Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 372 115

Количество 372 115

nvd логотип

CVE-2000-1147

больше 25 лет назад

Buffer overflow in IIS ISAPI .ASP parsing mechanism allows attackers to execute arbitrary commands via a long string to the "LANGUAGE" argument in a script tag.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2000-1146

больше 25 лет назад

Recourse ManTrap 1.6 allows attackers to cause a denial of service via a sequence of commands that navigate into and out of the /proc/self directory and executing various commands such as ls or pwd.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2000-1145

больше 25 лет назад

Recourse ManTrap 1.6 allows attackers who have gained root access to use utilities such as crash or fsdb to read /dev/mem and raw disk devices to identify ManTrap processes or modify arbitrary data files.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2000-1144

больше 25 лет назад

Recourse ManTrap 1.6 sets up a chroot environment to hide the fact that it is running, but the inode number for the resulting "/" file system is higher than normal, which allows attackers to determine that they are in a chroot environment.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2000-1143

больше 25 лет назад

Recourse ManTrap 1.6 hides the first 4 processes that run on a Solaris system, which allows attackers to determine that they are in a honeypot system.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2000-1142

больше 25 лет назад

Recourse ManTrap 1.6 generates an error when an attacker cd's to /proc/self/cwd and executes the pwd command, which allows attackers to determine that they are in a honeypot system.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2000-1141

больше 25 лет назад

Recourse ManTrap 1.6 modifies the kernel so that ".." does not appear in the /proc listing, which allows attackers to determine that they are in a honeypot system.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2000-1140

больше 25 лет назад

Recourse ManTrap 1.6 does not properly hide processes from attackers, which could allow attackers to determine that they are in a honeypot system by comparing the results from kill commands with the process listing in the /proc filesystem.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2000-1139

больше 25 лет назад

The installation of Microsoft Exchange 2000 before Rev. A creates a user account with a known password, which could allow attackers to gain privileges, aka the "Exchange User Account" vulnerability.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-1138

больше 25 лет назад

Lotus Notes R5 client R5.0.5 and earlier does not properly warn users when an S/MIME email message has been modified, which could allow an attacker to modify the email in transit without being detected.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-1137

больше 25 лет назад

GNU ed before 0.2-18.1 allows local users to overwrite the files of other users via a symlink attack.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2000-1136

больше 25 лет назад

elvis-tiny before 1.4-10 in Debian GNU/Linux, and possibly other Linux operating systems, allows local users to overwrite files of other users via a symlink attack.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2000-1135

больше 25 лет назад

fshd (fsh daemon) in Debian GNU/Linux allows local users to overwrite files of other users via a symlink attack.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2000-1134

больше 25 лет назад

Multiple shell programs on various Unix systems, including (1) tcsh, (2) csh, (3) sh, and (4) bash, follow symlinks when processing << redirects (aka here-documents or in-here documents), which allows local users to overwrite files of other users via a symlink attack.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2000-1133

больше 25 лет назад

Authentix Authentix100 allows remote attackers to bypass authentication by inserting a . (dot) into the URL for a protected directory.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-1132

больше 25 лет назад

DCForum cgforum.cgi CGI script allows remote attackers to read arbitrary files, and delete the program itself, via a malformed "forum" variable.

CVSS2: 6.4
EPSS: Низкий
nvd логотип

CVE-2000-1131

больше 25 лет назад

Bill Kendrick web site guestbook (GBook) allows remote attackers to execute arbitrary commands via shell metacharacters in the _MAILTO form variable.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-1130

больше 25 лет назад

McAfee WebShield SMTP 4.5 allows remote attackers to bypass email content filtering rules by including Extended ASCII characters in name of the attachment.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-1129

больше 25 лет назад

McAfee WebShield SMTP 4.5 allows remote attackers to cause a denial of service via a malformed recipient field.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-1128

больше 25 лет назад

The default configuration of McAfee VirusScan 4.5 does not quote the ImagePath variable, which improperly sets the search path and allows local users to place a Trojan horse "common.exe" program in the C:\Program Files directory.

CVSS2: 4.6
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2000-1147

Buffer overflow in IIS ISAPI .ASP parsing mechanism allows attackers to execute arbitrary commands via a long string to the "LANGUAGE" argument in a script tag.

CVSS2: 4.6
8%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1146

Recourse ManTrap 1.6 allows attackers to cause a denial of service via a sequence of commands that navigate into and out of the /proc/self directory and executing various commands such as ls or pwd.

CVSS2: 2.1
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1145

Recourse ManTrap 1.6 allows attackers who have gained root access to use utilities such as crash or fsdb to read /dev/mem and raw disk devices to identify ManTrap processes or modify arbitrary data files.

CVSS2: 4.6
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1144

Recourse ManTrap 1.6 sets up a chroot environment to hide the fact that it is running, but the inode number for the resulting "/" file system is higher than normal, which allows attackers to determine that they are in a chroot environment.

CVSS2: 2.1
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1143

Recourse ManTrap 1.6 hides the first 4 processes that run on a Solaris system, which allows attackers to determine that they are in a honeypot system.

CVSS2: 2.1
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1142

Recourse ManTrap 1.6 generates an error when an attacker cd's to /proc/self/cwd and executes the pwd command, which allows attackers to determine that they are in a honeypot system.

CVSS2: 2.1
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1141

Recourse ManTrap 1.6 modifies the kernel so that ".." does not appear in the /proc listing, which allows attackers to determine that they are in a honeypot system.

CVSS2: 2.1
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1140

Recourse ManTrap 1.6 does not properly hide processes from attackers, which could allow attackers to determine that they are in a honeypot system by comparing the results from kill commands with the process listing in the /proc filesystem.

CVSS2: 2.1
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1139

The installation of Microsoft Exchange 2000 before Rev. A creates a user account with a known password, which could allow attackers to gain privileges, aka the "Exchange User Account" vulnerability.

CVSS2: 7.5
5%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1138

Lotus Notes R5 client R5.0.5 and earlier does not properly warn users when an S/MIME email message has been modified, which could allow an attacker to modify the email in transit without being detected.

CVSS2: 7.5
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1137

GNU ed before 0.2-18.1 allows local users to overwrite the files of other users via a symlink attack.

CVSS2: 4.6
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1136

elvis-tiny before 1.4-10 in Debian GNU/Linux, and possibly other Linux operating systems, allows local users to overwrite files of other users via a symlink attack.

CVSS2: 4.6
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1135

fshd (fsh daemon) in Debian GNU/Linux allows local users to overwrite files of other users via a symlink attack.

CVSS2: 4.6
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1134

Multiple shell programs on various Unix systems, including (1) tcsh, (2) csh, (3) sh, and (4) bash, follow symlinks when processing << redirects (aka here-documents or in-here documents), which allows local users to overwrite files of other users via a symlink attack.

CVSS2: 7.2
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1133

Authentix Authentix100 allows remote attackers to bypass authentication by inserting a . (dot) into the URL for a protected directory.

CVSS2: 5
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1132

DCForum cgforum.cgi CGI script allows remote attackers to read arbitrary files, and delete the program itself, via a malformed "forum" variable.

CVSS2: 6.4
9%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1131

Bill Kendrick web site guestbook (GBook) allows remote attackers to execute arbitrary commands via shell metacharacters in the _MAILTO form variable.

CVSS2: 7.5
3%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1130

McAfee WebShield SMTP 4.5 allows remote attackers to bypass email content filtering rules by including Extended ASCII characters in name of the attachment.

CVSS2: 7.5
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1129

McAfee WebShield SMTP 4.5 allows remote attackers to cause a denial of service via a malformed recipient field.

CVSS2: 5
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-1128

The default configuration of McAfee VirusScan 4.5 does not quote the ImagePath variable, which improperly sets the search path and allows local users to place a Trojan horse "common.exe" program in the C:\Program Files directory.

CVSS2: 4.6
0%
Низкий
больше 25 лет назад

Уязвимостей на страницу