Количество 397 875
Количество 397 875
CVE-2000-0256
Buffer overflows in htimage.exe and Imagemap.exe in FrontPage 97 and 98 Server Extensions allow a user to conduct activities that are not otherwise available through the web site, aka the "Server-Side Image Map Components" vulnerability.
CVE-2000-0255
The Nbase-Xyplex EdgeBlaster router allows remote attackers to cause a denial of service via a scan for the FormMail CGI program.
CVE-2000-0254
The dansie shopping cart application cart.pl allows remote attackers to obtain the shopping cart database and configuration information via a URL that references either the env, db, or vars form variables.
CVE-2000-0253
The dansie shopping cart application cart.pl allows remote attackers to modify sensitive purchase information via hidden form fields.
CVE-2000-0252
The dansie shopping cart application cart.pl allows remote attackers to execute commands via a shell metacharacters in a form variable.
CVE-2000-0251
HP-UX 11.04 VirtualVault (VVOS) sends data to unprivileged processes via an interface that has multiple aliased IP addresses.
CVE-2000-0250
The crypt function in QNX uses weak encryption, which allows local users to decrypt passwords.
CVE-2000-0249
The AIX Fast Response Cache Accelerator (FRCA) allows local users to modify arbitrary files via the configuration capability in the frcactrl program.
CVE-2000-0248
The web GUI for the Linux Virtual Server (LVS) software in the Red Hat Linux Piranha package has a backdoor password that allows remote attackers to execute arbitrary commands.
CVE-2000-0247
Unknown vulnerability in Generic-NQS (GNQS) allows local users to gain root privileges.
CVE-2000-0246
IIS 4.0 and 5.0 does not properly perform ISAPI extension processing if a virtual directory is mapped to a UNC share, which allows remote attackers to read the source code of ASP and other files, aka the "Virtualized UNC Share" vulnerability.
CVE-2000-0245
Vulnerability in SGI IRIX objectserver daemon allows remote attackers to create user accounts.
CVE-2000-0244
The Citrix ICA (Independent Computing Architecture) protocol uses weak encryption (XOR) for user authentication.
CVE-2000-0243
AnalogX SimpleServer:WWW HTTP server 1.03 allows remote attackers to cause a denial of service via a short GET request to cgi-bin.
CVE-2000-0242
WindMail allows remote attackers to read arbitrary files or execute commands via shell metacharacters.
CVE-2000-0241
vqSoft vqServer stores sensitive information such as passwords in cleartext in the server.cfg file, which allows attackers to gain privileges.
CVE-2000-0240
vqSoft vqServer program allows remote attackers to read arbitrary files via a /........../ in the URL, a variation of a .. (dot dot) attack.
CVE-2000-0239
Buffer overflow in the MERCUR WebView WebMail server allows remote attackers to cause a denial of service via a long mail_user parameter in the GET request.
CVE-2000-0238
Buffer overflow in the web server for Norton AntiVirus for Internet Email Gateways allows remote attackers to cause a denial of service via a long URL.
CVE-2000-0237
Netscape Enterprise Server with Web Publishing enabled allows remote attackers to list arbitrary directories via a GET request for the /publisher directory, which provides a Java applet that allows the attacker to browse the directories.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2000-0256 Buffer overflows in htimage.exe and Imagemap.exe in FrontPage 97 and 98 Server Extensions allow a user to conduct activities that are not otherwise available through the web site, aka the "Server-Side Image Map Components" vulnerability. | CVSS2: 7.5 | 12% Средний | больше 26 лет назад | |
CVE-2000-0255 The Nbase-Xyplex EdgeBlaster router allows remote attackers to cause a denial of service via a scan for the FormMail CGI program. | CVSS2: 5 | 1% Низкий | больше 26 лет назад | |
CVE-2000-0254 The dansie shopping cart application cart.pl allows remote attackers to obtain the shopping cart database and configuration information via a URL that references either the env, db, or vars form variables. | CVSS2: 5 | 6% Низкий | больше 26 лет назад | |
CVE-2000-0253 The dansie shopping cart application cart.pl allows remote attackers to modify sensitive purchase information via hidden form fields. | CVSS2: 10 | 3% Низкий | больше 26 лет назад | |
CVE-2000-0252 The dansie shopping cart application cart.pl allows remote attackers to execute commands via a shell metacharacters in a form variable. | CVSS2: 5 | 2% Низкий | больше 26 лет назад | |
CVE-2000-0251 HP-UX 11.04 VirtualVault (VVOS) sends data to unprivileged processes via an interface that has multiple aliased IP addresses. | CVSS2: 5 | 2% Низкий | больше 26 лет назад | |
CVE-2000-0250 The crypt function in QNX uses weak encryption, which allows local users to decrypt passwords. | CVSS2: 7.2 | 1% Низкий | больше 26 лет назад | |
CVE-2000-0249 The AIX Fast Response Cache Accelerator (FRCA) allows local users to modify arbitrary files via the configuration capability in the frcactrl program. | CVSS2: 7.2 | 0% Низкий | больше 26 лет назад | |
CVE-2000-0248 The web GUI for the Linux Virtual Server (LVS) software in the Red Hat Linux Piranha package has a backdoor password that allows remote attackers to execute arbitrary commands. | CVSS2: 10 | 74% Высокий | больше 26 лет назад | |
CVE-2000-0247 Unknown vulnerability in Generic-NQS (GNQS) allows local users to gain root privileges. | CVSS2: 7.2 | 0% Низкий | больше 26 лет назад | |
CVE-2000-0246 IIS 4.0 and 5.0 does not properly perform ISAPI extension processing if a virtual directory is mapped to a UNC share, which allows remote attackers to read the source code of ASP and other files, aka the "Virtualized UNC Share" vulnerability. | CVSS2: 5 | 80% Высокий | больше 26 лет назад | |
CVE-2000-0245 Vulnerability in SGI IRIX objectserver daemon allows remote attackers to create user accounts. | CVSS2: 10 | 12% Средний | больше 26 лет назад | |
CVE-2000-0244 The Citrix ICA (Independent Computing Architecture) protocol uses weak encryption (XOR) for user authentication. | CVSS2: 10 | 2% Низкий | больше 26 лет назад | |
CVE-2000-0243 AnalogX SimpleServer:WWW HTTP server 1.03 allows remote attackers to cause a denial of service via a short GET request to cgi-bin. | CVSS2: 5 | 7% Низкий | больше 26 лет назад | |
CVE-2000-0242 WindMail allows remote attackers to read arbitrary files or execute commands via shell metacharacters. | CVSS2: 5 | 8% Низкий | больше 26 лет назад | |
CVE-2000-0241 vqSoft vqServer stores sensitive information such as passwords in cleartext in the server.cfg file, which allows attackers to gain privileges. | CVSS2: 5 | 1% Низкий | больше 26 лет назад | |
CVE-2000-0240 vqSoft vqServer program allows remote attackers to read arbitrary files via a /........../ in the URL, a variation of a .. (dot dot) attack. | CVSS2: 5 | 8% Низкий | больше 26 лет назад | |
CVE-2000-0239 Buffer overflow in the MERCUR WebView WebMail server allows remote attackers to cause a denial of service via a long mail_user parameter in the GET request. | CVSS2: 5 | 4% Низкий | больше 26 лет назад | |
CVE-2000-0238 Buffer overflow in the web server for Norton AntiVirus for Internet Email Gateways allows remote attackers to cause a denial of service via a long URL. | CVSS2: 5 | 2% Низкий | больше 26 лет назад | |
CVE-2000-0237 Netscape Enterprise Server with Web Publishing enabled allows remote attackers to list arbitrary directories via a GET request for the /publisher directory, which provides a Java applet that allows the attacker to browse the directories. | CVSS2: 6.4 | 2% Низкий | больше 26 лет назад |
Уязвимостей на страницу