Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 371 863

Количество 371 863

nvd логотип

CVE-2000-0505

около 26 лет назад

The Apache 1.3.x HTTP server for Windows platforms allows remote attackers to list directory contents by requesting a URL containing a large number of / characters.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2000-0504

около 26 лет назад

libICE in XFree86 allows remote attackers to cause a denial of service by specifying a large value which is not properly checked by the SKIP_STRING macro.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0503

около 26 лет назад

The IFRAME of the WebBrowser control in Internet Explorer 5.01 allows a remote attacker to violate the cross frame security policy via the NavigateComplete2 event.

CVSS2: 2.6
EPSS: Низкий
nvd логотип

CVE-2000-0502

около 26 лет назад

Mcafee VirusScan 4.03 does not properly restrict access to the alert text file before it is sent to the Central Alert Server, which allows local users to modify alerts in an arbitrary fashion.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2000-0501

около 26 лет назад

Race condition in MDaemon 2.8.5.0 POP server allows local users to cause a denial of service by entering a UIDL command and quickly exiting the server.

CVSS2: 2.6
EPSS: Низкий
nvd логотип

CVE-2000-0500

около 26 лет назад

The default configuration of BEA WebLogic 5.1.0 allows a remote attacker to view source code of programs by requesting a URL beginning with /file/, which causes the default servlet to display the file without further processing.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0499

около 26 лет назад

The default configuration of BEA WebLogic 3.1.8 through 4.5.1 allows a remote attacker to view source code of a JSP program by requesting a URL which provides the JSP extension in upper case.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-0498

около 26 лет назад

Unify eWave ServletExec allows a remote attacker to view source code of a JSP program by requesting a URL which provides the JSP extension in upper case.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-0497

около 26 лет назад

IBM WebSphere server 3.0.2 allows a remote attacker to view source code of a JSP program by requesting a URL which provides the JSP extension in upper case.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-0495

около 26 лет назад

Microsoft Windows Media Encoder allows remote attackers to cause a denial of service via a malformed request, aka the "Malformed Windows Media Encoder Request" vulnerability.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2000-0494

около 26 лет назад

Veritas Volume Manager creates a world writable .server_pids file, which allows local users to add arbitrary commands into the file, which is then executed by the vmsa_server script.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2000-0493

около 26 лет назад

Buffer overflow in Simple Network Time Sync (SMTS) daemon allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long string.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2000-0492

около 26 лет назад

PassWD 1.2 uses weak encryption (trivial encoding) to store passwords, which allows an attacker who can read the password file to easliy decrypt the passwords.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0491

около 26 лет назад

Buffer overflow in the XDMCP parsing code of GNOME gdm, KDE kdm, and wdm allows remote attackers to execute arbitrary commands or cause a denial of service via a long FORWARD_QUERY request.

CVSS2: 10
EPSS: Средний
nvd логотип

CVE-2000-0490

около 26 лет назад

Buffer overflow in the NetWin DSMTP 2.7q in the NetWin dmail package allows remote attackers to execute arbitrary commands via a long ETRN request.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2000-0489

почти 27 лет назад

FreeBSD, NetBSD, and OpenBSD allow an attacker to cause a denial of service by creating a large number of socket pairs using the socketpair function, setting a large buffer size via setsockopt, then writing large buffers.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2000-0488

около 26 лет назад

Buffer overflow in ITHouse mail server 1.04 allows remote attackers to execute arbitrary commands via a long RCPT TO mail command.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2000-0487

около 26 лет назад

The Protected Store in Windows 2000 does not properly select the strongest encryption when available, which causes it to use a default of 40-bit encryption instead of 56-bit DES encryption, aka the "Protected Store Key Length" vulnerability.

CVSS2: 3.6
EPSS: Низкий
nvd логотип

CVE-2000-0486

около 26 лет назад

Buffer overflow in Cisco TACACS+ tac_plus server allows remote attackers to cause a denial of service via a malformed packet with a long length field.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0485

около 26 лет назад

Microsoft SQL Server allows local users to obtain database passwords via the Data Transformation Service (DTS) package Properties dialog, aka the "DTS Password" vulnerability.

CVSS2: 2.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2000-0505

The Apache 1.3.x HTTP server for Windows platforms allows remote attackers to list directory contents by requesting a URL containing a large number of / characters.

CVSS2: 5
45%
Средний
около 26 лет назад
nvd логотип
CVE-2000-0504

libICE in XFree86 allows remote attackers to cause a denial of service by specifying a large value which is not properly checked by the SKIP_STRING macro.

CVSS2: 5
3%
Низкий
около 26 лет назад
nvd логотип
CVE-2000-0503

The IFRAME of the WebBrowser control in Internet Explorer 5.01 allows a remote attacker to violate the cross frame security policy via the NavigateComplete2 event.

CVSS2: 2.6
9%
Низкий
около 26 лет назад
nvd логотип
CVE-2000-0502

Mcafee VirusScan 4.03 does not properly restrict access to the alert text file before it is sent to the Central Alert Server, which allows local users to modify alerts in an arbitrary fashion.

CVSS2: 2.1
0%
Низкий
около 26 лет назад
nvd логотип
CVE-2000-0501

Race condition in MDaemon 2.8.5.0 POP server allows local users to cause a denial of service by entering a UIDL command and quickly exiting the server.

CVSS2: 2.6
4%
Низкий
около 26 лет назад
nvd логотип
CVE-2000-0500

The default configuration of BEA WebLogic 5.1.0 allows a remote attacker to view source code of programs by requesting a URL beginning with /file/, which causes the default servlet to display the file without further processing.

CVSS2: 5
5%
Низкий
около 26 лет назад
nvd логотип
CVE-2000-0499

The default configuration of BEA WebLogic 3.1.8 through 4.5.1 allows a remote attacker to view source code of a JSP program by requesting a URL which provides the JSP extension in upper case.

CVSS3: 7.5
3%
Низкий
около 26 лет назад
nvd логотип
CVE-2000-0498

Unify eWave ServletExec allows a remote attacker to view source code of a JSP program by requesting a URL which provides the JSP extension in upper case.

CVSS3: 7.5
2%
Низкий
около 26 лет назад
nvd логотип
CVE-2000-0497

IBM WebSphere server 3.0.2 allows a remote attacker to view source code of a JSP program by requesting a URL which provides the JSP extension in upper case.

CVSS3: 7.5
3%
Низкий
около 26 лет назад
nvd логотип
CVE-2000-0495

Microsoft Windows Media Encoder allows remote attackers to cause a denial of service via a malformed request, aka the "Malformed Windows Media Encoder Request" vulnerability.

CVSS2: 5
32%
Средний
около 26 лет назад
nvd логотип
CVE-2000-0494

Veritas Volume Manager creates a world writable .server_pids file, which allows local users to add arbitrary commands into the file, which is then executed by the vmsa_server script.

CVSS2: 7.2
1%
Низкий
около 26 лет назад
nvd логотип
CVE-2000-0493

Buffer overflow in Simple Network Time Sync (SMTS) daemon allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long string.

CVSS2: 10
6%
Низкий
около 26 лет назад
nvd логотип
CVE-2000-0492

PassWD 1.2 uses weak encryption (trivial encoding) to store passwords, which allows an attacker who can read the password file to easliy decrypt the passwords.

CVSS2: 5
1%
Низкий
около 26 лет назад
nvd логотип
CVE-2000-0491

Buffer overflow in the XDMCP parsing code of GNOME gdm, KDE kdm, and wdm allows remote attackers to execute arbitrary commands or cause a denial of service via a long FORWARD_QUERY request.

CVSS2: 10
18%
Средний
около 26 лет назад
nvd логотип
CVE-2000-0490

Buffer overflow in the NetWin DSMTP 2.7q in the NetWin dmail package allows remote attackers to execute arbitrary commands via a long ETRN request.

CVSS2: 10
6%
Низкий
около 26 лет назад
nvd логотип
CVE-2000-0489

FreeBSD, NetBSD, and OpenBSD allow an attacker to cause a denial of service by creating a large number of socket pairs using the socketpair function, setting a large buffer size via setsockopt, then writing large buffers.

CVSS2: 2.1
1%
Низкий
почти 27 лет назад
nvd логотип
CVE-2000-0488

Buffer overflow in ITHouse mail server 1.04 allows remote attackers to execute arbitrary commands via a long RCPT TO mail command.

CVSS2: 10
4%
Низкий
около 26 лет назад
nvd логотип
CVE-2000-0487

The Protected Store in Windows 2000 does not properly select the strongest encryption when available, which causes it to use a default of 40-bit encryption instead of 56-bit DES encryption, aka the "Protected Store Key Length" vulnerability.

CVSS2: 3.6
2%
Низкий
около 26 лет назад
nvd логотип
CVE-2000-0486

Buffer overflow in Cisco TACACS+ tac_plus server allows remote attackers to cause a denial of service via a malformed packet with a long length field.

CVSS2: 5
2%
Низкий
около 26 лет назад
nvd логотип
CVE-2000-0485

Microsoft SQL Server allows local users to obtain database passwords via the Data Transformation Service (DTS) package Properties dialog, aka the "DTS Password" vulnerability.

CVSS2: 2.1
2%
Низкий
около 26 лет назад

Уязвимостей на страницу