Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 372 115

Количество 372 115

nvd логотип

CVE-2000-0985

больше 25 лет назад

Buffer overflow in All-Mail 1.1 allows remote attackers to execute arbitrary commands via a long "MAIL FROM" or "RCPT TO" command.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2000-0984

больше 25 лет назад

The HTTP server in Cisco IOS 12.0 through 12.1 allows local users to cause a denial of service (crash and reload) via a URL containing a "?/" string.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0983

больше 25 лет назад

Microsoft NetMeeting with Remote Desktop Sharing enabled allows remote attackers to cause a denial of service (CPU utilization) via a sequence of null bytes to the NetMeeting port, aka the "NetMeeting Desktop Sharing" vulnerability.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2000-0982

больше 25 лет назад

Internet Explorer before 5.5 forwards cached user credentials for a secure web site to insecure pages on the same web site, which could allow remote attackers to obtain the credentials by monitoring connections to the web server, aka the "Cached Web Credentials" vulnerability.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2000-0981

больше 25 лет назад

MySQL Database Engine uses a weak authentication method which leaks information that could be used by a remote attacker to recover the password.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2000-0980

больше 25 лет назад

NMPI (Name Management Protocol on IPX) listener in Microsoft NWLink does not properly filter packets from a broadcast address, which allows remote attackers to cause a broadcast storm and flood the network.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2000-0979

больше 25 лет назад

File and Print Sharing service in Windows 95, Windows 98, and Windows Me does not properly check the password for a file share, which allows remote attackers to bypass share access controls by sending a 1-byte password that matches the first character of the real password, aka the "Share Level Password" vulnerability.

CVSS2: 6.4
EPSS: Средний
nvd логотип

CVE-2000-0978

больше 25 лет назад

bbd server in Big Brother System and Network Monitor before 1.5c2 allows remote attackers to execute arbitrary commands via the "&" shell metacharacter.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-0977

больше 25 лет назад

mailfile.cgi CGI program in MailFile 1.10 allows remote attackers to read arbitrary files by specifying the target file name in the "filename" parameter in a POST request, which is then sent by email to the address specified in the "email" parameter.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0976

больше 25 лет назад

Buffer overflow in xlib in XFree 3.3.x possibly allows local users to execute arbitrary commands via a long DISPLAY environment variable or a -display command line parameter.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2000-0975

больше 25 лет назад

Directory traversal vulnerability in apexec.pl in Anaconda Foundation Directory allows remote attackers to read arbitrary files via a .. (dot dot) attack.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0974

больше 25 лет назад

GnuPG (gpg) 1.0.3 does not properly check all signatures of a file containing multiple documents, which allows an attacker to modify contents of all documents but the first without detection.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-0973

больше 25 лет назад

Buffer overflow in curl earlier than 6.0-1.1, and curl-ssl earlier than 6.0-1.2, allows remote attackers to execute arbitrary commands by forcing a long error message to be generated.

CVSS2: 10
EPSS: Средний
nvd логотип

CVE-2000-0972

больше 25 лет назад

HP-UX 11.00 crontab allows local users to read arbitrary files via the -e option by creating a symlink to the target file during the crontab session, quitting the session, and reading the error messages that crontab generates.

CVSS3: 5.5
EPSS: Низкий
nvd логотип

CVE-2000-0971

больше 25 лет назад

Avirt Mail 4.0 and 4.2 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long "RCPT TO" or "MAIL FROM" command.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2000-0970

больше 25 лет назад

IIS 4.0 and 5.0 .ASP pages send the same Session ID cookie for secure and insecure web sessions, which could allow remote attackers to hijack the secure web session of the user if that user moves to an insecure session, aka the "Session ID Cookie Marking" vulnerability.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2000-0969

больше 25 лет назад

Format string vulnerability in Half Life dedicated server build 3104 and earlier allows remote attackers to execute arbitrary commands by injecting format strings into the changelevel command, via the system console or rcon.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2000-0968

больше 25 лет назад

Buffer overflow in Half Life dedicated server before build 3104 allows remote attackers to execute arbitrary commands via a long rcon command.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2000-0967

больше 25 лет назад

PHP 3 and 4 do not properly cleanse user-injected format strings, which allows remote attackers to execute arbitrary commands by triggering error messages that are improperly written to the error logs.

CVSS2: 10
EPSS: Средний
nvd логотип

CVE-2000-0966

больше 25 лет назад

Buffer overflows in lpspooler in the fileset PrinterMgmt.LP-SPOOL of HP-UX 11.0 and earlier allows local users to gain privileges.

CVSS2: 4.6
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2000-0985

Buffer overflow in All-Mail 1.1 allows remote attackers to execute arbitrary commands via a long "MAIL FROM" or "RCPT TO" command.

CVSS2: 10
5%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0984

The HTTP server in Cisco IOS 12.0 through 12.1 allows local users to cause a denial of service (crash and reload) via a URL containing a "?/" string.

CVSS2: 5
4%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0983

Microsoft NetMeeting with Remote Desktop Sharing enabled allows remote attackers to cause a denial of service (CPU utilization) via a sequence of null bytes to the NetMeeting port, aka the "NetMeeting Desktop Sharing" vulnerability.

CVSS2: 5
21%
Средний
больше 25 лет назад
nvd логотип
CVE-2000-0982

Internet Explorer before 5.5 forwards cached user credentials for a secure web site to insecure pages on the same web site, which could allow remote attackers to obtain the credentials by monitoring connections to the web server, aka the "Cached Web Credentials" vulnerability.

CVSS2: 7.5
13%
Средний
больше 25 лет назад
nvd логотип
CVE-2000-0981

MySQL Database Engine uses a weak authentication method which leaks information that could be used by a remote attacker to recover the password.

CVSS2: 7.2
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0980

NMPI (Name Management Protocol on IPX) listener in Microsoft NWLink does not properly filter packets from a broadcast address, which allows remote attackers to cause a broadcast storm and flood the network.

CVSS2: 5
13%
Средний
больше 25 лет назад
nvd логотип
CVE-2000-0979

File and Print Sharing service in Windows 95, Windows 98, and Windows Me does not properly check the password for a file share, which allows remote attackers to bypass share access controls by sending a 1-byte password that matches the first character of the real password, aka the "Share Level Password" vulnerability.

CVSS2: 6.4
45%
Средний
больше 25 лет назад
nvd логотип
CVE-2000-0978

bbd server in Big Brother System and Network Monitor before 1.5c2 allows remote attackers to execute arbitrary commands via the "&" shell metacharacter.

CVSS2: 7.5
3%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0977

mailfile.cgi CGI program in MailFile 1.10 allows remote attackers to read arbitrary files by specifying the target file name in the "filename" parameter in a POST request, which is then sent by email to the address specified in the "email" parameter.

CVSS2: 5
9%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0976

Buffer overflow in xlib in XFree 3.3.x possibly allows local users to execute arbitrary commands via a long DISPLAY environment variable or a -display command line parameter.

CVSS2: 4.6
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0975

Directory traversal vulnerability in apexec.pl in Anaconda Foundation Directory allows remote attackers to read arbitrary files via a .. (dot dot) attack.

CVSS2: 5
4%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0974

GnuPG (gpg) 1.0.3 does not properly check all signatures of a file containing multiple documents, which allows an attacker to modify contents of all documents but the first without detection.

CVSS2: 7.5
3%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0973

Buffer overflow in curl earlier than 6.0-1.1, and curl-ssl earlier than 6.0-1.2, allows remote attackers to execute arbitrary commands by forcing a long error message to be generated.

CVSS2: 10
19%
Средний
больше 25 лет назад
nvd логотип
CVE-2000-0972

HP-UX 11.00 crontab allows local users to read arbitrary files via the -e option by creating a symlink to the target file during the crontab session, quitting the session, and reading the error messages that crontab generates.

CVSS3: 5.5
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0971

Avirt Mail 4.0 and 4.2 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long "RCPT TO" or "MAIL FROM" command.

CVSS2: 10
6%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0970

IIS 4.0 and 5.0 .ASP pages send the same Session ID cookie for secure and insecure web sessions, which could allow remote attackers to hijack the secure web session of the user if that user moves to an insecure session, aka the "Session ID Cookie Marking" vulnerability.

CVSS2: 7.5
44%
Средний
больше 25 лет назад
nvd логотип
CVE-2000-0969

Format string vulnerability in Half Life dedicated server build 3104 and earlier allows remote attackers to execute arbitrary commands by injecting format strings into the changelevel command, via the system console or rcon.

CVSS2: 10
3%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0968

Buffer overflow in Half Life dedicated server before build 3104 allows remote attackers to execute arbitrary commands via a long rcon command.

CVSS2: 10
4%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0967

PHP 3 and 4 do not properly cleanse user-injected format strings, which allows remote attackers to execute arbitrary commands by triggering error messages that are improperly written to the error logs.

CVSS2: 10
21%
Средний
больше 25 лет назад
nvd логотип
CVE-2000-0966

Buffer overflows in lpspooler in the fileset PrinterMgmt.LP-SPOOL of HP-UX 11.0 and earlier allows local users to gain privileges.

CVSS2: 4.6
1%
Низкий
больше 25 лет назад

Уязвимостей на страницу