Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 343 490

Количество 343 490

nvd логотип

CVE-2000-0793

больше 25 лет назад

Norton AntiVirus 5.00.01C with the Novell Netware client does not properly restart the auto-protection service after the first user has logged off of the system.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2000-0792

больше 25 лет назад

Gnome Lokkit firewall package before 0.41 does not properly restrict access to some ports, even if a user does not make any services available.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-0791

больше 25 лет назад

Trustix installs the httpsd program for Apache-SSL with world-writeable permissions, which allows local users to replace it with a Trojan horse.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2000-0790

больше 25 лет назад

The web-based folder display capability in Microsoft Internet Explorer 5.5 on Windows 98 allows local users to insert Trojan horse programs by modifying the Folder.htt file and using the InvokeVerb method in the ShellDefView ActiveX control to specify a default execute option for the first file that is listed in the folder.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2000-0789

больше 25 лет назад

WinU 5.x and earlier uses weak encryption to store its configuration password, which allows local users to decrypt the password and gain privileges.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2000-0788

больше 25 лет назад

The Mail Merge tool in Microsoft Word does not prompt the user before executing Visual Basic (VBA) scripts in an Access database, which could allow an attacker to execute arbitrary commands.

CVSS2: 10
EPSS: Средний
nvd логотип

CVE-2000-0787

больше 25 лет назад

IRC Xchat client versions 1.4.2 and earlier allows remote attackers to execute arbitrary commands by encoding shell metacharacters into a URL which XChat uses to launch a web browser.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-0786

больше 25 лет назад

GNU userv 1.0.0 and earlier does not properly perform file descriptor swapping, which can corrupt the USERV_GROUPS and USERV_GIDS environmental variables and allow local users to bypass some access restrictions.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2000-0785

больше 25 лет назад

WircSrv IRC Server 5.07s allows IRC operators to read arbitrary files via the importmotd command, which sets the Message of the Day (MOTD) to the specified file.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0784

больше 25 лет назад

sshd program in the Rapidstream 2.1 Beta VPN appliance has a hard-coded "rsadmin" account with a null password, which allows remote attackers to execute arbitrary commands via ssh.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2000-0783

больше 25 лет назад

Watchguard Firebox II allows remote attackers to cause a denial of service by sending a malformed URL to the authentication service on port 4100.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0782

больше 25 лет назад

netauth.cgi program in Netwin Netauth 4.2e and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0781

больше 25 лет назад

uagentsetup in ARCServeIT Client Agent 6.62 does not properly check for the existence or ownership of a temporary file which is moved to the agent.cfg configuration file, which allows local users to execute arbitrary commands by modifying the temporary file before it is moved.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2000-0780

больше 25 лет назад

The web server in IPSWITCH IMail 6.04 and earlier allows remote attackers to read and delete arbitrary files via a .. (dot dot) attack.

CVSS2: 6.4
EPSS: Низкий
nvd логотип

CVE-2000-0779

больше 25 лет назад

Checkpoint Firewall-1 with the RSH/REXEC setting enabled allows remote attackers to bypass access restrictions and connect to a RSH/REXEC client via malformed connection requests.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-0778

больше 25 лет назад

IIS 5.0 allows remote attackers to obtain source code for .ASP files and other scripts via an HTTP GET request with a "Translate: f" header, aka the "Specialized Header" vulnerability.

CVSS2: 5
EPSS: Высокий
nvd логотип

CVE-2000-0777

больше 25 лет назад

The password protection feature of Microsoft Money can store the password in plaintext, which allows attackers with physical access to the system to obtain the password, aka the "Money Password" vulnerability.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2000-0776

больше 25 лет назад

Mediahouse Statistics Server 5.02x allows remote attackers to execute arbitrary commands via a long HTTP GET request.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-0775

больше 25 лет назад

Buffer overflow in RobTex Viking server earlier than 1.06-370 allows remote attackers to cause a denial of service or execute arbitrary commands via a long HTTP GET request, or long Unless-Modified-Since, If-Range, or If-Modified-Since headers.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2000-0774

больше 25 лет назад

The sample Java servlet "test" in Bajie HTTP web server 0.30a reveals the real pathname of the web document root.

CVSS2: 5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2000-0793

Norton AntiVirus 5.00.01C with the Novell Netware client does not properly restart the auto-protection service after the first user has logged off of the system.

CVSS2: 10
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0792

Gnome Lokkit firewall package before 0.41 does not properly restrict access to some ports, even if a user does not make any services available.

CVSS2: 7.5
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0791

Trustix installs the httpsd program for Apache-SSL with world-writeable permissions, which allows local users to replace it with a Trojan horse.

CVSS2: 4.6
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0790

The web-based folder display capability in Microsoft Internet Explorer 5.5 on Windows 98 allows local users to insert Trojan horse programs by modifying the Folder.htt file and using the InvokeVerb method in the ShellDefView ActiveX control to specify a default execute option for the first file that is listed in the folder.

CVSS2: 4.6
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0789

WinU 5.x and earlier uses weak encryption to store its configuration password, which allows local users to decrypt the password and gain privileges.

CVSS2: 4.6
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0788

The Mail Merge tool in Microsoft Word does not prompt the user before executing Visual Basic (VBA) scripts in an Access database, which could allow an attacker to execute arbitrary commands.

CVSS2: 10
10%
Средний
больше 25 лет назад
nvd логотип
CVE-2000-0787

IRC Xchat client versions 1.4.2 and earlier allows remote attackers to execute arbitrary commands by encoding shell metacharacters into a URL which XChat uses to launch a web browser.

CVSS2: 7.5
9%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0786

GNU userv 1.0.0 and earlier does not properly perform file descriptor swapping, which can corrupt the USERV_GROUPS and USERV_GIDS environmental variables and allow local users to bypass some access restrictions.

CVSS2: 4.6
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0785

WircSrv IRC Server 5.07s allows IRC operators to read arbitrary files via the importmotd command, which sets the Message of the Day (MOTD) to the specified file.

CVSS2: 5
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0784

sshd program in the Rapidstream 2.1 Beta VPN appliance has a hard-coded "rsadmin" account with a null password, which allows remote attackers to execute arbitrary commands via ssh.

CVSS2: 10
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0783

Watchguard Firebox II allows remote attackers to cause a denial of service by sending a malformed URL to the authentication service on port 4100.

CVSS2: 5
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0782

netauth.cgi program in Netwin Netauth 4.2e and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack.

CVSS2: 5
5%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0781

uagentsetup in ARCServeIT Client Agent 6.62 does not properly check for the existence or ownership of a temporary file which is moved to the agent.cfg configuration file, which allows local users to execute arbitrary commands by modifying the temporary file before it is moved.

CVSS2: 7.2
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0780

The web server in IPSWITCH IMail 6.04 and earlier allows remote attackers to read and delete arbitrary files via a .. (dot dot) attack.

CVSS2: 6.4
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0779

Checkpoint Firewall-1 with the RSH/REXEC setting enabled allows remote attackers to bypass access restrictions and connect to a RSH/REXEC client via malformed connection requests.

CVSS2: 7.5
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0778

IIS 5.0 allows remote attackers to obtain source code for .ASP files and other scripts via an HTTP GET request with a "Translate: f" header, aka the "Specialized Header" vulnerability.

CVSS2: 5
79%
Высокий
больше 25 лет назад
nvd логотип
CVE-2000-0777

The password protection feature of Microsoft Money can store the password in plaintext, which allows attackers with physical access to the system to obtain the password, aka the "Money Password" vulnerability.

CVSS2: 7.2
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0776

Mediahouse Statistics Server 5.02x allows remote attackers to execute arbitrary commands via a long HTTP GET request.

CVSS2: 7.5
9%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0775

Buffer overflow in RobTex Viking server earlier than 1.06-370 allows remote attackers to cause a denial of service or execute arbitrary commands via a long HTTP GET request, or long Unless-Modified-Since, If-Range, or If-Modified-Since headers.

CVSS2: 7.5
12%
Средний
больше 25 лет назад
nvd логотип
CVE-2000-0774

The sample Java servlet "test" in Bajie HTTP web server 0.30a reveals the real pathname of the web document root.

CVSS2: 5
0%
Низкий
больше 25 лет назад

Уязвимостей на страницу