Vulnerabilities (CVE)

Filtered by NVD-CWE-Other
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2000-0598 1 Fortech 1 Proxy\+ 2008-09-10 5.0 MEDIUM N/A
Fortech Proxy+ allows remote attackers to bypass access restrictions for to the administration service by redirecting their connections through the telnet proxy.
CVE-2000-0595 1 Freebsd 1 Freebsd 2008-09-10 4.6 MEDIUM N/A
libedit searches for the .editrc file in the current directory instead of the user's home directory, which may allow local users to execute arbitrary commands by installing a modified .editrc in another directory.
CVE-2000-0659 1 Analogx 1 Proxy 2008-09-10 5.0 MEDIUM N/A
Buffer overflow in AnalogX proxy server 4.04 and earlier allows remote attackers to cause a denial of service via a long user ID in a SOCKS4 CONNECT request.
CVE-2000-0779 1 Checkpoint 1 Firewall-1 2008-09-10 7.5 HIGH N/A
Checkpoint Firewall-1 with the RSH/REXEC setting enabled allows remote attackers to bypass access restrictions and connect to a RSH/REXEC client via malformed connection requests.
CVE-2000-0658 1 Analogx 1 Proxy 2008-09-10 5.0 MEDIUM N/A
Buffer overflow in AnalogX proxy server 4.04 and earlier allows remote attackers to cause a denial of service via a long USER command in the POP3 protocol.
CVE-2000-0592 1 Sapporoworks 1 Sapporoworks Winproxy 2008-09-10 7.5 HIGH N/A
Buffer overflows in POP3 service in WinProxy 2.0 and 2.0.1 allow remote attackers to execute arbitrary commands via long USER, PASS, LIST, RETR, or DELE commands.
CVE-2000-0591 1 Novell 1 Bordermanager 2008-09-10 5.0 MEDIUM N/A
Novell BorderManager 3.0 and 3.5 allows remote attackers to bypass URL filtering by encoding characters in the requested URL.
CVE-2000-0587 1 Glftpd 1 Glftpd 2008-09-10 10.0 HIGH N/A
The privpath directive in glftpd 1.18 allows remote attackers to bypass access restrictions for directories by using the file name completion capability.
CVE-2000-0586 1 Dalnet 1 Ircd 2008-09-10 10.0 HIGH N/A
Buffer overflow in Dalnet IRC server 4.6.5 allows remote attackers to cause a denial of service or execute arbitrary commands via the SUMMON command.
CVE-2000-0583 1 Inter7 1 Vpopmail Vchkpw 2008-09-10 5.0 MEDIUM N/A
vchkpw program in vpopmail before version 4.8 does not properly cleanse an untrusted format string used in a call to syslog, which allows remote attackers to cause a denial of service via a USER or PASS command that contains arbitrary formatting directives.
CVE-2000-0800 1 Suse 1 Suse Linux 2008-09-10 10.0 HIGH N/A
String parsing error in rpc.kstatd in the linuxnfs or knfsd packages in SuSE and possibly other Linux systems allows remote attackers to gain root privileges.
CVE-2000-0725 1 Zope 1 Zope 2008-09-10 7.2 HIGH N/A
Zope before 2.2.1 does not properly restrict access to the getRoles method, which allows users who can edit DTML to add or modify roles by modifying the roles list that is included in a request.
CVE-2000-0582 1 Checkpoint 1 Firewall-1 2008-09-10 5.0 MEDIUM N/A
Check Point FireWall-1 4.0 and 4.1 allows remote attackers to cause a denial of service by sending a stream of invalid commands (such as binary zeros) to the SMTP Security Server proxy.
CVE-2000-0581 1 Microsoft 1 Windows 2000 2008-09-10 5.0 MEDIUM N/A
Windows 2000 Telnet Server allows remote attackers to cause a denial of service by sending a continuous stream of binary zeros, which causes the server to crash.
CVE-2000-0580 1 Microsoft 1 Windows 2000 2008-09-10 5.0 MEDIUM N/A
Windows 2000 Server allows remote attackers to cause a denial of service by sending a continuous stream of binary zeros to various TCP and UDP ports, which significantly increases the CPU utilization.
CVE-2000-0645 1 Texas Imperial Software 1 Wftpd 2008-09-10 6.4 MEDIUM N/A
WFTPD and WFTPD Pro 2.41 allows remote attackers to cause a denial of service by using the RESTART (REST) command and writing beyond the end of a file, or writing to a file that does not exist, via commands such as STORE UNIQUE (STOU), STORE (STOR), or APPEND (APPE).
CVE-2000-0579 1 Sgi 1 Irix 2008-09-10 3.7 LOW N/A
IRIX crontab creates temporary files with predictable file names and with the umask of the user, which could allow local users to modify another user's crontab file as it is being edited.
CVE-2000-0646 1 Texas Imperial Software 1 Wftpd 2008-09-10 5.0 MEDIUM N/A
WFTPD and WFTPD Pro 2.41 allows remote attackers to obtain the real pathname for a file by executing a STATUS (STAT) command while the file is being transferred.
CVE-2000-0578 1 Sgi 1 Mipspro Compilers 2008-09-10 3.7 LOW N/A
SGI MIPSPro compilers C, C++, F77 and F90 generate temporary files in /tmp with predictable file names, which could allow local users to insert malicious contents into these files as they are being compiled by another user.
CVE-2000-0706 1 Luca Deri 1 Ntop 2008-09-10 10.0 HIGH N/A
Buffer overflows in ntop running in web mode allows remote attackers to execute arbitrary commands.
CVE-2000-0577 1 Netscape 1 Professional Services Ftpserver 2008-09-10 10.0 HIGH N/A
Netscape Professional Services FTP Server 1.3.6 allows remote attackers to read arbitrary files via a .. (dot dot) attack.
CVE-2000-0656 1 Analogx 1 Proxy 2008-09-10 5.0 MEDIUM N/A
Buffer overflow in AnalogX proxy server 4.04 and earlier allows remote attackers to cause a denial of service via a long USER command in the FTP protocol.
CVE-2000-0576 1 Oracle 1 Web Listener 2008-09-10 5.0 MEDIUM N/A
Oracle Web Listener for AIX versions 4.0.7.0.0 and 4.0.8.1.0 allows remote attackers to cause a denial of service via a malformed URL.
CVE-2000-0655 2 Mozilla, Netscape 2 Mozilla, Communicator 2008-09-10 5.0 MEDIUM N/A
Netscape Communicator 4.73 and earlier allows remote attackers to cause a denial of service or execute arbitrary commands via a JPEG image containing a comment with an illegal field length of 1.
CVE-2000-0690 1 Cgi Script Center 1 Auction Weaver 2008-09-10 10.0 HIGH N/A
Auction Weaver CGI script 1.02 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the fromfile parameter.
CVE-2000-0574 2 Openbsd, Washington University 2 Ftpd, Wu-ftpd 2008-09-10 5.0 MEDIUM N/A
FTP servers such as OpenBSD ftpd, NetBSD ftpd, ProFTPd and Opieftpd do not properly cleanse untrusted format strings that are used in the setproctitle function (sometimes called by set_proc_title), which allows remote attackers to cause a denial of service or execute arbitrary commands.
CVE-2000-0669 1 Novell 1 Netware 2008-09-10 5.0 MEDIUM N/A
Novell NetWare 5.0 allows remote attackers to cause a denial of service by flooding port 40193 with random data.
CVE-2000-0572 1 Visible Systems 1 Razor 2008-09-10 4.6 MEDIUM N/A
The Razor configuration management tool uses weak encryption for its password file, which allows local users to gain privileges.
CVE-2000-0568 1 Sybergen 1 Secure Desktop 2008-09-10 5.0 MEDIUM N/A
Sybergen Secure Desktop 2.1 does not properly protect against false router advertisements (ICMP type 9), which allows remote attackers to modify default routes.
CVE-2000-0564 1 Mirabilis 1 Icq 2008-09-10 5.0 MEDIUM N/A
The guestbook CGI program in ICQ Web Front service for ICQ 2000a, 99b, and others allows remote attackers to cause a denial of service via a URL with a long name parameter.
CVE-2000-0562 1 Iss 2 Blackice Agent, Blackice Defender 2008-09-10 7.5 HIGH N/A
BlackIce Defender 2.1 and earlier, and BlackIce Pro 2.0.23 and earlier, do not properly block Back Orifice traffic when the security setting is Nervous or lower.
CVE-2000-0558 1 Hp 1 Openview Network Node Manager 2008-09-10 10.0 HIGH N/A
Buffer overflow in HP Openview Network Node Manager 6.1 allows remote attackers to execute arbitrary commands via the Alarm service (OVALARMSRV) on port 2345.
CVE-2000-0554 1 Lilikoi 1 Ceilidh 2008-09-10 5.0 MEDIUM N/A
Ceilidh allows remote attackers to obtain the real path of the Ceilidh directory via the translated_path hidden form field.
CVE-2000-0545 1 Sgi 1 Mailx 2008-09-10 4.6 MEDIUM N/A
Buffer overflow in mailx mail command (aka Mail) on Linux systems allows local users to gain privileges via a long -c (carbon copy) parameter.
CVE-2000-0667 1 Conectiva 1 Linux 2008-09-10 3.6 LOW N/A
Vulnerability in gpm in Caldera Linux allows local users to delete arbitrary files or conduct a denial of service.
CVE-2000-0544 1 Microsoft 2 Windows 2000, Windows Nt 2008-09-10 5.0 MEDIUM N/A
Windows NT and Windows 2000 hosts allow a remote attacker to cause a denial of service via malformed DCE/RPC SMBwriteX requests that contain an invalid data length.
CVE-2000-0535 2 Freebsd, Openssl 2 Freebsd, Openssl 2008-09-10 5.0 MEDIUM N/A
OpenSSL 0.9.4 and OpenSSH for FreeBSD do not properly check for the existence of the /dev/random or /dev/urandom devices, which are absent on FreeBSD Alpha systems, which causes them to produce weak keys which may be more easily broken.
CVE-2000-0614 1 Suse 1 Suse Linux 2008-09-10 10.0 HIGH N/A
Tnef program in Linux systems allows remote attackers to overwrite arbitrary files via TNEF encoded compressed attachments which specify absolute path names for the decompressed output.
CVE-2000-0617 1 Stanley T. Shebs 1 Xconq 2008-09-10 4.6 MEDIUM N/A
Buffer overflow in xconq and cconq game programs on Red Hat Linux allows local users to gain additional privileges via long USER environmental variable.
CVE-2000-0750 3 Netbsd, Openbsd, Redhat 3 Netbsd, Openbsd, Linux 2008-09-10 7.5 HIGH N/A
Buffer overflow in mopd (Maintenance Operations Protocol loader daemon) allows remote attackers to execute arbitrary commands via a long file name.
CVE-2000-0714 1 University Of Massachusetts 1 Scheme 2008-09-10 7.2 HIGH N/A
umb-scheme 3.2-11 for Red Hat Linux is installed with world-writeable files.
CVE-2000-0744 1 University Of Minnesota 1 Gopherd 2008-09-10 10.0 HIGH N/A
DEPRECATED. This entry has been deprecated. It is a duplicate of CVE-2000-0743.
CVE-2000-0612 1 Microsoft 2 Windows 95, Windows 98 2008-09-10 5.0 MEDIUM N/A
Windows 95 and Windows 98 do not properly process spoofed ARP packets, which allows remote attackers to overwrite static entries in the cache table.
CVE-2000-0609 1 Netwin 2 Cwmail, Dmailweb 2008-09-10 5.0 MEDIUM N/A
NetWin dMailWeb and cwMail 2.6g and earlier allows remote attackers to cause a denial of service via a long username parameter.
CVE-2000-0678 1 Pgp 1 Pgp 2008-09-10 5.0 MEDIUM N/A
PGP 5.5.x through 6.5.3 does not properly check if an Additional Decryption Key (ADK) is stored in the signed portion of a public certificate, which allows an attacker who can modify a victim's public certificate to decrypt any data that has been encrypted with the modified certificate.
CVE-2000-0355 3 Bent Bagger, Redhat, Suse 3 Pbpg, Linux, Suse Linux 2008-09-10 7.5 HIGH N/A
pg and pb in SuSE pbpg 1.x package allows an attacker to read arbitrary files.
CVE-2000-0354 1 Lee Mcloughlin 1 Mirror 2008-09-10 5.0 MEDIUM N/A
mirror 2.8.x in Linux systems allows remote attackers to create files one level above the local target directory.
CVE-2000-0353 1 University Of Washington 1 Pine 2008-09-10 10.0 HIGH N/A
Pine 4.x allows a remote attacker to execute arbitrary commands via an index.html file which executes lynx and obtains a uudecoded file from a malicious web server, which is then executed by Pine.
CVE-2000-0352 1 University Of Washington 1 Pine 2008-09-10 10.0 HIGH N/A
Pine before version 4.21 does not properly filter shell metacharacters from URLs, which allows remote attackers to execute arbitrary commands via a malformed URL.
CVE-2000-0350 1 Networkice 1 Icecap Manager 2008-09-10 5.0 MEDIUM N/A
A debugging feature in NetworkICE ICEcap 2.0.23 and earlier is enabled, which allows a remote attacker to bypass the weak authentication and post unencrypted events.