Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 331 878

Количество 331 878

nvd логотип

CVE-2000-1069

около 25 лет назад

pollit.cgi in Poll It 2.01 and earlier allows remote attackers to access administrative functions without knowing the real password by specifying the same value to the entered_password and admin_password parameters.

CVSS2: 6.4
EPSS: Низкий
nvd логотип

CVE-2000-1068

около 25 лет назад

pollit.cgi in Poll It 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the poll_options parameter.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2000-1066

около 25 лет назад

The getnameinfo function in FreeBSD 4.1.1 and earlier, and possibly other operating systems, allows a remote attacker to cause a denial of service via a long DNS hostname.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-1065

около 25 лет назад

Vulnerability in IP implementation of HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service (printer crash) via a malformed packet.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-1064

около 25 лет назад

Buffer overflow in the LPD service in HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-1063

около 25 лет назад

Buffer overflow in the Telnet service in HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-1062

около 25 лет назад

Buffer overflow in the FTP service in HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-1061

около 25 лет назад

Microsoft Virtual Machine (VM) in Internet Explorer 4.x and 5.x allows an unsigned applet to create and use ActiveX controls, which allows a remote attacker to bypass Internet Explorer's security settings and execute arbitrary commands via a malicious web page or email, aka the "Microsoft VM ActiveX Component" vulnerability.

CVSS2: 5.1
EPSS: Средний
nvd логотип

CVE-2000-1060

около 25 лет назад

The default configuration of XFCE 3.5.1 bypasses the Xauthority access control mechanism with an "xhost + localhost" command in the xinitrc program, which allows local users to sniff X Windows traffic and gain privileges.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2000-1059

около 25 лет назад

The default configuration of the Xsession file in Mandrake Linux 7.1 and 7.0 bypasses the Xauthority access control mechanism with an "xhost + localhost" command, which allows local users to sniff X Windows events and gain privileges.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2000-1058

около 25 лет назад

Buffer overflow in OverView5 CGI program in HP OpenView Network Node Manager (NNM) 6.1 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, in the SNMP service (snmp.exe), aka the "Java SNMP MIB Browser Object ID parsing problem."

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2000-1057

около 25 лет назад

Vulnerabilities in database configuration scripts in HP OpenView Network Node Manager (NNM) 6.1 and earlier allows local users to gain privileges, possibly via insecure permissions.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2000-1056

около 25 лет назад

CiscoSecure ACS Server 2.4(2) and earlier allows remote attackers to bypass LDAP authentication on the server if the LDAP server allows null passwords.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-1055

около 25 лет назад

Buffer overflow in CiscoSecure ACS Server 2.4(2) and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a large TACACS+ packet.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2000-1054

около 25 лет назад

Buffer overflow in CSAdmin module in CiscoSecure ACS Server 2.4(2) and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a large packet.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2000-1053

около 25 лет назад

Allaire JRun 2.3.3 server allows remote attackers to compile and execute JSP code by inserting it via a cross-site scripting (CSS) attack and directly calling the com.livesoftware.jrun.plugins.JSP JSP servlet.

CVSS2: 10
EPSS: Средний
nvd логотип

CVE-2000-1052

около 25 лет назад

Allaire JRun 2.3 server allows remote attackers to obtain source code for executable content by directly calling the SSIFilter servlet.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-1051

около 25 лет назад

Directory traversal vulnerability in Allaire JRun 2.3 server allows remote attackers to read arbitrary files via the SSIFilter servlet.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-1050

около 25 лет назад

Allaire JRun 3.0 http servlet server allows remote attackers to directly access the WEB-INF directory via a URL request that contains an extra "/" in the beginning of the request (aka the "extra leading slash").

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2000-1049

около 25 лет назад

Allaire JRun 3.0 http servlet server allows remote attackers to cause a denial of service via a URL that contains a long string of "." characters.

CVSS2: 5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2000-1069

pollit.cgi in Poll It 2.01 and earlier allows remote attackers to access administrative functions without knowing the real password by specifying the same value to the entered_password and admin_password parameters.

CVSS2: 6.4
7%
Низкий
около 25 лет назад
nvd логотип
CVE-2000-1068

pollit.cgi in Poll It 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the poll_options parameter.

CVSS2: 10
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2000-1066

The getnameinfo function in FreeBSD 4.1.1 and earlier, and possibly other operating systems, allows a remote attacker to cause a denial of service via a long DNS hostname.

CVSS2: 5
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2000-1065

Vulnerability in IP implementation of HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service (printer crash) via a malformed packet.

CVSS2: 5
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2000-1064

Buffer overflow in the LPD service in HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service.

CVSS2: 5
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2000-1063

Buffer overflow in the Telnet service in HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service.

CVSS2: 5
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2000-1062

Buffer overflow in the FTP service in HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service.

CVSS2: 5
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2000-1061

Microsoft Virtual Machine (VM) in Internet Explorer 4.x and 5.x allows an unsigned applet to create and use ActiveX controls, which allows a remote attacker to bypass Internet Explorer's security settings and execute arbitrary commands via a malicious web page or email, aka the "Microsoft VM ActiveX Component" vulnerability.

CVSS2: 5.1
15%
Средний
около 25 лет назад
nvd логотип
CVE-2000-1060

The default configuration of XFCE 3.5.1 bypasses the Xauthority access control mechanism with an "xhost + localhost" command in the xinitrc program, which allows local users to sniff X Windows traffic and gain privileges.

CVSS2: 4.6
0%
Низкий
около 25 лет назад
nvd логотип
CVE-2000-1059

The default configuration of the Xsession file in Mandrake Linux 7.1 and 7.0 bypasses the Xauthority access control mechanism with an "xhost + localhost" command, which allows local users to sniff X Windows events and gain privileges.

CVSS2: 7.2
0%
Низкий
около 25 лет назад
nvd логотип
CVE-2000-1058

Buffer overflow in OverView5 CGI program in HP OpenView Network Node Manager (NNM) 6.1 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, in the SNMP service (snmp.exe), aka the "Java SNMP MIB Browser Object ID parsing problem."

CVSS2: 5
11%
Средний
около 25 лет назад
nvd логотип
CVE-2000-1057

Vulnerabilities in database configuration scripts in HP OpenView Network Node Manager (NNM) 6.1 and earlier allows local users to gain privileges, possibly via insecure permissions.

CVSS2: 4.6
0%
Низкий
около 25 лет назад
nvd логотип
CVE-2000-1056

CiscoSecure ACS Server 2.4(2) and earlier allows remote attackers to bypass LDAP authentication on the server if the LDAP server allows null passwords.

CVSS2: 7.5
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2000-1055

Buffer overflow in CiscoSecure ACS Server 2.4(2) and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a large TACACS+ packet.

CVSS2: 10
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2000-1054

Buffer overflow in CSAdmin module in CiscoSecure ACS Server 2.4(2) and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a large packet.

CVSS2: 10
8%
Низкий
около 25 лет назад
nvd логотип
CVE-2000-1053

Allaire JRun 2.3.3 server allows remote attackers to compile and execute JSP code by inserting it via a cross-site scripting (CSS) attack and directly calling the com.livesoftware.jrun.plugins.JSP JSP servlet.

CVSS2: 10
10%
Средний
около 25 лет назад
nvd логотип
CVE-2000-1052

Allaire JRun 2.3 server allows remote attackers to obtain source code for executable content by directly calling the SSIFilter servlet.

CVSS2: 5
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2000-1051

Directory traversal vulnerability in Allaire JRun 2.3 server allows remote attackers to read arbitrary files via the SSIFilter servlet.

CVSS2: 5
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2000-1050

Allaire JRun 3.0 http servlet server allows remote attackers to directly access the WEB-INF directory via a URL request that contains an extra "/" in the beginning of the request (aka the "extra leading slash").

CVSS2: 5
14%
Средний
около 25 лет назад
nvd логотип
CVE-2000-1049

Allaire JRun 3.0 http servlet server allows remote attackers to cause a denial of service via a URL that contains a long string of "." characters.

CVSS2: 5
1%
Низкий
около 25 лет назад

Уязвимостей на страницу