Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 372 115

Количество 372 115

nvd логотип

CVE-2000-0905

больше 25 лет назад

QNX Embedded Resource Manager in Voyager web server 2.01B in the demo disks for QNX 405 allows remote attackers to read sensitive system statistics information via the embedded.html web page.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0904

больше 25 лет назад

Voyager web server 2.01B in the demo disks for QNX 405 stores sensitive web client information in the .photon directory in the web document root, which allows remote attackers to obtain that information.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0903

больше 25 лет назад

Directory traversal vulnerability in Voyager web server 2.01B in the demo disks for QNX 405 allows remote attackers to read arbitrary files via a .. (dot dot) attack.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0902

больше 25 лет назад

getalbum.php in PhotoAlbum before 0.9.9 allows remote attackers to read arbitrary files via a .. (dot dot) attack.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0901

больше 25 лет назад

Format string vulnerability in screen 3.9.5 and earlier allows local users to gain root privileges via format characters in the vbell_msg initialization variable.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2000-0900

больше 25 лет назад

Directory traversal vulnerability in ssi CGI program in thttpd 2.19 and earlier allows remote attackers to read arbitrary files via a "%2e%2e" string, a variation of the .. (dot dot) attack.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-0899

больше 25 лет назад

Small HTTP Server 2.01 allows remote attackers to cause a denial of service by connecting to the server and sending out multiple GET, HEAD, or POST requests and closing the connection before the server responds to the requests.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0898

больше 25 лет назад

Small HTTP Server 2.01 does not properly process Server Side Includes (SSI) tags that contain null values, which allows local users, and possibly remote attackers, to cause the server to crash by inserting the SSI into an HTML file.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0897

больше 25 лет назад

Small HTTP Server 2.03 and earlier allows remote attackers to cause a denial of service by repeatedly requesting a URL that references a directory that does not contain an index.html file, which consumes memory that is not released after the request is completed.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0896

больше 25 лет назад

WatchGuard SOHO firewall allows remote attackers to cause a denial of service via a flood of fragmented IP packets, which causes the firewall to drop connections and stop forwarding packets.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0895

больше 25 лет назад

Buffer overflow in HTTP server on the WatchGuard SOHO firewall allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long GET request.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2000-0894

больше 25 лет назад

HTTP server on the WatchGuard SOHO firewall does not properly restrict access to administrative functions such as password resets or rebooting, which allows attackers to cause a denial of service or conduct unauthorized activities.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2000-0893

больше 25 лет назад

The presence of the Distributed GL Daemon (dgld) service on port 5232 on SGI IRIX systems allows remote attackers to identify the target host as an SGI system.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0892

около 25 лет назад

Some telnet clients allow remote telnet servers to request environment variables from the client that may contain sensitive information, or remote web servers to obtain the information via a telnet: URL.

CVSS2: 2.6
EPSS: Низкий
nvd логотип

CVE-2000-0891

около 25 лет назад

A default ECL in Lotus Notes before 5.02 allows remote attackers to execute arbitrary commands by attaching a malicious program in an email message that is automatically executed when the user opens the email.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-0890

больше 25 лет назад

periodic in FreeBSD 4.1.1 and earlier, and possibly other operating systems, allows local users to overwrite arbitrary files via a symlink attack.

CVSS2: 1.2
EPSS: Низкий
nvd логотип

CVE-2000-0889

больше 25 лет назад

Two Sun security certificates have been compromised, which could allow attackers to insert malicious code such as applets and make it appear that it is signed by Sun.

CVSS2: 5.1
EPSS: Низкий
nvd логотип

CVE-2000-0888

больше 25 лет назад

named in BIND 8.2 through 8.2.2-P6 allows remote attackers to cause a denial of service by sending an SRV record to the server, aka the "srv bug."

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0887

больше 25 лет назад

named in BIND 8.2 through 8.2.2-P6 allows remote attackers to cause a denial of service by making a compressed zone transfer (ZXFR) request and performing a name service query on an authoritative record that is not cached, aka the "zxfr bug."

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2000-0886

больше 25 лет назад

IIS 5.0 allows remote attackers to execute arbitrary commands via a malformed request for an executable file whose name is appended with operating system commands, aka the "Web Server File Request Parsing" vulnerability.

CVSS2: 7.5
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2000-0905

QNX Embedded Resource Manager in Voyager web server 2.01B in the demo disks for QNX 405 allows remote attackers to read sensitive system statistics information via the embedded.html web page.

CVSS2: 5
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0904

Voyager web server 2.01B in the demo disks for QNX 405 stores sensitive web client information in the .photon directory in the web document root, which allows remote attackers to obtain that information.

CVSS2: 5
3%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0903

Directory traversal vulnerability in Voyager web server 2.01B in the demo disks for QNX 405 allows remote attackers to read arbitrary files via a .. (dot dot) attack.

CVSS2: 5
3%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0902

getalbum.php in PhotoAlbum before 0.9.9 allows remote attackers to read arbitrary files via a .. (dot dot) attack.

CVSS2: 5
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0901

Format string vulnerability in screen 3.9.5 and earlier allows local users to gain root privileges via format characters in the vbell_msg initialization variable.

CVSS2: 4.6
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0900

Directory traversal vulnerability in ssi CGI program in thttpd 2.19 and earlier allows remote attackers to read arbitrary files via a "%2e%2e" string, a variation of the .. (dot dot) attack.

CVSS2: 7.5
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0899

Small HTTP Server 2.01 allows remote attackers to cause a denial of service by connecting to the server and sending out multiple GET, HEAD, or POST requests and closing the connection before the server responds to the requests.

CVSS2: 5
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0898

Small HTTP Server 2.01 does not properly process Server Side Includes (SSI) tags that contain null values, which allows local users, and possibly remote attackers, to cause the server to crash by inserting the SSI into an HTML file.

CVSS2: 5
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0897

Small HTTP Server 2.03 and earlier allows remote attackers to cause a denial of service by repeatedly requesting a URL that references a directory that does not contain an index.html file, which consumes memory that is not released after the request is completed.

CVSS2: 5
3%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0896

WatchGuard SOHO firewall allows remote attackers to cause a denial of service via a flood of fragmented IP packets, which causes the firewall to drop connections and stop forwarding packets.

CVSS2: 5
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0895

Buffer overflow in HTTP server on the WatchGuard SOHO firewall allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long GET request.

CVSS2: 10
6%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0894

HTTP server on the WatchGuard SOHO firewall does not properly restrict access to administrative functions such as password resets or rebooting, which allows attackers to cause a denial of service or conduct unauthorized activities.

CVSS2: 10
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0893

The presence of the Distributed GL Daemon (dgld) service on port 5232 on SGI IRIX systems allows remote attackers to identify the target host as an SGI system.

CVSS2: 5
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0892

Some telnet clients allow remote telnet servers to request environment variables from the client that may contain sensitive information, or remote web servers to obtain the information via a telnet: URL.

CVSS2: 2.6
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2000-0891

A default ECL in Lotus Notes before 5.02 allows remote attackers to execute arbitrary commands by attaching a malicious program in an email message that is automatically executed when the user opens the email.

CVSS2: 7.5
3%
Низкий
около 25 лет назад
nvd логотип
CVE-2000-0890

periodic in FreeBSD 4.1.1 and earlier, and possibly other operating systems, allows local users to overwrite arbitrary files via a symlink attack.

CVSS2: 1.2
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0889

Two Sun security certificates have been compromised, which could allow attackers to insert malicious code such as applets and make it appear that it is signed by Sun.

CVSS2: 5.1
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0888

named in BIND 8.2 through 8.2.2-P6 allows remote attackers to cause a denial of service by sending an SRV record to the server, aka the "srv bug."

CVSS2: 5
8%
Низкий
больше 25 лет назад
nvd логотип
CVE-2000-0887

named in BIND 8.2 through 8.2.2-P6 allows remote attackers to cause a denial of service by making a compressed zone transfer (ZXFR) request and performing a name service query on an authoritative record that is not cached, aka the "zxfr bug."

CVSS2: 5
23%
Средний
больше 25 лет назад
nvd логотип
CVE-2000-0886

IIS 5.0 allows remote attackers to execute arbitrary commands via a malformed request for an executable file whose name is appended with operating system commands, aka the "Web Server File Request Parsing" vulnerability.

CVSS2: 7.5
67%
Средний
больше 25 лет назад

Уязвимостей на страницу