Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 307 514

Количество 307 514

nvd логотип

CVE-2000-0597

около 25 лет назад

Microsoft Office 2000 (Excel and PowerPoint) and PowerPoint 97 are marked as safe for scripting, which allows remote attackers to force Internet Explorer or some email clients to save files to arbitrary locations via the Visual Basic for Applications (VBA) SaveAs function, aka the "Office HTML Script" vulnerability.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-0596

около 25 лет назад

Internet Explorer 5.x does not warn a user before opening a Microsoft Access database file that is referenced within ActiveX OBJECT tags in an HTML document, which could allow remote attackers to execute arbitrary commands, aka the "IE Script" vulnerability.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2000-0595

около 25 лет назад

libedit searches for the .editrc file in the current directory instead of the user's home directory, which may allow local users to execute arbitrary commands by installing a modified .editrc in another directory.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2000-0594

около 25 лет назад

BitchX IRC client does not properly cleanse an untrusted format string, which allows remote attackers to cause a denial of service via an invite to a channel whose name includes special formatting characters.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2000-0593

около 25 лет назад

WinProxy 2.0 and 2.0.1 allows remote attackers to cause a denial of service by sending an HTTP GET request without listing an HTTP version number.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0592

около 25 лет назад

Buffer overflows in POP3 service in WinProxy 2.0 and 2.0.1 allow remote attackers to execute arbitrary commands via long USER, PASS, LIST, RETR, or DELE commands.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-0591

около 25 лет назад

Novell BorderManager 3.0 and 3.5 allows remote attackers to bypass URL filtering by encoding characters in the requested URL.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0590

около 25 лет назад

Poll It 2.0 CGI script allows remote attackers to read arbitrary files by specifying the file name in the data_dir parameter.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-0589

около 25 лет назад

SawMill 5.0.21 uses weak encryption to store passwords, which allows attackers to easily decrypt the password and modify the SawMill configuration.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-0588

около 25 лет назад

SawMill 5.0.21 CGI program allows remote attackers to read the first line of arbitrary files by listing the file in the rfcf parameter, whose contents SawMill attempts to parse as configuration commands.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0587

около 25 лет назад

The privpath directive in glftpd 1.18 allows remote attackers to bypass access restrictions for directories by using the file name completion capability.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2000-0586

около 25 лет назад

Buffer overflow in Dalnet IRC server 4.6.5 allows remote attackers to cause a denial of service or execute arbitrary commands via the SUMMON command.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2000-0585

около 25 лет назад

ISC DHCP client program dhclient allows remote attackers to execute arbitrary commands via shell metacharacters.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2000-0584

около 25 лет назад

Buffer overflow in Canna input system allows remote attackers to execute arbitrary commands via an SR_INIT command with a long user name or group name.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2000-0583

около 25 лет назад

vchkpw program in vpopmail before version 4.8 does not properly cleanse an untrusted format string used in a call to syslog, which allows remote attackers to cause a denial of service via a USER or PASS command that contains arbitrary formatting directives.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0582

около 25 лет назад

Check Point FireWall-1 4.0 and 4.1 allows remote attackers to cause a denial of service by sending a stream of invalid commands (such as binary zeros) to the SMTP Security Server proxy.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0581

около 25 лет назад

Windows 2000 Telnet Server allows remote attackers to cause a denial of service by sending a continuous stream of binary zeros, which causes the server to crash.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2000-0580

около 25 лет назад

Windows 2000 Server allows remote attackers to cause a denial of service by sending a continuous stream of binary zeros to various TCP and UDP ports, which significantly increases the CPU utilization.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2000-0579

около 25 лет назад

IRIX crontab creates temporary files with predictable file names and with the umask of the user, which could allow local users to modify another user's crontab file as it is being edited.

CVSS2: 3.7
EPSS: Низкий
nvd логотип

CVE-2000-0578

около 25 лет назад

SGI MIPSPro compilers C, C++, F77 and F90 generate temporary files in /tmp with predictable file names, which could allow local users to insert malicious contents into these files as they are being compiled by another user.

CVSS2: 3.7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2000-0597

Microsoft Office 2000 (Excel and PowerPoint) and PowerPoint 97 are marked as safe for scripting, which allows remote attackers to force Internet Explorer or some email clients to save files to arbitrary locations via the Visual Basic for Applications (VBA) SaveAs function, aka the "Office HTML Script" vulnerability.

CVSS2: 7.5
10%
Низкий
около 25 лет назад
nvd логотип
CVE-2000-0596

Internet Explorer 5.x does not warn a user before opening a Microsoft Access database file that is referenced within ActiveX OBJECT tags in an HTML document, which could allow remote attackers to execute arbitrary commands, aka the "IE Script" vulnerability.

CVSS2: 7.5
13%
Средний
около 25 лет назад
nvd логотип
CVE-2000-0595

libedit searches for the .editrc file in the current directory instead of the user's home directory, which may allow local users to execute arbitrary commands by installing a modified .editrc in another directory.

CVSS2: 4.6
0%
Низкий
около 25 лет назад
nvd логотип
CVE-2000-0594

BitchX IRC client does not properly cleanse an untrusted format string, which allows remote attackers to cause a denial of service via an invite to a channel whose name includes special formatting characters.

CVSS2: 5
12%
Средний
около 25 лет назад
nvd логотип
CVE-2000-0593

WinProxy 2.0 and 2.0.1 allows remote attackers to cause a denial of service by sending an HTTP GET request without listing an HTTP version number.

CVSS2: 5
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2000-0592

Buffer overflows in POP3 service in WinProxy 2.0 and 2.0.1 allow remote attackers to execute arbitrary commands via long USER, PASS, LIST, RETR, or DELE commands.

CVSS2: 7.5
5%
Низкий
около 25 лет назад
nvd логотип
CVE-2000-0591

Novell BorderManager 3.0 and 3.5 allows remote attackers to bypass URL filtering by encoding characters in the requested URL.

CVSS2: 5
0%
Низкий
около 25 лет назад
nvd логотип
CVE-2000-0590

Poll It 2.0 CGI script allows remote attackers to read arbitrary files by specifying the file name in the data_dir parameter.

CVSS2: 7.5
7%
Низкий
около 25 лет назад
nvd логотип
CVE-2000-0589

SawMill 5.0.21 uses weak encryption to store passwords, which allows attackers to easily decrypt the password and modify the SawMill configuration.

CVSS2: 7.5
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2000-0588

SawMill 5.0.21 CGI program allows remote attackers to read the first line of arbitrary files by listing the file in the rfcf parameter, whose contents SawMill attempts to parse as configuration commands.

CVSS2: 5
4%
Низкий
около 25 лет назад
nvd логотип
CVE-2000-0587

The privpath directive in glftpd 1.18 allows remote attackers to bypass access restrictions for directories by using the file name completion capability.

CVSS2: 10
0%
Низкий
около 25 лет назад
nvd логотип
CVE-2000-0586

Buffer overflow in Dalnet IRC server 4.6.5 allows remote attackers to cause a denial of service or execute arbitrary commands via the SUMMON command.

CVSS2: 10
5%
Низкий
около 25 лет назад
nvd логотип
CVE-2000-0585

ISC DHCP client program dhclient allows remote attackers to execute arbitrary commands via shell metacharacters.

CVSS2: 10
10%
Низкий
около 25 лет назад
nvd логотип
CVE-2000-0584

Buffer overflow in Canna input system allows remote attackers to execute arbitrary commands via an SR_INIT command with a long user name or group name.

CVSS2: 10
5%
Низкий
около 25 лет назад
nvd логотип
CVE-2000-0583

vchkpw program in vpopmail before version 4.8 does not properly cleanse an untrusted format string used in a call to syslog, which allows remote attackers to cause a denial of service via a USER or PASS command that contains arbitrary formatting directives.

CVSS2: 5
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2000-0582

Check Point FireWall-1 4.0 and 4.1 allows remote attackers to cause a denial of service by sending a stream of invalid commands (such as binary zeros) to the SMTP Security Server proxy.

CVSS2: 5
5%
Низкий
около 25 лет назад
nvd логотип
CVE-2000-0581

Windows 2000 Telnet Server allows remote attackers to cause a denial of service by sending a continuous stream of binary zeros, which causes the server to crash.

CVSS2: 5
37%
Средний
около 25 лет назад
nvd логотип
CVE-2000-0580

Windows 2000 Server allows remote attackers to cause a denial of service by sending a continuous stream of binary zeros to various TCP and UDP ports, which significantly increases the CPU utilization.

CVSS2: 5
14%
Средний
около 25 лет назад
nvd логотип
CVE-2000-0579

IRIX crontab creates temporary files with predictable file names and with the umask of the user, which could allow local users to modify another user's crontab file as it is being edited.

CVSS2: 3.7
0%
Низкий
около 25 лет назад
nvd логотип
CVE-2000-0578

SGI MIPSPro compilers C, C++, F77 and F90 generate temporary files in /tmp with predictable file names, which could allow local users to insert malicious contents into these files as they are being compiled by another user.

CVSS2: 3.7
0%
Низкий
около 25 лет назад

Уязвимостей на страницу