Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 372 115

Количество 372 115

nvd логотип

CVE-2000-0925

больше 25 лет назад

The default installation of SmartWin CyberOffice Shopping Cart 2 (aka CyberShop) installs the _private directory with world readable permissions, which allows remote attackers to obtain sensitive information.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0924

больше 25 лет назад

Directory traversal vulnerability in search.cgi CGI script in Armada Master Index allows remote attackers to read arbitrary files via a .. (dot dot) attack in the "catigory" parameter.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0923

больше 25 лет назад

authenticate.cgi CGI program in Aplio PRO allows remote attackers to execute arbitrary commands via shell metacharacters in the password parameter.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-0922

больше 25 лет назад

Directory traversal vulnerability in Bytes Interactive Web Shopper shopping cart program (shopper.cgi) 2.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack on the newpage parameter.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0921

больше 25 лет назад

Directory traversal vulnerability in Hassan Consulting shop.cgi shopping cart program allows remote attackers to read arbitrary files via a .. (dot dot) attack on the page parameter.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0920

больше 25 лет назад

Directory traversal vulnerability in BOA web server 0.94.8.2 and earlier allows remote attackers to read arbitrary files via a modified .. (dot dot) attack in the GET HTTP request that uses a "%2E" instead of a "."

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0919

больше 25 лет назад

Directory traversal vulnerability in PHPix Photo Album 1.0.2 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0918

больше 25 лет назад

Format string vulnerability in kvt in KDE 1.1.2 may allow local users to execute arbitrary commands via a DISPLAY environmental variable that contains formatting characters.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2000-0917

больше 25 лет назад

Format string vulnerability in use_syslog() function in LPRng 3.6.24 allows remote attackers to execute arbitrary commands.

CVSS2: 10
EPSS: Высокий
nvd логотип

CVE-2000-0916

больше 25 лет назад

FreeBSD 4.1.1 and earlier, and possibly other BSD-based OSes, uses an insufficient random number generator to generate initial TCP sequence numbers (ISN), which allows remote attackers to spoof TCP connections.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-0915

больше 25 лет назад

fingerd in FreeBSD 4.1.1 allows remote attackers to read arbitrary files by specifying the target file name instead of a regular user name.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0914

больше 25 лет назад

OpenBSD 2.6 and earlier allows remote attackers to cause a denial of service by flooding the server with ARP requests.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0913

больше 25 лет назад

mod_rewrite in Apache 1.3.12 and earlier allows remote attackers to read arbitrary files if a RewriteRule directive is expanded to include a filename whose name contains a regular expression.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2000-0912

больше 25 лет назад

MultiHTML CGI script allows remote attackers to read arbitrary files and possibly execute arbitrary commands by specifying the file name to the "multi" parameter.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0911

больше 25 лет назад

IMP 2.2 and earlier allows attackers to read and delete arbitrary files by modifying the attachment_name hidden form variable, which causes IMP to send the file to the attacker as an attachment.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0910

больше 25 лет назад

Horde library 1.02 allows attackers to execute arbitrary commands via shell metacharacters in the "from" address.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2000-0909

больше 25 лет назад

Buffer overflow in the automatic mail checking component of Pine 4.21 and earlier allows remote attackers to execute arbitrary commands via a long From: header.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2000-0908

больше 25 лет назад

BrowseGate 2.80 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via long Authorization or Referer MIME headers in the HTTP request.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0907

больше 25 лет назад

EServ 2.92 Build 2982 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via long HELO and MAIL FROM commands.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-0906

больше 25 лет назад

Directory traversal vulnerability in Moreover.com cached_feed.cgi script version 4.July.00 allows remote attackers to read arbitrary files via a .. (dot dot) attack on the category or format parameters.

CVSS2: 5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2000-0925

The default installation of SmartWin CyberOffice Shopping Cart 2 (aka CyberShop) installs the _private directory with world readable permissions, which allows remote attackers to obtain sensitive information.

CVSS2: 5
8%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0924

Directory traversal vulnerability in search.cgi CGI script in Armada Master Index allows remote attackers to read arbitrary files via a .. (dot dot) attack in the "catigory" parameter.

CVSS2: 5
8%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0923

authenticate.cgi CGI program in Aplio PRO allows remote attackers to execute arbitrary commands via shell metacharacters in the password parameter.

CVSS2: 7.5
4%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0922

Directory traversal vulnerability in Bytes Interactive Web Shopper shopping cart program (shopper.cgi) 2.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack on the newpage parameter.

CVSS2: 5
4%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0921

Directory traversal vulnerability in Hassan Consulting shop.cgi shopping cart program allows remote attackers to read arbitrary files via a .. (dot dot) attack on the page parameter.

CVSS2: 5
8%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0920

Directory traversal vulnerability in BOA web server 0.94.8.2 and earlier allows remote attackers to read arbitrary files via a modified .. (dot dot) attack in the GET HTTP request that uses a "%2E" instead of a "."

CVSS2: 5
8%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0919

Directory traversal vulnerability in PHPix Photo Album 1.0.2 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack.

CVSS2: 5
8%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0918

Format string vulnerability in kvt in KDE 1.1.2 may allow local users to execute arbitrary commands via a DISPLAY environmental variable that contains formatting characters.

CVSS2: 7.2
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0917

Format string vulnerability in use_syslog() function in LPRng 3.6.24 allows remote attackers to execute arbitrary commands.

CVSS2: 10
79%
Высокий
больше 25 лет назад
nvd логотип
CVE-2000-0916

FreeBSD 4.1.1 and earlier, and possibly other BSD-based OSes, uses an insufficient random number generator to generate initial TCP sequence numbers (ISN), which allows remote attackers to spoof TCP connections.

CVSS2: 7.5
6%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0915

fingerd in FreeBSD 4.1.1 allows remote attackers to read arbitrary files by specifying the target file name instead of a regular user name.

CVSS2: 5
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0914

OpenBSD 2.6 and earlier allows remote attackers to cause a denial of service by flooding the server with ARP requests.

CVSS2: 5
3%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0913

mod_rewrite in Apache 1.3.12 and earlier allows remote attackers to read arbitrary files if a RewriteRule directive is expanded to include a filename whose name contains a regular expression.

CVSS2: 5
35%
Средний
больше 25 лет назад
nvd логотип
CVE-2000-0912

MultiHTML CGI script allows remote attackers to read arbitrary files and possibly execute arbitrary commands by specifying the file name to the "multi" parameter.

CVSS2: 5
4%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0911

IMP 2.2 and earlier allows attackers to read and delete arbitrary files by modifying the attachment_name hidden form variable, which causes IMP to send the file to the attacker as an attachment.

CVSS2: 5
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0910

Horde library 1.02 allows attackers to execute arbitrary commands via shell metacharacters in the "from" address.

CVSS2: 4.6
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0909

Buffer overflow in the automatic mail checking component of Pine 4.21 and earlier allows remote attackers to execute arbitrary commands via a long From: header.

CVSS2: 7.5
12%
Средний
больше 25 лет назад
nvd логотип
CVE-2000-0908

BrowseGate 2.80 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via long Authorization or Referer MIME headers in the HTTP request.

CVSS2: 5
10%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0907

EServ 2.92 Build 2982 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via long HELO and MAIL FROM commands.

CVSS2: 7.5
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0906

Directory traversal vulnerability in Moreover.com cached_feed.cgi script version 4.July.00 allows remote attackers to read arbitrary files via a .. (dot dot) attack on the category or format parameters.

CVSS2: 5
9%
Низкий
больше 25 лет назад

Уязвимостей на страницу