Vulnerabilities (CVE)

CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2000-0243 1 Analogx 1 Simpleserver Www 2017-10-10 5.0 MEDIUM N/A
AnalogX SimpleServer:WWW HTTP server 1.03 allows remote attackers to cause a denial of service via a short GET request to cgi-bin.
CVE-2000-0245 1 Sgi 1 Irix 2017-10-10 10.0 HIGH N/A
Vulnerability in SGI IRIX objectserver daemon allows remote attackers to create user accounts.
CVE-2000-0247 1 Gnqs 1 Gnqs 2017-10-10 7.2 HIGH N/A
Unknown vulnerability in Generic-NQS (GNQS) allows local users to gain root privileges.
CVE-2000-0252 1 Craig Dansie 1 Dansie Shopping Cart 2017-10-10 5.0 MEDIUM N/A
The dansie shopping cart application cart.pl allows remote attackers to execute commands via a shell metacharacters in a form variable.
CVE-2000-0290 1 4d 1 Webstar Http Server 2017-10-10 5.0 MEDIUM N/A
Buffer overflow in Webstar HTTP server allows remote attackers to cause a denial of service via a long GET request.
CVE-2000-0298 1 Microsoft 1 Windows 2000 2017-10-10 7.2 HIGH N/A
The unattended installation of Windows 2000 with the OEMPreinstall option sets insecure permissions for the All Users and Default Users directories.
CVE-2000-0372 1 Caldera 1 Openlinux 2017-10-10 7.2 HIGH N/A
Vulnerability in Caldera rmt command in the dump package 0.4b4 allows a local user to gain root privileges.
CVE-2000-0373 1 Kde 1 Kvt 2017-10-10 7.2 HIGH N/A
Vulnerabilities in the KDE kvt terminal program allow local users to gain root privileges.
CVE-2000-0374 1 Caldera 1 Openlinux 2017-10-10 10.0 HIGH N/A
The default configuration of kdm in Caldera and Mandrake Linux, and possibly other distributions, allows XDMCP connections from any host, which allows remote attackers to obtain sensitive information or bypass additional access restrictions.
CVE-2000-0470 1 Allegro 1 Rom Pager 2017-10-10 7.5 HIGH N/A
Allegro RomPager HTTP server allows remote attackers to cause a denial of service via a malformed authentication request.
CVE-2000-0472 1 Isc 1 Inn 2017-10-10 3.6 LOW N/A
Buffer overflow in innd 2.2.2 allows remote attackers to execute arbitrary commands via a cancel request containing a long message ID.
CVE-2000-0474 1 Realnetworks 1 Realserver 2017-10-10 7.8 HIGH N/A
Real Networks RealServer 7.x allows remote attackers to cause a denial of service via a malformed request for a page in the viewsource directory.
CVE-2000-0477 1 Symantec 1 Norton Antivirus 2017-10-10 5.0 MEDIUM N/A
Buffer overflow in Norton Antivirus for Exchange (NavExchange) allows remote attackers to cause a denial of service via a .zip file that contains long file names.
CVE-2000-0478 1 Symantec 1 Norton Antivirus 2017-10-10 5.0 MEDIUM N/A
In some cases, Norton Antivirus for Exchange (NavExchange) enters a "fail-open" state which allows viruses to pass through the server.
CVE-2000-0481 1 Kde 1 K-mail 2017-10-10 5.0 MEDIUM N/A
Buffer overflow in KDE Kmail allows a remote attacker to cause a denial of service via an attachment with a long file name.
CVE-2000-0482 1 Checkpoint 1 Firewall-1 2017-10-10 5.0 MEDIUM N/A
Check Point Firewall-1 allows remote attackers to cause a denial of service by sending a large number of malformed fragmented IP packets.
CVE-2000-0483 2 Redhat, Zope 2 Linux Powertools, Zope 2017-10-10 7.5 HIGH N/A
The DocumentTemplate package in Zope 2.2 and earlier allows a remote attacker to modify DTMLDocuments or DTMLMethods without authorization.
CVE-2000-0486 1 Cisco 2 Ios, Tacacs\+ 2017-10-10 5.0 MEDIUM N/A
Buffer overflow in Cisco TACACS+ tac_plus server allows remote attackers to cause a denial of service via a malformed packet with a long length field.
CVE-2000-0488 1 Ithouse 1 Ithouse Mail Server 2017-10-10 10.0 HIGH N/A
Buffer overflow in ITHouse mail server 1.04 allows remote attackers to execute arbitrary commands via a long RCPT TO mail command.
CVE-2000-0489 3 Freebsd, Netbsd, Openbsd 3 Freebsd, Netbsd, Openbsd 2017-10-10 2.1 LOW N/A
FreeBSD, NetBSD, and OpenBSD allow an attacker to cause a denial of service by creating a large number of socket pairs using the socketpair function, setting a large buffer size via setsockopt, then writing large buffers.
CVE-2000-0490 1 Netwin 1 Dmail 2017-10-10 10.0 HIGH N/A
Buffer overflow in the NetWin DSMTP 2.7q in the NetWin dmail package allows remote attackers to execute arbitrary commands via a long ETRN request.
CVE-2000-0493 1 Atrius Trivalie Sn 1 Time Sync 2017-10-10 10.0 HIGH N/A
Buffer overflow in Simple Network Time Sync (SMTS) daemon allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long string.
CVE-2000-0498 1 Unify 1 Ewave Servletexec 2017-10-10 5.0 MEDIUM N/A
Unify eWave ServletExec allows a remote attacker to view source code of a JSP program by requesting a URL which provides the JSP extension in upper case.
CVE-2000-0499 1 Bea 1 Weblogic Server 2017-10-10 5.0 MEDIUM N/A
The default configuration of BEA WebLogic 3.1.8 through 4.5.1 allows a remote attacker to view source code of a JSP program by requesting a URL which provides the JSP extension in upper case.
CVE-2000-0500 1 Bea 1 Weblogic Server 2017-10-10 5.0 MEDIUM N/A
The default configuration of BEA WebLogic 5.1.0 allows a remote attacker to view source code of programs by requesting a URL beginning with /file/, which causes the default servlet to display the file without further processing.
CVE-2000-0501 1 Alt-n 1 Mdaemon 2017-10-10 2.6 LOW N/A
Race condition in MDaemon 2.8.5.0 POP server allows local users to cause a denial of service by entering a UIDL command and quickly exiting the server.
CVE-2000-0502 1 Mcafee 1 Virusscan 2017-10-10 2.1 LOW N/A
Mcafee VirusScan 4.03 does not properly restrict access to the alert text file before it is sent to the Central Alert Server, which allows local users to modify alerts in an arbitrary fashion.
CVE-2000-0507 1 Concatus 1 Imate Webmail Server 2017-10-10 5.0 MEDIUM N/A
Imate Webmail Server 2.5 allows remote attackers to cause a denial of service via a long HELO command.
CVE-2000-0508 3 Debian, Mandrakesoft, Redhat 3 Debian Linux, Mandrake Linux, Linux 2017-10-10 5.0 MEDIUM N/A
rpc.lockd in Red Hat Linux 6.1 and 6.2 allows remote attackers to cause a denial of service via a malformed request.
CVE-2000-0510 1 Debian 1 Debian Linux 2017-10-10 5.0 MEDIUM N/A
CUPS (Common Unix Printing System) 1.04 and earlier allows remote attackers to cause a denial of service via a malformed IPP request.
CVE-2000-0511 1 Debian 1 Debian Linux 2017-10-10 5.0 MEDIUM N/A
CUPS (Common Unix Printing System) 1.04 and earlier allows remote attackers to cause a denial of service via a CGI POST request.
CVE-2000-0512 1 Debian 1 Debian Linux 2017-10-10 5.0 MEDIUM N/A
CUPS (Common Unix Printing System) 1.04 and earlier does not properly delete request files, which allows a remote attacker to cause a denial of service.
CVE-2000-0513 1 Debian 1 Debian Linux 2017-10-10 5.0 MEDIUM N/A
CUPS (Common Unix Printing System) 1.04 and earlier allows remote attackers to cause a denial of service by authenticating with a user name that does not exist or does not have a shadow password.
CVE-2000-0515 1 Hp 1 Hp-ux 2017-10-10 10.0 HIGH N/A
The snmpd.conf configuration file for the SNMP daemon (snmpd) in HP-UX 11.0 is world writable, which allows local users to modify SNMP configuration or gain privileges.
CVE-2000-0516 1 Intel 1 Shiva Access Manager 2017-10-10 7.2 HIGH N/A
When configured to store configuration information in an LDAP directory, Shiva Access Manager 5.0.0 stores the root DN (Distinguished Name) name and password in cleartext in a file that is world readable, which allows local users to compromise the LDAP server.
CVE-2000-0517 1 Netscape 1 Communicator 2017-10-10 5.0 MEDIUM N/A
Netscape 4.73 and earlier does not properly warn users about a potentially invalid certificate if the user has previously accepted the certificate for a different web site, which could allow remote attackers to spoof a legitimate web site by compromising that site's DNS information.
CVE-2000-0521 1 Michael Lamont 1 Savant Webserver 2017-10-10 5.0 MEDIUM N/A
Savant web server allows remote attackers to read source code of CGI scripts via a GET request that does not include the HTTP version number.
CVE-2000-0522 1 Rsa 1 Ace Server 2017-10-10 5.0 MEDIUM N/A
RSA ACE/Server allows remote attackers to cause a denial of service by flooding the server's authentication request port with UDP packets, which causes the server to crash.
CVE-2000-0523 1 Etype 1 Eserv 2017-10-10 10.0 HIGH N/A
Buffer overflow in the logging feature of EServ 2.9.2 and earlier allows an attacker to execute arbitrary commands via a long MKD command.
CVE-2000-0525 1 Openbsd 1 Openssh 2017-10-10 10.0 HIGH N/A
OpenSSH does not properly drop privileges when the UseLogin option is enabled, which allows local users to execute arbitrary commands by providing the command to the ssh daemon.
CVE-2000-0528 1 Network Associates 1 Net Tools Pki Server 2017-10-10 5.0 MEDIUM N/A
Net Tools PKI Server does not properly restrict access to remote attackers when the XUDA template files do not contain absolute pathnames for other files.
CVE-2000-0529 1 Network Associates 1 Net Tools Pki Server 2017-10-10 5.0 MEDIUM N/A
Net Tools PKI Server allows remote attackers to cause a denial of service via a long HTTP request.
CVE-2000-0530 2 Caldera, Kde 2 Openlinux, Kde 2017-10-10 7.2 HIGH N/A
The KApplication class in the KDE 1.1.2 configuration file management capability allows local users to overwrite arbitrary files.
CVE-2000-0532 1 Freebsd 1 Freebsd 2017-10-10 7.5 HIGH N/A
A FreeBSD patch for SSH on 2000-01-14 configures ssh to listen on port 722 as well as port 22, which might allow remote attackers to access SSH through port 722 even if port 22 is otherwise filtered.
CVE-2000-0533 1 Sgi 1 Workshop Debugger And Performance Tools 2017-10-10 7.2 HIGH N/A
Vulnerability in cvconnect in SGI IRIX WorkShop allows local users to overwrite arbitrary files.
CVE-2000-0536 1 Xinetd 1 Xinetd 2017-10-10 7.5 HIGH N/A
xinetd 2.1.8.x does not properly restrict connections if hostnames are used for access control and the connecting host does not have a reverse DNS entry.
CVE-2000-0537 1 Tolis Group 1 Bru 2017-10-10 7.2 HIGH N/A
BRU backup software allows local users to append data to arbitrary files by specifying an alternate configuration file with the BRUEXECLOG environmental variable.
CVE-2000-0538 1 Allaire 1 Coldfusion Server 2017-10-10 5.0 MEDIUM N/A
ColdFusion Administrator for ColdFusion 4.5.1 and earlier allows remote attackers to cause a denial of service via a long login password.
CVE-2000-0539 1 Macromedia 1 Jrun 2017-10-10 6.4 MEDIUM N/A
Servlet examples in Allaire JRun 2.3.x allow remote attackers to obtain sensitive information, e.g. listing HttpSession ID's via the SessionServlet servlet.
CVE-2000-0540 1 Macromedia 1 Jrun 2017-10-10 5.0 MEDIUM N/A
JSP sample files in Allaire JRun 2.3.x allow remote attackers to access arbitrary files (e.g. via viewsource.jsp) or obtain configuration information.