Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 306 905

Количество 306 905

nvd логотип

CVE-2000-1076

больше 24 лет назад

Netscape (iPlanet) Certificate Management System 4.2 and Directory Server 4.12 stores the administrative password in plaintext, which could allow local and possibly remote attackers to gain administrative privileges on the server.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2000-1075

больше 24 лет назад

Directory traversal vulnerability in iPlanet Certificate Management System 4.2 and Directory Server 4.12 allows remote attackers to read arbitrary files via a .. (dot dot) attack in the Agent, End Entity, or Administrator services.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-1074

больше 24 лет назад

csstart program in iCal 2.1 Patch 2 uses relative pathnames to install the libsocket and libnsl libraries, which could allow the icsuser account to gain root privileges by creating a Trojan Horse library in the current or parent directory.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2000-1073

больше 24 лет назад

csstart program in iCal 2.1 Patch 2 searches for the cshttpd program in the current working directory, which allows local users to gain root privileges by creating a Trojan Horse cshttpd program in a directory and calling csstart from that directory.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2000-1072

больше 24 лет назад

iCal 2.1 Patch 2 installs many files with world-writeable permissions, which allows local users to modify the iCal configuration and execute arbitrary commands by replacing the iplncal.sh program with a Trojan horse.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2000-1071

больше 24 лет назад

The GUI installation for iCal 2.1 Patch 2 disables access control for the X server using an "xhost +" command, which allows remote attackers to monitor X Windows events and gain privileges.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2000-1070

больше 24 лет назад

pollit.cgi in Poll It 2.01 and earlier uses data files that are located under the web document root, which allows remote attackers to access sensitive or private information.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-1069

больше 24 лет назад

pollit.cgi in Poll It 2.01 and earlier allows remote attackers to access administrative functions without knowing the real password by specifying the same value to the entered_password and admin_password parameters.

CVSS2: 6.4
EPSS: Низкий
nvd логотип

CVE-2000-1068

больше 24 лет назад

pollit.cgi in Poll It 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the poll_options parameter.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2000-1066

больше 24 лет назад

The getnameinfo function in FreeBSD 4.1.1 and earlier, and possibly other operating systems, allows a remote attacker to cause a denial of service via a long DNS hostname.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-1065

больше 24 лет назад

Vulnerability in IP implementation of HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service (printer crash) via a malformed packet.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-1064

больше 24 лет назад

Buffer overflow in the LPD service in HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-1063

больше 24 лет назад

Buffer overflow in the Telnet service in HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-1062

больше 24 лет назад

Buffer overflow in the FTP service in HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-1061

больше 24 лет назад

Microsoft Virtual Machine (VM) in Internet Explorer 4.x and 5.x allows an unsigned applet to create and use ActiveX controls, which allows a remote attacker to bypass Internet Explorer's security settings and execute arbitrary commands via a malicious web page or email, aka the "Microsoft VM ActiveX Component" vulnerability.

CVSS2: 5.1
EPSS: Средний
nvd логотип

CVE-2000-1060

больше 24 лет назад

The default configuration of XFCE 3.5.1 bypasses the Xauthority access control mechanism with an "xhost + localhost" command in the xinitrc program, which allows local users to sniff X Windows traffic and gain privileges.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2000-1059

больше 24 лет назад

The default configuration of the Xsession file in Mandrake Linux 7.1 and 7.0 bypasses the Xauthority access control mechanism with an "xhost + localhost" command, which allows local users to sniff X Windows events and gain privileges.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2000-1058

больше 24 лет назад

Buffer overflow in OverView5 CGI program in HP OpenView Network Node Manager (NNM) 6.1 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, in the SNMP service (snmp.exe), aka the "Java SNMP MIB Browser Object ID parsing problem."

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-1057

больше 24 лет назад

Vulnerabilities in database configuration scripts in HP OpenView Network Node Manager (NNM) 6.1 and earlier allows local users to gain privileges, possibly via insecure permissions.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2000-1056

больше 24 лет назад

CiscoSecure ACS Server 2.4(2) and earlier allows remote attackers to bypass LDAP authentication on the server if the LDAP server allows null passwords.

CVSS2: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2000-1076

Netscape (iPlanet) Certificate Management System 4.2 and Directory Server 4.12 stores the administrative password in plaintext, which could allow local and possibly remote attackers to gain administrative privileges on the server.

CVSS2: 10
1%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-1075

Directory traversal vulnerability in iPlanet Certificate Management System 4.2 and Directory Server 4.12 allows remote attackers to read arbitrary files via a .. (dot dot) attack in the Agent, End Entity, or Administrator services.

CVSS2: 5
4%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-1074

csstart program in iCal 2.1 Patch 2 uses relative pathnames to install the libsocket and libnsl libraries, which could allow the icsuser account to gain root privileges by creating a Trojan Horse library in the current or parent directory.

CVSS2: 10
6%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-1073

csstart program in iCal 2.1 Patch 2 searches for the cshttpd program in the current working directory, which allows local users to gain root privileges by creating a Trojan Horse cshttpd program in a directory and calling csstart from that directory.

CVSS2: 7.2
0%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-1072

iCal 2.1 Patch 2 installs many files with world-writeable permissions, which allows local users to modify the iCal configuration and execute arbitrary commands by replacing the iplncal.sh program with a Trojan horse.

CVSS2: 7.2
0%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-1071

The GUI installation for iCal 2.1 Patch 2 disables access control for the X server using an "xhost +" command, which allows remote attackers to monitor X Windows events and gain privileges.

CVSS2: 10
1%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-1070

pollit.cgi in Poll It 2.01 and earlier uses data files that are located under the web document root, which allows remote attackers to access sensitive or private information.

CVSS2: 5
1%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-1069

pollit.cgi in Poll It 2.01 and earlier allows remote attackers to access administrative functions without knowing the real password by specifying the same value to the entered_password and admin_password parameters.

CVSS2: 6.4
3%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-1068

pollit.cgi in Poll It 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the poll_options parameter.

CVSS2: 10
2%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-1066

The getnameinfo function in FreeBSD 4.1.1 and earlier, and possibly other operating systems, allows a remote attacker to cause a denial of service via a long DNS hostname.

CVSS2: 5
1%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-1065

Vulnerability in IP implementation of HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service (printer crash) via a malformed packet.

CVSS2: 5
1%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-1064

Buffer overflow in the LPD service in HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service.

CVSS2: 5
1%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-1063

Buffer overflow in the Telnet service in HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service.

CVSS2: 5
1%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-1062

Buffer overflow in the FTP service in HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service.

CVSS2: 5
1%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-1061

Microsoft Virtual Machine (VM) in Internet Explorer 4.x and 5.x allows an unsigned applet to create and use ActiveX controls, which allows a remote attacker to bypass Internet Explorer's security settings and execute arbitrary commands via a malicious web page or email, aka the "Microsoft VM ActiveX Component" vulnerability.

CVSS2: 5.1
17%
Средний
больше 24 лет назад
nvd логотип
CVE-2000-1060

The default configuration of XFCE 3.5.1 bypasses the Xauthority access control mechanism with an "xhost + localhost" command in the xinitrc program, which allows local users to sniff X Windows traffic and gain privileges.

CVSS2: 4.6
0%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-1059

The default configuration of the Xsession file in Mandrake Linux 7.1 and 7.0 bypasses the Xauthority access control mechanism with an "xhost + localhost" command, which allows local users to sniff X Windows events and gain privileges.

CVSS2: 7.2
0%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-1058

Buffer overflow in OverView5 CGI program in HP OpenView Network Node Manager (NNM) 6.1 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, in the SNMP service (snmp.exe), aka the "Java SNMP MIB Browser Object ID parsing problem."

CVSS2: 5
7%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-1057

Vulnerabilities in database configuration scripts in HP OpenView Network Node Manager (NNM) 6.1 and earlier allows local users to gain privileges, possibly via insecure permissions.

CVSS2: 4.6
0%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-1056

CiscoSecure ACS Server 2.4(2) and earlier allows remote attackers to bypass LDAP authentication on the server if the LDAP server allows null passwords.

CVSS2: 7.5
1%
Низкий
больше 24 лет назад

Уязвимостей на страницу