Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 367 614

Количество 367 614

nvd логотип

CVE-2000-1166

больше 25 лет назад

Twig webmail system does not properly set the "vhosts" variable if it is not configured on the site, which allows remote attackers to insert arbitrary PHP (PHP3) code by specifying an alternate vhosts as an argument to the index.php3 program.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-1165

больше 25 лет назад

Balabit syslog-ng allows remote attackers to cause a denial of service (application crash) via a malformed log message that does not have a closing > in the priority specifier.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-1164

больше 25 лет назад

WinVNC installs the WinVNC3 registry key with permissions that give Special Access (read and modify) to the Everybody group, which allows users to read and modify sensitive information such as passwords and gain access to the system.

CVSS2: 9
EPSS: Низкий
nvd логотип

CVE-2000-1163

больше 25 лет назад

ghostscript before 5.10-16 uses an empty LD_RUN_PATH environmental variable to find libraries in the current directory, which could allow local users to execute commands as other users by placing a Trojan horse library into a directory from which another user executes ghostscript.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2000-1162

больше 25 лет назад

ghostscript before 5.10-16 allows local users to overwrite files of other users via a symlink attack.

CVSS2: 3.7
EPSS: Низкий
nvd логотип

CVE-2000-1161

больше 25 лет назад

The installation of AdCycle banner management system leaves the build.cgi program in a web-accessible directory, which allows remote attackers to execute the program and view passwords or delete databases.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-1160

больше 25 лет назад

NAI Sniffer Agent allows remote attackers to cause a denial of service (crash) by sending a large number of login requests.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-1159

больше 25 лет назад

NAI Sniffer Agent allows remote attackers to gain privileges on the agent by sniffing the initial UDP authentication packets and spoofing commands.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-1158

больше 25 лет назад

NAI Sniffer Agent uses base64 encoding for authentication, which allows attackers to sniff the network and easily decrypt usernames and passwords.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-1157

больше 25 лет назад

Buffer overflow in NAI Sniffer Agent allows remote attackers to execute arbitrary commands via a long SNMP community name.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2000-1156

больше 25 лет назад

StarOffice 5.2 follows symlinks and sets world-readable permissions for the /tmp/soffice.tmp directory, which allows a local user to read files of the user who is using StarOffice.

CVSS2: 3.6
EPSS: Низкий
nvd логотип

CVE-2000-1155

больше 25 лет назад

RHDaemon in RobinHood 1.1 web server in BeOS r5 pro and earlier allows remote attackers to cause a denial of service via long HTTP request.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-1154

больше 25 лет назад

RHConsole in RobinHood 1.1 web server in BeOS r5 pro and earlier allows remote attackers to cause a denial of service via long HTTP request.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-1153

больше 25 лет назад

PostMaster 1.0 in BeOS r5 pro and earlier allows remote attackers to conduct a denial of service via a message that contains a long URL.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-1152

больше 25 лет назад

Browser IRC client in BeOS r5 pro and earlier allows remote attackers to conduct a denial of service via a message that contains a long URL.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-1151

больше 25 лет назад

Baxter IRC client in BeOS r5 pro and earlier allows remote attackers to conduct a denial of service via a message that contains a long URL.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-1150

больше 25 лет назад

Felix IRC client in BeOS r5 pro and earlier allows remote attackers to conduct a denial of service via a message that contains a long URL.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-1149

больше 25 лет назад

Buffer overflow in RegAPI.DLL used by Windows NT 4.0 Terminal Server allows remote attackers to execute arbitrary commands via a long username, aka the "Terminal Server Login Buffer Overflow" vulnerability.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2000-1148

больше 25 лет назад

The installation of VolanoChatPro chat server sets world-readable permissions for its configuration file and stores the server administrator passwords in plaintext, which allows local users to gain privileges on the server.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2000-1147

больше 25 лет назад

Buffer overflow in IIS ISAPI .ASP parsing mechanism allows attackers to execute arbitrary commands via a long string to the "LANGUAGE" argument in a script tag.

CVSS2: 4.6
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2000-1166

Twig webmail system does not properly set the "vhosts" variable if it is not configured on the site, which allows remote attackers to insert arbitrary PHP (PHP3) code by specifying an alternate vhosts as an argument to the index.php3 program.

CVSS2: 7.5
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1165

Balabit syslog-ng allows remote attackers to cause a denial of service (application crash) via a malformed log message that does not have a closing > in the priority specifier.

CVSS2: 5
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1164

WinVNC installs the WinVNC3 registry key with permissions that give Special Access (read and modify) to the Everybody group, which allows users to read and modify sensitive information such as passwords and gain access to the system.

CVSS2: 9
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1163

ghostscript before 5.10-16 uses an empty LD_RUN_PATH environmental variable to find libraries in the current directory, which could allow local users to execute commands as other users by placing a Trojan horse library into a directory from which another user executes ghostscript.

CVSS2: 4.6
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1162

ghostscript before 5.10-16 allows local users to overwrite files of other users via a symlink attack.

CVSS2: 3.7
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1161

The installation of AdCycle banner management system leaves the build.cgi program in a web-accessible directory, which allows remote attackers to execute the program and view passwords or delete databases.

CVSS2: 7.5
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1160

NAI Sniffer Agent allows remote attackers to cause a denial of service (crash) by sending a large number of login requests.

CVSS2: 5
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1159

NAI Sniffer Agent allows remote attackers to gain privileges on the agent by sniffing the initial UDP authentication packets and spoofing commands.

CVSS2: 7.5
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1158

NAI Sniffer Agent uses base64 encoding for authentication, which allows attackers to sniff the network and easily decrypt usernames and passwords.

CVSS2: 7.5
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1157

Buffer overflow in NAI Sniffer Agent allows remote attackers to execute arbitrary commands via a long SNMP community name.

CVSS2: 10
3%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1156

StarOffice 5.2 follows symlinks and sets world-readable permissions for the /tmp/soffice.tmp directory, which allows a local user to read files of the user who is using StarOffice.

CVSS2: 3.6
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1155

RHDaemon in RobinHood 1.1 web server in BeOS r5 pro and earlier allows remote attackers to cause a denial of service via long HTTP request.

CVSS2: 5
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1154

RHConsole in RobinHood 1.1 web server in BeOS r5 pro and earlier allows remote attackers to cause a denial of service via long HTTP request.

CVSS2: 5
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1153

PostMaster 1.0 in BeOS r5 pro and earlier allows remote attackers to conduct a denial of service via a message that contains a long URL.

CVSS2: 5
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1152

Browser IRC client in BeOS r5 pro and earlier allows remote attackers to conduct a denial of service via a message that contains a long URL.

CVSS2: 5
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1151

Baxter IRC client in BeOS r5 pro and earlier allows remote attackers to conduct a denial of service via a message that contains a long URL.

CVSS2: 5
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1150

Felix IRC client in BeOS r5 pro and earlier allows remote attackers to conduct a denial of service via a message that contains a long URL.

CVSS2: 5
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1149

Buffer overflow in RegAPI.DLL used by Windows NT 4.0 Terminal Server allows remote attackers to execute arbitrary commands via a long username, aka the "Terminal Server Login Buffer Overflow" vulnerability.

CVSS2: 7.5
16%
Средний
больше 25 лет назад
nvd логотип
CVE-2000-1148

The installation of VolanoChatPro chat server sets world-readable permissions for its configuration file and stores the server administrator passwords in plaintext, which allows local users to gain privileges on the server.

CVSS2: 4.6
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1147

Buffer overflow in IIS ISAPI .ASP parsing mechanism allows attackers to execute arbitrary commands via a long string to the "LANGUAGE" argument in a script tag.

CVSS2: 4.6
8%
Низкий
больше 25 лет назад

Уязвимостей на страницу