Vulnerabilities (CVE)

Total 304758 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2000-0335 2 Gnu, Isc 2 Glibc, Bind 2008-09-10 7.5 HIGH N/A
The resolver in glibc 2.1.3 uses predictable IDs, which allows a local attacker to spoof DNS query results.
CVE-2000-0369 1 Caldera 1 Openlinux 2008-09-10 5.0 MEDIUM N/A
The IDENT server in Caldera Linux 2.3 creates multiple threads for each IDENT request, which allows remote attackers to cause a denial of service.
CVE-2000-0367 1 Michael Jennings 1 Eterm 2008-09-10 7.2 HIGH N/A
Vulnerability in eterm 0.8.8 in Debian GNU/Linux allows an attacker to gain root privileges.
CVE-2000-0418 1 Cayman 2 3220-h Dsl Router, Gatorsurf 2008-09-10 5.0 MEDIUM N/A
The Cayman 3220-H DSL router allows remote attackers to cause a denial of service via oversized ICMP echo (ping) requests.
CVE-2000-0362 1 Suse 1 Suse Linux 2008-09-10 7.2 HIGH N/A
Buffer overflows in Linux cdwtools 093 and earlier allows local users to gain root privileges.
CVE-2000-0299 1 Apple 1 Webobjects 2008-09-10 5.0 MEDIUM N/A
Buffer overflow in WebObjects.exe in the WebObjects Developer 4.5 package allows remote attackers to cause a denial of service via an HTTP request with long headers such as Accept.
CVE-2000-0355 3 Bent Bagger, Redhat, Suse 3 Pbpg, Linux, Suse Linux 2008-09-10 7.5 HIGH N/A
pg and pb in SuSE pbpg 1.x package allows an attacker to read arbitrary files.
CVE-2000-0454 1 Mandrakesoft 1 Mandrake Linux 2008-09-10 7.2 HIGH N/A
Buffer overflow in Linux cdrecord allows local users to gain privileges via the dev parameter.
CVE-2000-0287 1 Cnc 1 Technology Bizdb 2008-09-10 10.0 HIGH N/A
The BizDB CGI script bizdb-search.cgi allows remote attackers to execute arbitrary commands via shell metacharacters in the dbname parameter.
CVE-2000-0361 1 Suse 1 Suse Linux 2008-09-10 2.1 LOW N/A
The PPP wvdial.lxdialog script in wvdial 1.4 and earlier creates a .config file with world readable permissions, which allows a local attacker in the dialout group to access login and password information.
CVE-2000-0494 1 Symantec Veritas 1 Volume Manager 2008-09-10 7.2 HIGH N/A
Veritas Volume Manager creates a world writable .server_pids file, which allows local users to add arbitrary commands into the file, which is then executed by the vmsa_server script.
CVE-2000-0446 1 Marty Bochane 1 Mdbms 2008-09-10 7.5 HIGH N/A
Buffer overflow in MDBMS database server allows remote attackers to execute arbitrary commands via a long string.
CVE-2000-0184 2 Mandrakesoft, Redhat 2 Mandrake Linux, Linux 2008-09-10 2.1 LOW N/A
Linux printtool sets the permissions of printer configuration files to be world-readable, which allows local attackers to obtain printer share passwords.
CVE-2000-0199 1 Microsoft 1 Sql Server 2008-09-10 7.2 HIGH N/A
When a new SQL Server is registered in Enterprise Manager for Microsoft SQL Server 7.0 and the "Always prompt for login name and password" option is not set, then the Enterprise Manager uses weak encryption to store the login ID and password.
CVE-2000-0186 4 Freebsd, Mandrakesoft, Redhat and 1 more 4 Freebsd, Mandrake Linux, Linux and 1 more 2008-09-10 7.2 HIGH N/A
Buffer overflow in the dump utility in the Linux ext2fs backup package allows local users to gain privileges via a long command line argument.
CVE-2000-0263 1 Redhat 1 Linux 2008-09-10 2.1 LOW N/A
The X font server xfs in Red Hat Linux 6.x allows an attacker to cause a denial of service via a malformed request.
CVE-2000-0215 1 Sco 1 Unixware 2008-09-10 7.2 HIGH N/A
Vulnerability in SCO cu program in UnixWare 7.x allows local users to gain privileges.
CVE-2000-0282 1 Talentsoft 1 Web\+ 2008-09-10 5.0 MEDIUM N/A
TalentSoft webpsvr daemon in the Web+ shopping cart application allows remote attackers to read arbitrary files via a .. (dot dot) attack on the webplus CGI program.
CVE-2000-0249 1 Ibm 1 Aix 2008-09-10 7.2 HIGH N/A
The AIX Fast Response Cache Accelerator (FRCA) allows local users to modify arbitrary files via the configuration capability in the frcactrl program.
CVE-2000-0176 1 Cat Soft 1 Serv-u 2008-09-10 5.0 MEDIUM N/A
The default configuration of Serv-U 2.5d and earlier allows remote attackers to determine the real pathname of the server by requesting a URL for a directory or file that does not exist.