VYPR

CVEs

335,110 total · page 6658 of 6,703

  • CVE-2000-0720Oct 20, 2000
    risk 0.03cvss epss 0.04

    news.cgi in GWScripts News Publisher does not properly authenticate requests to add an author to the author index, which allows remote attackers to add new authors by directly posting an HTTP request to the new.cgi program with an addAuthor parameter, and setting the Referer to the news.cgi program.

  • CVE-2000-0721Oct 20, 2000
    risk 0.03cvss epss 0.00

    The FSserial, FlagShip_c, and FlagShip_p programs in the FlagShip package are installed world-writeable, which allows local users to replace them with Trojan horses.

  • CVE-2000-0722Oct 20, 2000
    risk 0.00cvss epss 0.00

    Helix GNOME Updater helix-update 0.5 and earlier allows local users to install arbitrary RPM packages by creating the /tmp/helix-install installation directory before root has begun installing packages.

  • CVE-2000-0723Oct 20, 2000
    risk 0.00cvss epss 0.00

    Helix GNOME Updater helix-update 0.5 and earlier does not properly create /tmp directories, which allows local users to create empty system configuration files such as /etc/config.d/bashrc, /etc/config.d/csh.cshrc, and /etc/rc.config.

  • CVE-2000-0724Oct 20, 2000
    risk 0.00cvss epss 0.00

    The go-gnome Helix GNOME pre-installer allows local users to overwrite arbitrary files via a symlink attack on various files in /tmp, including uudecode, snarf, and some installer files.

  • CVE-2000-0725Oct 20, 2000
    risk 0.00cvss epss 0.00

    Zope before 2.2.1 does not properly restrict access to the getRoles method, which allows users who can edit DTML to add or modify roles by modifying the roles list that is included in a request.

  • CVE-2000-0726Oct 20, 2000
    risk 0.00cvss epss 0.00

    CGIMail.exe CGI program in Stalkerlab Mailers 1.1.2 allows remote attackers to read arbitrary files by specifying the file in the $Attach$ hidden form variable.

  • CVE-2000-0727Oct 20, 2000
    risk 0.00cvss epss 0.01

    xpdf PDF viewer client earlier than 0.91 does not properly launch a web browser for embedded URL's, which allows an attacker to execute arbitrary commands via a URL that contains shell metacharacters.

  • CVE-2000-0728Oct 20, 2000
    risk 0.00cvss epss 0.00

    xpdf PDF viewer client earlier than 0.91 allows local users to overwrite arbitrary files via a symlink attack.

  • CVE-2000-0729Oct 20, 2000
    risk 0.00cvss epss 0.00

    FreeBSD 5.x, 4.x, and 3.x allows local users to cause a denial of service by executing a program with a malformed ELF image header.

  • CVE-2000-0730Oct 20, 2000
    risk 0.00cvss epss 0.00

    Vulnerability in newgrp command in HP-UX 11.0 allows local users to gain privileges.

  • CVE-2000-0732Oct 20, 2000
    risk 0.00cvss epss 0.01

    Worm HTTP server allows remote attackers to cause a denial of service via a long URL.

  • CVE-2000-0733Oct 20, 2000
    risk 0.03cvss epss 0.06

    Telnetd telnet server in IRIX 5.2 through 6.1 does not properly cleans user-injected format strings, which allows remote attackers to execute arbitrary commands via a long RLD variable in the IAC-SB-TELOPT_ENVIRON request.

  • CVE-2000-0734Oct 20, 2000
    risk 0.03cvss epss 0.04

    eEye IRIS 1.01 beta allows remote attackers to cause a denial of service via a large number of UDP connections.

  • CVE-2000-0735Oct 20, 2000
    risk 0.00cvss epss 0.01

    Buffer overflow in Becky! Internet Mail client 1.26.03 and earlier allows remote attackers to cause a denial of service via a long Content-type: MIME header when the user replies to a message.

  • CVE-2000-0736Oct 20, 2000
    risk 0.00cvss epss 0.01

    Buffer overflow in Becky! Internet Mail client 1.26.04 and earlier allows remote attackers to cause a denial of service via a long Content-type: MIME header when the user forwards a message.

  • CVE-2000-0737Oct 20, 2000
    risk 0.03cvss epss 0.02

    The Service Control Manager (SCM) in Windows 2000 creates predictable named pipes, which allows a local user with console access to gain administrator privileges, aka the "Service Control Manager Named Pipe Impersonation" vulnerability.

  • CVE-2000-0738Oct 20, 2000
    risk 0.00cvss epss 0.01

    WebShield SMTP 4.5 allows remote attackers to cause a denial of service by sending e-mail with a From: address that has a . (period) at the end, which causes WebShield to continuously send itself copies of the e-mail.

  • CVE-2000-0739Oct 20, 2000
    risk 0.03cvss epss 0.05

    Directory traversal vulnerability in strong.exe program in NAI Net Tools PKI server 1.0 before HotFix 3 allows remote attackers to read arbitrary files via a .. (dot dot) attack in an HTTPS request to the enrollment server.

  • CVE-2000-0740Oct 20, 2000
    risk 0.04cvss epss 0.09

    Buffer overflow in strong.exe program in NAI Net Tools PKI server 1.0 before HotFix 3 allows remote attackers to execute arbitrary commands via a long URL in the HTTPS port.

  • CVE-2000-0741Oct 20, 2000
    risk 0.04cvss epss 0.07

    Format string vulnerability in strong.exe program in NAI Net Tools PKI server 1.0 before HotFix 3 allows remote attackers to execute arbitrary code via format strings in a URL with a .XUDA extension.

  • CVE-2000-0742Oct 20, 2000
    risk 0.02cvss epss 0.19

    The IPX protocol implementation in Microsoft Windows 95 and 98 allows remote attackers to cause a denial of service by sending a ping packet with a source IP address that is a broadcast address, aka the "Malformed IPX Ping Packet" vulnerability.

  • CVE-2000-0743Oct 20, 2000
    risk 0.03cvss epss 0.06

    Buffer overflow in University of Minnesota (UMN) gopherd 2.x allows remote attackers to execute arbitrary commands via a DES key generation request (GDESkey) that contains a long ticket value.

  • CVE-2000-0745Oct 20, 2000
    risk 0.03cvss epss 0.00

    admin.php3 in PHP-Nuke does not properly verify the PHP-Nuke administrator password, which allows remote attackers to gain privileges by requesting a URL that does not specify the aid or pwd parameter.

  • CVE-2000-0746Oct 20, 2000
    risk 0.01cvss epss 0.18

    Vulnerabilities in IIS 4.0 and 5.0 do not properly protect against cross-site scripting (CSS) attacks. They allow a malicious web site operator to embed scripts in a link to a trusted site, which are returned without quoting in an error message back to the client. The client then executes those scripts in the same context as the trusted site, aka the "IIS Cross-Site Scripting" vulnerabilities.

  • CVE-2000-0747Oct 20, 2000
    risk 0.00cvss epss 0.00

    The logrotate script for OpenLDAP before 1.2.11 in Conectiva Linux sends an improper signal to the kernel log daemon (klogd) and kills it.

  • CVE-2000-0748Oct 20, 2000
    risk 0.00cvss epss 0.00

    OpenLDAP 1.2.11 and earlier improperly installs the ud binary with group write permissions, which could allow any user in that group to replace the binary with a Trojan horse.

  • CVE-2000-0749Oct 20, 2000
    risk 0.00cvss epss 0.00

    Buffer overflow in the Linux binary compatibility module in FreeBSD 3.x through 5.x allows local users to gain root privileges via long filenames in the linux shadow file system.

  • CVE-2000-0750Oct 20, 2000
    risk 0.00cvss epss 0.02

    Buffer overflow in mopd (Maintenance Operations Protocol loader daemon) allows remote attackers to execute arbitrary commands via a long file name.

  • CVE-2000-0751Oct 20, 2000
    risk 0.05cvss epss 0.20

    mopd (Maintenance Operations Protocol loader daemon) does not properly cleanse user-injected format strings, which allows remote attackers to execute arbitrary commands.

  • CVE-2000-0752Oct 20, 2000
    risk 0.00cvss epss 0.00

    Buffer overflows in brouted in FreeBSD and possibly other OSes allows local users to gain root privileges via long command line arguments.

  • CVE-2000-0753Oct 20, 2000
    risk 0.01cvss epss 0.18

    The Microsoft Outlook mail client identifies the physical path of the sender's machine within a winmail.dat attachment to Rich Text Format (RTF) files.

  • CVE-2000-0754Oct 20, 2000
    risk 0.00cvss epss 0.00

    Vulnerability in HP OpenView Network Node Manager (NMM) version 6.1 related to passwords.

  • CVE-2000-0755Oct 20, 2000
    risk 0.00cvss epss 0.00

    Vulnerability in the newgrp command in HP-UX 11.00 allows local users to gain privileges.

  • CVE-2000-0756Oct 20, 2000
    risk 0.01cvss epss 0.12

    Microsoft Outlook 2000 does not properly process long or malformed fields in vCard (.vcf) files, which allows attackers to cause a denial of service.

  • CVE-2000-0757Oct 20, 2000
    risk 0.04cvss epss 0.07

    The sysgen service in Aptis Totalbill does not perform authentication, which allows remote attackers to gain root privileges by connecting to the service and specifying the commands to be executed.

  • CVE-2000-0758Oct 20, 2000
    risk 0.00cvss epss 0.00

    The web interface for Lyris List Manager 3 and 4 allows list subscribers to obtain administrative access by modifying the value of the list_admin hidden form field.

  • CVE-2000-0759Oct 20, 2000
    risk 0.06cvss epss 0.40

    Jakarta Tomcat 3.1 under Apache reveals physical path information when a remote attacker requests a URL that does not exist, which generates an error message that includes the physical path.

  • CVE-2000-0760Oct 20, 2000
    risk 0.05cvss epss 0.30

    The Snoop servlet in Jakarta Tomcat 3.1 and 3.0 under Apache reveals sensitive system information when a remote attacker requests a nonexistent URL with a .snp extension.

  • CVE-2000-0761Oct 20, 2000
    risk 0.00cvss epss 0.01

    OS2/Warp 4.5 FTP server allows remote attackers to cause a denial of service via a long username.

  • CVE-2000-0762Oct 20, 2000
    risk 0.00cvss epss 0.01

    The default installation of eTrust Access Control (formerly SeOS) uses a default encryption key, which allows remote attackers to spoof the eTrust administrator and gain privileges.

  • CVE-2000-0763Oct 20, 2000
    risk 0.03cvss epss 0.01

    xlockmore and xlockf do not properly cleanse user-injected format strings, which allows local users to gain root privileges via the -d option.

  • CVE-2000-0764Oct 20, 2000
    risk 0.00cvss epss 0.01

    Intel Express 500 series switches allow a remote attacker to cause a denial of service via a malformed IP packet.

  • CVE-2000-0765Oct 20, 2000
    risk 0.01cvss epss 0.11

    Buffer overflow in the HTML interpreter in Microsoft Office 2000 allows an attacker to execute arbitrary commands via a long embedded object tag, aka the "Microsoft Office HTML Object Tag" vulnerability.

  • CVE-2000-0766Oct 20, 2000
    risk 0.03cvss epss 0.05

    Buffer overflow in vqSoft vqServer 1.4.49 allows remote attackers to cause a denial of service or possibly gain privileges via a long HTTP GET request.

  • CVE-2000-0767Oct 20, 2000
    risk 0.01cvss epss 0.13

    The ActiveX control for invoking a scriptlet in Internet Explorer 4.x and 5.x renders arbitrary file types instead of HTML, which allows an attacker to read arbitrary files, aka the "Scriptlet Rendering" vulnerability.

  • CVE-2000-0768Oct 20, 2000
    risk 0.01cvss epss 0.16

    A function in Internet Explorer 4.x and 5.x does not properly verify the domain of a frame within a browser window, which allows a remote attacker to read client files, aka a variant of the "Frame Domain Verification" vulnerability.

  • CVE-2000-0769Oct 20, 2000
    risk 0.00cvss epss 0.01

    O'Reilly WebSite Pro 2.3.7 installs the uploader.exe program with execute permissions for all users, which allows remote attackers to create and execute arbitrary files by directly calling uploader.exe.

  • CVE-2000-0770Oct 20, 2000
    risk 0.00cvss epss 0.02

    IIS 4.0 and 5.0 does not properly restrict access to certain types of files when their parent folders have less restrictive permissions, which could allow remote attackers to bypass access restrictions to some files, aka the "File Permission Canonicalization" vulnerability.

  • CVE-2000-0771Oct 20, 2000
    risk 0.00cvss epss 0.00

    Microsoft Windows 2000 allows local users to cause a denial of service by corrupting the local security policy via malformed RPC traffic, aka the "Local Security Policy Corruption" vulnerability.