Total
304758 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2000-0733 | 1 Sgi | 1 Irix | 2008-09-05 | 10.0 HIGH | N/A |
Telnetd telnet server in IRIX 5.2 through 6.1 does not properly cleans user-injected format strings, which allows remote attackers to execute arbitrary commands via a long RLD variable in the IAC-SB-TELOPT_ENVIRON request. | |||||
CVE-2000-0721 | 1 Multisoft | 1 Flagship | 2008-09-05 | 6.2 MEDIUM | N/A |
The FSserial, FlagShip_c, and FlagShip_p programs in the FlagShip package are installed world-writeable, which allows local users to replace them with Trojan horses. | |||||
CVE-2000-0755 | 1 Hp | 1 Openview Network Node Manager | 2008-09-05 | 4.6 MEDIUM | N/A |
Vulnerability in the newgrp command in HP-UX 11.00 allows local users to gain privileges. | |||||
CVE-2000-0713 | 1 Adobe | 3 Acrobat, Acrobat Business Tools, Acrobat Reader | 2008-09-05 | 7.6 HIGH | N/A |
Buffer overflow in Adobe Acrobat 4.05, Reader, Business Tools, and Fill In products that handle PDF files allows attackers to execute arbitrary commands via a long /Registry or /Ordering specifier. | |||||
CVE-2000-0699 | 1 Hp | 1 Hp-ux | 2008-09-05 | 10.0 HIGH | N/A |
Format string vulnerability in ftpd in HP-UX 10.20 allows remote attackers to cause a denial of service or execute arbitrary commands via format strings in the PASS command. | |||||
CVE-2000-0751 | 3 Netbsd, Openbsd, Redhat | 3 Netbsd, Openbsd, Linux | 2008-09-05 | 7.5 HIGH | N/A |
mopd (Maintenance Operations Protocol loader daemon) does not properly cleanse user-injected format strings, which allows remote attackers to execute arbitrary commands. | |||||
CVE-2000-0683 | 1 Bea | 1 Weblogic Server | 2008-09-05 | 5.0 MEDIUM | N/A |
BEA WebLogic 5.1.x allows remote attackers to read source code for parsed pages by inserting /*.shtml/ into the URL, which invokes the SSIServlet. | |||||
CVE-2000-0789 | 1 Bardon Data Systems | 1 Winu | 2008-09-05 | 4.6 MEDIUM | N/A |
WinU 5.x and earlier uses weak encryption to store its configuration password, which allows local users to decrypt the password and gain privileges. | |||||
CVE-2000-0712 | 1 Lids | 1 Lids | 2008-09-05 | 7.2 HIGH | N/A |
Linux Intrusion Detection System (LIDS) 0.9.7 allows local users to gain root privileges when LIDS is disabled via the security=0 boot option. | |||||
CVE-2000-0466 | 1 Ibm | 1 Aix | 2008-09-05 | 7.2 HIGH | N/A |
AIX cdmount allows local users to gain root privileges via shell metacharacters. | |||||
CVE-2000-0681 | 1 Bea | 1 Weblogic Server | 2008-09-05 | 10.0 HIGH | N/A |
Buffer overflow in BEA WebLogic server proxy plugin allows remote attackers to execute arbitrary commands via a long URL with a .JSP extension. | |||||
CVE-2000-0757 | 1 Aptis Software | 1 Totalbill | 2008-09-05 | 10.0 HIGH | N/A |
The sysgen service in Aptis Totalbill does not perform authentication, which allows remote attackers to gain root privileges by connecting to the service and specifying the commands to be executed. | |||||
CVE-2000-0687 | 1 Cgi Script Center | 1 Auction Weaver | 2008-09-05 | 10.0 HIGH | N/A |
Auction Weaver CGI script 1.03 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack in the catdir parameter. | |||||
CVE-2000-0686 | 1 Cgi Script Center | 1 Auction Weaver | 2008-09-05 | 5.0 MEDIUM | N/A |
Auction Weaver CGI script 1.03 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack in the fromfile parameter. | |||||
CVE-2000-0724 | 1 Helix Code | 1 Go-gnome Pre-installer | 2008-09-05 | 6.2 MEDIUM | N/A |
The go-gnome Helix GNOME pre-installer allows local users to overwrite arbitrary files via a symlink attack on various files in /tmp, including uudecode, snarf, and some installer files. | |||||
CVE-2000-0758 | 1 Lyris | 1 List Manager | 2008-09-05 | 4.6 MEDIUM | N/A |
The web interface for Lyris List Manager 3 and 4 allows list subscribers to obtain administrative access by modifying the value of the list_admin hidden form field. | |||||
CVE-2000-0754 | 1 Hp | 1 Openview Network Node Manager | 2008-09-05 | 2.1 LOW | N/A |
Vulnerability in HP OpenView Network Node Manager (NMM) version 6.1 related to passwords. | |||||
CVE-2000-0792 | 1 Alan Cox | 1 Gnome-lokkit | 2008-09-05 | 7.5 HIGH | N/A |
Gnome Lokkit firewall package before 0.41 does not properly restrict access to some ports, even if a user does not make any services available. | |||||
CVE-2000-0761 | 1 Ibm | 1 Os2 Ftp Server | 2008-09-05 | 5.0 MEDIUM | N/A |
OS2/Warp 4.5 FTP server allows remote attackers to cause a denial of service via a long username. | |||||
CVE-2000-0736 | 1 Rimarts Inc. | 1 Becky Internet Mail | 2008-09-05 | 5.0 MEDIUM | N/A |
Buffer overflow in Becky! Internet Mail client 1.26.04 and earlier allows remote attackers to cause a denial of service via a long Content-type: MIME header when the user forwards a message. |