Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 389 959

Количество 389 959

nvd логотип

CVE-2000-0762

почти 26 лет назад

The default installation of eTrust Access Control (formerly SeOS) uses a default encryption key, which allows remote attackers to spoof the eTrust administrator and gain privileges.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2000-0761

почти 26 лет назад

OS2/Warp 4.5 FTP server allows remote attackers to cause a denial of service via a long username.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0760

почти 26 лет назад

The Snoop servlet in Jakarta Tomcat 3.1 and 3.0 under Apache reveals sensitive system information when a remote attacker requests a nonexistent URL with a .snp extension.

CVSS2: 6.4
EPSS: Средний
nvd логотип

CVE-2000-0759

почти 26 лет назад

Jakarta Tomcat 3.1 under Apache reveals physical path information when a remote attacker requests a URL that does not exist, which generates an error message that includes the physical path.

CVSS2: 6.4
EPSS: Средний
nvd логотип

CVE-2000-0758

почти 26 лет назад

The web interface for Lyris List Manager 3 and 4 allows list subscribers to obtain administrative access by modifying the value of the list_admin hidden form field.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2000-0757

почти 26 лет назад

The sysgen service in Aptis Totalbill does not perform authentication, which allows remote attackers to gain root privileges by connecting to the service and specifying the commands to be executed.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2000-0756

почти 26 лет назад

Microsoft Outlook 2000 does not properly process long or malformed fields in vCard (.vcf) files, which allows attackers to cause a denial of service.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0755

почти 26 лет назад

Vulnerability in the newgrp command in HP-UX 11.00 allows local users to gain privileges.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2000-0754

почти 26 лет назад

Vulnerability in HP OpenView Network Node Manager (NMM) version 6.1 related to passwords.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2000-0753

почти 26 лет назад

The Microsoft Outlook mail client identifies the physical path of the sender's machine within a winmail.dat attachment to Rich Text Format (RTF) files.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2000-0752

почти 26 лет назад

Buffer overflows in brouted in FreeBSD and possibly other OSes allows local users to gain root privileges via long command line arguments.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2000-0751

почти 26 лет назад

mopd (Maintenance Operations Protocol loader daemon) does not properly cleanse user-injected format strings, which allows remote attackers to execute arbitrary commands.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-0750

почти 26 лет назад

Buffer overflow in mopd (Maintenance Operations Protocol loader daemon) allows remote attackers to execute arbitrary commands via a long file name.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2000-0749

почти 26 лет назад

Buffer overflow in the Linux binary compatibility module in FreeBSD 3.x through 5.x allows local users to gain root privileges via long filenames in the linux shadow file system.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2000-0748

почти 26 лет назад

OpenLDAP 1.2.11 and earlier improperly installs the ud binary with group write permissions, which could allow any user in that group to replace the binary with a Trojan horse.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2000-0747

почти 26 лет назад

The logrotate script for OpenLDAP before 1.2.11 in Conectiva Linux sends an improper signal to the kernel log daemon (klogd) and kills it.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2000-0746

почти 26 лет назад

Vulnerabilities in IIS 4.0 and 5.0 do not properly protect against cross-site scripting (CSS) attacks. They allow a malicious web site operator to embed scripts in a link to a trusted site, which are returned without quoting in an error message back to the client. The client then executes those scripts in the same context as the trusted site, aka the "IIS Cross-Site Scripting" vulnerabilities.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2000-0745

почти 26 лет назад

admin.php3 in PHP-Nuke does not properly verify the PHP-Nuke administrator password, which allows remote attackers to gain privileges by requesting a URL that does not specify the aid or pwd parameter.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2000-0744

почти 26 лет назад

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2000-0743. Reason: This candidate is a duplicate of CVE-2000-0743. Notes: All CVE users should reference CVE-2000-0743 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

EPSS: Низкий
nvd логотип

CVE-2000-0743

почти 26 лет назад

Buffer overflow in University of Minnesota (UMN) gopherd 2.x allows remote attackers to execute arbitrary commands via a DES key generation request (GDESkey) that contains a long ticket value.

CVSS2: 10
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2000-0762

The default installation of eTrust Access Control (formerly SeOS) uses a default encryption key, which allows remote attackers to spoof the eTrust administrator and gain privileges.

CVSS2: 10
6%
Низкий
почти 26 лет назад
nvd логотип
CVE-2000-0761

OS2/Warp 4.5 FTP server allows remote attackers to cause a denial of service via a long username.

CVSS2: 5
2%
Низкий
почти 26 лет назад
nvd логотип
CVE-2000-0760

The Snoop servlet in Jakarta Tomcat 3.1 and 3.0 under Apache reveals sensitive system information when a remote attacker requests a nonexistent URL with a .snp extension.

CVSS2: 6.4
62%
Средний
почти 26 лет назад
nvd логотип
CVE-2000-0759

Jakarta Tomcat 3.1 under Apache reveals physical path information when a remote attacker requests a URL that does not exist, which generates an error message that includes the physical path.

CVSS2: 6.4
26%
Средний
почти 26 лет назад
nvd логотип
CVE-2000-0758

The web interface for Lyris List Manager 3 and 4 allows list subscribers to obtain administrative access by modifying the value of the list_admin hidden form field.

CVSS2: 4.6
0%
Низкий
почти 26 лет назад
nvd логотип
CVE-2000-0757

The sysgen service in Aptis Totalbill does not perform authentication, which allows remote attackers to gain root privileges by connecting to the service and specifying the commands to be executed.

CVSS2: 10
4%
Низкий
почти 26 лет назад
nvd логотип
CVE-2000-0756

Microsoft Outlook 2000 does not properly process long or malformed fields in vCard (.vcf) files, which allows attackers to cause a denial of service.

CVSS2: 5
5%
Низкий
почти 26 лет назад
nvd логотип
CVE-2000-0755

Vulnerability in the newgrp command in HP-UX 11.00 allows local users to gain privileges.

CVSS2: 4.6
0%
Низкий
почти 26 лет назад
nvd логотип
CVE-2000-0754

Vulnerability in HP OpenView Network Node Manager (NMM) version 6.1 related to passwords.

CVSS2: 2.1
0%
Низкий
почти 26 лет назад
nvd логотип
CVE-2000-0753

The Microsoft Outlook mail client identifies the physical path of the sender's machine within a winmail.dat attachment to Rich Text Format (RTF) files.

CVSS2: 5
5%
Низкий
почти 26 лет назад
nvd логотип
CVE-2000-0752

Buffer overflows in brouted in FreeBSD and possibly other OSes allows local users to gain root privileges via long command line arguments.

CVSS2: 7.2
0%
Низкий
почти 26 лет назад
nvd логотип
CVE-2000-0751

mopd (Maintenance Operations Protocol loader daemon) does not properly cleanse user-injected format strings, which allows remote attackers to execute arbitrary commands.

CVSS2: 7.5
4%
Низкий
почти 26 лет назад
nvd логотип
CVE-2000-0750

Buffer overflow in mopd (Maintenance Operations Protocol loader daemon) allows remote attackers to execute arbitrary commands via a long file name.

CVSS2: 7.5
2%
Низкий
почти 26 лет назад
nvd логотип
CVE-2000-0749

Buffer overflow in the Linux binary compatibility module in FreeBSD 3.x through 5.x allows local users to gain root privileges via long filenames in the linux shadow file system.

CVSS2: 7.2
0%
Низкий
почти 26 лет назад
nvd логотип
CVE-2000-0748

OpenLDAP 1.2.11 and earlier improperly installs the ud binary with group write permissions, which could allow any user in that group to replace the binary with a Trojan horse.

CVSS2: 4.6
0%
Низкий
почти 26 лет назад
nvd логотип
CVE-2000-0747

The logrotate script for OpenLDAP before 1.2.11 in Conectiva Linux sends an improper signal to the kernel log daemon (klogd) and kills it.

CVSS2: 10
2%
Низкий
почти 26 лет назад
nvd логотип
CVE-2000-0746

Vulnerabilities in IIS 4.0 and 5.0 do not properly protect against cross-site scripting (CSS) attacks. They allow a malicious web site operator to embed scripts in a link to a trusted site, which are returned without quoting in an error message back to the client. The client then executes those scripts in the same context as the trusted site, aka the "IIS Cross-Site Scripting" vulnerabilities.

CVSS2: 7.5
10%
Средний
почти 26 лет назад
nvd логотип
CVE-2000-0745

admin.php3 in PHP-Nuke does not properly verify the PHP-Nuke administrator password, which allows remote attackers to gain privileges by requesting a URL that does not specify the aid or pwd parameter.

CVSS2: 7.5
12%
Средний
почти 26 лет назад
nvd логотип
CVE-2000-0744

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2000-0743. Reason: This candidate is a duplicate of CVE-2000-0743. Notes: All CVE users should reference CVE-2000-0743 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

почти 26 лет назад
nvd логотип
CVE-2000-0743

Buffer overflow in University of Minnesota (UMN) gopherd 2.x allows remote attackers to execute arbitrary commands via a DES key generation request (GDESkey) that contains a long ticket value.

CVSS2: 10
13%
Средний
почти 26 лет назад

Уязвимостей на страницу