Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 343 490

Количество 343 490

nvd логотип

CVE-2000-0653

больше 25 лет назад

Microsoft Outlook Express allows remote attackers to monitor a user's email by creating a persistent browser link to the Outlook Express windows, aka the "Persistent Mail-Browser Link" vulnerability.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2000-0652

больше 25 лет назад

IBM WebSphere allows remote attackers to read source code for executable web files by directly calling the default InvokerServlet using a URL which contains the "/servlet/file" string.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0651

почти 26 лет назад

The ClientTrust program in Novell BorderManager does not properly verify the origin of authentication requests, which could allow remote attackers to impersonate another user by replaying the authentication requests and responses from port 3024 of the victim's machine.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-0650

больше 25 лет назад

The default installation of VirusScan 4.5 and NetShield 4.5 has insecure permissions for the registry key that identifies the AutoUpgrade directory, which allows local users to execute arbitrary commands by replacing SETUP.EXE in that directory with a Trojan Horse.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2000-0649

больше 25 лет назад

IIS 4.0 allows remote attackers to obtain the internal IP address of the server via an HTTP 1.0 request for a web page which is protected by basic authentication and has no realm defined.

CVSS2: 2.6
EPSS: Средний
nvd логотип

CVE-2000-0648

больше 25 лет назад

WFTPD and WFTPD Pro 2.41 allows local users to cause a denial of service by executing the RENAME TO (RNTO) command before a RENAME FROM (RNFR) command.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0647

больше 25 лет назад

WFTPD and WFTPD Pro 2.41 allows remote attackers to cause a denial of service by executing an MLST command before logging into the server.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0646

больше 25 лет назад

WFTPD and WFTPD Pro 2.41 allows remote attackers to obtain the real pathname for a file by executing a STATUS (STAT) command while the file is being transferred.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0645

больше 25 лет назад

WFTPD and WFTPD Pro 2.41 allows remote attackers to cause a denial of service by using the RESTART (REST) command and writing beyond the end of a file, or writing to a file that does not exist, via commands such as STORE UNIQUE (STOU), STORE (STOR), or APPEND (APPE).

CVSS2: 6.4
EPSS: Низкий
nvd логотип

CVE-2000-0644

больше 25 лет назад

WFTPD and WFTPD Pro 2.41 allows remote attackers to cause a denial of service by executing a STAT command while the LIST command is still executing.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0643

больше 25 лет назад

Buffer overflow in WebActive HTTP Server 1.00 allows remote attackers to cause a denial of service via a long URL.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0642

больше 25 лет назад

The default configuration of WebActive HTTP Server 1.00 stores the web access log active.log in the document root, which allows remote attackers to view the logs by directly requesting the page.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0641

почти 26 лет назад

Savant web server allows remote attackers to execute arbitrary commands via a long GET request.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2000-0640

почти 26 лет назад

Guild FTPd allows remote attackers to determine the existence of files outside the FTP root via a .. (dot dot) attack, which provides different error messages depending on whether the file exists or not.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-0639

почти 26 лет назад

The default configuration of Big Brother 1.4h2 and earlier does not include proper access restrictions, which allows remote attackers to execute arbitrary commands by using bbd to upload a file whose extension will cause it to be executed as a CGI script by the web server.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-0638

больше 25 лет назад

bb-hostsvc.sh in Big Brother 1.4h1 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack on the HOSTSVC parameter.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2000-0637

больше 25 лет назад

Microsoft Excel 97 and 2000 allows an attacker to execute arbitrary commands by specifying a malicious .dll using the Register.ID function, aka the "Excel REGISTER.ID Function" vulnerability.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2000-0636

больше 25 лет назад

HP JetDirect printers versions G.08.20 and H.08.20 and earlier allow remote attackers to cause a denial of service via a malformed FTP quote command.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2000-0635

почти 26 лет назад

The view_page.html sample page in the MiniVend shopping cart program allows remote attackers to execute arbitrary commands via shell metacharacters.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-0634

около 26 лет назад

The web administration interface for CommuniGate Pro 3.2.5 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack.

CVSS2: 5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2000-0653

Microsoft Outlook Express allows remote attackers to monitor a user's email by creating a persistent browser link to the Outlook Express windows, aka the "Persistent Mail-Browser Link" vulnerability.

CVSS2: 5
47%
Средний
больше 25 лет назад
nvd логотип
CVE-2000-0652

IBM WebSphere allows remote attackers to read source code for executable web files by directly calling the default InvokerServlet using a URL which contains the "/servlet/file" string.

CVSS2: 5
4%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0651

The ClientTrust program in Novell BorderManager does not properly verify the origin of authentication requests, which could allow remote attackers to impersonate another user by replaying the authentication requests and responses from port 3024 of the victim's machine.

CVSS2: 7.5
1%
Низкий
почти 26 лет назад
nvd логотип
CVE-2000-0650

The default installation of VirusScan 4.5 and NetShield 4.5 has insecure permissions for the registry key that identifies the AutoUpgrade directory, which allows local users to execute arbitrary commands by replacing SETUP.EXE in that directory with a Trojan Horse.

CVSS2: 2.1
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0649

IIS 4.0 allows remote attackers to obtain the internal IP address of the server via an HTTP 1.0 request for a web page which is protected by basic authentication and has no realm defined.

CVSS2: 2.6
63%
Средний
больше 25 лет назад
nvd логотип
CVE-2000-0648

WFTPD and WFTPD Pro 2.41 allows local users to cause a denial of service by executing the RENAME TO (RNTO) command before a RENAME FROM (RNFR) command.

CVSS2: 5
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0647

WFTPD and WFTPD Pro 2.41 allows remote attackers to cause a denial of service by executing an MLST command before logging into the server.

CVSS2: 5
4%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0646

WFTPD and WFTPD Pro 2.41 allows remote attackers to obtain the real pathname for a file by executing a STATUS (STAT) command while the file is being transferred.

CVSS2: 5
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0645

WFTPD and WFTPD Pro 2.41 allows remote attackers to cause a denial of service by using the RESTART (REST) command and writing beyond the end of a file, or writing to a file that does not exist, via commands such as STORE UNIQUE (STOU), STORE (STOR), or APPEND (APPE).

CVSS2: 6.4
4%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0644

WFTPD and WFTPD Pro 2.41 allows remote attackers to cause a denial of service by executing a STAT command while the LIST command is still executing.

CVSS2: 5
8%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0643

Buffer overflow in WebActive HTTP Server 1.00 allows remote attackers to cause a denial of service via a long URL.

CVSS2: 5
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0642

The default configuration of WebActive HTTP Server 1.00 stores the web access log active.log in the document root, which allows remote attackers to view the logs by directly requesting the page.

CVSS2: 5
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0641

Savant web server allows remote attackers to execute arbitrary commands via a long GET request.

CVSS2: 7.5
13%
Средний
почти 26 лет назад
nvd логотип
CVE-2000-0640

Guild FTPd allows remote attackers to determine the existence of files outside the FTP root via a .. (dot dot) attack, which provides different error messages depending on whether the file exists or not.

CVSS2: 7.5
5%
Низкий
почти 26 лет назад
nvd логотип
CVE-2000-0639

The default configuration of Big Brother 1.4h2 and earlier does not include proper access restrictions, which allows remote attackers to execute arbitrary commands by using bbd to upload a file whose extension will cause it to be executed as a CGI script by the web server.

CVSS2: 7.5
4%
Низкий
почти 26 лет назад
nvd логотип
CVE-2000-0638

bb-hostsvc.sh in Big Brother 1.4h1 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack on the HOSTSVC parameter.

CVSS2: 10
7%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0637

Microsoft Excel 97 and 2000 allows an attacker to execute arbitrary commands by specifying a malicious .dll using the Register.ID function, aka the "Excel REGISTER.ID Function" vulnerability.

CVSS2: 4.6
3%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0636

HP JetDirect printers versions G.08.20 and H.08.20 and earlier allow remote attackers to cause a denial of service via a malformed FTP quote command.

CVSS2: 5
31%
Средний
больше 25 лет назад
nvd логотип
CVE-2000-0635

The view_page.html sample page in the MiniVend shopping cart program allows remote attackers to execute arbitrary commands via shell metacharacters.

CVSS2: 7.5
2%
Низкий
почти 26 лет назад
nvd логотип
CVE-2000-0634

The web administration interface for CommuniGate Pro 3.2.5 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack.

CVSS2: 5
8%
Низкий
около 26 лет назад

Уязвимостей на страницу