Vulnerabilities (CVE)

CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2000-0580 1 Microsoft 1 Windows 2000 2008-09-10 5.0 MEDIUM N/A
Windows 2000 Server allows remote attackers to cause a denial of service by sending a continuous stream of binary zeros to various TCP and UDP ports, which significantly increases the CPU utilization.
CVE-2000-0648 1 Texas Imperial Software 1 Wftpd 2008-09-10 5.0 MEDIUM N/A
WFTPD and WFTPD Pro 2.41 allows local users to cause a denial of service by executing the RENAME TO (RNTO) command before a RENAME FROM (RNFR) command.
CVE-2000-0647 1 Texas Imperial Software 1 Wftpd 2008-09-10 5.0 MEDIUM N/A
WFTPD and WFTPD Pro 2.41 allows remote attackers to cause a denial of service by executing an MLST command before logging into the server.
CVE-2000-0599 1 Imesh.com 1 Imesh 2008-09-10 7.5 HIGH N/A
Buffer overflow in iMesh 1.02 allows remote attackers to execute arbitrary commands via a long string to the iMesh port.
CVE-2000-0690 1 Cgi Script Center 1 Auction Weaver 2008-09-10 10.0 HIGH N/A
Auction Weaver CGI script 1.02 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the fromfile parameter.
CVE-2000-0598 1 Fortech 1 Proxy\+ 2008-09-10 5.0 MEDIUM N/A
Fortech Proxy+ allows remote attackers to bypass access restrictions for to the administration service by redirecting their connections through the telnet proxy.
CVE-2000-0601 1 Leafdigital 1 Leafchat 2008-09-10 5.0 MEDIUM N/A
LeafChat 1.7 IRC client allows a remote IRC server to cause a denial of service by rapidly sending a large amount of error messages.
CVE-2000-0583 1 Inter7 1 Vpopmail Vchkpw 2008-09-10 5.0 MEDIUM N/A
vchkpw program in vpopmail before version 4.8 does not properly cleanse an untrusted format string used in a call to syslog, which allows remote attackers to cause a denial of service via a USER or PASS command that contains arbitrary formatting directives.
CVE-2000-0617 1 Stanley T. Shebs 1 Xconq 2008-09-10 4.6 MEDIUM N/A
Buffer overflow in xconq and cconq game programs on Red Hat Linux allows local users to gain additional privileges via long USER environmental variable.
CVE-2000-0425 1 Lsoft 1 Listserv 2008-09-10 10.0 HIGH N/A
Buffer overflow in the Web Archives component of L-Soft LISTSERV 1.8 allows remote attackers to execute arbitrary commands.
CVE-2000-0350 1 Networkice 1 Icecap Manager 2008-09-10 5.0 MEDIUM N/A
A debugging feature in NetworkICE ICEcap 2.0.23 and earlier is enabled, which allows a remote attacker to bypass the weak authentication and post unencrypted events.
CVE-2000-0385 1 Filemaker 1 Filemaker 2008-09-10 5.0 MEDIUM N/A
FileMaker Pro 5 Web Companion allows remote attackers to bypass Field-Level database security restrictions via the XML publishing or email capabilities.
CVE-2000-0387 1 Alexander Siegel 1 Golddig 2008-09-10 2.1 LOW N/A
The makelev program in the golddig game from the FreeBSD ports collection allows local users to overwrite arbitrary files.
CVE-2000-0309 1 Openbsd 1 Openbsd 2008-09-10 2.1 LOW N/A
The i386 trace-trap handling in OpenBSD 2.4 with DDB enabled allows a local user to cause a denial of service.
CVE-2000-0491 3 Caldera, Gnome, Suse 3 Openlinux, Gdm, Suse Linux 2008-09-10 10.0 HIGH N/A
Buffer overflow in the XDMCP parsing code of GNOME gdm, KDE kdm, and wdm allows remote attackers to execute arbitrary commands or cause a denial of service via a long FORWARD_QUERY request.
CVE-2000-0418 1 Cayman 2 3220-h Dsl Router, Gatorsurf 2008-09-10 5.0 MEDIUM N/A
The Cayman 3220-H DSL router allows remote attackers to cause a denial of service via oversized ICMP echo (ping) requests.
CVE-2000-0386 1 Filemaker 1 Filemaker 2008-09-10 7.5 HIGH N/A
FileMaker Pro 5 Web Companion allows remote attackers to send anonymous or forged email.
CVE-2000-0492 1 Passwd 1 Passwd 2008-09-10 5.0 MEDIUM N/A
PassWD 1.2 uses weak encryption (trivial encoding) to store passwords, which allows an attacker who can read the password file to easliy decrypt the passwords.
CVE-2000-0494 1 Symantec Veritas 1 Volume Manager 2008-09-10 7.2 HIGH N/A
Veritas Volume Manager creates a world writable .server_pids file, which allows local users to add arbitrary commands into the file, which is then executed by the vmsa_server script.
CVE-2000-0526 1 3r Soft 1 Mailstudio 2000 2008-09-10 5.0 MEDIUM N/A
mailview.cgi CGI program in MailStudio 2000 2.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack.
CVE-2000-0417 1 Cayman 2 3220-h Dsl Router, Gatorsurf 2008-09-10 5.0 MEDIUM N/A
The HTTP administration interface to the Cayman 3220-H DSL router allows remote attackers to cause a denial of service via a long username or password.
CVE-2000-0497 1 Ibm 1 Websphere Application Server 2008-09-10 5.0 MEDIUM N/A
IBM WebSphere server 3.0.2 allows a remote attacker to view source code of a JSP program by requesting a URL which provides the JSP extension in upper case.
CVE-2000-0527 1 3r Soft 1 Mailstudio 2000 2008-09-10 10.0 HIGH N/A
userreg.cgi CGI program in MailStudio 2000 2.0 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters.
CVE-2000-0420 1 Microsoft 1 Windows 2000 2008-09-10 7.2 HIGH N/A
The default configuration of SYSKEY in Windows 2000 stores the startup key in the registry, which could allow an attacker tor ecover it and use it to decrypt Encrypted File System (EFS) data.
CVE-2000-0416 1 Microsoft 1 Windows 2000 2008-09-10 5.0 MEDIUM N/A
NTMail 5.x allows network users to bypass the NTMail proxy restrictions by redirecting their requests to NTMail's web configuration server.
CVE-2000-0450 1 Sean Macguire 1 Big Brother 2008-09-10 7.5 HIGH N/A
Vulnerability in bbd server in Big Brother System and Network Monitor allows an attacker to execute arbitrary commands.
CVE-2000-0452 1 Lotus 2 Domino Enterprise Server, Domino Mail Server 2008-09-10 5.0 MEDIUM N/A
Buffer overflow in the ESMTP service of Lotus Domino Server 5.0.1 allows remote attackers to cause a denial of service via a long MAIL FROM command.
CVE-2000-0451 1 Intel 1 Express 8100 2008-09-10 5.0 MEDIUM N/A
The Intel express 8100 ISDN router allows remote attackers to cause a denial of service via oversized or fragmented ICMP packets.
CVE-2000-0310 1 Openbsd 1 Openbsd 2008-09-10 5.0 MEDIUM N/A
IP fragment assembly in OpenBSD 2.4 allows a remote attacker to cause a denial of service by sending a large number of fragmented packets.
CVE-2000-0449 1 Omnis 1 Studio 2008-09-10 10.0 HIGH N/A
Omnis Studio 2.4 uses weak encryption (trivial encoding) for encrypting database fields.
CVE-2000-0300 1 Symantec 1 Pcanywhere 2008-09-10 10.0 HIGH N/A
The default encryption method of PcAnywhere 9.x uses weak encryption, which allows remote attackers to sniff and decrypt PcAnywhere or NT domain accounts.
CVE-2000-0476 4 Michael Jennings, Putty, Rxvt and 1 more 4 Eterm, Putty, Rxvt and 1 more 2008-09-10 5.0 MEDIUM N/A
xterm, Eterm, and rxvt allow an attacker to cause a denial of service by embedding certain escape characters which force the window to be resized.
CVE-2000-0467 1 Sam Lantinga 1 Splitvt 2008-09-10 7.2 HIGH N/A
Buffer overflow in Linux splitvt 1.6.3 and earlier allows local users to gain root privileges via a long password in the screen locking function.
CVE-2000-0463 1 Be 1 Beos 2008-09-10 5.0 MEDIUM N/A
BeOS 5.0 allows remote attackers to cause a denial of service via fragmented TCP packets.
CVE-2000-0462 1 Netbsd 1 Netbsd 2008-09-10 2.1 LOW N/A
ftpd in NetBSD 1.4.2 does not properly parse entries in /etc/ftpchroot and does not chroot the specified users, which allows those users to access other files outside of their home directory.
CVE-2000-0461 2 Freebsd, Netbsd 2 Freebsd, Netbsd 2008-09-10 2.1 LOW N/A
The undocumented semconfig system call in BSD freezes the state of semaphores, which allows local users to cause a denial of service of the semaphore system by using the semconfig call.
CVE-2000-0460 1 Kde 1 Kde 2008-09-10 7.2 HIGH N/A
Buffer overflow in KDE kdesud on Linux allows local uses to gain privileges via a long DISPLAY environmental variable.
CVE-2000-0447 1 Network Associates 1 Webshield 2008-09-10 7.5 HIGH N/A
Buffer overflow in WebShield SMTP 4.5.44 allows remote attackers to execute arbitrary commands via a long configuration parameter to the WebShield remote management service.
CVE-2000-0446 1 Marty Bochane 1 Mdbms 2008-09-10 7.5 HIGH N/A
Buffer overflow in MDBMS database server allows remote attackers to execute arbitrary commands via a long string.
CVE-2000-0445 1 Pgp 1 Pgp 2008-09-10 2.1 LOW N/A
The pgpk command in PGP 5.x on Unix systems uses an insufficiently random data source for non-interactive key pair generation, which may produce predictable keys.
CVE-2000-0444 1 Hp 1 Jetadmin 2008-09-10 5.0 MEDIUM N/A
HP Web JetAdmin 6.0 allows remote attackers to cause a denial of service via a malformed URL to port 8000.
CVE-2000-0443 1 Hp 1 Jetadmin 2008-09-10 7.5 HIGH N/A
The web interface server in HP Web JetAdmin 5.6 allows remote attackers to read arbitrary files via a .. (dot dot) attack.
CVE-2000-0437 1 Network Associates 3 Gauntlet Firewall, Webshield, Webshield E-ppliance 2008-09-10 10.0 HIGH N/A
Buffer overflow in the CyberPatrol daemon "cyberdaemon" used in gauntlet and WebShield allows remote attackers to cause a denial of service or execute arbitrary commands.
CVE-2000-0436 1 Metaproducts 1 Offline Explorer 2008-09-10 5.0 MEDIUM N/A
MetaProducts Offline Explorer 1.2 and earlier allows remote attackers to access arbitrary files via a .. (dot dot) attack.
CVE-2000-0435 1 Matthew Redman 1 Allmanage 2008-09-10 7.5 HIGH N/A
The allmanageup.pl file upload CGI script in the Allmanage Website administration software 2.6 can be called directly by remote attackers, which allows them to modify user accounts or web pages.
CVE-2000-0434 1 Matthew Redman 1 Allmanage 2008-09-10 7.5 HIGH N/A
The administrative password for the Allmanage web site administration software is stored in plaintext in a file which could be accessed by remote attackers.
CVE-2000-0433 1 Suse 1 Suse Linux 2008-09-10 4.6 MEDIUM N/A
The SuSE aaa_base package installs some system accounts with home directories set to /tmp, which allows local users to gain privileges to those accounts by creating standard user startup scripts such as profiles.
CVE-2000-0432 1 Matt Kruse 1 Calendar Script 2008-09-10 7.5 HIGH N/A
The calender.pl and the calendar_admin.pl calendar scripts by Matt Kruse allow remote attackers to execute arbitrary commands via shell metacharacters.
CVE-2000-0431 1 Sun 2 Cobalt Raq 2, Cobalt Raq 3i 2008-09-10 7.5 HIGH N/A
Cobalt RaQ2 and RaQ3 does not properly set the access permissions and ownership for files that are uploaded via FrontPage, which allows attackers to bypass cgiwrap and modify files.
CVE-2000-0448 1 Network Associates 1 Webshield 2008-09-10 5.0 MEDIUM N/A
The WebShield SMTP Management Tool version 4.5.44 does not properly restrict access to the management port when an IP address does not resolve to a hostname, which allows remote attackers to access the configuration via the GET_CONFIG command.