Количество 331 703
Количество 331 703
CVE-2000-0284
Buffer overflow in University of Washington imapd version 4.7 allows users with a valid account to execute commands via LIST or other commands.
CVE-2000-0283
The default installation of IRIX Performance Copilot allows remote attackers to access sensitive system information via the pmcd daemon.
CVE-2000-0282
TalentSoft webpsvr daemon in the Web+ shopping cart application allows remote attackers to read arbitrary files via a .. (dot dot) attack on the webplus CGI program.
CVE-2000-0281
Buffer overflow in the Napster client beta 5 allows remote attackers to cause a denial of service via a long message.
CVE-2000-0280
Buffer overflow in the RealNetworks RealPlayer client versions 6 and 7 allows remote attackers to cause a denial of service via a long Location URL.
CVE-2000-0279
BeOS allows remote attackers to cause a denial of service via malformed packets whose length field is less than the length of the headers.
CVE-2000-0278
The SalesLogix Eviewer allows remote attackers to cause a denial of service by accessing the URL for the slxweb.dll administration program, which does not authenticate the user.
CVE-2000-0277
Microsoft Excel 97 and 2000 does not warn the user when executing Excel Macro Language (XLM) macros in external text files, which could allow an attacker to execute a macro virus, aka the "XLM Text Macro" vulnerability.
CVE-2000-0276
BeOS 4.5 and 5.0 allow local users to cause a denial of service via malformed direct system calls using interrupt 37.
CVE-2000-0275
CRYPTOCard CryptoAdmin for PalmOS uses weak encryption to store a user's PIN number, which allows an attacker with access to the .PDB file to generate valid PT-1 tokens after cracking the PIN.
CVE-2000-0274
The Linux trustees kernel patch allows attackers to cause a denial of service by accessing a file or directory with a long name.
CVE-2000-0273
PCAnywhere allows remote attackers to cause a denial of service by terminating the connection before PCAnywhere provides a login prompt.
CVE-2000-0272
RealNetworks RealServer allows remote attackers to cause a denial of service by sending malformed input to the server at port 7070.
CVE-2000-0271
read-passwd and other Lisp functions in Emacs 20 do not properly clear the history of recently typed keys, which allows an attacker to read unencrypted passwords.
CVE-2000-0270
The make-temp-name Lisp function in Emacs 20 creates temporary files with predictable names, which allows attackers to conduct a symlink attack.
CVE-2000-0269
Emacs 20 does not properly set permissions for a slave PTY device when starting a new subprocess, which allows local users to read or modify communications between Emacs and the subprocess.
CVE-2000-0268
Cisco IOS 11.x and 12.x allows remote attackers to cause a denial of service by sending the ENVIRON option to the Telnet daemon before it is ready to accept it, which causes the system to reboot.
CVE-2000-0267
Cisco Catalyst 5.4.x allows a user to gain access to the "enable" mode without a password.
CVE-2000-0266
Internet Explorer 5.01 allows remote attackers to bypass the cross frame security policy via a malicious applet that interacts with the Java JSObject to modify the DOM properties to set the IFRAME to an arbitrary Javascript URL.
CVE-2000-0265
Panda Security 3.0 allows users to uninstall the Panda software via its Add/Remove Programs applet.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2000-0284 Buffer overflow in University of Washington imapd version 4.7 allows users with a valid account to execute commands via LIST or other commands. | CVSS2: 7.5 | 79% Высокий | почти 26 лет назад | |
CVE-2000-0283 The default installation of IRIX Performance Copilot allows remote attackers to access sensitive system information via the pmcd daemon. | CVSS2: 6.4 | 1% Низкий | почти 26 лет назад | |
CVE-2000-0282 TalentSoft webpsvr daemon in the Web+ shopping cart application allows remote attackers to read arbitrary files via a .. (dot dot) attack on the webplus CGI program. | CVSS2: 5 | 9% Низкий | почти 26 лет назад | |
CVE-2000-0281 Buffer overflow in the Napster client beta 5 allows remote attackers to cause a denial of service via a long message. | CVSS2: 2.1 | 0% Низкий | почти 26 лет назад | |
CVE-2000-0280 Buffer overflow in the RealNetworks RealPlayer client versions 6 and 7 allows remote attackers to cause a denial of service via a long Location URL. | CVSS2: 2.6 | 3% Низкий | почти 26 лет назад | |
CVE-2000-0279 BeOS allows remote attackers to cause a denial of service via malformed packets whose length field is less than the length of the headers. | CVSS2: 5 | 4% Низкий | почти 26 лет назад | |
CVE-2000-0278 The SalesLogix Eviewer allows remote attackers to cause a denial of service by accessing the URL for the slxweb.dll administration program, which does not authenticate the user. | CVSS2: 5 | 4% Низкий | больше 25 лет назад | |
CVE-2000-0277 Microsoft Excel 97 and 2000 does not warn the user when executing Excel Macro Language (XLM) macros in external text files, which could allow an attacker to execute a macro virus, aka the "XLM Text Macro" vulnerability. | CVSS2: 7.2 | 2% Низкий | почти 26 лет назад | |
CVE-2000-0276 BeOS 4.5 and 5.0 allow local users to cause a denial of service via malformed direct system calls using interrupt 37. | CVSS2: 2.1 | 0% Низкий | почти 26 лет назад | |
CVE-2000-0275 CRYPTOCard CryptoAdmin for PalmOS uses weak encryption to store a user's PIN number, which allows an attacker with access to the .PDB file to generate valid PT-1 tokens after cracking the PIN. | CVSS2: 2.1 | 0% Низкий | почти 26 лет назад | |
CVE-2000-0274 The Linux trustees kernel patch allows attackers to cause a denial of service by accessing a file or directory with a long name. | CVSS2: 2.1 | 1% Низкий | почти 26 лет назад | |
CVE-2000-0273 PCAnywhere allows remote attackers to cause a denial of service by terminating the connection before PCAnywhere provides a login prompt. | CVSS2: 5 | 1% Низкий | почти 26 лет назад | |
CVE-2000-0272 RealNetworks RealServer allows remote attackers to cause a denial of service by sending malformed input to the server at port 7070. | CVSS2: 7.8 | 9% Низкий | почти 26 лет назад | |
CVE-2000-0271 read-passwd and other Lisp functions in Emacs 20 do not properly clear the history of recently typed keys, which allows an attacker to read unencrypted passwords. | CVSS2: 4.6 | 0% Низкий | почти 26 лет назад | |
CVE-2000-0270 The make-temp-name Lisp function in Emacs 20 creates temporary files with predictable names, which allows attackers to conduct a symlink attack. | CVSS2: 3.6 | 0% Низкий | почти 26 лет назад | |
CVE-2000-0269 Emacs 20 does not properly set permissions for a slave PTY device when starting a new subprocess, which allows local users to read or modify communications between Emacs and the subprocess. | CVSS2: 2.1 | 0% Низкий | почти 26 лет назад | |
CVE-2000-0268 Cisco IOS 11.x and 12.x allows remote attackers to cause a denial of service by sending the ENVIRON option to the Telnet daemon before it is ready to accept it, which causes the system to reboot. | CVSS2: 5 | 1% Низкий | почти 26 лет назад | |
CVE-2000-0267 Cisco Catalyst 5.4.x allows a user to gain access to the "enable" mode without a password. | CVSS2: 4.6 | 0% Низкий | почти 26 лет назад | |
CVE-2000-0266 Internet Explorer 5.01 allows remote attackers to bypass the cross frame security policy via a malicious applet that interacts with the Java JSObject to modify the DOM properties to set the IFRAME to an arbitrary Javascript URL. | CVSS2: 2.6 | 2% Низкий | почти 26 лет назад | |
CVE-2000-0265 Panda Security 3.0 allows users to uninstall the Panda software via its Add/Remove Programs applet. | CVSS2: 4.6 | 0% Низкий | почти 26 лет назад |
Уязвимостей на страницу