Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 372 115

Количество 372 115

nvd логотип

CVE-2000-0965

больше 25 лет назад

The NSAPI plugins for TGA and the Java Servlet proxy in HP-UX VVOS 10.24 and 11.04 allows an attacker to cause a denial of service (high CPU utilization).

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0964

больше 25 лет назад

Buffer overflow in the web administration service for the HiNet LP5100 IP-phone allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long GET request.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2000-0963

больше 25 лет назад

Buffer overflow in ncurses library allows local users to execute arbitrary commands via long environmental information such as TERM or TERMINFO_DIRS.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2000-0962

больше 25 лет назад

The IPSEC implementation in OpenBSD 2.7 does not properly handle empty AH/ESP packets, which allows remote attackers to cause a denial of service.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0961

больше 25 лет назад

Buffer overflow in IMAP server in Netscape Messaging Server 4.15 Patch 2 allows local users to execute arbitrary commands via a long LIST command.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2000-0960

больше 25 лет назад

The POP3 server in Netscape Messaging Server 4.15p1 generates different error messages for incorrect user names versus incorrect passwords, which allows remote attackers to determine valid users on the system and harvest email addresses for spam abuse.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0959

больше 25 лет назад

glibc2 does not properly clear the LD_DEBUG_OUTPUT and LD_DEBUG environmental variables when a program is spawned from a setuid program, which could allow local users to overwrite files via a symlink attack.

CVSS2: 1.2
EPSS: Низкий
nvd логотип

CVE-2000-0958

больше 25 лет назад

HotJava Browser 3.0 allows remote attackers to access the DOM of a web page by opening a javascript: URL in a named window.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0957

больше 25 лет назад

The pluggable authentication module for mysql (pam_mysql) before 0.4.7 does not properly cleanse user input when constructing SQL statements, which allows attackers to obtain plaintext passwords or hashes.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-0956

больше 25 лет назад

cyrus-sasl before 1.5.24 in Red Hat Linux 7.0 does not properly verify the authorization for a local user, which could allow the users to bypass specified access restrictions.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2000-0955

больше 25 лет назад

Cisco Virtual Central Office 4000 (VCO/4K) uses weak encryption to store usernames and passwords in the SNMP MIB, which allows an attacker who knows the community name to crack the password and gain privileges.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-0954

больше 25 лет назад

Shambala Server 4.5 stores passwords in plaintext, which could allow local users to obtain the passwords and compromise the server.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2000-0953

больше 25 лет назад

Shambala Server 4.5 allows remote attackers to cause a denial of service by opening then closing a connection.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0952

больше 25 лет назад

global.cgi CGI program in Global 3.55 and earlier on NetBSD allows remote attackers to execute arbitrary commands via shell metacharacters.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2000-0951

больше 25 лет назад

A misconfiguration in IIS 5.0 with Index Server enabled and the Index property set allows remote attackers to list directories in the web root via a Web Distributed Authoring and Versioning (WebDAV) search.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2000-0950

больше 25 лет назад

Format string vulnerability in x-gw in TIS Firewall Toolkit (FWTK) allows local users to execute arbitrary commands via a malformed display name.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2000-0949

больше 25 лет назад

Heap overflow in savestr function in LBNL traceroute 1.4a5 and earlier allows a local user to execute arbitrary commands via the -g option.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2000-0948

больше 25 лет назад

GnoRPM before 0.95 allows local users to modify arbitrary files via a symlink attack.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2000-0947

больше 25 лет назад

Format string vulnerability in cfd daemon in GNU CFEngine before 1.6.0a11 allows attackers to execute arbitrary commands via format characters in the CAUTH command.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2000-0946

больше 25 лет назад

Compaq Easy Access Keyboard software 1.3 does not properly disable access to custom buttons when the screen is locked, which could allow an attacker to gain privileges or execute programs without authorization.

CVSS2: 4.6
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2000-0965

The NSAPI plugins for TGA and the Java Servlet proxy in HP-UX VVOS 10.24 and 11.04 allows an attacker to cause a denial of service (high CPU utilization).

CVSS2: 5
3%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0964

Buffer overflow in the web administration service for the HiNet LP5100 IP-phone allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long GET request.

CVSS2: 10
4%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0963

Buffer overflow in ncurses library allows local users to execute arbitrary commands via long environmental information such as TERM or TERMINFO_DIRS.

CVSS2: 7.2
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0962

The IPSEC implementation in OpenBSD 2.7 does not properly handle empty AH/ESP packets, which allows remote attackers to cause a denial of service.

CVSS2: 5
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0961

Buffer overflow in IMAP server in Netscape Messaging Server 4.15 Patch 2 allows local users to execute arbitrary commands via a long LIST command.

CVSS2: 10
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0960

The POP3 server in Netscape Messaging Server 4.15p1 generates different error messages for incorrect user names versus incorrect passwords, which allows remote attackers to determine valid users on the system and harvest email addresses for spam abuse.

CVSS2: 5
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0959

glibc2 does not properly clear the LD_DEBUG_OUTPUT and LD_DEBUG environmental variables when a program is spawned from a setuid program, which could allow local users to overwrite files via a symlink attack.

CVSS2: 1.2
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0958

HotJava Browser 3.0 allows remote attackers to access the DOM of a web page by opening a javascript: URL in a named window.

CVSS2: 5
3%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0957

The pluggable authentication module for mysql (pam_mysql) before 0.4.7 does not properly cleanse user input when constructing SQL statements, which allows attackers to obtain plaintext passwords or hashes.

CVSS2: 7.5
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0956

cyrus-sasl before 1.5.24 in Red Hat Linux 7.0 does not properly verify the authorization for a local user, which could allow the users to bypass specified access restrictions.

CVSS2: 4.6
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0955

Cisco Virtual Central Office 4000 (VCO/4K) uses weak encryption to store usernames and passwords in the SNMP MIB, which allows an attacker who knows the community name to crack the password and gain privileges.

CVSS2: 7.5
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0954

Shambala Server 4.5 stores passwords in plaintext, which could allow local users to obtain the passwords and compromise the server.

CVSS2: 10
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0953

Shambala Server 4.5 allows remote attackers to cause a denial of service by opening then closing a connection.

CVSS2: 5
3%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0952

global.cgi CGI program in Global 3.55 and earlier on NetBSD allows remote attackers to execute arbitrary commands via shell metacharacters.

CVSS2: 10
5%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0951

A misconfiguration in IIS 5.0 with Index Server enabled and the Index property set allows remote attackers to list directories in the web root via a Web Distributed Authoring and Versioning (WebDAV) search.

CVSS2: 5
44%
Средний
больше 25 лет назад
nvd логотип
CVE-2000-0950

Format string vulnerability in x-gw in TIS Firewall Toolkit (FWTK) allows local users to execute arbitrary commands via a malformed display name.

CVSS2: 7.2
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0949

Heap overflow in savestr function in LBNL traceroute 1.4a5 and earlier allows a local user to execute arbitrary commands via the -g option.

CVSS2: 7.2
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0948

GnoRPM before 0.95 allows local users to modify arbitrary files via a symlink attack.

CVSS2: 7.2
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0947

Format string vulnerability in cfd daemon in GNU CFEngine before 1.6.0a11 allows attackers to execute arbitrary commands via format characters in the CAUTH command.

CVSS2: 10
3%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0946

Compaq Easy Access Keyboard software 1.3 does not properly disable access to custom buttons when the screen is locked, which could allow an attacker to gain privileges or execute programs without authorization.

CVSS2: 4.6
0%
Низкий
больше 25 лет назад

Уязвимостей на страницу