255411
|
- |
|
craig_dansie
|
dansie_shopping_cart
|
The dansie shopping cart application cart.pl allows remote attackers to obtain the shopping cart database and configuration information via a URL that references either the env, db, or vars form vari…
|
NVD-CWE-Other
|
CVE-2000-0254
|
2018-05-3 10:29 |
2000-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255412
|
- |
|
aps_filter_development_team
|
apsfilter
|
The apsfilter software in the FreeBSD ports package does not properly read user filter configurations, which allows local users to execute commands as the lpd user.
|
NVD-CWE-Other
|
CVE-2000-0534
|
2018-05-3 10:29 |
2000-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255413
|
- |
|
caldera mandrakesoft redhat
|
openlinux mandrake_linux linux
|
makewhatis in Linux man package allows local users to overwrite files via a symlink attack.
|
NVD-CWE-Other
|
CVE-2000-0566
|
2018-05-3 10:29 |
2000-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255414
|
- |
|
debian freebsd
|
debian_linux freebsd
|
Buffer overflow in Canna input system allows remote attackers to execute arbitrary commands via an SR_INIT command with a long user name or group name.
|
NVD-CWE-Other
|
CVE-2000-0584
|
2018-05-3 10:29 |
2000-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255415
|
- |
|
isc
|
dhcp_client
|
ISC DHCP client program dhclient allows remote attackers to execute arbitrary commands via shell metacharacters.
|
NVD-CWE-Other
|
CVE-2000-0585
|
2018-05-3 10:29 |
2000-06-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255416
|
- |
|
conectiva debian redhat suse trustix
|
linux debian_linux suse_linux secure_linux
|
rpc.statd in the nfs-utils package in various Linux distributions does not properly cleanse untrusted format strings, which allows remote attackers to gain root privileges.
|
NVD-CWE-Other
|
CVE-2000-0666
|
2018-05-3 10:29 |
2000-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255417
|
- |
|
cvsweb_developer
|
cvsweb
|
The cvsweb CGI script in CVSWeb 1.80 allows remote attackers with write access to a CVS repository to execute arbitrary commands via shell metacharacters.
|
NVD-CWE-Other
|
CVE-2000-0670
|
2018-05-3 10:29 |
2000-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255418
|
- |
|
cgi_script_center
|
auction_weaver
|
Auction Weaver 1.0 through 1.04 does not properly validate the names of form fields, which allows remote attackers to delete arbitrary files and directories via a .. (dot dot) attack.
|
NVD-CWE-Other
|
CVE-2000-0810
|
2018-05-3 10:29 |
2000-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255419
|
- |
|
cgi_script_center
|
auction_weaver
|
Auction Weaver 1.0 through 1.04 allows remote attackers to read arbitrary files via a .. (dot dot) attack on the username or bidfile form fields.
|
NVD-CWE-Other
|
CVE-2000-0811
|
2018-05-3 10:29 |
2000-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255420
|
- |
|
debian mandrakesoft redhat slackware trustix
|
debian_linux mandrake_linux linux slackware_linux secure_linux
|
Kernel logging daemon (klogd) in Linux does not properly cleanse user-injected format strings, which allows local users to gain root privileges by triggering malformed kernel messages.
|
NVD-CWE-Other
|
CVE-2000-0867
|
2018-05-3 10:29 |
2000-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|