Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 306 905

Количество 306 905

nvd логотип

CVE-2000-0935

больше 24 лет назад

Samba Web Administration Tool (SWAT) in Samba 2.0.7 allows local users to overwrite arbitrary files via a symlink attack on the cgi.log file.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2000-0934

больше 24 лет назад

Glint in Red Hat Linux 5.2 allows local users to overwrite arbitrary files and cause a denial of service via a symlink attack.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2000-0933

больше 24 лет назад

The Input Method Editor (IME) in the Simplified Chinese version of Windows 2000 does not disable access to privileged functionality that should normally be restricted, which allows local users to gain privileges, aka the "Simplified Chinese IME State Recognition" vulnerability.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2000-0932

больше 24 лет назад

MAILsweeper for SMTP 3.x does not properly handle corrupt CDA documents in a ZIP file and hangs, which allows remote attackers to cause a denial of service.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0931

больше 24 лет назад

Buffer overflow in Pegasus Mail 3.11 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long email message containing binary data.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-0930

больше 24 лет назад

Pegasus Mail 3.12 allows remote attackers to read arbitrary files via an embedded URL that calls the mailto: protocol with a -F switch.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0929

больше 24 лет назад

Microsoft Windows Media Player 7 allows attackers to cause a denial of service in RTF-enabled email clients via an embedded OCX control that is not closed properly, aka the "OCX Attachment" vulnerability.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2000-0928

больше 24 лет назад

WQuinn QuotaAdvisor 4.1 allows users to list directories and files by running a report on the targeted shares.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2000-0927

больше 24 лет назад

WQuinn QuotaAdvisor 4.1 does not properly record file sizes if they are stored in alternative data streams, which allows users to bypass quota restrictions.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2000-0926

больше 24 лет назад

SmartWin CyberOffice Shopping Cart 2 (aka CyberShop) allows remote attackers to modify price information by changing the "Price" hidden form variable.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-0925

больше 24 лет назад

The default installation of SmartWin CyberOffice Shopping Cart 2 (aka CyberShop) installs the _private directory with world readable permissions, which allows remote attackers to obtain sensitive information.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0924

больше 24 лет назад

Directory traversal vulnerability in search.cgi CGI script in Armada Master Index allows remote attackers to read arbitrary files via a .. (dot dot) attack in the "catigory" parameter.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0923

больше 24 лет назад

authenticate.cgi CGI program in Aplio PRO allows remote attackers to execute arbitrary commands via shell metacharacters in the password parameter.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-0922

больше 24 лет назад

Directory traversal vulnerability in Bytes Interactive Web Shopper shopping cart program (shopper.cgi) 2.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack on the newpage parameter.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0921

больше 24 лет назад

Directory traversal vulnerability in Hassan Consulting shop.cgi shopping cart program allows remote attackers to read arbitrary files via a .. (dot dot) attack on the page parameter.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0920

больше 24 лет назад

Directory traversal vulnerability in BOA web server 0.94.8.2 and earlier allows remote attackers to read arbitrary files via a modified .. (dot dot) attack in the GET HTTP request that uses a "%2E" instead of a "."

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0919

больше 24 лет назад

Directory traversal vulnerability in PHPix Photo Album 1.0.2 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0918

больше 24 лет назад

Format string vulnerability in kvt in KDE 1.1.2 may allow local users to execute arbitrary commands via a DISPLAY environmental variable that contains formatting characters.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2000-0917

больше 24 лет назад

Format string vulnerability in use_syslog() function in LPRng 3.6.24 allows remote attackers to execute arbitrary commands.

CVSS2: 10
EPSS: Высокий
nvd логотип

CVE-2000-0916

больше 24 лет назад

FreeBSD 4.1.1 and earlier, and possibly other BSD-based OSes, uses an insufficient random number generator to generate initial TCP sequence numbers (ISN), which allows remote attackers to spoof TCP connections.

CVSS2: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2000-0935

Samba Web Administration Tool (SWAT) in Samba 2.0.7 allows local users to overwrite arbitrary files via a symlink attack on the cgi.log file.

CVSS2: 7.2
0%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-0934

Glint in Red Hat Linux 5.2 allows local users to overwrite arbitrary files and cause a denial of service via a symlink attack.

CVSS2: 7.2
0%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-0933

The Input Method Editor (IME) in the Simplified Chinese version of Windows 2000 does not disable access to privileged functionality that should normally be restricted, which allows local users to gain privileges, aka the "Simplified Chinese IME State Recognition" vulnerability.

CVSS2: 4.6
2%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-0932

MAILsweeper for SMTP 3.x does not properly handle corrupt CDA documents in a ZIP file and hangs, which allows remote attackers to cause a denial of service.

CVSS2: 5
1%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-0931

Buffer overflow in Pegasus Mail 3.11 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long email message containing binary data.

CVSS2: 7.5
1%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-0930

Pegasus Mail 3.12 allows remote attackers to read arbitrary files via an embedded URL that calls the mailto: protocol with a -F switch.

CVSS2: 5
5%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-0929

Microsoft Windows Media Player 7 allows attackers to cause a denial of service in RTF-enabled email clients via an embedded OCX control that is not closed properly, aka the "OCX Attachment" vulnerability.

CVSS2: 5
19%
Средний
больше 24 лет назад
nvd логотип
CVE-2000-0928

WQuinn QuotaAdvisor 4.1 allows users to list directories and files by running a report on the targeted shares.

CVSS2: 2.1
0%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-0927

WQuinn QuotaAdvisor 4.1 does not properly record file sizes if they are stored in alternative data streams, which allows users to bypass quota restrictions.

CVSS2: 4.6
0%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-0926

SmartWin CyberOffice Shopping Cart 2 (aka CyberShop) allows remote attackers to modify price information by changing the "Price" hidden form variable.

CVSS2: 7.5
7%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-0925

The default installation of SmartWin CyberOffice Shopping Cart 2 (aka CyberShop) installs the _private directory with world readable permissions, which allows remote attackers to obtain sensitive information.

CVSS2: 5
6%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-0924

Directory traversal vulnerability in search.cgi CGI script in Armada Master Index allows remote attackers to read arbitrary files via a .. (dot dot) attack in the "catigory" parameter.

CVSS2: 5
5%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-0923

authenticate.cgi CGI program in Aplio PRO allows remote attackers to execute arbitrary commands via shell metacharacters in the password parameter.

CVSS2: 7.5
2%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-0922

Directory traversal vulnerability in Bytes Interactive Web Shopper shopping cart program (shopper.cgi) 2.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack on the newpage parameter.

CVSS2: 5
5%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-0921

Directory traversal vulnerability in Hassan Consulting shop.cgi shopping cart program allows remote attackers to read arbitrary files via a .. (dot dot) attack on the page parameter.

CVSS2: 5
5%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-0920

Directory traversal vulnerability in BOA web server 0.94.8.2 and earlier allows remote attackers to read arbitrary files via a modified .. (dot dot) attack in the GET HTTP request that uses a "%2E" instead of a "."

CVSS2: 5
6%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-0919

Directory traversal vulnerability in PHPix Photo Album 1.0.2 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack.

CVSS2: 5
5%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-0918

Format string vulnerability in kvt in KDE 1.1.2 may allow local users to execute arbitrary commands via a DISPLAY environmental variable that contains formatting characters.

CVSS2: 7.2
0%
Низкий
больше 24 лет назад
nvd логотип
CVE-2000-0917

Format string vulnerability in use_syslog() function in LPRng 3.6.24 allows remote attackers to execute arbitrary commands.

CVSS2: 10
84%
Высокий
больше 24 лет назад
nvd логотип
CVE-2000-0916

FreeBSD 4.1.1 and earlier, and possibly other BSD-based OSes, uses an insufficient random number generator to generate initial TCP sequence numbers (ISN), which allows remote attackers to spoof TCP connections.

CVSS2: 7.5
8%
Низкий
больше 24 лет назад

Уязвимостей на страницу