Логотип exploitDog
source:"redhat"
Консоль
Логотип exploitDog

exploitDog

source:"redhat"

Количество 44 272

Количество 44 272

redhat логотип

CVE-2000-0888

около 25 лет назад

named in BIND 8.2 through 8.2.2-P6 allows remote attackers to cause a denial of service by sending an SRV record to the server, aka the "srv bug."

EPSS: Средний
redhat логотип

CVE-2000-0887

больше 25 лет назад

named in BIND 8.2 through 8.2.2-P6 allows remote attackers to cause a denial of service by making a compressed zone transfer (ZXFR) request and performing a name service query on an authoritative record that is not cached, aka the "zxfr bug."

EPSS: Средний
redhat логотип

CVE-2000-0867

больше 25 лет назад

Kernel logging daemon (klogd) in Linux does not properly cleanse user-injected format strings, which allows local users to gain root privileges by triggering malformed kernel messages.

EPSS: Низкий
redhat логотип

CVE-2000-0864

больше 25 лет назад

Race condition in the creation of a Unix domain socket in GNOME esound 0.2.19 and earlier allows a local user to change the permissions of arbitrary files and directories, and gain additional privileges, via a symlink attack.

EPSS: Низкий
redhat логотип

CVE-2000-0844

больше 25 лет назад

Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen.

EPSS: Низкий
redhat логотип

CVE-2000-0829

больше 25 лет назад

The tmpwatch utility in Red Hat Linux forks a new process for each directory level, which allows local users to cause a denial of service by creating deeply nested directories in /tmp or /var/tmp/.

EPSS: Низкий
redhat логотип

CVE-2000-0824

больше 26 лет назад

The unsetenv function in glibc 2.1.1 does not properly unset an environmental variable if the variable is provided twice to a program, which could allow local users to execute arbitrary commands in setuid programs by specifying their own duplicate environmental variables such as LD_PRELOAD or LD_LIBRARY_PATH.

EPSS: Низкий
redhat логотип

CVE-2000-0816

больше 25 лет назад

Linux tmpwatch --fuser option allows local users to execute arbitrary commands by creating files whose names contain shell metacharacters.

EPSS: Низкий
redhat логотип

CVE-2000-0787

больше 25 лет назад

IRC Xchat client versions 1.4.2 and earlier allows remote attackers to execute arbitrary commands by encoding shell metacharacters into a URL which XChat uses to launch a web browser.

EPSS: Низкий
redhat логотип

CVE-2000-0751

больше 25 лет назад

mopd (Maintenance Operations Protocol loader daemon) does not properly cleanse user-injected format strings, which allows remote attackers to execute arbitrary commands.

EPSS: Средний
redhat логотип

CVE-2000-0750

больше 25 лет назад

Buffer overflow in mopd (Maintenance Operations Protocol loader daemon) allows remote attackers to execute arbitrary commands via a long file name.

EPSS: Низкий
redhat логотип

CVE-2000-0728

больше 25 лет назад

xpdf PDF viewer client earlier than 0.91 allows local users to overwrite arbitrary files via a symlink attack.

EPSS: Низкий
redhat логотип

CVE-2000-0727

больше 25 лет назад

xpdf PDF viewer client earlier than 0.91 does not properly launch a web browser for embedded URL's, which allows an attacker to execute arbitrary commands via a URL that contains shell metacharacters.

EPSS: Низкий
redhat логотип

CVE-2000-0725

больше 25 лет назад

Zope before 2.2.1 does not properly restrict access to the getRoles method, which allows users who can edit DTML to add or modify roles by modifying the roles list that is included in a request.

EPSS: Низкий
redhat логотип

CVE-2000-0715

больше 25 лет назад

DiskCheck script diskcheck.pl in Red Hat Linux 6.2 allows local users to create or overwrite arbitrary files via a symlink attack on a temporary file.

EPSS: Низкий
redhat логотип

CVE-2000-0714

больше 25 лет назад

umb-scheme 3.2-11 for Red Hat Linux is installed with world-writeable files.

EPSS: Низкий
redhat логотип

CVE-2000-0705

больше 25 лет назад

ntop running in web mode allows remote attackers to read arbitrary files via a .. (dot dot) attack.

EPSS: Низкий
redhat логотип

CVE-2000-0703

больше 25 лет назад

suidperl (aka sperl) does not properly cleanse the escape sequence "~!" before calling /bin/mail to send an error report, which allows local users to gain privileges by setting the "interactive" environmental variable and calling suidperl with a filename that contains the escape sequence.

EPSS: Низкий
redhat логотип

CVE-2000-0701

больше 25 лет назад

The wrapper program in mailman 2.0beta3 and 2.0beta4 does not properly cleanse untrusted format strings, which allows local users to gain privileges.

EPSS: Низкий
redhat логотип

CVE-2000-0691

больше 25 лет назад

The faxrunq and faxrunqd in the mgetty package allows local users to create or modify arbitrary files via a symlink attack which creates a symlink in from /var/spool/fax/outgoing/.last_run to the target file.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2000-0888

named in BIND 8.2 through 8.2.2-P6 allows remote attackers to cause a denial of service by sending an SRV record to the server, aka the "srv bug."

16%
Средний
около 25 лет назад
redhat логотип
CVE-2000-0887

named in BIND 8.2 through 8.2.2-P6 allows remote attackers to cause a denial of service by making a compressed zone transfer (ZXFR) request and performing a name service query on an authoritative record that is not cached, aka the "zxfr bug."

17%
Средний
больше 25 лет назад
redhat логотип
CVE-2000-0867

Kernel logging daemon (klogd) in Linux does not properly cleanse user-injected format strings, which allows local users to gain root privileges by triggering malformed kernel messages.

0%
Низкий
больше 25 лет назад
redhat логотип
CVE-2000-0864

Race condition in the creation of a Unix domain socket in GNOME esound 0.2.19 and earlier allows a local user to change the permissions of arbitrary files and directories, and gain additional privileges, via a symlink attack.

0%
Низкий
больше 25 лет назад
redhat логотип
CVE-2000-0844

Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen.

1%
Низкий
больше 25 лет назад
redhat логотип
CVE-2000-0829

The tmpwatch utility in Red Hat Linux forks a new process for each directory level, which allows local users to cause a denial of service by creating deeply nested directories in /tmp or /var/tmp/.

0%
Низкий
больше 25 лет назад
redhat логотип
CVE-2000-0824

The unsetenv function in glibc 2.1.1 does not properly unset an environmental variable if the variable is provided twice to a program, which could allow local users to execute arbitrary commands in setuid programs by specifying their own duplicate environmental variables such as LD_PRELOAD or LD_LIBRARY_PATH.

0%
Низкий
больше 26 лет назад
redhat логотип
CVE-2000-0816

Linux tmpwatch --fuser option allows local users to execute arbitrary commands by creating files whose names contain shell metacharacters.

0%
Низкий
больше 25 лет назад
redhat логотип
CVE-2000-0787

IRC Xchat client versions 1.4.2 and earlier allows remote attackers to execute arbitrary commands by encoding shell metacharacters into a URL which XChat uses to launch a web browser.

9%
Низкий
больше 25 лет назад
redhat логотип
CVE-2000-0751

mopd (Maintenance Operations Protocol loader daemon) does not properly cleanse user-injected format strings, which allows remote attackers to execute arbitrary commands.

18%
Средний
больше 25 лет назад
redhat логотип
CVE-2000-0750

Buffer overflow in mopd (Maintenance Operations Protocol loader daemon) allows remote attackers to execute arbitrary commands via a long file name.

2%
Низкий
больше 25 лет назад
redhat логотип
CVE-2000-0728

xpdf PDF viewer client earlier than 0.91 allows local users to overwrite arbitrary files via a symlink attack.

0%
Низкий
больше 25 лет назад
redhat логотип
CVE-2000-0727

xpdf PDF viewer client earlier than 0.91 does not properly launch a web browser for embedded URL's, which allows an attacker to execute arbitrary commands via a URL that contains shell metacharacters.

1%
Низкий
больше 25 лет назад
redhat логотип
CVE-2000-0725

Zope before 2.2.1 does not properly restrict access to the getRoles method, which allows users who can edit DTML to add or modify roles by modifying the roles list that is included in a request.

0%
Низкий
больше 25 лет назад
redhat логотип
CVE-2000-0715

DiskCheck script diskcheck.pl in Red Hat Linux 6.2 allows local users to create or overwrite arbitrary files via a symlink attack on a temporary file.

0%
Низкий
больше 25 лет назад
redhat логотип
CVE-2000-0714

umb-scheme 3.2-11 for Red Hat Linux is installed with world-writeable files.

0%
Низкий
больше 25 лет назад
redhat логотип
CVE-2000-0705

ntop running in web mode allows remote attackers to read arbitrary files via a .. (dot dot) attack.

5%
Низкий
больше 25 лет назад
redhat логотип
CVE-2000-0703

suidperl (aka sperl) does not properly cleanse the escape sequence "~!" before calling /bin/mail to send an error report, which allows local users to gain privileges by setting the "interactive" environmental variable and calling suidperl with a filename that contains the escape sequence.

0%
Низкий
больше 25 лет назад
redhat логотип
CVE-2000-0701

The wrapper program in mailman 2.0beta3 and 2.0beta4 does not properly cleanse untrusted format strings, which allows local users to gain privileges.

0%
Низкий
больше 25 лет назад
redhat логотип
CVE-2000-0691

The faxrunq and faxrunqd in the mgetty package allows local users to create or modify arbitrary files via a symlink attack which creates a symlink in from /var/spool/fax/outgoing/.last_run to the target file.

0%
Низкий
больше 25 лет назад

Уязвимостей на страницу