Total
29527 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2000-0985 | 1 Nevis Systems | 1 All-mail | 2008-09-05 | 10.0 HIGH | N/A |
Buffer overflow in All-Mail 1.1 allows remote attackers to execute arbitrary commands via a long "MAIL FROM" or "RCPT TO" command. | |||||
CVE-2000-0903 | 1 Qnx | 1 Voyager | 2008-09-05 | 5.0 MEDIUM | N/A |
Directory traversal vulnerability in Voyager web server 2.01B in the demo disks for QNX 405 allows remote attackers to read arbitrary files via a .. (dot dot) attack. | |||||
CVE-2000-1234 | 1 Phorum | 1 Phorum | 2008-09-05 | 5.0 MEDIUM | N/A |
violation.php3 in Phorum 3.0.7 allows remote attackers to send e-mails to arbitrary addresses and possibly use Phorum as a "spam proxy" by setting the Mod and ForumName parameters. | |||||
CVE-2000-0856 | 1 Xs4all Data | 1 Xs4all Data Sunftp | 2008-09-05 | 7.5 HIGH | N/A |
Buffer overflow in SunFTP build 9(1) allows remote attackers to cause a denial of service or possibly execute arbitrary commands via a long GET request. | |||||
CVE-2000-1175 | 1 Jan Hubicka | 1 Koules | 2008-09-05 | 7.2 HIGH | N/A |
Buffer overflow in Koules 1.4 allows local users to execute arbitrary commands via a long command line argument. | |||||
CVE-2000-1219 | 1 Gnu | 2 G\+\+, Gcc | 2008-09-05 | 7.5 HIGH | N/A |
The -ftrapv compiler option in gcc and g++ 3.3.3 and earlier does not handle all types of integer overflows, which may leave applications vulnerable to vulnerabilities related to overflows. | |||||
CVE-2000-1194 | 1 Argosoft | 1 Ftp Server | 2008-09-05 | 7.5 HIGH | N/A |
Argosoft FRP server 1.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long string to the (1) USER or (2) CWD commands. | |||||
CVE-2000-1233 | 1 Phorum | 1 Phorum | 2008-09-05 | 7.5 HIGH | N/A |
SQL injection vulnerability in read.php3 and other scripts in Phorum 3.0.7 allows remote attackers to execute arbitrary SQL queries via the sSQL parameter. | |||||
CVE-2000-1235 | 1 Oracle | 1 Application Server | 2008-09-05 | 5.0 MEDIUM | N/A |
The default configurations of (1) the port listener and (2) modplsql in Oracle Internet Application Server (IAS) 3.0.7 and earlier allow remote attackers to view privileged database information via HTTP requests for Database Access Descriptor (DAD) files. | |||||
CVE-2000-1046 | 1 Lotus | 1 Domino | 2008-09-05 | 10.0 HIGH | N/A |
Multiple buffer overflows in the ESMTP service of Lotus Domino 5.0.2c and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via long (1) "RCPT TO," (2) "SAML FROM," or (3) "SOML FROM" commands. | |||||
CVE-2000-1160 | 1 Network Associates | 1 Sniffer Agent | 2008-09-05 | 5.0 MEDIUM | N/A |
NAI Sniffer Agent allows remote attackers to cause a denial of service (crash) by sending a large number of login requests. | |||||
CVE-2000-1237 | 1 Floosietek | 1 Ftgate | 2008-09-05 | 5.0 MEDIUM | N/A |
The POP3 server in FTGate returns an -ERR code after receiving an invalid USER request, which makes it easier for remote attackers to determine valid usernames and conduct brute force password guessing. | |||||
CVE-2000-0999 | 1 Openbsd | 1 Openssh | 2008-09-05 | 10.0 HIGH | N/A |
Format string vulnerabilities in OpenBSD ssh program (and possibly other BSD-based operating systems) allow attackers to gain root privileges. | |||||
CVE-2000-0931 | 1 David Harris | 1 Pegasus Mail | 2008-09-05 | 7.5 HIGH | N/A |
Buffer overflow in Pegasus Mail 3.11 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long email message containing binary data. | |||||
CVE-2000-0893 | 1 Sgi | 1 Irix | 2008-09-05 | 5.0 MEDIUM | N/A |
The presence of the Distributed GL Daemon (dgld) service on port 5232 on SGI IRIX systems allows remote attackers to identify the target host as an SGI system. | |||||
CVE-2000-1105 | 1 Microsoft | 1 Indexing Service | 2008-09-05 | 4.3 MEDIUM | N/A |
The ixsso.query ActiveX Object is marked as safe for scripting, which allows malicious web site operators to embed a script that remotely determines the existence of files on visiting Windows 2000 systems that have Indexing Services enabled. | |||||
CVE-2000-1103 | 1 Bsdi | 1 Bsd Os | 2008-09-05 | 7.2 HIGH | N/A |
rcvtty in BSD 3.0 and 4.0 does not properly drop privileges before executing a script, which allows local attackers to gain privileges by specifying an alternate Trojan horse script on the command line. | |||||
CVE-2000-0904 | 1 Qnx | 1 Voyager | 2008-09-05 | 5.0 MEDIUM | N/A |
Voyager web server 2.01B in the demo disks for QNX 405 stores sensitive web client information in the .photon directory in the web document root, which allows remote attackers to obtain that information. | |||||
CVE-2000-0855 | 1 Xs4all Data | 1 Xs4all Data Sunftp | 2008-09-05 | 5.0 MEDIUM | N/A |
SunFTP build 9(1) allows remote attackers to cause a denial of service by connecting to the server and disconnecting before sending a newline. | |||||
CVE-2000-1172 | 1 Rob Flynn | 1 Gaim | 2008-09-05 | 10.0 HIGH | N/A |
Buffer overflow in Gaim 0.10.3 and earlier using the OSCAR protocol allows remote attackers to conduct a denial of service and possibly execute arbitrary commands via a long HTML tag. |