Количество 376 173
Количество 376 173
CVE-2000-0154
The ARCserve agent in UnixWare allows local attackers to modify arbitrary files via a symlink attack.
CVE-2000-0153
FrontPage Personal Web Server (PWS) allows remote attackers to read files via a .... (dot dot) attack.
CVE-2000-0152
Remote attackers can cause a denial of service in Novell BorderManager 3.5 by pressing the enter key in a telnet connection to port 2000.
CVE-2000-0151
GNU make follows symlinks when it reads a Makefile from stdin, which allows other local users to execute commands.
CVE-2000-0150
Check Point Firewall-1 allows remote attackers to bypass port access restrictions on an FTP server by forcing it to send malicious packets that Firewall-1 misinterprets as a valid 227 response to a client's PASV attempt.
CVE-2000-0149
Zeus web server allows remote attackers to view the source code for CGI programs via a null character (%00) at the end of a URL.
CVE-2000-0148
MySQL 3.22 allows remote attackers to bypass password authentication and access a database via a short check string.
CVE-2000-0147
snmpd in SCO OpenServer has an SNMP community string that is writable by default, which allows local attackers to modify the host's configuration.
CVE-2000-0146
The Java Server in the Novell GroupWise Web Access Enhancement Pack allows remote attackers to cause a denial of service via a long URL to the servlet.
CVE-2000-0145
The libguile.so library file used by gnucash in Debian GNU/Linux is installed with world-writable permissions.
CVE-2000-0144
Axis 700 Network Scanner does not properly restrict access to administrator URLs, which allows users to bypass the password protection via a .. (dot dot) attack.
CVE-2000-0143
The SSH protocol server sshd allows local users without shell access to redirect a TCP connection through a service that uses the standard system password database for authentication, such as POP or FTP.
CVE-2000-0142
The authentication protocol in Timbuktu Pro 2.0b650 allows remote attackers to cause a denial of service via connections to port 407 and 1417.
CVE-2000-0141
Infopop Ultimate Bulletin Board (UBB) allows remote attackers to execute commands via shell metacharacters in the topic hidden field.
CVE-2000-0140
Internet Anywhere POP3 Mail Server allows remote attackers to cause a denial of service via a large number of connections.
CVE-2000-0139
Internet Anywhere POP3 Mail Server allows local users to cause a denial of service via a malformed RETR command.
CVE-2000-0138
A system has a distributed denial of service (DDOS) attack master, agent, or zombie installed, such as (1) Trinoo, (2) Tribe Flood Network (TFN), (3) Tribe Flood Network 2000 (TFN2K), (4) stacheldraht, (5) mstream, or (6) shaft.
CVE-2000-0137
The CartIt shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.
CVE-2000-0136
The Cart32 shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.
CVE-2000-0135
The @Retail shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2000-0154 The ARCserve agent in UnixWare allows local attackers to modify arbitrary files via a symlink attack. | CVSS2: 1.2 | 1% Низкий | больше 26 лет назад | |
CVE-2000-0153 FrontPage Personal Web Server (PWS) allows remote attackers to read files via a .... (dot dot) attack. | CVSS2: 5 | 14% Средний | больше 27 лет назад | |
CVE-2000-0152 Remote attackers can cause a denial of service in Novell BorderManager 3.5 by pressing the enter key in a telnet connection to port 2000. | CVSS2: 5 | 5% Низкий | больше 26 лет назад | |
CVE-2000-0151 GNU make follows symlinks when it reads a Makefile from stdin, which allows other local users to execute commands. | CVSS2: 6.2 | 0% Низкий | больше 26 лет назад | |
CVE-2000-0150 Check Point Firewall-1 allows remote attackers to bypass port access restrictions on an FTP server by forcing it to send malicious packets that Firewall-1 misinterprets as a valid 227 response to a client's PASV attempt. | CVSS2: 7.5 | 2% Низкий | больше 26 лет назад | |
CVE-2000-0149 Zeus web server allows remote attackers to view the source code for CGI programs via a null character (%00) at the end of a URL. | CVSS2: 5 | 7% Низкий | больше 26 лет назад | |
CVE-2000-0148 MySQL 3.22 allows remote attackers to bypass password authentication and access a database via a short check string. | CVSS2: 7.5 | 5% Низкий | больше 26 лет назад | |
CVE-2000-0147 snmpd in SCO OpenServer has an SNMP community string that is writable by default, which allows local attackers to modify the host's configuration. | CVSS2: 2.1 | 0% Низкий | больше 26 лет назад | |
CVE-2000-0146 The Java Server in the Novell GroupWise Web Access Enhancement Pack allows remote attackers to cause a denial of service via a long URL to the servlet. | CVSS2: 5 | 6% Низкий | больше 26 лет назад | |
CVE-2000-0145 The libguile.so library file used by gnucash in Debian GNU/Linux is installed with world-writable permissions. | CVSS2: 7.5 | 2% Низкий | больше 26 лет назад | |
CVE-2000-0144 Axis 700 Network Scanner does not properly restrict access to administrator URLs, which allows users to bypass the password protection via a .. (dot dot) attack. | CVSS2: 7.5 | 2% Низкий | больше 26 лет назад | |
CVE-2000-0143 The SSH protocol server sshd allows local users without shell access to redirect a TCP connection through a service that uses the standard system password database for authentication, such as POP or FTP. | CVSS2: 4.6 | 0% Низкий | больше 26 лет назад | |
CVE-2000-0142 The authentication protocol in Timbuktu Pro 2.0b650 allows remote attackers to cause a denial of service via connections to port 407 and 1417. | CVSS2: 5 | 8% Низкий | больше 26 лет назад | |
CVE-2000-0141 Infopop Ultimate Bulletin Board (UBB) allows remote attackers to execute commands via shell metacharacters in the topic hidden field. | CVSS2: 10 | 3% Низкий | больше 26 лет назад | |
CVE-2000-0140 Internet Anywhere POP3 Mail Server allows remote attackers to cause a denial of service via a large number of connections. | CVSS2: 5 | 1% Низкий | больше 26 лет назад | |
CVE-2000-0139 Internet Anywhere POP3 Mail Server allows local users to cause a denial of service via a malformed RETR command. | CVSS2: 2.1 | 1% Низкий | больше 26 лет назад | |
CVE-2000-0138 A system has a distributed denial of service (DDOS) attack master, agent, or zombie installed, such as (1) Trinoo, (2) Tribe Flood Network (TFN), (3) Tribe Flood Network 2000 (TFN2K), (4) stacheldraht, (5) mstream, or (6) shaft. | CVSS2: 5 | 2% Низкий | больше 26 лет назад | |
CVE-2000-0137 The CartIt shopping cart application allows remote users to modify sensitive purchase information via hidden form fields. | CVSS2: 7.5 | 2% Низкий | больше 26 лет назад | |
CVE-2000-0136 The Cart32 shopping cart application allows remote users to modify sensitive purchase information via hidden form fields. | CVSS2: 7.5 | 7% Низкий | больше 26 лет назад | |
CVE-2000-0135 The @Retail shopping cart application allows remote users to modify sensitive purchase information via hidden form fields. | CVSS2: 7.5 | 2% Низкий | больше 26 лет назад |
Уязвимостей на страницу