server allows remote attackers to cause a denial of service via a URL that contains a long string of "." characters.
- CVE-2000-1050Dec 11, 2000risk 0.04cvss —epss 0.14
Allaire JRun 3.0 http servlet server allows remote attackers to directly access the WEB-INF directory via a URL request that contains an extra "/" in the beginning of the request (aka the "extra leading slash").
- CVE-2000-1051Dec 11, 2000risk 0.00cvss —epss 0.01
Directory traversal vulnerability in Allaire JRun 2.3 server allows remote attackers to read arbitrary files via the SSIFilter servlet.
- CVE-2000-1052Dec 11, 2000risk 0.00cvss —epss 0.01
Allaire JRun 2.3 server allows remote attackers to obtain source code for executable content by directly calling the SSIFilter servlet.
- CVE-2000-1053Dec 11, 2000risk 0.04cvss —epss 0.10
Allaire JRun 2.3.3 server allows remote attackers to compile and execute JSP code by inserting it via a cross-site scripting (CSS) attack and directly calling the com.livesoftware.jrun.plugins.JSP JSP servlet.
- CVE-2000-1054Dec 11, 2000risk 0.04cvss —epss 0.08
Buffer overflow in CSAdmin module in CiscoSecure ACS Server 2.4(2) and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a large packet.
- CVE-2000-1055Dec 11, 2000risk 0.00cvss —epss 0.02
Buffer overflow in CiscoSecure ACS Server 2.4(2) and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a large TACACS+ packet.
- CVE-2000-1056Dec 11, 2000risk 0.00cvss —epss 0.01
CiscoSecure ACS Server 2.4(2) and earlier allows remote attackers to bypass LDAP authentication on the server if the LDAP server allows null passwords.
- CVE-2000-1057Dec 11, 2000risk 0.00cvss —epss 0.00
Vulnerabilities in database configuration scripts in HP OpenView Network Node Manager (NNM) 6.1 and earlier allows local users to gain privileges, possibly via insecure permissions.
- CVE-2000-1058Dec 11, 2000risk 0.04cvss —epss 0.11
Buffer overflow in OverView5 CGI program in HP OpenView Network Node Manager (NNM) 6.1 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, in the SNMP service (snmp.exe), aka the "Java SNMP MIB Browser Object ID parsing problem."
- CVE-2000-1059Dec 11, 2000risk 0.00cvss —epss 0.00
The default configuration of the Xsession file in Mandrake Linux 7.1 and 7.0 bypasses the Xauthority access control mechanism with an "xhost + localhost" command, which allows local users to sniff X Windows events and gain privileges.
- CVE-2000-1060Dec 11, 2000risk 0.00cvss —epss 0.00
The default configuration of XFCE 3.5.1 bypasses the Xauthority access control mechanism with an "xhost + localhost" command in the xinitrc program, which allows local users to sniff X Windows traffic and gain privileges.
- CVE-2000-1061Dec 11, 2000risk 0.04cvss —epss 0.15
Microsoft Virtual Machine (VM) in Internet Explorer 4.x and 5.x allows an unsigned applet to create and use ActiveX controls, which allows a remote attacker to bypass Internet Explorer's security settings and execute arbitrary commands via a malicious web page or email, aka the "Microsoft VM ActiveX Component" vulnerability.
- CVE-2000-1062Dec 11, 2000risk 0.00cvss —epss 0.01
Buffer overflow in the FTP service in HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service.
- CVE-2000-1063Dec 11, 2000risk 0.00cvss —epss 0.01
Buffer overflow in the Telnet service in HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service.
- CVE-2000-1064Dec 11, 2000risk 0.00cvss —epss 0.01
Buffer overflow in the LPD service in HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service.
- CVE-2000-1065Dec 11, 2000risk 0.00cvss —epss 0.01
Vulnerability in IP implementation of HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service (printer crash) via a malformed packet.
- CVE-2000-1066Dec 11, 2000risk 0.00cvss —epss 0.01
The getnameinfo function in FreeBSD 4.1.1 and earlier, and possibly other operating systems, allows a remote attacker to cause a denial of service via a long DNS hostname.
- CVE-2000-1068Dec 11, 2000risk 0.00cvss —epss 0.02
pollit.cgi in Poll It 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the poll_options parameter.
- CVE-2000-1069Dec 11, 2000risk 0.04cvss —epss 0.07
pollit.cgi in Poll It 2.01 and earlier allows remote attackers to access administrative functions without knowing the real password by specifying the same value to the entered_password and admin_password parameters.
- CVE-2000-1070Dec 11, 2000risk 0.00cvss —epss 0.01
pollit.cgi in Poll It 2.01 and earlier uses data files that are located under the web document root, which allows remote attackers to access sensitive or private information.
- CVE-2000-1071Dec 11, 2000risk 0.00cvss —epss 0.01
The GUI installation for iCal 2.1 Patch 2 disables access control for the X server using an "xhost +" command, which allows remote attackers to monitor X Windows events and gain privileges.
- CVE-2000-1072Dec 11, 2000risk 0.03cvss —epss 0.00
iCal 2.1 Patch 2 installs many files with world-writeable permissions, which allows local users to modify the iCal configuration and execute arbitrary commands by replacing the iplncal.sh program with a Trojan horse.
- CVE-2000-1073Dec 11, 2000risk 0.00cvss —epss 0.00
csstart program in iCal 2.1 Patch 2 searches for the cshttpd program in the current working directory, which allows local users to gain root privileges by creating a Trojan Horse cshttpd program in a directory and calling csstart from that directory.
- CVE-2000-1074Dec 11, 2000risk 0.04cvss —epss 0.07
csstart program in iCal 2.1 Patch 2 uses relative pathnames to install the libsocket and libnsl libraries, which could allow the icsuser account to gain root privileges by creating a Trojan Horse library in the current or parent directory.
- CVE-2000-1075Dec 11, 2000risk 0.03cvss —epss 0.04
Directory traversal vulnerability in iPlanet Certificate Management System 4.2 and Directory Server 4.12 allows remote attackers to read arbitrary files via a .. (dot dot) attack in the Agent, End Entity, or Administrator services.
- CVE-2000-1076Dec 11, 2000risk 0.00cvss —epss 0.01
Netscape (iPlanet) Certificate Management System 4.2 and Directory Server 4.12 stores the administrative password in plaintext, which could allow local and possibly remote attackers to gain administrative privileges on the server.
- CVE-2000-1077Dec 11, 2000risk 0.00cvss —epss 0.02
Buffer overflow in the SHTML logging functionality of iPlanet Web Server 4.x allows remote attackers to execute arbitrary commands via a long filename with a .shtml extension.
- CVE-2000-1078Dec 11, 2000risk 0.03cvss —epss 0.05
ICQ Web Front HTTPd allows remote attackers to cause a denial of service by requesting a URL that contains a "?" character.
- CVE-2000-1222Dec 10, 2000risk 0.00cvss —epss 0.00
AIX sysback before 4.2.1.13 uses a relative path to find and execute the hostname program, which allows local users to gain privileges by modifying the path to point to a malicious hostname program.
- CVE-2000-1224Nov 23, 2000risk 0.04cvss —epss 0.08
Caucho Technology Resin 1.2 and possibly earlier allows remote attackers to view JSP source via an HTTP request to a .jsp file with certain characters appended to the file name, such as (1) "..", (2) "%2e..", (3) "%81", (4) "%82", and others.
- CVE-2000-1217Nov 21, 2000risk 0.00cvss —epss 0.01
Microsoft Windows 2000 before Service Pack 2 (SP2), when running in a non-Windows 2000 domain and using NTLM authentication, and when credentials of an account are locally cached, allows local users to bypass account lockout policies and make an unlimited number of login attempts, aka the "Domain Account Lockout" vulnerability.
- CVE-2000-1223Nov 20, 2000risk 0.00cvss —epss 0.01
quikstore.cgi in Quikstore Shopping Cart allows remote attackers to execute arbitrary commands via shell metacharacters in the URL portion of an HTTP GET request.
- CVE-2000-0824Nov 14, 2000risk 0.03cvss —epss 0.00
The unsetenv function in glibc 2.1.1 does not properly unset an environmental variable if the variable is provided twice to a program, which could allow local users to execute arbitrary commands in setuid programs by specifying their own duplicate environmental variables such as LD_PRELOAD or LD_LIBRARY_PATH.
- CVE-2000-0804Nov 14, 2000risk 0.00cvss —epss 0.00
Check Point VPN-1/FireWall-1 4.1 and earlier allows remote attackers to bypass the directionality check via fragmented TCP connection requests or reopening closed TCP connection requests, aka "One-way Connection Enforcement Bypass."
- CVE-2000-0805Nov 14, 2000risk 0.00cvss —epss 0.01
Check Point VPN-1/FireWall-1 4.1 and earlier improperly retransmits encapsulated FWS packets, even if they do not come from a valid FWZ client, aka "Retransmission of Encapsulated Packets."
- CVE-2000-0806Nov 14, 2000risk 0.00cvss —epss 0.01
The inter-module authentication mechanism (fwa1) in Check Point VPN-1/FireWall-1 4.1 and earlier may allow remote attackers to conduct a denial of service, aka "Inter-module Communications Bypass."
- CVE-2000-0807Nov 14, 2000risk 0.00cvss —epss 0.01
The OPSEC communications authentication mechanism (fwn1) in Check Point VPN-1/FireWall-1 4.1 and earlier allows remote attackers to spoof connections, aka the "OPSEC Authentication Vulnerability."
- CVE-2000-0808Nov 14, 2000risk 0.00cvss —epss 0.01
The seed generation mechanism in the inter-module S/Key authentication mechanism in Check Point VPN-1/FireWall-1 4.1 and earlier allows remote attackers to bypass authentication via a brute force attack, aka "One-time (s/key) Password Authentication."
- CVE-2000-0809Nov 14, 2000risk 0.00cvss —epss 0.01
Buffer overflow in Getkey in the protocol checker in the inter-module communication mechanism in Check Point VPN-1/FireWall-1 4.1 and earlier allows remote attackers to cause a denial of service.
- CVE-2000-0812Nov 14, 2000risk 0.00cvss —epss 0.03
The administration module in Sun Java web server allows remote attackers to execute arbitrary commands by uploading Java code to the module and invoke the com.sun.server.http.pagecompile.jsp92.JspServlet by requesting a URL that begins with a /servlet/ tag.
- CVE-2000-0813Nov 14, 2000risk 0.00cvss —epss 0.00
Check Point VPN-1/FireWall-1 4.1 and earlier allows remote attackers to redirect FTP connections to other servers ("FTP Bounce") via invalid FTP commands that are processed improperly by FireWall-1, aka "FTP Connection Enforcement Bypass."
- CVE-2000-0825Nov 14, 2000risk 0.00cvss —epss 0.03
Ipswitch Imail 6.0 allows remote attackers to cause a denial of service via a large number of connections in which a long Host: header is sent, which causes a thread to crash.
- CVE-2000-0826Nov 14, 2000risk 0.00cvss —epss 0.02
Buffer overflow in ddicgi.exe program in Mobius DocumentDirect for the Internet 1.2 allows remote attackers to execute arbitrary commands via a long GET request.
- CVE-2000-0827Nov 14, 2000risk 0.00cvss —epss 0.03
Buffer overflow in the web authorization form of Mobius DocumentDirect for the Internet 1.2 allows remote attackers to cause a denial of service or execute arbitrary commands via a long username.