|
346401
|
7.5 |
HIGH
|
filemaker
|
filemaker
|
FileMaker Pro 5 Web Companion allows remote attackers to send anonymous or forged email.
|
NVD-CWE-Other
|
CVE-2000-0386
|
2008-09-11 04:04 |
2000-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346402
|
2.1 |
LOW
|
alexander_siegel
|
golddig
|
The makelev program in the golddig game from the FreeBSD ports collection allows local users to overwrite arbitrary files.
|
NVD-CWE-Other
|
CVE-2000-0387
|
2008-09-11 04:04 |
2000-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346403
|
7.5 |
HIGH
|
freebsd
|
freebsd
|
Buffer overflow in FreeBSD libmytinfo library allows local users to execute commands via a long TERMCAP environmental variable.
|
NVD-CWE-Other
|
CVE-2000-0388
|
2008-09-11 04:04 |
1990-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346404
|
7.2 |
HIGH
|
kde
|
kde
|
The KDE kscd program does not drop privileges when executing a program specified in a user's SHELL environmental variable, which allows the user to gain privileges by specifying an alternate program …
|
NVD-CWE-Other
|
CVE-2000-0393
|
2008-09-11 04:04 |
2000-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346405
|
5.0 |
MEDIUM
|
pacific_software
|
carello
|
The add.exe program in the Carello shopping cart software allows remote attackers to duplicate files on the server, which could allow the attacker to read source code for web scripts such as .ASP fil…
|
NVD-CWE-Other
|
CVE-2000-0396
|
2008-09-11 04:04 |
2000-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346406
|
5.0 |
MEDIUM
|
seattle_lab_software
|
emurl
|
The EMURL web-based email account software encodes predictable identifiers in user session URLs, which allows a remote attacker to access a user's email account.
|
NVD-CWE-Other
|
CVE-2000-0397
|
2008-09-11 04:04 |
2000-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346407
|
10.0 |
HIGH
|
rockliffe
|
mailsite
|
Buffer overflow in wconsole.dll in Rockliffe MailSite Management Agent allows remote attackers to execute arbitrary commands via a long query_string parameter in the HTTP GET request.
|
NVD-CWE-Other
|
CVE-2000-0398
|
2008-09-11 04:04 |
2000-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346408
|
5.0 |
MEDIUM
|
alt-n
|
mdaemon
|
Buffer overflow in MDaemon POP server allows remote attackers to cause a denial of service via a long user name.
|
NVD-CWE-Other
|
CVE-2000-0399
|
2008-09-11 04:04 |
2000-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346409
|
10.0 |
HIGH
|
atstake
|
antisniff
|
Buffer overflow in L0pht AntiSniff allows remote attackers to execute arbitrary commands via a malformed DNS response packet.
|
NVD-CWE-Other
|
CVE-2000-0405
|
2008-09-11 04:04 |
2000-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346410
|
2.6 |
LOW
|
netscape
|
communicator
|
Netscape Communicator before version 4.73 and Navigator 4.07 do not properly validate SSL certificates, which allows remote attackers to steal information by redirecting traffic from a legitimate web…
|
NVD-CWE-Other
|
CVE-2000-0406
|
2008-09-11 04:04 |
2000-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346411
|
3.7 |
LOW
|
netscape
|
communicator
|
Netscape 4.73 and earlier follows symlinks when it imports a new certificate, which allows local users to overwrite files of the user importing the certificate.
|
NVD-CWE-Other
|
CVE-2000-0409
|
2008-09-11 04:04 |
2000-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346412
|
5.0 |
MEDIUM
|
allaire
|
coldfusion_server
|
ColdFusion Server 4.5.1 allows remote attackers to cause a denial of service by making repeated requests to a CFCACHE tagged cache file that is not stored in memory.
|
NVD-CWE-Other
|
CVE-2000-0410
|
2008-09-11 04:04 |
2000-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346413
|
7.5 |
HIGH
|
napster
|
knapster
|
The gnapster and knapster clients for Napster do not properly restrict access only to MP3 files, which allows remote attackers to read arbitrary files from the client by specifying the full pathname …
|
NVD-CWE-Other
|
CVE-2000-0412
|
2008-09-11 04:04 |
1999-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346414
|
4.6 |
MEDIUM
|
hp
|
hp-ux vvos
|
Vulnerability in shutdown command for HP-UX 11.X and 10.X allows allows local users to gain privileges via malformed input variables.
|
NVD-CWE-Other
|
CVE-2000-0414
|
2008-09-11 04:04 |
2000-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346415
|
5.0 |
MEDIUM
|
cayman
|
3220-h_dsl_router gatorsurf
|
The HTTP administration interface to the Cayman 3220-H DSL router allows remote attackers to cause a denial of service via a long username or password.
|
NVD-CWE-Other
|
CVE-2000-0417
|
2008-09-11 04:04 |
2000-05-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346416
|
5.0 |
MEDIUM
|
cayman
|
3220-h_dsl_router gatorsurf
|
The Cayman 3220-H DSL router allows remote attackers to cause a denial of service via oversized ICMP echo (ping) requests.
|
NVD-CWE-Other
|
CVE-2000-0418
|
2008-09-11 04:04 |
2000-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346417
|
7.2 |
HIGH
|
microsoft
|
windows_2000
|
The default configuration of SYSKEY in Windows 2000 stores the startup key in the registry, which could allow an attacker tor ecover it and use it to decrypt Encrypted File System (EFS) data.
|
NVD-CWE-Other
|
CVE-2000-0420
|
2008-09-11 04:04 |
2000-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346418
|
7.5 |
HIGH
|
mozilla
|
bugzilla
|
The process_bug.cgi script in Bugzilla allows remote attackers to execute arbitrary commands via shell metacharacters.
|
NVD-CWE-Other
|
CVE-2000-0421
|
2008-09-11 04:04 |
2000-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346419
|
10.0 |
HIGH
|
lsoft
|
listserv
|
Buffer overflow in the Web Archives component of L-Soft LISTSERV 1.8 allows remote attackers to execute arbitrary commands.
|
NVD-CWE-Other
|
CVE-2000-0425
|
2008-09-11 04:04 |
2000-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346420
|
5.0 |
MEDIUM
|
ultrascripts
|
ultraboard
|
UltraBoard 1.6 and other versions allow remote attackers to cause a denial of service by referencing UltraBoard in the Session parameter, which causes UltraBoard to fork copies of itself.
|
NVD-CWE-Other
|
CVE-2000-0426
|
2008-09-11 04:04 |
2000-05-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346421
|
4.6 |
MEDIUM
|
aladdin_knowledge_systems
|
etoken
|
The Aladdin Knowledge Systems eToken device allows attackers with physical access to the device to obtain sensitive information without knowing the PIN of the owner by resetting the PIN in the EEPROM.
|
NVD-CWE-Other
|
CVE-2000-0427
|
2008-09-11 04:04 |
2000-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346422
|
10.0 |
HIGH
|
trend_micro
|
interscan_viruswall
|
Buffer overflow in the SMTP gateway for InterScan Virus Wall 3.32 and earlier allows a remote attacker to execute arbitrary commands via a long filename for a uuencoded attachment.
|
NVD-CWE-Other
|
CVE-2000-0428
|
2008-09-11 04:04 |
2000-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346423
|
7.5 |
HIGH
|
matt_kruse
|
calendar_script
|
The calender.pl and the calendar_admin.pl calendar scripts by Matt Kruse allow remote attackers to execute arbitrary commands via shell metacharacters.
|
NVD-CWE-Other
|
CVE-2000-0432
|
2008-09-11 04:04 |
2000-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346424
|
4.6 |
MEDIUM
|
suse
|
suse_linux
|
The SuSE aaa_base package installs some system accounts with home directories set to /tmp, which allows local users to gain privileges to those accounts by creating standard user startup scripts such…
|
NVD-CWE-Other
|
CVE-2000-0433
|
2008-09-11 04:04 |
2000-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346425
|
7.5 |
HIGH
|
matthew_redman
|
allmanage
|
The administrative password for the Allmanage web site administration software is stored in plaintext in a file which could be accessed by remote attackers.
|
NVD-CWE-Other
|
CVE-2000-0434
|
2008-09-11 04:04 |
2000-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346426
|
7.5 |
HIGH
|
matthew_redman
|
allmanage
|
The allmanageup.pl file upload CGI script in the Allmanage Website administration software 2.6 can be called directly by remote attackers, which allows them to modify user accounts or web pages.
|
NVD-CWE-Other
|
CVE-2000-0435
|
2008-09-11 04:04 |
2000-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346427
|
5.0 |
MEDIUM
|
metaproducts
|
offline_explorer
|
MetaProducts Offline Explorer 1.2 and earlier allows remote attackers to access arbitrary files via a .. (dot dot) attack.
|
NVD-CWE-Other
|
CVE-2000-0436
|
2008-09-11 04:04 |
2000-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346428
|
10.0 |
HIGH
|
network_associates
|
gauntlet_firewall webshield webshield_e-ppliance
|
Buffer overflow in the CyberPatrol daemon "cyberdaemon" used in gauntlet and WebShield allows remote attackers to cause a denial of service or execute arbitrary commands.
|
NVD-CWE-Other
|
CVE-2000-0437
|
2008-09-11 04:04 |
2000-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346429
|
7.2 |
HIGH
|
caldera slackware suse turbolinux
|
openlinux slackware_linux suse_linux turbolinux
|
Buffer overflow in fdmount on Linux systems allows local users in the "floppy" group to execute arbitrary commands via a long mountpoint parameter.
|
NVD-CWE-Other
|
CVE-2000-0438
|
2008-09-11 04:04 |
2000-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346430
|
5.0 |
MEDIUM
|
freebsd netbsd
|
freebsd netbsd
|
NetBSD 1.4.2 and earlier allows remote attackers to cause a denial of service by sending a packet with an unaligned IP timestamp option.
|
NVD-CWE-Other
|
CVE-2000-0440
|
2008-09-11 04:04 |
2000-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346431
|
5.0 |
MEDIUM
|
ibm
|
aix
|
Vulnerability in AIX 3.2.x and 4.x allows local users to gain write access to files on locally or remotely mounted AIX filesystems.
|
NVD-CWE-Other
|
CVE-2000-0441
|
2008-09-11 04:04 |
2000-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346432
|
7.5 |
HIGH
|
qualcomm sun
|
qpopper cobalt_raq_2 cobalt_raq_3i
|
Qpopper 2.53 and earlier allows local users to gain privileges via a formatting string in the From: header, which is processed by the euidl command.
|
NVD-CWE-Other
|
CVE-2000-0442
|
2008-09-11 04:04 |
2000-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346433
|
7.5 |
HIGH
|
hp
|
jetadmin
|
The web interface server in HP Web JetAdmin 5.6 allows remote attackers to read arbitrary files via a .. (dot dot) attack.
|
NVD-CWE-Other
|
CVE-2000-0443
|
2008-09-11 04:04 |
2000-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346434
|
5.0 |
MEDIUM
|
hp
|
jetadmin
|
HP Web JetAdmin 6.0 allows remote attackers to cause a denial of service via a malformed URL to port 8000.
|
NVD-CWE-Other
|
CVE-2000-0444
|
2008-09-11 04:04 |
2000-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346435
|
2.1 |
LOW
|
pgp
|
pgp
|
The pgpk command in PGP 5.x on Unix systems uses an insufficiently random data source for non-interactive key pair generation, which may produce predictable keys.
|
NVD-CWE-Other
|
CVE-2000-0445
|
2008-09-11 04:04 |
2000-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346436
|
7.5 |
HIGH
|
marty_bochane
|
mdbms
|
Buffer overflow in MDBMS database server allows remote attackers to execute arbitrary commands via a long string.
|
NVD-CWE-Other
|
CVE-2000-0446
|
2008-09-11 04:04 |
2000-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346437
|
10.0 |
HIGH
|
omnis
|
studio
|
Omnis Studio 2.4 uses weak encryption (trivial encoding) for encrypting database fields.
|
NVD-CWE-Other
|
CVE-2000-0449
|
2008-09-11 04:04 |
2000-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346438
|
7.5 |
HIGH
|
sean_macguire
|
big_brother
|
Vulnerability in bbd server in Big Brother System and Network Monitor allows an attacker to execute arbitrary commands.
|
NVD-CWE-Other
|
CVE-2000-0450
|
2008-09-11 04:04 |
2000-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346439
|
5.0 |
MEDIUM
|
intel
|
express_8100
|
The Intel express 8100 ISDN router allows remote attackers to cause a denial of service via oversized or fragmented ICMP packets.
|
NVD-CWE-Other
|
CVE-2000-0451
|
2008-09-11 04:04 |
2000-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346440
|
5.0 |
MEDIUM
|
lotus
|
domino_enterprise_server domino_mail_server
|
Buffer overflow in the ESMTP service of Lotus Domino Server 5.0.1 allows remote attackers to cause a denial of service via a long MAIL FROM command.
|
NVD-CWE-Other
|
CVE-2000-0452
|
2008-09-11 04:04 |
2000-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346441
|
5.0 |
MEDIUM
|
xfree86_project
|
x11r6
|
XFree86 3.3.x and 4.0 allows a user to cause a denial of service via a negative counter value in a malformed TCP packet that is sent to port 6000.
|
NVD-CWE-Other
|
CVE-2000-0453
|
2008-09-11 04:04 |
2000-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346442
|
7.2 |
HIGH
|
mandrakesoft
|
mandrake_linux
|
Buffer overflow in Linux cdrecord allows local users to gain privileges via the dev parameter.
|
NVD-CWE-Other
|
CVE-2000-0454
|
2008-09-11 04:04 |
2000-05-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346443
|
2.1 |
LOW
|
david_bagley
|
xlock
|
Buffer overflow in xlockmore xlock program version 4.16 and earlier allows local users to read sensitive data from memory via a long -mode option.
|
NVD-CWE-Other
|
CVE-2000-0455
|
2008-09-11 04:04 |
2000-05-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346444
|
2.1 |
LOW
|
netbsd
|
netbsd
|
NetBSD 1.4.2 and earlier allows local users to cause a denial of service by repeatedly running certain system calls in the kernel which do not yield the CPU, aka "cpu-hog".
|
NVD-CWE-Other
|
CVE-2000-0456
|
2008-09-11 04:04 |
2000-05-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346445
|
7.2 |
HIGH
|
kde
|
kde
|
Buffer overflow in KDE kdesud on Linux allows local uses to gain privileges via a long DISPLAY environmental variable.
|
NVD-CWE-Other
|
CVE-2000-0460
|
2008-09-11 04:04 |
2000-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346446
|
2.1 |
LOW
|
freebsd netbsd
|
freebsd netbsd
|
The undocumented semconfig system call in BSD freezes the state of semaphores, which allows local users to cause a denial of service of the semaphore system by using the semconfig call.
|
NVD-CWE-Other
|
CVE-2000-0461
|
2008-09-11 04:04 |
2000-05-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346447
|
2.1 |
LOW
|
netbsd
|
netbsd
|
ftpd in NetBSD 1.4.2 does not properly parse entries in /etc/ftpchroot and does not chroot the specified users, which allows those users to access other files outside of their home directory.
|
NVD-CWE-Other
|
CVE-2000-0462
|
2008-09-11 04:04 |
2000-05-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346448
|
5.0 |
MEDIUM
|
be
|
beos
|
BeOS 5.0 allows remote attackers to cause a denial of service via fragmented TCP packets.
|
NVD-CWE-Other
|
CVE-2000-0463
|
2008-09-11 04:04 |
2000-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346449
|
7.2 |
HIGH
|
sam_lantinga
|
splitvt
|
Buffer overflow in Linux splitvt 1.6.3 and earlier allows local users to gain root privileges via a long password in the screen locking function.
|
NVD-CWE-Other
|
CVE-2000-0467
|
2008-09-11 04:04 |
2000-06-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346450
|
7.5 |
HIGH
|
analogx
|
simpleserver_www
|
Buffer overflow in AnalogX SimpleServer 1.05 allows a remote attacker to cause a denial of service via a long GET request for a program in the cgi-bin directory.
|
NVD-CWE-Other
|
CVE-2000-0473
|
2008-09-11 04:04 |
2000-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|