Количество 367 614
Количество 367 614
CVE-2000-0175
Buffer overflow in StarOffice StarScheduler web server allows remote attackers to gain root access via a long GET command.
CVE-2000-0174
StarOffice StarScheduler web server allows remote attackers to read arbitrary files via a .. (dot dot) attack.
CVE-2000-0173
Vulnerability in the EELS system in SCO UnixWare 7.1.x allows remote attackers to cause a denial of service.
CVE-2000-0172
The mtr program only uses a seteuid call when attempting to drop privileges, which could allow local users to gain root privileges.
CVE-2000-0171
atsadc in the atsar package for Linux does not properly check the permissions of an output file, which allows local users to gain root privileges.
CVE-2000-0170
Buffer overflow in the man program in Linux allows local users to gain privileges via the MANPAGER environmental variable.
CVE-2000-0169
Batch files in the Oracle web listener ows-bin directory allow remote attackers to execute commands via a malformed URL that includes '?&'.
CVE-2000-0168
Microsoft Windows 9x operating systems allow an attacker to cause a denial of service via a pathname that includes file device names, aka the "DOS Device in Path Name" vulnerability.
CVE-2000-0167
IIS Inetinfo.exe allows local users to cause a denial of service by creating a mail file with a long name and a .txt.eml extension in the pickup directory.
CVE-2000-0166
Buffer overflow in the InterAccess telnet server TelnetD allows remote attackers to execute commands via a long login name.
CVE-2000-0165
The Delegate application proxy has several buffer overflows which allow a remote attacker to execute commands.
CVE-2000-0164
The installation of Sun Internet Mail Server (SIMS) creates a world-readable file that allows local users to obtain passwords.
CVE-2000-0163
asmon and ascpu in FreeBSD allow local users to gain root privileges via a configuration file.
CVE-2000-0162
The Microsoft virtual machine (VM) in Internet Explorer 4.x and 5.x allows a remote attacker to read files via a malicious Java applet that escapes the Java sandbox, aka the "VM File Reading" vulnerability.
CVE-2000-0161
Sample web sites on Microsoft Site Server 3.0 Commerce Edition do not validate an identification number, which allows remote attackers to execute SQL commands.
CVE-2000-0160
The Microsoft Active Setup ActiveX component in Internet Explorer 4.x and 5.x allows a remote attacker to install software components without prompting the user by stating that the software's manufacturer is Microsoft.
CVE-2000-0159
HP Ignite-UX does not save /etc/passwd when it creates an image of a trusted system, which can set the password field to a blank and allow an attacker to gain privileges.
CVE-2000-0158
Buffer overflow in MMDF server allows remote attackers to gain privileges via a long MAIL FROM command to the SMTP daemon.
CVE-2000-0157
NetBSD ptrace call on VAX allows local users to gain privileges by modifying the PSL contents in the debugging process.
CVE-2000-0156
Internet Explorer 4.x and 5.x allows remote web servers to access files on the client that are outside of its security domain, aka the "Image Source Redirect" vulnerability.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2000-0175 Buffer overflow in StarOffice StarScheduler web server allows remote attackers to gain root access via a long GET command. | CVSS2: 10 | 2% Низкий | больше 26 лет назад | |
CVE-2000-0174 StarOffice StarScheduler web server allows remote attackers to read arbitrary files via a .. (dot dot) attack. | CVSS2: 5 | 6% Низкий | больше 26 лет назад | |
CVE-2000-0173 Vulnerability in the EELS system in SCO UnixWare 7.1.x allows remote attackers to cause a denial of service. | CVSS2: 5 | 1% Низкий | больше 26 лет назад | |
CVE-2000-0172 The mtr program only uses a seteuid call when attempting to drop privileges, which could allow local users to gain root privileges. | CVSS2: 7.2 | 1% Низкий | больше 26 лет назад | |
CVE-2000-0171 atsadc in the atsar package for Linux does not properly check the permissions of an output file, which allows local users to gain root privileges. | CVSS2: 7.2 | 1% Низкий | больше 26 лет назад | |
CVE-2000-0170 Buffer overflow in the man program in Linux allows local users to gain privileges via the MANPAGER environmental variable. | CVSS2: 7.2 | 2% Низкий | больше 26 лет назад | |
CVE-2000-0169 Batch files in the Oracle web listener ows-bin directory allow remote attackers to execute commands via a malformed URL that includes '?&'. | CVSS2: 7.5 | 27% Средний | больше 26 лет назад | |
CVE-2000-0168 Microsoft Windows 9x operating systems allow an attacker to cause a denial of service via a pathname that includes file device names, aka the "DOS Device in Path Name" vulnerability. | CVSS2: 5 | 20% Средний | больше 26 лет назад | |
CVE-2000-0167 IIS Inetinfo.exe allows local users to cause a denial of service by creating a mail file with a long name and a .txt.eml extension in the pickup directory. | CVSS2: 2.1 | 3% Низкий | больше 26 лет назад | |
CVE-2000-0166 Buffer overflow in the InterAccess telnet server TelnetD allows remote attackers to execute commands via a long login name. | CVSS2: 10 | 6% Низкий | больше 26 лет назад | |
CVE-2000-0165 The Delegate application proxy has several buffer overflows which allow a remote attacker to execute commands. | CVSS2: 7.5 | 11% Средний | больше 26 лет назад | |
CVE-2000-0164 The installation of Sun Internet Mail Server (SIMS) creates a world-readable file that allows local users to obtain passwords. | CVSS2: 7.2 | 1% Низкий | больше 26 лет назад | |
CVE-2000-0163 asmon and ascpu in FreeBSD allow local users to gain root privileges via a configuration file. | CVSS2: 4.6 | 1% Низкий | больше 26 лет назад | |
CVE-2000-0162 The Microsoft virtual machine (VM) in Internet Explorer 4.x and 5.x allows a remote attacker to read files via a malicious Java applet that escapes the Java sandbox, aka the "VM File Reading" vulnerability. | CVSS2: 5.1 | 8% Низкий | больше 26 лет назад | |
CVE-2000-0161 Sample web sites on Microsoft Site Server 3.0 Commerce Edition do not validate an identification number, which allows remote attackers to execute SQL commands. | CVSS2: 7.5 | 10% Средний | больше 26 лет назад | |
CVE-2000-0160 The Microsoft Active Setup ActiveX component in Internet Explorer 4.x and 5.x allows a remote attacker to install software components without prompting the user by stating that the software's manufacturer is Microsoft. | CVSS2: 7.6 | 9% Низкий | больше 26 лет назад | |
CVE-2000-0159 HP Ignite-UX does not save /etc/passwd when it creates an image of a trusted system, which can set the password field to a blank and allow an attacker to gain privileges. | CVSS2: 7.5 | 2% Низкий | больше 26 лет назад | |
CVE-2000-0158 Buffer overflow in MMDF server allows remote attackers to gain privileges via a long MAIL FROM command to the SMTP daemon. | CVSS2: 7.5 | 2% Низкий | больше 26 лет назад | |
CVE-2000-0157 NetBSD ptrace call on VAX allows local users to gain privileges by modifying the PSL contents in the debugging process. | CVSS2: 7.2 | 0% Низкий | больше 26 лет назад | |
CVE-2000-0156 Internet Explorer 4.x and 5.x allows remote web servers to access files on the client that are outside of its security domain, aka the "Image Source Redirect" vulnerability. | CVSS2: 5.1 | 13% Средний | больше 26 лет назад |
Уязвимостей на страницу