Vulnerabilities (CVE)

CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2000-0221 1 Nortel 1 Nautica Marlin 2008-09-10 5.0 MEDIUM N/A
The Nautica Marlin bridge allows remote attackers to cause a denial of service via a zero length UDP packet to the SNMP port.
CVE-2000-0181 1 Checkpoint 1 Firewall-1 2008-09-10 5.0 MEDIUM N/A
Firewall-1 3.0 and 4.0 leaks packets with private IP address information, which could allow remote attackers to determine the real IP address of the host that is making the connection.
CVE-2000-0241 1 Vqsoft 1 Vqserver 2008-09-10 5.0 MEDIUM N/A
vqSoft vqServer stores sensitive information such as passwords in cleartext in the server.cfg file, which allows attackers to gain privileges.
CVE-2000-0132 1 Microsoft 1 Virtual Machine 2008-09-10 2.6 LOW N/A
Microsoft Java Virtual Machine allows remote attackers to read files via the getSystemResourceAsStream function.
CVE-2000-0242 1 Geocel 1 Windmail 2008-09-10 5.0 MEDIUM N/A
WindMail allows remote attackers to read arbitrary files or execute commands via shell metacharacters.
CVE-2000-0220 1 Zonelabs 1 Zonealarm 2008-09-10 5.0 MEDIUM N/A
ZoneAlarm sends sensitive system and network information in cleartext to the Zone Labs server if a user requests more information about an event.
CVE-2000-0134 1 Adgrafix Corporation 1 Check It Out 2008-09-10 7.5 HIGH N/A
The Check It Out shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.
CVE-2000-0137 1 Cartit 1 Cartit 2008-09-10 7.5 HIGH N/A
The CartIt shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.
CVE-2000-0183 1 Michael Sandrof 1 Ircii 2008-09-10 5.1 MEDIUM N/A
Buffer overflow in ircII 4.4 IRC client allows remote attackers to execute commands via the DCC chat capability.
CVE-2000-0240 1 Vqsoft 1 Vqserver 2008-09-10 5.0 MEDIUM N/A
vqSoft vqServer program allows remote attackers to read arbitrary files via a /........../ in the URL, a variation of a .. (dot dot) attack.
CVE-2000-0179 1 Hp 1 Openview Omniback Ii 2008-09-10 5.0 MEDIUM N/A
HP OpenView OmniBack 2.55 allows remote attackers to cause a denial of service via a large number of connections to port 5555.
CVE-2000-0184 2 Mandrakesoft, Redhat 2 Mandrake Linux, Linux 2008-09-10 2.1 LOW N/A
Linux printtool sets the permissions of printer configuration files to be world-readable, which allows local attackers to obtain printer share passwords.
CVE-2000-0218 2 Caldera, Suse 2 Openlinux, Suse Linux 2008-09-10 7.2 HIGH N/A
Buffer overflow in Linux mount and umount allows local users to gain root privileges via a long relative pathname.
CVE-2000-0231 2 Halloween, Suse 2 Halloween Linux, Suse Linux 2008-09-10 7.2 HIGH N/A
Linux kreatecd trusts a user-supplied path that is used to find the cdrecord program, allowing local users to gain root privileges.
CVE-2000-0217 2 Openbsd, Ssh 3 Openssh, Ssh, Ssh2 2008-09-10 5.1 MEDIUM N/A
The default configuration of SSH allows X forwarding, which could allow a remote attacker to control a client's X sessions via a malicious xauth program.
CVE-2000-0129 1 Microsoft 3 Windows 95, Windows 98, Windows Nt 2008-09-10 2.1 LOW N/A
Buffer overflow in the SHGetPathFromIDList function of the Serv-U FTP server allows attackers to cause a denial of service by performing a LIST command on a malformed .lnk file.
CVE-2000-0182 1 Iplanet 1 Iplanet Web Server 2008-09-10 5.0 MEDIUM N/A
iPlanet Web Server 4.1 allows remote attackers to cause a denial of service via a large number of GET commands, which consumes memory and causes a kernel panic.
CVE-2000-0230 2 Halloween, Redhat 2 Halloween Linux, Linux 2008-09-10 7.2 HIGH N/A
Buffer overflow in imwheel allows local users to gain root privileges via the imwheel-solo script and a long HOME environmental variable.
CVE-2000-0216 1 Microsoft 3 Exchange Server, Outlook, Windows Messaging 2008-09-10 5.0 MEDIUM N/A
Microsoft email clients in Outlook, Exchange, and Windows Messaging automatically respond to Read Receipt and Delivery Receipt tags, which could allow an attacker to flood a mail system with responses by forging a Read Receipt request that is redirected to a large distribution list.
CVE-2000-0237 1 Netscape 1 Enterprise Server 2008-09-10 6.4 MEDIUM N/A
Netscape Enterprise Server with Web Publishing enabled allows remote attackers to list arbitrary directories via a GET request for the /publisher directory, which provides a Java applet that allows the attacker to browse the directories.
CVE-2000-0135 1 Atretail 1 Atretail 2008-09-10 7.5 HIGH N/A
The @Retail shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.
CVE-2000-0136 1 Mcmurtrey Whitaker And Associates 1 Cart32 2008-09-10 7.5 HIGH N/A
The Cart32 shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.
CVE-2000-0236 1 Netscape 1 Enterprise Server 2008-09-10 5.0 MEDIUM N/A
Netscape Enterprise Server with Directory Indexing enabled allows remote attackers to list server directories via web publishing tags such as ?wp-ver-info and ?wp-cs-dump.
CVE-2000-0215 1 Sco 1 Unixware 2008-09-10 7.2 HIGH N/A
Vulnerability in SCO cu program in UnixWare 7.x allows local users to gain privileges.
CVE-2000-0238 1 Symantec 1 Norton Antivirus 2008-09-10 5.0 MEDIUM N/A
Buffer overflow in the web server for Norton AntiVirus for Internet Email Gateways allows remote attackers to cause a denial of service via a long URL.
CVE-2000-0214 1 Ftpx 1 Ftp Explorer 2008-09-10 4.6 MEDIUM N/A
FTP Explorer uses weak encryption for storing the username, password, and profile of FTP sites.
CVE-2000-0170 2 Redhat, Turbolinux 2 Linux, Turbolinux 2008-09-10 7.2 HIGH N/A
Buffer overflow in the man program in Linux allows local users to gain privileges via the MANPAGER environmental variable.
CVE-2000-0251 1 Hp 2 Hp-ux, Vvos 2008-09-10 5.0 MEDIUM N/A
HP-UX 11.04 VirtualVault (VVOS) sends data to unprivileged processes via an interface that has multiple aliased IP addresses.
CVE-2000-0152 1 Novell 1 Bordermanager 2008-09-10 5.0 MEDIUM N/A
Remote attackers can cause a denial of service in Novell BorderManager 3.5 by pressing the enter key in a telnet connection to port 2000.
CVE-2000-0153 1 Microsoft 2 Frontpage, Personal Web Server 2008-09-10 5.0 MEDIUM N/A
FrontPage Personal Web Server (PWS) allows remote attackers to read files via a .... (dot dot) attack.
CVE-2000-0154 1 Sco 1 Unixware 2008-09-10 1.2 LOW N/A
The ARCserve agent in UnixWare allows local attackers to modify arbitrary files via a symlink attack.
CVE-2000-0157 1 Netbsd 1 Netbsd 2008-09-10 7.2 HIGH N/A
NetBSD ptrace call on VAX allows local users to gain privileges by modifying the PSL contents in the debugging process.
CVE-2000-0158 1 Sco 1 Openserver 2008-09-10 7.5 HIGH N/A
Buffer overflow in MMDF server allows remote attackers to gain privileges via a long MAIL FROM command to the SMTP daemon.
CVE-2000-0159 1 Hp 1 Hp-ux 2008-09-10 7.5 HIGH N/A
HP Ignite-UX does not save /etc/passwd when it creates an image of a trusted system, which can set the password field to a blank and allow an attacker to gain privileges.
CVE-2000-0269 1 Gnu 1 Emacs 2008-09-10 2.1 LOW N/A
Emacs 20 does not properly set permissions for a slave PTY device when starting a new subprocess, which allows local users to read or modify communications between Emacs and the subprocess.
CVE-2000-0270 1 Gnu 1 Emacs 2008-09-10 3.6 LOW N/A
The make-temp-name Lisp function in Emacs 20 creates temporary files with predictable names, which allows attackers to conduct a symlink attack.
CVE-2000-0271 1 Gnu 1 Emacs 2008-09-10 4.6 MEDIUM N/A
read-passwd and other Lisp functions in Emacs 20 do not properly clear the history of recently typed keys, which allows an attacker to read unencrypted passwords.
CVE-2000-0273 1 Symantec 1 Pcanywhere 2008-09-10 5.0 MEDIUM N/A
PCAnywhere allows remote attackers to cause a denial of service by terminating the connection before PCAnywhere provides a login prompt.
CVE-2000-0163 1 Freebsd 1 Freebsd 2008-09-10 4.6 MEDIUM N/A
asmon and ascpu in FreeBSD allow local users to gain root privileges via a configuration file.
CVE-2000-0274 1 Bray Systems 1 Linux Trustees 2008-09-10 2.1 LOW N/A
The Linux trustees kernel patch allows attackers to cause a denial of service by accessing a file or directory with a long name.
CVE-2000-0275 1 Cryptocard 1 Cryptoadmin 2008-09-10 2.1 LOW N/A
CRYPTOCard CryptoAdmin for PalmOS uses weak encryption to store a user's PIN number, which allows an attacker with access to the .PDB file to generate valid PT-1 tokens after cracking the PIN.
CVE-2000-0164 1 Sun 1 Solaris Isp Server 2008-09-10 7.2 HIGH N/A
The installation of Sun Internet Mail Server (SIMS) creates a world-readable file that allows local users to obtain passwords.
CVE-2000-0276 1 Be 1 Beos 2008-09-10 2.1 LOW N/A
BeOS 4.5 and 5.0 allow local users to cause a denial of service via malformed direct system calls using interrupt 37.
CVE-2000-0167 1 Microsoft 1 Internet Information Server 2008-09-10 2.1 LOW N/A
IIS Inetinfo.exe allows local users to cause a denial of service by creating a mail file with a long name and a .txt.eml extension in the pickup directory.
CVE-2000-0168 1 Microsoft 3 Windows 95, Windows 98, Windows 98se 2008-09-10 5.0 MEDIUM N/A
Microsoft Windows 9x operating systems allow an attacker to cause a denial of service via a pathname that includes file device names, aka the "DOS Device in Path Name" vulnerability.
CVE-2000-0169 1 Oracle 1 Application Server 2008-09-10 7.5 HIGH N/A
Batch files in the Oracle web listener ows-bin directory allow remote attackers to execute commands via a malformed URL that includes '?&'.
CVE-2000-0141 1 Infopop 1 Ultimate Bulletin Board 2008-09-10 10.0 HIGH N/A
Infopop Ultimate Bulletin Board (UBB) allows remote attackers to execute commands via shell metacharacters in the topic hidden field.
CVE-2000-0278 1 Saleslogix 1 Corporation Eviewer 2008-09-10 5.0 MEDIUM N/A
The SalesLogix Eviewer allows remote attackers to cause a denial of service by accessing the URL for the slxweb.dll administration program, which does not authenticate the user.
CVE-2000-0151 1 Gnu 1 Make 2008-09-10 6.2 MEDIUM N/A
GNU make follows symlinks when it reads a Makefile from stdin, which allows other local users to execute commands.
CVE-2000-0171 1 At Computing 1 Atsar Linux 2008-09-10 7.2 HIGH N/A
atsadc in the atsar package for Linux does not properly check the permissions of an output file, which allows local users to gain root privileges.