Количество 303 875
Количество 303 875

CVE-2000-0076
nviboot boot script in the Debian nvi package allows local users to delete files via malformed entries in vi.recover.

CVE-2000-0075
Super Mail Transfer Package (SMTP), later called MsgCore, has a memory leak which allows remote attackers to cause a denial of service by repeating multiple HELO, MAIL FROM, RCPT TO, and DATA commands in the same session.

CVE-2000-0074
PowerScripts PlusMail CGI program allows remote attackers to execute commands via a password file with improper permissions.

CVE-2000-0073
Buffer overflow in Microsoft Rich Text Format (RTF) reader allows attackers to cause a denial of service via a malformed control word.

CVE-2000-0072
Visual Casel (Vcasel) does not properly prevent users from executing files, which allows local users to use a relative pathname to specify an alternate file which has an approved name and possibly gain privileges.

CVE-2000-0071
IIS 4.0 allows a remote attacker to obtain the real pathname of the document root by requesting non-existent files with .ida or .idq extensions.

CVE-2000-0070
NtImpersonateClientOfPort local procedure call in Windows NT 4.0 allows local users to gain privileges, aka "Spoofed LPC Port Request."

CVE-2000-0069
The recover program in Solstice Backup allows local users to restore sensitive files.

CVE-2000-0068
daynad program in Intel InBusiness E-mail Station does not require authentication, which allows remote attackers to modify its configuration, delete files, or read mail.

CVE-2000-0067
CyberCash Merchant Connection Kit (MCK) allows local users to modify files via a symlink attack.

CVE-2000-0066
WebSite Pro allows remote attackers to determine the real pathname of webdirectories via a malformed URL request.

CVE-2000-0065
Buffer overflow in InetServ 3.0 allows remote attackers to execute commands via a long GET request.

CVE-2000-0064
cgiproc CGI script in Nortel Contivity HTTP server allows remote attackers to cause a denial of service via a malformed URL that includes shell metacharacters.

CVE-2000-0063
cgiproc CGI script in Nortel Contivity HTTP server allows remote attackers to read arbitrary files by specifying the filename in a parameter to the script.

CVE-2000-0062
The DTML implementation in the Z Object Publishing Environment (Zope) allows remote attackers to conduct unauthorized activities.

CVE-2000-0061
Internet Explorer 5 does not modify the security zone for a document that is being loaded into a window until after the document has been loaded, which could allow remote attackers to execute Javascript in a different security context while the document is loading.

CVE-2000-0060
Buffer overflow in aVirt Rover POP3 server 1.1 allows remote attackers to cause a denial of service via a long user name.

CVE-2000-0059
PHP3 with safe_mode enabled does not properly filter shell metacharacters from commands that are executed by popen, which could allow remote attackers to execute commands.

CVE-2000-0058
Network HotSync program in Handspring Visor does not have authentication, which allows remote attackers to retrieve email and files.

CVE-2000-0057
Cold Fusion CFCACHE tag places temporary cache files within the web document root, allowing remote attackers to obtain sensitive system information.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-2000-0076 nviboot boot script in the Debian nvi package allows local users to delete files via malformed entries in vi.recover. | CVSS2: 2.1 | 0% Низкий | больше 25 лет назад |
![]() | CVE-2000-0075 Super Mail Transfer Package (SMTP), later called MsgCore, has a memory leak which allows remote attackers to cause a denial of service by repeating multiple HELO, MAIL FROM, RCPT TO, and DATA commands in the same session. | CVSS2: 5 | 4% Низкий | больше 25 лет назад |
![]() | CVE-2000-0074 PowerScripts PlusMail CGI program allows remote attackers to execute commands via a password file with improper permissions. | CVSS2: 7.5 | 6% Низкий | больше 25 лет назад |
![]() | CVE-2000-0073 Buffer overflow in Microsoft Rich Text Format (RTF) reader allows attackers to cause a denial of service via a malformed control word. | CVSS2: 5 | 17% Средний | почти 26 лет назад |
![]() | CVE-2000-0072 Visual Casel (Vcasel) does not properly prevent users from executing files, which allows local users to use a relative pathname to specify an alternate file which has an approved name and possibly gain privileges. | CVSS2: 4.6 | 0% Низкий | больше 25 лет назад |
![]() | CVE-2000-0071 IIS 4.0 allows a remote attacker to obtain the real pathname of the document root by requesting non-existent files with .ida or .idq extensions. | CVSS2: 5 | 41% Средний | больше 25 лет назад |
![]() | CVE-2000-0070 NtImpersonateClientOfPort local procedure call in Windows NT 4.0 allows local users to gain privileges, aka "Spoofed LPC Port Request." | CVSS2: 7.2 | 3% Низкий | больше 25 лет назад |
![]() | CVE-2000-0069 The recover program in Solstice Backup allows local users to restore sensitive files. | CVSS2: 2.1 | 0% Низкий | больше 25 лет назад |
![]() | CVE-2000-0068 daynad program in Intel InBusiness E-mail Station does not require authentication, which allows remote attackers to modify its configuration, delete files, or read mail. | CVSS2: 7.5 | 1% Низкий | больше 25 лет назад |
![]() | CVE-2000-0067 CyberCash Merchant Connection Kit (MCK) allows local users to modify files via a symlink attack. | CVSS2: 2.1 | 0% Низкий | больше 25 лет назад |
![]() | CVE-2000-0066 WebSite Pro allows remote attackers to determine the real pathname of webdirectories via a malformed URL request. | CVSS2: 5 | 1% Низкий | больше 25 лет назад |
![]() | CVE-2000-0065 Buffer overflow in InetServ 3.0 allows remote attackers to execute commands via a long GET request. | CVSS2: 10 | 5% Низкий | больше 25 лет назад |
![]() | CVE-2000-0064 cgiproc CGI script in Nortel Contivity HTTP server allows remote attackers to cause a denial of service via a malformed URL that includes shell metacharacters. | CVSS2: 5 | 1% Низкий | больше 25 лет назад |
![]() | CVE-2000-0063 cgiproc CGI script in Nortel Contivity HTTP server allows remote attackers to read arbitrary files by specifying the filename in a parameter to the script. | CVSS2: 5 | 1% Низкий | больше 25 лет назад |
![]() | CVE-2000-0062 The DTML implementation in the Z Object Publishing Environment (Zope) allows remote attackers to conduct unauthorized activities. | CVSS2: 10 | 1% Низкий | больше 25 лет назад |
![]() | CVE-2000-0061 Internet Explorer 5 does not modify the security zone for a document that is being loaded into a window until after the document has been loaded, which could allow remote attackers to execute Javascript in a different security context while the document is loading. | CVSS2: 10 | 17% Средний | больше 25 лет назад |
![]() | CVE-2000-0060 Buffer overflow in aVirt Rover POP3 server 1.1 allows remote attackers to cause a denial of service via a long user name. | CVSS2: 5 | 1% Низкий | больше 25 лет назад |
![]() | CVE-2000-0059 PHP3 with safe_mode enabled does not properly filter shell metacharacters from commands that are executed by popen, which could allow remote attackers to execute commands. | CVSS2: 10 | 4% Низкий | больше 25 лет назад |
![]() | CVE-2000-0058 Network HotSync program in Handspring Visor does not have authentication, which allows remote attackers to retrieve email and files. | CVSS2: 5 | 1% Низкий | больше 25 лет назад |
![]() | CVE-2000-0057 Cold Fusion CFCACHE tag places temporary cache files within the web document root, allowing remote attackers to obtain sensitive system information. | CVSS2: 7.5 | 3% Низкий | больше 25 лет назад |
Уязвимостей на страницу