Vulnerabilities (CVE)

Total 304758 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2000-0903 1 Qnx 1 Voyager 2008-09-05 5.0 MEDIUM N/A
Directory traversal vulnerability in Voyager web server 2.01B in the demo disks for QNX 405 allows remote attackers to read arbitrary files via a .. (dot dot) attack.
CVE-2000-1234 1 Phorum 1 Phorum 2008-09-05 5.0 MEDIUM N/A
violation.php3 in Phorum 3.0.7 allows remote attackers to send e-mails to arbitrary addresses and possibly use Phorum as a "spam proxy" by setting the Mod and ForumName parameters.
CVE-2000-0856 1 Xs4all Data 1 Xs4all Data Sunftp 2008-09-05 7.5 HIGH N/A
Buffer overflow in SunFTP build 9(1) allows remote attackers to cause a denial of service or possibly execute arbitrary commands via a long GET request.
CVE-2000-1175 1 Jan Hubicka 1 Koules 2008-09-05 7.2 HIGH N/A
Buffer overflow in Koules 1.4 allows local users to execute arbitrary commands via a long command line argument.
CVE-2000-1219 1 Gnu 2 G\+\+, Gcc 2008-09-05 7.5 HIGH N/A
The -ftrapv compiler option in gcc and g++ 3.3.3 and earlier does not handle all types of integer overflows, which may leave applications vulnerable to vulnerabilities related to overflows.
CVE-2000-1194 1 Argosoft 1 Ftp Server 2008-09-05 7.5 HIGH N/A
Argosoft FRP server 1.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long string to the (1) USER or (2) CWD commands.
CVE-2000-1233 1 Phorum 1 Phorum 2008-09-05 7.5 HIGH N/A
SQL injection vulnerability in read.php3 and other scripts in Phorum 3.0.7 allows remote attackers to execute arbitrary SQL queries via the sSQL parameter.
CVE-2000-1235 1 Oracle 1 Application Server 2008-09-05 5.0 MEDIUM N/A
The default configurations of (1) the port listener and (2) modplsql in Oracle Internet Application Server (IAS) 3.0.7 and earlier allow remote attackers to view privileged database information via HTTP requests for Database Access Descriptor (DAD) files.
CVE-2000-1046 1 Lotus 1 Domino 2008-09-05 10.0 HIGH N/A
Multiple buffer overflows in the ESMTP service of Lotus Domino 5.0.2c and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via long (1) "RCPT TO," (2) "SAML FROM," or (3) "SOML FROM" commands.
CVE-2000-1160 1 Network Associates 1 Sniffer Agent 2008-09-05 5.0 MEDIUM N/A
NAI Sniffer Agent allows remote attackers to cause a denial of service (crash) by sending a large number of login requests.
CVE-2000-1237 1 Floosietek 1 Ftgate 2008-09-05 5.0 MEDIUM N/A
The POP3 server in FTGate returns an -ERR code after receiving an invalid USER request, which makes it easier for remote attackers to determine valid usernames and conduct brute force password guessing.
CVE-2000-0999 1 Openbsd 1 Openssh 2008-09-05 10.0 HIGH N/A
Format string vulnerabilities in OpenBSD ssh program (and possibly other BSD-based operating systems) allow attackers to gain root privileges.
CVE-2000-0931 1 David Harris 1 Pegasus Mail 2008-09-05 7.5 HIGH N/A
Buffer overflow in Pegasus Mail 3.11 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long email message containing binary data.
CVE-2000-0893 1 Sgi 1 Irix 2008-09-05 5.0 MEDIUM N/A
The presence of the Distributed GL Daemon (dgld) service on port 5232 on SGI IRIX systems allows remote attackers to identify the target host as an SGI system.
CVE-2000-1105 1 Microsoft 1 Indexing Service 2008-09-05 4.3 MEDIUM N/A
The ixsso.query ActiveX Object is marked as safe for scripting, which allows malicious web site operators to embed a script that remotely determines the existence of files on visiting Windows 2000 systems that have Indexing Services enabled.
CVE-2000-1103 1 Bsdi 1 Bsd Os 2008-09-05 7.2 HIGH N/A
rcvtty in BSD 3.0 and 4.0 does not properly drop privileges before executing a script, which allows local attackers to gain privileges by specifying an alternate Trojan horse script on the command line.
CVE-2000-0904 1 Qnx 1 Voyager 2008-09-05 5.0 MEDIUM N/A
Voyager web server 2.01B in the demo disks for QNX 405 stores sensitive web client information in the .photon directory in the web document root, which allows remote attackers to obtain that information.
CVE-2000-0855 1 Xs4all Data 1 Xs4all Data Sunftp 2008-09-05 5.0 MEDIUM N/A
SunFTP build 9(1) allows remote attackers to cause a denial of service by connecting to the server and disconnecting before sending a newline.
CVE-2000-1172 1 Rob Flynn 1 Gaim 2008-09-05 10.0 HIGH N/A
Buffer overflow in Gaim 0.10.3 and earlier using the OSCAR protocol allows remote attackers to conduct a denial of service and possibly execute arbitrary commands via a long HTML tag.
CVE-2000-1176 1 Yabb 1 Yabb 2008-09-05 7.5 HIGH N/A
Directory traversal vulnerability in YaBB search.pl CGI script allows remote attackers to read arbitrary files via a .. (dot dot) attack in the "catsearch" form field.