CVE-2000-0 to CVE-2000-999
436 CVEs with public proof-of-concept exploits.
- CVE-2000-00011 PoCRealMedia server allows remote attackers to cause a denial of service via a long ramgen request.
- CVE-2000-00024 PoCsBuffer overflow in ZBServer Pro 1.50 allows remote attackers to execute commands via a long GET request.
- CVE-2000-00091 PoCThe bna_pass program in Optivity NETarchitect uses the PATH environmental variable for finding the "rm" program, which allows local users…
- CVE-2000-00101 PoCWebWho+ whois.cgi program allows remote attackers to execute commands via shell metacharacters in the TLD parameter.
- CVE-2000-00111 PoCBuffer overflow in AnalogX SimpleServer:WWW HTTP server allows remote attackers to execute commands via a long GET request.
- CVE-2000-00121 PoCBuffer overflow in w3-msql CGI program in miniSQL package allows remote attackers to execute commands.
- CVE-2000-00131 PoCIRIX soundplayer program allows local users to gain privileges by including shell metacharacters in a .wav file, which is executed via the…
- CVE-2000-00141 PoCDenial of service in Savant web server via a null character in the requested URL.
- CVE-2000-00151 PoCCascadeView TFTP server allows local users to gain privileges via a symlink attack.
- CVE-2000-00161 PoCBuffer overflow in Internet Anywhere POP3 Mail Server allows remote attackers to cause a denial of service or execute commands via a long…
- CVE-2000-00171 PoCBuffer overflow in Linux linuxconf package allows remote attackers to gain root privileges via a long parameter.
- CVE-2000-00181 PoCwmmon in FreeBSD allows local users to gain privileges via the .wmmonrc configuration file.
- CVE-2000-00261 PoCBuffer overflow in UnixWare i2odialogd daemon allows remote attackers to gain root access via a long username/password authorization string.
- CVE-2000-00272 PoCsIBM Network Station Manager NetStation allows local users to gain privileges via a symlink attack.
- CVE-2000-00281 PoCInternet Explorer 5.0 and 5.01 allows remote attackers to bypass the cross frame security policy and read files via the…
- CVE-2000-00321 PoCSolaris dmi_cmd allows local users to crash the dmispd daemon by adding a malformed file to the /var/dmi/db database.
- CVE-2000-00351 PoCresend command in Majordomo allows local users to gain privileges via shell metacharacters.
- CVE-2000-00372 PoCsMajordomo wrapper allows local users to gain privileges by specifying an alternate configuration file.
- CVE-2000-00381 PoCglFtpD includes a default glftpd user account with a default password and a UID of 0.
- CVE-2000-00391 PoCAltaVista search engine allows remote attackers to read files above the document root via a .. (dot dot) in the query.cgi CGI program.
- CVE-2000-00431 PoCBuffer overflow in CamShot WebCam HTTP server allows remote attackers to execute commands via a long GET request.
- CVE-2000-00451 PoCMySQL allows local users to modify passwords for arbitrary MySQL users via the GRANT privilege.
- CVE-2000-00461 PoCBuffer overflow in ICQ 99b 1.1.1.1 client allows remote attackers to execute commands via a malformed URL within an ICQ message.
- CVE-2000-00481 PoCget_it program in Corel Linux Update allows local users to gain root access by specifying an alternate PATH for the cp program.
- CVE-2000-00491 PoCBuffer overflow in Winamp client allows remote attackers to execute commands via a long entry in a .pls file.
- CVE-2000-00522 PoCsRed Hat userhelper program in the usermode package allows local users to gain root access via PAM and a .. (dot dot) attack.
- CVE-2000-00531 PoCMicrosoft Commercial Internet System (MCIS) IMAP server allows remote attackers to cause a denial of service via a malformed IMAP request.
- CVE-2000-00541 PoCsearch.cgi in the SolutionScripts Home Free package allows remote attackers to view directories via a .. (dot dot) attack.
- CVE-2000-00561 PoCIMail IMONITOR status.cgi CGI script allows remote attackers to cause a denial of service with many calls to status.cgi.
- CVE-2000-00571 PoCCold Fusion CFCACHE tag places temporary cache files within the web document root, allowing remote attackers to obtain sensitive system…
- CVE-2000-00591 PoCPHP3 with safe_mode enabled does not properly filter shell metacharacters from commands that are executed by popen, which could allow…
- CVE-2000-00611 PoCInternet Explorer 5 does not modify the security zone for a document that is being loaded into a window until after the document has been…
- CVE-2000-00651 PoCBuffer overflow in InetServ 3.0 allows remote attackers to execute commands via a long GET request.
- CVE-2000-00731 PoCBuffer overflow in Microsoft Rich Text Format (RTF) reader allows attackers to cause a denial of service via a malformed control word.
- CVE-2000-00743 PoCsPowerScripts PlusMail CGI program allows remote attackers to execute commands via a password file with improper permissions.
- CVE-2000-00751 PoCSuper Mail Transfer Package (SMTP), later called MsgCore, has a memory leak which allows remote attackers to cause a denial of service by…
- CVE-2000-00771 PoCThe October 1998 version of the HP-UX aserver program allows local users to gain privileges by specifying an alternate PATH which aserver…
- CVE-2000-00911 PoCBuffer overflow in vchkpw/vpopmail POP authentication package allows remote attackers to gain root privileges via a long username or…
- CVE-2000-00941 PoCprocfs in BSD systems allows local users to gain root privileges by modifying the /proc/pid/mem interface via a modified file descriptor…
- CVE-2000-00961 PoCBuffer overflow in qpopper 3.0 beta versions allows local users to gain privileges via a long LIST command.
- CVE-2000-00971 PoCThe WebHits ISAPI filter in Microsoft Index Server allows remote attackers to read arbitrary files, aka the "Malformed Hit-Highlighting…
- CVE-2000-01001 PoCThe SMS Remote Control program is installed with insecure permissions, which allows local users to gain privileges by modifying or…
- CVE-2000-01051 PoCOutlook Express 5.01 and Internet Explorer 5.01 allow remote attackers to view a user's email messages via a script that accesses a…
- CVE-2000-01071 PoCLinux apcd program allows local attackers to modify arbitrary files via a symlink attack.
- CVE-2000-01091 PoCThe mcsp Client Site Processor system (MultiCSP) in Standard and Poor's ComStock is installed with several accounts that have no passwords…
- CVE-2000-01144 PoCsFrontpage Server Extensions allows remote attackers to determine the name of the anonymous account via an RPC POST request to shtml.dll in…
- CVE-2000-01161 PoCFirewall-1 does not properly filter script tags, which allows remote attackers to bypass the "Strip Script Tags" restriction by including…
- CVE-2000-01181 PoCThe Red Hat Linux su program does not log failed password guesses if the su process is killed before it times out, which allows local…
- CVE-2000-01191 PoCThe default configurations for McAfee Virus Scan and Norton Anti-Virus virus checkers do not check files in the RECYCLED folder that is…
- CVE-2000-01211 PoCThe Recycle Bin utility in Windows NT and Windows 2000 allows local users to read or modify files by creating a subdirectory with the…
- CVE-2000-01251 PoCwwwthreads does not properly cleanse numeric data or table names that are passed to SQL queries, which allows remote attackers to gain…
- CVE-2000-01261 PoCSample Internet Data Query (IDQ) scripts in IIS 3 and 4 allow remote attackers to read files via a .. (dot dot) attack.
- CVE-2000-01281 PoCThe Finger Server 0.82 allows remote attackers to execute commands via shell metacharacters.
- CVE-2000-01291 PoCBuffer overflow in the SHGetPathFromIDList function of the Serv-U FTP server allows attackers to cause a denial of service by performing a…
- CVE-2000-01311 PoCBuffer overflow in War FTPd 1.6x allows users to cause a denial of service via long MKD and CWD commands.
- CVE-2000-01321 PoCMicrosoft Java Virtual Machine allows remote attackers to read files via the getSystemResourceAsStream function.
- CVE-2000-01331 PoCBuffer overflows in Tiny FTPd 0.52 beta3 FTP server allows users to execute commands via the STOR, RNTO, MKD, XMKD, RMD, XRMD, APPE, SIZE,…
- CVE-2000-01361 PoCThe Cart32 shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.
- CVE-2000-01391 PoCInternet Anywhere POP3 Mail Server allows local users to cause a denial of service via a malformed RETR command.
- CVE-2000-01421 PoCThe authentication protocol in Timbuktu Pro 2.0b650 allows remote attackers to cause a denial of service via connections to port 407 and…
- CVE-2000-01461 PoCThe Java Server in the Novell GroupWise Web Access Enhancement Pack allows remote attackers to cause a denial of service via a long URL to…
- CVE-2000-01491 PoCZeus web server allows remote attackers to view the source code for CGI programs via a null character (%00) at the end of a URL.
- CVE-2000-01521 PoCRemote attackers can cause a denial of service in Novell BorderManager 3.5 by pressing the enter key in a telnet connection to port 2000.
- CVE-2000-01541 PoCThe ARCserve agent in UnixWare allows local attackers to modify arbitrary files via a symlink attack.
- CVE-2000-01551 PoCWindows NT Autorun executes the autorun.inf file on non-removable media, which allows local attackers to specify an alternate program to…
- CVE-2000-01561 PoCInternet Explorer 4.x and 5.x allows remote web servers to access files on the client that are outside of its security domain, aka the…
- CVE-2000-01631 PoCasmon and ascpu in FreeBSD allow local users to gain root privileges via a configuration file.
- CVE-2000-01651 PoCThe Delegate application proxy has several buffer overflows which allow a remote attacker to execute commands.
- CVE-2000-01661 PoCBuffer overflow in the InterAccess telnet server TelnetD allows remote attackers to execute commands via a long login name.
- CVE-2000-01671 PoCIIS Inetinfo.exe allows local users to cause a denial of service by creating a mail file with a long name and a .txt.eml extension in the…
- CVE-2000-01681 PoCMicrosoft Windows 9x operating systems allow an attacker to cause a denial of service via a pathname that includes file device names, aka…
- CVE-2000-01691 PoCBatch files in the Oracle web listener ows-bin directory allow remote attackers to execute commands via a malformed URL that includes '?&'.
- CVE-2000-01704 PoCsBuffer overflow in the man program in Linux allows local users to gain privileges via the MANPAGER environmental variable.
- CVE-2000-01711 PoCatsadc in the atsar package for Linux does not properly check the permissions of an output file, which allows local users to gain root…
- CVE-2000-01721 PoCThe mtr program only uses a seteuid call when attempting to drop privileges, which could allow local users to gain root privileges.
- CVE-2000-01741 PoCStarOffice StarScheduler web server allows remote attackers to read arbitrary files via a .. (dot dot) attack.
- CVE-2000-01771 PoCDNSTools CGI applications allow remote attackers to execute arbitrary commands via shell metacharacters.
- CVE-2000-01791 PoCHP OpenView OmniBack 2.55 allows remote attackers to cause a denial of service via a large number of connections to port 5555.
- CVE-2000-01801 PoCSojourn search engine allows remote attackers to read arbitrary files via a .. (dot dot) attack.
- CVE-2000-01831 PoCBuffer overflow in ircII 4.4 IRC client allows remote attackers to execute commands via the DCC chat capability.
- CVE-2000-01851 PoCRealMedia RealServer reveals the real IP address of a Real Server, even if the address is supposed to be private.
- CVE-2000-01872 PoCsEZShopper 3.0 loadpage.cgi CGI script allows remote attackers to read arbitrary files via a .. (dot dot) attack or execute commands via…
- CVE-2000-01911 PoCAxis StorPoint CD allows remote attackers to access administrator URLs without authentication via a .. (dot dot) attack.
- CVE-2000-01921 PoCThe default installation of Caldera OpenLinux 2.3 includes the CGI program rpm_query, which allows remote attackers to determine what…
- CVE-2000-01931 PoCThe default configuration of Dosemu in Corel Linux 1.0 allows local users to execute the system.com program and gain privileges.
- CVE-2000-01941 PoCbuildxconf in Corel Linux allows local users to modify or create arbitrary files via the -x or -f parameters.
- CVE-2000-01951 PoCsetxconf in Corel Linux allows local users to gain root access via the -T parameter, which executes the user's .xserverrc file.
- CVE-2000-01982 PoCsBuffer overflow in POP3 and IMAP servers in the MERCUR mail server suite allows remote attackers to cause a denial of service.
- CVE-2000-02001 PoCBuffer overflow in Microsoft Clip Art Gallery allows remote attackers to cause a denial of service or execute commands via a malformed CIL…
- CVE-2000-02041 PoCThe Trend Micro OfficeScan client allows remote attackers to cause a denial of service by making 5 connections to port 12345, which raises…
- CVE-2000-02061 PoCThe installation of Oracle 8.1.5.x on Linux follows symlinks and creates the orainstRoot.sh file with world-writeable permissions, which…
- CVE-2000-02071 PoCSGI InfoSearch CGI program infosrch.cgi allows remote attackers to execute commands via shell metacharacters.
- CVE-2000-02081 PoCThe htdig (ht://Dig) CGI program htsearch allows remote attackers to read arbitrary files by enclosing the file name with backticks (`) in…
- CVE-2000-02101 PoCThe lit program in Sun Flex License Manager (FlexLM) follows symlinks, which allows local users to modify arbitrary files.
- CVE-2000-02111 PoCThe Windows Media server allows remote attackers to cause a denial of service via a series of client handshake packets that are sent in an…
- CVE-2000-02121 PoCInterAccess TelnetD Server 4.0 allows remote attackers to conduct a denial of service via malformed terminal client configuration…
- CVE-2000-02131 PoCThe Sambar server includes batch files ECHO.BAT and HELLO.BAT in the CGI directory, which allow remote attackers to execute commands via…
- CVE-2000-02141 PoCFTP Explorer uses weak encryption for storing the username, password, and profile of FTP sites.
- CVE-2000-02181 PoCBuffer overflow in Linux mount and umount allows local users to gain root privileges via a long relative pathname.
- CVE-2000-02191 PoCRed Hat 6.0 allows local users to gain root access by booting single user and hitting ^C at the password prompt.
- CVE-2000-02211 PoCThe Nautica Marlin bridge allows remote attackers to cause a denial of service via a zero length UDP packet to the SNMP port.
- CVE-2000-02232 PoCsBuffer overflow in the wmcdplay CD player program for the WindowMaker desktop allows local users to gain root privileges via a long…
- CVE-2000-02241 PoCARCserve agent in SCO UnixWare 7.x allows local attackers to gain root privileges via a symlink attack.
- CVE-2000-02271 PoCThe Linux 2.2.x kernel does not restrict the number of Unix domain sockets as defined by the wmem_max parameter, which allows local users…
- CVE-2000-02291 PoCgpm-root in the gpm package does not properly drop privileges, which allows local users to gain privileges by starting a utility from…
- CVE-2000-02302 PoCsBuffer overflow in imwheel allows local users to gain root privileges via the imwheel-solo script and a long HOME environmental variable.
- CVE-2000-02311 PoCLinux kreatecd trusts a user-supplied path that is used to find the cdrecord program, allowing local users to gain root privileges.
- CVE-2000-02321 PoCMicrosoft TCP/IP Printing Services, aka Print Services for Unix, allows an attacker to cause a denial of service via a malformed TCP/IP…
- CVE-2000-02341 PoCThe default configuration of Cobalt RaQ2 and RaQ3 as specified in access.conf allows remote attackers to view sensitive contents of a…
- CVE-2000-02361 PoCNetscape Enterprise Server with Directory Indexing enabled allows remote attackers to list server directories via web publishing tags such…
- CVE-2000-02391 PoCBuffer overflow in the MERCUR WebView WebMail server allows remote attackers to cause a denial of service via a long mail_user parameter…
- CVE-2000-02401 PoCvqSoft vqServer program allows remote attackers to read arbitrary files via a /........../ in the URL, a variation of a .. (dot dot) attack.
- CVE-2000-02421 PoCWindMail allows remote attackers to read arbitrary files or execute commands via shell metacharacters.
- CVE-2000-02431 PoCAnalogX SimpleServer:WWW HTTP server 1.03 allows remote attackers to cause a denial of service via a short GET request to cgi-bin.
- CVE-2000-02441 PoCThe Citrix ICA (Independent Computing Architecture) protocol uses weak encryption (XOR) for user authentication.
- CVE-2000-02451 PoCVulnerability in SGI IRIX objectserver daemon allows remote attackers to create user accounts.
- CVE-2000-02461 PoCIIS 4.0 and 5.0 does not properly perform ISAPI extension processing if a virtual directory is mapped to a UNC share, which allows remote…
- CVE-2000-02483 PoCsThe web GUI for the Linux Virtual Server (LVS) software in the Red Hat Linux Piranha package has a backdoor password that allows remote…
- CVE-2000-02501 PoCThe crypt function in QNX uses weak encryption, which allows local users to decrypt passwords.
- CVE-2000-02541 PoCThe dansie shopping cart application cart.pl allows remote attackers to obtain the shopping cart database and configuration information…
- CVE-2000-02561 PoCBuffer overflows in htimage.exe and Imagemap.exe in FrontPage 97 and 98 Server Extensions allow a user to conduct activities that are not…
- CVE-2000-02571 PoCBuffer overflow in the NetWare remote web administration utility allows remote attackers to cause a denial of service or execute commands…
- CVE-2000-02602 PoCsBuffer overflow in the dvwssr.dll DLL in Microsoft Visual Interdev 1.0 allows users to cause a denial of service or execute commands, aka…
- CVE-2000-02621 PoCThe AVM KEN! ISDN Proxy server allows remote attackers to cause a denial of service via a malformed request.
- CVE-2000-02631 PoCThe X font server xfs in Red Hat Linux 6.x allows an attacker to cause a denial of service via a malformed request.
- CVE-2000-02641 PoCPanda Security 3.0 with registry editing disabled allows users to edit the registry and gain privileges by directly executing a .reg file…
- CVE-2000-02721 PoCRealNetworks RealServer allows remote attackers to cause a denial of service by sending malformed input to the server at port 7070.
- CVE-2000-02741 PoCThe Linux trustees kernel patch allows attackers to cause a denial of service by accessing a file or directory with a long name.
- CVE-2000-02752 PoCsCRYPTOCard CryptoAdmin for PalmOS uses weak encryption to store a user's PIN number, which allows an attacker with access to the .PDB file…
- CVE-2000-02761 PoCBeOS 4.5 and 5.0 allow local users to cause a denial of service via malformed direct system calls using interrupt 37.
- CVE-2000-02781 PoCThe SalesLogix Eviewer allows remote attackers to cause a denial of service by accessing the URL for the slxweb.dll administration…
- CVE-2000-02791 PoCBeOS allows remote attackers to cause a denial of service via malformed packets whose length field is less than the length of the headers.
- CVE-2000-02801 PoCBuffer overflow in the RealNetworks RealPlayer client versions 6 and 7 allows remote attackers to cause a denial of service via a long…
- CVE-2000-02821 PoCTalentSoft webpsvr daemon in the Web+ shopping cart application allows remote attackers to read arbitrary files via a .. (dot dot) attack…
- CVE-2000-02849 PoCsBuffer overflow in University of Washington imapd version 4.7 allows users with a valid account to execute commands via LIST or other…
- CVE-2000-02861 PoCX fontserver xfs allows local users to cause a denial of service via malformed input to the server.
- CVE-2000-02871 PoCThe BizDB CGI script bizdb-search.cgi allows remote attackers to execute arbitrary commands via shell metacharacters in the dbname…
- CVE-2000-02931 PoCaaa_base in SuSE Linux 6.3, and cron.daily in earlier versions, allow local users to delete arbitrary files by creating files whose names…
- CVE-2000-02951 PoCBuffer overflow in LCDproc allows remote attackers to gain root privileges via the screen_add command.
- CVE-2000-02991 PoCBuffer overflow in WebObjects.exe in the WebObjects Developer 4.5 package allows remote attackers to cause a denial of service via an HTTP…
- CVE-2000-03001 PoCThe default encryption method of PcAnywhere 9.x uses weak encryption, which allows remote attackers to sniff and decrypt PcAnywhere or NT…
- CVE-2000-03021 PoCMicrosoft Index Server allows remote attackers to view the source code of ASP files by appending a %20 to the filename in the…
- CVE-2000-03051 PoCWindows 95, Windows 98, Windows 2000, Windows NT 4.0, and Terminal Server systems allow a remote attacker to cause a denial of service by…
- CVE-2000-03062 PoCsBuffer overflow in calserver in SCO OpenServer allows remote attackers to gain root access via a long message.
- CVE-2000-03162 PoCsBuffer overflow in Solaris 7 lp allows local users to gain root privileges via a long -d option.
- CVE-2000-03176 PoCsBuffer overflow in Solaris 7 lpset allows local users to gain root privileges via a long -r option.
- CVE-2000-03223 PoCsThe passwd.php3 CGI script in the Red Hat Piranha Virtual Server Package allows local users to execute arbitrary commands via shell…
- CVE-2000-03241 PoCpcAnywhere 8.x and 9.0 allows remote attackers to cause a denial of service via a TCP SYN scan, e.g. by nmap.
- CVE-2000-03251 PoCThe Microsoft Jet database engine allows an attacker to execute commands via a database query, aka the "VBA Shell" vulnerability.
- CVE-2000-03291 PoCA Microsoft ActiveX control allows a remote attacker to execute a malicious cabinet file via an attachment and an embedded script in an…
- CVE-2000-03302 PoCsThe networking software in Windows 95 and Windows 98 allows remote attackers to execute commands via a long file name string, aka the…
- CVE-2000-03321 PoCUltraBoard.pl or UltraBoard.cgi CGI scripts in UltraBoard 1.6 allows remote attackers to read arbitrary files via a pathname string that…
- CVE-2000-03332 PoCstcpdump, Ethereal, and other sniffer packages allow remote attackers to cause a denial of service via malformed DNS packets in which a…
- CVE-2000-03361 PoCLinux OpenLDAP server allows local users to modify arbitrary files via a symlink attack.
- CVE-2000-03371 PoCBuffer overflow in Xsun X server in Solaris 7 allows local users to gain root privileges via a long -dev parameter.
- CVE-2000-03381 PoCConcurrent Versions Software (CVS) uses predictable temporary file names for locking, which allows local users to cause a denial of…
- CVE-2000-03391 PoCZoneAlarm 2.1.10 and earlier does not filter UDP packets with a source port of 67, which allows remote attackers to bypass the firewall…
- CVE-2000-03401 PoCBuffer overflow in Gnomelib in SuSE Linux 6.3 allows local users to execute arbitrary commands via the DISPLAY environmental variable.
- CVE-2000-03411 PoCATRIUM Cassandra NNTP Server 1.10 allows remote attackers to cause a denial of service via a long login name.
- CVE-2000-03424 PoCsEudora 4.x allows remote attackers to bypass the user warning for executable attachments such as .exe, .com, and .bat by using a .lnk file…
- CVE-2000-03433 PoCsBuffer overflow in Sniffit 0.3.x with the -L logging option enabled allows remote attackers to execute arbitrary commands via a long MAIL…
- CVE-2000-03471 PoCWindows 95 and Windows 98 allow a remote attacker to cause a denial of service via a NetBIOS session request packet with a NULL source name.
- CVE-2000-03501 PoCA debugging feature in NetworkICE ICEcap 2.0.23 and earlier is enabled, which allows a remote attacker to bypass the weak authentication…
- CVE-2000-03621 PoCBuffer overflows in Linux cdwtools 093 and earlier allows local users to gain root privileges.
- CVE-2000-03671 PoCVulnerability in eterm 0.8.8 in Debian GNU/Linux allows an attacker to gain root privileges.
- CVE-2000-03772 PoCsThe Remote Registry server in Windows NT 4.0 allows local authenticated users to cause a denial of service via a malformed request, which…
- CVE-2000-03781 PoCThe pam_console PAM module in Linux systems performs a chown on various devices upon a user login, but an open file descriptor for those…
- CVE-2000-03791 PoCThe Netopia R9100 router does not prevent authenticated users from modifying SNMP tables, even if the administrator has configured it to…
- CVE-2000-03802 PoCsThe IOS HTTP service in Cisco routers and switches running IOS 11.1 through 12.1 allows remote attackers to cause a denial of service by…
- CVE-2000-03811 PoCThe Gossamer Threads DBMan db.cgi CGI script allows remote attackers to view environmental variables and setup information by referencing…
- CVE-2000-03841 PoCNetStructure 7110 and 7180 have undocumented accounts (servnow, root, and wizard) whose passwords are easily guessable from the…
- CVE-2000-03893 PoCsBuffer overflow in krb_rd_req function in Kerberos 4 and 5 allows remote attackers to gain root privileges.
- CVE-2000-03931 PoCThe KDE kscd program does not drop privileges when executing a program specified in a user's SHELL environmental variable, which allows…
- CVE-2000-03942 PoCsNetProwler 3.0 allows remote attackers to cause a denial of service by sending malformed IP packets that trigger NetProwler's…
- CVE-2000-03951 PoCBuffer overflow in CProxy 3.3 allows remote users to cause a denial of service via a long HTTP request.
- CVE-2000-03961 PoCThe add.exe program in the Carello shopping cart software allows remote attackers to duplicate files on the server, which could allow the…
- CVE-2000-03971 PoCThe EMURL web-based email account software encodes predictable identifiers in user session URLs, which allows a remote attacker to access…
- CVE-2000-04001 PoCThe Microsoft Active Movie ActiveX Control in Internet Explorer 5 does not restrict which file types can be downloaded, which allows an…
- CVE-2000-04023 PoCsThe Mixed Mode authentication capability in Microsoft SQL Server 7.0 stores the System Administrator (sa) account in plaintext in a log…
- CVE-2000-04053 PoCsBuffer overflow in L0pht AntiSniff allows remote attackers to execute arbitrary commands via a malformed DNS response packet.
- CVE-2000-04073 PoCsBuffer overflow in Solaris netpr program allows local users to execute arbitrary commands via a long -p option.
- CVE-2000-04081 PoCIIS 4.05 and 5.0 allow remote attackers to cause a denial of service via a long, complex URL that appears to contain a large number of…
- CVE-2000-04091 PoCNetscape 4.73 and earlier follows symlinks when it imports a new certificate, which allows local users to overwrite files of the user…
- CVE-2000-04111 PoCMatt Wright's FormMail CGI script allows remote attackers to obtain environmental variables via the env_report parameter.
- CVE-2000-04121 PoCThe gnapster and knapster clients for Napster do not properly restrict access only to MP3 files, which allows remote attackers to read…
- CVE-2000-04131 PoCThe shtml.exe program in the FrontPage extensions package of IIS 4.0 and 5.0 allows remote attackers to determine the physical path of…
- CVE-2000-04161 PoCNTMail 5.x allows network users to bypass the NTMail proxy restrictions by redirecting their requests to NTMail's web configuration server.
- CVE-2000-04171 PoCThe HTTP administration interface to the Cayman 3220-H DSL router allows remote attackers to cause a denial of service via a long username…
- CVE-2000-04181 PoCThe Cayman 3220-H DSL router allows remote attackers to cause a denial of service via oversized ICMP echo (ping) requests.
- CVE-2000-04231 PoCBuffer overflow in Netwin DNEWSWEB CGI program allows remote attackers to execute arbitrary commands via long parameters such as group,…
- CVE-2000-04241 PoCThe CGI counter 4.0.7 by George Burgyan allows remote attackers to execute arbitrary commands via shell metacharacters.
- CVE-2000-04251 PoCBuffer overflow in the Web Archives component of L-Soft LISTSERV 1.8 allows remote attackers to execute arbitrary commands.
- CVE-2000-04261 PoCUltraBoard 1.6 and other versions allow remote attackers to cause a denial of service by referencing UltraBoard in the Session parameter,…
- CVE-2000-04271 PoCThe Aladdin Knowledge Systems eToken device allows attackers with physical access to the device to obtain sensitive information without…
- CVE-2000-04291 PoCA backdoor password in Cart32 3.0 and earlier allows remote attackers to execute arbitrary commands.
- CVE-2000-04301 PoCCart32 allows remote attackers to access sensitive debugging information by appending /expdate to the URL request.
- CVE-2000-04321 PoCThe calender.pl and the calendar_admin.pl calendar scripts by Matt Kruse allow remote attackers to execute arbitrary commands via shell…
- CVE-2000-04361 PoCMetaProducts Offline Explorer 1.2 and earlier allows remote attackers to access arbitrary files via a .. (dot dot) attack.
- CVE-2000-04371 PoCBuffer overflow in the CyberPatrol daemon "cyberdaemon" used in gauntlet and WebShield allows remote attackers to cause a denial of…
- CVE-2000-04383 PoCsBuffer overflow in fdmount on Linux systems allows local users in the "floppy" group to execute arbitrary commands via a long mountpoint…
- CVE-2000-04401 PoCNetBSD 1.4.2 and earlier allows remote attackers to cause a denial of service by sending a packet with an unaligned IP timestamp option.
- CVE-2000-04421 PoCQpopper 2.53 and earlier allows local users to gain privileges via a formatting string in the From: header, which is processed by the…
- CVE-2000-04431 PoCThe web interface server in HP Web JetAdmin 5.6 allows remote attackers to read arbitrary files via a .. (dot dot) attack.
- CVE-2000-04441 PoCHP Web JetAdmin 6.0 allows remote attackers to cause a denial of service via a malformed URL to port 8000.
- CVE-2000-04461 PoCBuffer overflow in MDBMS database server allows remote attackers to execute arbitrary commands via a long string.
- CVE-2000-04491 PoCOmnis Studio 2.4 uses weak encryption (trivial encoding) for encrypting database fields.
- CVE-2000-04511 PoCThe Intel express 8100 ISDN router allows remote attackers to cause a denial of service via oversized or fragmented ICMP packets.
- CVE-2000-04521 PoCBuffer overflow in the ESMTP service of Lotus Domino Server 5.0.1 allows remote attackers to cause a denial of service via a long MAIL…
- CVE-2000-04531 PoCXFree86 3.3.x and 4.0 allows a user to cause a denial of service via a negative counter value in a malformed TCP packet that is sent to…
- CVE-2000-04541 PoCBuffer overflow in Linux cdrecord allows local users to gain privileges via the dev parameter.
- CVE-2000-04571 PoCISM.DLL in IIS 4.0 and 5.0 allows remote attackers to read file contents by requesting the file and appending a large number of encoded…
- CVE-2000-04602 PoCsBuffer overflow in KDE kdesud on Linux allows local uses to gain privileges via a long DISPLAY environmental variable.
- CVE-2000-04631 PoCBeOS 5.0 allows remote attackers to cause a denial of service via fragmented TCP packets.
- CVE-2000-04651 PoCInternet Explorer 4.x and 5.x does not properly verify the domain of a frame within a browser window, which allows a remote attacker to…
- CVE-2000-04672 PoCsBuffer overflow in Linux splitvt 1.6.3 and earlier allows local users to gain root privileges via a long password in the screen locking…
- CVE-2000-04681 PoCman in HP-UX 10.20 and 11 allows local attackers to overwrite files via a symlink attack.
- CVE-2000-04702 PoCsAllegro RomPager HTTP server allows remote attackers to cause a denial of service via a malformed authentication request.
- CVE-2000-04711 PoCBuffer overflow in ufsrestore in Solaris 8 and earlier allows local users to gain root privileges via a long pathname.
- CVE-2000-04721 PoCBuffer overflow in innd 2.2.2 allows remote attackers to execute arbitrary commands via a cancel request containing a long message ID.
- CVE-2000-04731 PoCBuffer overflow in AnalogX SimpleServer 1.05 allows a remote attacker to cause a denial of service via a long GET request for a program in…
- CVE-2000-04741 PoCReal Networks RealServer 7.x allows remote attackers to cause a denial of service via a malformed request for a page in the viewsource…
- CVE-2000-04761 PoCxterm, Eterm, and rxvt allow an attacker to cause a denial of service by embedding certain escape characters which force the window to be…
- CVE-2000-04801 PoCDragon telnet server allows remote attackers to cause a denial of service via a long username.
- CVE-2000-04821 PoCCheck Point Firewall-1 allows remote attackers to cause a denial of service by sending a large number of malformed fragmented IP packets.
- CVE-2000-04841 PoCSmall HTTP Server ver 3.06 contains a memory corruption bug causing a memory overflow. The overflowed buffer crashes into a Structured…
- CVE-2000-04891 PoCFreeBSD, NetBSD, and OpenBSD allow an attacker to cause a denial of service by creating a large number of socket pairs using the…
- CVE-2000-04901 PoCBuffer overflow in the NetWin DSMTP 2.7q in the NetWin dmail package allows remote attackers to execute arbitrary commands via a long ETRN…
- CVE-2000-04912 PoCsBuffer overflow in the XDMCP parsing code of GNOME gdm, KDE kdm, and wdm allows remote attackers to execute arbitrary commands or cause a…
- CVE-2000-04921 PoCPassWD 1.2 uses weak encryption (trivial encoding) to store passwords, which allows an attacker who can read the password file to easliy…
- CVE-2000-04931 PoCBuffer overflow in Simple Network Time Sync (SMTS) daemon allows remote attackers to cause a denial of service and possibly execute…
- CVE-2000-04941 PoCVeritas Volume Manager creates a world writable .server_pids file, which allows local users to add arbitrary commands into the file, which…
- CVE-2000-04951 PoCMicrosoft Windows Media Encoder allows remote attackers to cause a denial of service via a malformed request, aka the "Malformed Windows…
- CVE-2000-05001 PoCThe default configuration of BEA WebLogic 5.1.0 allows a remote attacker to view source code of programs by requesting a URL beginning…
- CVE-2000-05011 PoCRace condition in MDaemon 2.8.5.0 POP server allows local users to cause a denial of service by entering a UIDL command and quickly…
- CVE-2000-05041 PoClibICE in XFree86 allows remote attackers to cause a denial of service by specifying a large value which is not properly checked by the…
- CVE-2000-05051 PoCThe Apache 1.3.x HTTP server for Windows platforms allows remote attackers to list directory contents by requesting a URL containing a…
- CVE-2000-05062 PoCsThe "capabilities" feature in Linux before 2.2.16 allows local users to cause a denial of service or gain privileges by setting the…
- CVE-2000-05071 PoCImate Webmail Server 2.5 allows remote attackers to cause a denial of service via a long HELO command.
- CVE-2000-05081 PoCrpc.lockd in Red Hat Linux 6.1 and 6.2 allows remote attackers to cause a denial of service via a malformed request.
- CVE-2000-05151 PoCThe snmpd.conf configuration file for the SNMP daemon (snmpd) in HP-UX 11.0 is world writable, which allows local users to modify SNMP…
- CVE-2000-05161 PoCWhen configured to store configuration information in an LDAP directory, Shiva Access Manager 5.0.0 stores the root DN (Distinguished…
- CVE-2000-05201 PoCBuffer overflow in restore program 0.4b17 and earlier in dump package allows local users to execute arbitrary commands via a long tape name.
- CVE-2000-05211 PoCSavant web server allows remote attackers to read source code of CGI scripts via a GET request that does not include the HTTP version…
- CVE-2000-05231 PoCBuffer overflow in the logging feature of EServ 2.9.2 and earlier allows an attacker to execute arbitrary commands via a long MKD command.
- CVE-2000-05261 PoCmailview.cgi CGI program in MailStudio 2000 2.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack.
- CVE-2000-05271 PoCuserreg.cgi CGI program in MailStudio 2000 2.0 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters.
- CVE-2000-05303 PoCsThe KApplication class in the KDE 1.1.2 configuration file management capability allows local users to overwrite arbitrary files.
- CVE-2000-05311 PoCLinux gpm program allows local users to cause a denial of service by flooding the /dev/gpmctl device with STREAM sockets.
- CVE-2000-05371 PoCBRU backup software allows local users to append data to arbitrary files by specifying an alternate configuration file with the BRUEXECLOG…
- CVE-2000-05381 PoCColdFusion Administrator for ColdFusion 4.5.1 and earlier allows remote attackers to cause a denial of service via a long login password.
- CVE-2000-05454 PoCsBuffer overflow in mailx mail command (aka Mail) on Linux systems allows local users to gain privileges via a long -c (carbon copy)…
- CVE-2000-05521 PoCICQwebmail client for ICQ 2000A creates a world readable temporary file during login and does not delete it, which allows local users to…
- CVE-2000-05591 PoCeTrust Intrusion Detection System (formerly SessionWall-3) uses weak encryption (XOR) to store administrative passwords in the registry,…
- CVE-2000-05651 PoCSmartFTP Daemon 0.2 allows a local user to access arbitrary files by uploading and specifying an alternate user configuration file via a…
- CVE-2000-05672 PoCsBuffer overflow in Microsoft Outlook and Outlook Express allows remote attackers to execute arbitrary commands via a long Date field in an…
- CVE-2000-05691 PoCSybergen Sygate allows remote attackers to cause a denial of service by sending a malformed DNS UDP packet to its internal interface.
- CVE-2000-05701 PoCFirstClass Internet Services server 5.770, and other versions before 6.1, allows remote attackers to cause a denial of service by sending…
- CVE-2000-05711 PoCLocalWEB HTTP server 1.2.0 allows remote attackers to cause a denial of service via a long GET request.
- CVE-2000-05722 PoCsThe Razor configuration management tool uses weak encryption for its password file, which allows local users to gain privileges.
- CVE-2000-05739 PoCsThe lreply function in wu-ftpd 2.6.0 and earlier does not properly cleanse an untrusted format string, which allows remote attackers to…
- CVE-2000-05741 PoCFTP servers such as OpenBSD ftpd, NetBSD ftpd, ProFTPd and Opieftpd do not properly cleanse untrusted format strings that are used in the…
- CVE-2000-05771 PoCNetscape Professional Services FTP Server 1.3.6 allows remote attackers to read arbitrary files via a .. (dot dot) attack.
- CVE-2000-05801 PoCWindows 2000 Server allows remote attackers to cause a denial of service by sending a continuous stream of binary zeros to various TCP and…
- CVE-2000-05811 PoCWindows 2000 Telnet Server allows remote attackers to cause a denial of service by sending a continuous stream of binary zeros, which…
- CVE-2000-05821 PoCCheck Point FireWall-1 4.0 and 4.1 allows remote attackers to cause a denial of service by sending a stream of invalid commands (such as…
- CVE-2000-05841 PoCBuffer overflow in Canna input system allows remote attackers to execute arbitrary commands via an SR_INIT command with a long user name…
- CVE-2000-05852 PoCsISC DHCP client program dhclient allows remote attackers to execute arbitrary commands via shell metacharacters.
- CVE-2000-05861 PoCBuffer overflow in Dalnet IRC server 4.6.5 allows remote attackers to cause a denial of service or execute arbitrary commands via the…
- CVE-2000-05881 PoCSawMill 5.0.21 CGI program allows remote attackers to read the first line of arbitrary files by listing the file in the rfcf parameter,…
- CVE-2000-05891 PoCSawMill 5.0.21 uses weak encryption to store passwords, which allows attackers to easily decrypt the password and modify the SawMill…
- CVE-2000-05901 PoCPoll It 2.0 CGI script allows remote attackers to read arbitrary files by specifying the file name in the data_dir parameter.
- CVE-2000-05921 PoCBuffer overflows in POP3 service in WinProxy 2.0 and 2.0.1 allow remote attackers to execute arbitrary commands via long USER, PASS, LIST,…
- CVE-2000-05942 PoCsBitchX IRC client does not properly cleanse an untrusted format string, which allows remote attackers to cause a denial of service via an…
- CVE-2000-06011 PoCLeafChat 1.7 IRC client allows a remote IRC server to cause a denial of service by rapidly sending a large amount of error messages.
- CVE-2000-06071 PoCBuffer overflow in fld program in Kanji on Console (KON) package on Linux may allow local users to gain root privileges via an input file…
- CVE-2000-06131 PoCCisco Secure PIX Firewall does not properly identify forged TCP Reset (RST) packets, which allows remote attackers to force the firewall…
- CVE-2000-06171 PoCBuffer overflow in xconq and cconq game programs on Red Hat Linux allows local users to gain additional privileges via long USER…
- CVE-2000-06221 PoCBuffer overflow in Webfind CGI program in O'Reilly WebSite Professional web server 2.x allows remote attackers to execute arbitrary…
- CVE-2000-06241 PoCBuffer overflow in Winamp 2.64 and earlier allows remote attackers to execute arbitrary commands via a long #EXTINF: extension in the M3U…
- CVE-2000-06251 PoCNetZero 3.0 and earlier uses weak encryption for storing a user's login information, which allows a local user to decrypt the password.
- CVE-2000-06262 PoCsBuffer overflow in Alibaba web server allows remote attackers to cause a denial of service via a long GET request.
- CVE-2000-06301 PoCIIS 4.0 and 5.0 allows remote attackers to obtain fragments of source code by appending a +.htr to the URL, a variant of the "File…
- CVE-2000-06341 PoCThe web administration interface for CommuniGate Pro 3.2.5 and earlier allows remote attackers to read arbitrary files via a .. (dot dot)…
- CVE-2000-06361 PoCHP JetDirect printers versions G.08.20 and H.08.20 and earlier allow remote attackers to cause a denial of service via a malformed FTP…
- CVE-2000-06383 PoCsbb-hostsvc.sh in Big Brother 1.4h1 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack on the HOSTSVC…
- CVE-2000-06391 PoCThe default configuration of Big Brother 1.4h2 and earlier does not include proper access restrictions, which allows remote attackers to…
- CVE-2000-06401 PoCGuild FTPd allows remote attackers to determine the existence of files outside the FTP root via a .. (dot dot) attack, which provides…
- CVE-2000-06411 PoCSavant web server allows remote attackers to execute arbitrary commands via a long GET request.
- CVE-2000-06441 PoCWFTPD and WFTPD Pro 2.41 allows remote attackers to cause a denial of service by executing a STAT command while the LIST command is still…
- CVE-2000-06451 PoCWFTPD and WFTPD Pro 2.41 allows remote attackers to cause a denial of service by using the RESTART (REST) command and writing beyond the…
- CVE-2000-06471 PoCWFTPD and WFTPD Pro 2.41 allows remote attackers to cause a denial of service by executing an MLST command before logging into the server.
- CVE-2000-06481 PoCWFTPD and WFTPD Pro 2.41 allows local users to cause a denial of service by executing the RENAME TO (RNTO) command before a RENAME FROM…
- CVE-2000-06494 PoCsIIS 4.0 allows remote attackers to obtain the internal IP address of the server via an HTTP 1.0 request for a web page which is protected…
- CVE-2000-06521 PoCIBM WebSphere allows remote attackers to read source code for executable web files by directly calling the default InvokerServlet using a…
- CVE-2000-06531 PoCMicrosoft Outlook Express allows remote attackers to monitor a user's email by creating a persistent browser link to the Outlook Express…
- CVE-2000-06551 PoCNetscape Communicator 4.73 and earlier allows remote attackers to cause a denial of service or execute arbitrary commands via a JPEG image…
- CVE-2000-06561 PoCBuffer overflow in AnalogX proxy server 4.04 and earlier allows remote attackers to cause a denial of service via a long USER command in…
- CVE-2000-06601 PoCThe WDaemon web server for WorldClient 2.1 allows remote attackers to read arbitrary files via a .. (dot dot) attack.
- CVE-2000-06641 PoCAnalogX SimpleServer:WWW 1.06 and earlier allows remote attackers to read arbitrary files via a modified .. (dot dot) attack that uses the…
- CVE-2000-06652 PoCsGAMSoft TelSrv telnet server 1.5 and earlier allows remote attackers to cause a denial of service via a long username.
- CVE-2000-06663 PoCsrpc.statd in the nfs-utils package in various Linux distributions does not properly cleanse untrusted format strings, which allows remote…
- CVE-2000-06681 PoCpam_console PAM module in Linux systems allows a user to access the system console and reboot the system when a display manager such as…
- CVE-2000-06691 PoCNovell NetWare 5.0 allows remote attackers to cause a denial of service by flooding port 40193 with random data.
- CVE-2000-06701 PoCThe cvsweb CGI script in CVSWeb 1.80 allows remote attackers with write access to a CVS repository to execute arbitrary commands via shell…
- CVE-2000-06711 PoCRoxen web server earlier than 2.0.69 allows allows remote attackers to bypass access restrictions, list directory contents, and read…
- CVE-2000-06731 PoCThe NetBIOS Name Server (NBNS) protocol does not perform authentication, which allows remote attackers to cause a denial of service by…
- CVE-2000-06752 PoCsBuffer overflow in Infopulse Gatekeeper 3.5 and earlier allows remote attackers to execute arbitrary commands via a long string.
- CVE-2000-06761 PoCNetscape Communicator and Navigator 4.04 through 4.74 allows remote attackers to read arbitrary files by using a Java applet to open a…
- CVE-2000-06791 PoCThe CVS 1.10.8 client trusts pathnames that are provided by the CVS server, which allows the server to force the client to create…
- CVE-2000-06801 PoCThe CVS 1.10.8 server does not properly restrict users from creating arbitrary Checkin.prog or Update.prog programs, which allows remote…
- CVE-2000-06841 PoCBEA WebLogic 5.1.x does not properly restrict access to the JSPServlet, which could allow remote attackers to compile and execute Java JSP…
- CVE-2000-06851 PoCBEA WebLogic 5.1.x does not properly restrict access to the PageCompileServlet, which could allow remote attackers to compile and execute…
- CVE-2000-06882 PoCsSubscribe Me LITE does not properly authenticate attempts to change the administrator password, which allows remote attackers to gain…
- CVE-2000-06892 PoCsAccount Manager LITE does not properly authenticate attempts to change the administrator password, which allows remote attackers to gain…
- CVE-2000-06901 PoCAuction Weaver CGI script 1.02 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the fromfile…
- CVE-2000-06911 PoCThe faxrunq and faxrunqd in the mgetty package allows local users to create or modify arbitrary files via a symlink attack which creates a…
- CVE-2000-06931 PoCpgxconfig in the Raptor GFX configuration tool uses a relative path name for a system call to the "cp" program, which allows local users…
- CVE-2000-06951 PoCBuffer overflows in pgxconfig in the Raptor GFX configuration tool allow local users to gain privileges via command line options.
- CVE-2000-06961 PoCThe administration interface for the dwhttpd web server in Solaris AnswerBook2 does not properly authenticate requests to its supporting…
- CVE-2000-06971 PoCThe administration interface for the dwhttpd web server in Solaris AnswerBook2 allows interface users to remotely execute commands via…
- CVE-2000-06981 PoCMinicom 1.82.1 and earlier on some Linux systems allows local users to create arbitrary files owned by the uucp user via a symlink attack.
- CVE-2000-06991 PoCFormat string vulnerability in ftpd in HP-UX 10.20 allows remote attackers to cause a denial of service or execute arbitrary commands via…
- CVE-2000-07021 PoCThe net.init rc script in HP-UX 11.00 (S008net.init) allows local users to overwrite arbitrary files via a symlink attack that points from…
- CVE-2000-07033 PoCssuidperl (aka sperl) does not properly cleanse the escape sequence "~!" before calling /bin/mail to send an error report, which allows…
- CVE-2000-07041 PoCBuffer overflow in SGI Omron WorldView Wnn allows remote attackers to execute arbitrary commands via long JS_OPEN, JS_MKDIR, or…
- CVE-2000-07051 PoCntop running in web mode allows remote attackers to read arbitrary files via a .. (dot dot) attack.
- CVE-2000-07061 PoCBuffer overflows in ntop running in web mode allows remote attackers to execute arbitrary commands.
- CVE-2000-07081 PoCBuffer overflow in Pragma Systems TelnetServer 2000 version 4.0 allows remote attackers to cause a denial of service via a long series of…
- CVE-2000-07111 PoCNetscape Communicator does not properly prevent a ServerSocket object from being created by untrusted entities, which allows remote…
- CVE-2000-07201 PoCnews.cgi in GWScripts News Publisher does not properly authenticate requests to add an author to the author index, which allows remote…
- CVE-2000-07211 PoCThe FSserial, FlagShip_c, and FlagShip_p programs in the FlagShip package are installed world-writeable, which allows local users to…
- CVE-2000-07271 PoCxpdf PDF viewer client earlier than 0.91 does not properly launch a web browser for embedded URL's, which allows an attacker to execute…
- CVE-2000-07331 PoCTelnetd telnet server in IRIX 5.2 through 6.1 does not properly cleans user-injected format strings, which allows remote attackers to…
- CVE-2000-07341 PoCeEye IRIS 1.01 beta allows remote attackers to cause a denial of service via a large number of UDP connections.
- CVE-2000-07371 PoCThe Service Control Manager (SCM) in Windows 2000 creates predictable named pipes, which allows a local user with console access to gain…
- CVE-2000-07391 PoCDirectory traversal vulnerability in strong.exe program in NAI Net Tools PKI server 1.0 before HotFix 3 allows remote attackers to read…
- CVE-2000-07401 PoCBuffer overflow in strong.exe program in NAI Net Tools PKI server 1.0 before HotFix 3 allows remote attackers to execute arbitrary…
- CVE-2000-07411 PoCFormat string vulnerability in strong.exe program in NAI Net Tools PKI server 1.0 before HotFix 3 allows remote attackers to execute…
- CVE-2000-07431 PoCBuffer overflow in University of Minnesota (UMN) gopherd 2.x allows remote attackers to execute arbitrary commands via a DES key…
- CVE-2000-07451 PoCadmin.php3 in PHP-Nuke does not properly verify the PHP-Nuke administrator password, which allows remote attackers to gain privileges by…
- CVE-2000-07511 PoCmopd (Maintenance Operations Protocol loader daemon) does not properly cleanse user-injected format strings, which allows remote attackers…
- CVE-2000-07572 PoCsThe sysgen service in Aptis Totalbill does not perform authentication, which allows remote attackers to gain root privileges by connecting…
- CVE-2000-07591 PoCJakarta Tomcat 3.1 under Apache reveals physical path information when a remote attacker requests a URL that does not exist, which…
- CVE-2000-07602 PoCsThe Snoop servlet in Jakarta Tomcat 3.1 and 3.0 under Apache reveals sensitive system information when a remote attacker requests a…
- CVE-2000-07632 PoCsxlockmore and xlockf do not properly cleanse user-injected format strings, which allows local users to gain root privileges via the -d…
- CVE-2000-07661 PoCBuffer overflow in vqSoft vqServer 1.4.49 allows remote attackers to cause a denial of service or possibly gain privileges via a long HTTP…
- CVE-2000-07751 PoCBuffer overflow in RobTex Viking server earlier than 1.06-370 allows remote attackers to cause a denial of service or execute arbitrary…
- CVE-2000-07762 PoCsMediahouse Statistics Server 5.02x allows remote attackers to execute arbitrary commands via a long HTTP GET request.
- CVE-2000-07782 PoCsIIS 5.0 allows remote attackers to obtain source code for .ASP files and other scripts via an HTTP GET request with a "Translate: f"…
- CVE-2000-07801 PoCThe web server in IPSWITCH IMail 6.04 and earlier allows remote attackers to read and delete arbitrary files via a .. (dot dot) attack.
- CVE-2000-07821 PoCnetauth.cgi program in Netwin Netauth 4.2e and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack.
- CVE-2000-07861 PoCGNU userv 1.0.0 and earlier does not properly perform file descriptor swapping, which can corrupt the USERV_GROUPS and USERV_GIDS…
- CVE-2000-07871 PoCIRC Xchat client versions 1.4.2 and earlier allows remote attackers to execute arbitrary commands by encoding shell metacharacters into a…
- CVE-2000-07942 PoCsBuffer overflow in IRIX libgl.so library allows local users to gain root privileges via a long HOME variable to programs such as (1)…
- CVE-2000-07953 PoCsBuffer overflow in lpstat in IRIX 6.2 and 6.3 allows local users to gain root privileges via a long -n option.
- CVE-2000-07962 PoCsBuffer overflow in dmplay in IRIX 6.2 and 6.3 allows local users to gain root privileges via a long command line option.
- CVE-2000-07972 PoCsBuffer overflow in gr_osview in IRIX 6.2 and 6.3 allows local users to gain privileges via a long -D option.
- CVE-2000-07982 PoCsThe truncate function in IRIX 6.x does not properly check for privileges when the file is in the xfs file system, which allows local users…
- CVE-2000-07992 PoCsinpview in InPerson in SGI IRIX 5.3 through IRIX 6.5.10 allows local users to gain privileges via a symlink attack on the .ilmpAAA…
- CVE-2000-08161 PoCLinux tmpwatch --fuser option allows local users to execute arbitrary commands by creating files whose names contain shell metacharacters.
- CVE-2000-08242 PoCsThe unsetenv function in glibc 2.1.1 does not properly unset an environmental variable if the variable is provided twice to a program,…
- CVE-2000-08281 PoCBuffer overflow in ddicgi.exe in Mobius DocumentDirect for the Internet 1.2 allows remote attackers to execute arbitrary commands via a…
- CVE-2000-08291 PoCThe tmpwatch utility in Red Hat Linux forks a new process for each directory level, which allows local users to cause a denial of service…
- CVE-2000-08301 PoCannclist.exe in webTV for Windows allows remote attackers to cause a denial of service by via a large, malformed UDP packet to ports 22701…
- CVE-2000-08332 PoCsBuffer overflow in WinSMTP 1.06f and 2.X allows remote attackers to cause a denial of service via a long (1) USER or (2) HELO command.
- CVE-2000-08341 PoCThe Windows 2000 telnet client attempts to perform NTLM authentication by default, which allows remote attackers to capture and replay the…
- CVE-2000-08351 PoCsearch.dll Sambar ISAPI Search utility in Sambar Server 4.4 Beta 3 allows remote attackers to read arbitrary directories by specifying the…
- CVE-2000-08361 PoCBuffer overflow in CamShot WebCam Trial2.6 allows remote attackers to execute arbitrary commands via a long Authorization header.
- CVE-2000-08431 PoCBuffer overflow in pam_smb and pam_ntdom pluggable authentication modules (PAM) allow remote attackers to execute arbitrary commands via a…
- CVE-2000-08449 PoCsSome functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local…
- CVE-2000-08462 PoCsBuffer overflow in Darxite 0.4 and earlier allows a remote attacker to execute arbitrary commands via a long username or password.
- CVE-2000-08481 PoCBuffer overflow in IBM WebSphere web application server (WAS) allows remote attackers to execute arbitrary commands via a long Host:…
- CVE-2000-08511 PoCBuffer overflow in the Still Image Service in Windows 2000 allows local users to gain additional privileges via a long WM_USER message,…
- CVE-2000-08531 PoCYaBB Bulletin Board 9.1.2000 allows remote attackers to read arbitrary files via a .. (dot dot) attack.
- CVE-2000-08542 PoCsWhen a Microsoft Office 2000 document is launched, the directory of that document is first used to locate DLL's such as riched20.dll and…
- CVE-2000-08641 PoCRace condition in the creation of a Unix domain socket in GNOME esound 0.2.19 and earlier allows a local user to change the permissions of…
- CVE-2000-08651 PoCBuffer overflow in dvtermtype in Tridia Double Vision 3.07.00 allows local users to gain root privileges via a long terminal type argument.
- CVE-2000-08691 PoCThe default configuration of Apache 1.3.12 in SuSE Linux 6.4 enables WebDAV, which allows remote attackers to list arbitrary directories…
- CVE-2000-08721 PoCexplorer.php in PhotoAlbum 0.9.9 allows remote attackers to read arbitrary files via a .. (dot dot) attack.
- CVE-2000-08731 PoCnetstat in AIX 4.x.x does not properly restrict access to the -Zi option, which allows local users to clear network interface statistics…
- CVE-2000-08801 PoCLPPlus creates the lpdprocess file with world-writeable permissions, which allows local users to kill arbitrary processes by specifying an…
- CVE-2000-08811 PoCThe dccscan setuid program in LPPlus does not properly check if the user has the permissions to print the file that is specified to…
- CVE-2000-08831 PoCThe default configuration of mod_perl for Apache as installed on Mandrake Linux 6.1 through 7.1 sets the /perl/ directory to be…
- CVE-2000-08848 PoCsIIS 4.0 and 5.0 allows remote attackers to read documents outside of the web root, and possibly execute arbitrary commands, via malformed…
- CVE-2000-08861 PoCIIS 5.0 allows remote attackers to execute arbitrary commands via a malformed request for an executable file whose name is appended with…
- CVE-2000-08871 PoCnamed in BIND 8.2 through 8.2.2-P6 allows remote attackers to cause a denial of service by making a compressed zone transfer (ZXFR)…
- CVE-2000-08971 PoCSmall HTTP Server 2.03 and earlier allows remote attackers to cause a denial of service by repeatedly requesting a URL that references a…
- CVE-2000-09011 PoCFormat string vulnerability in screen 3.9.5 and earlier allows local users to gain root privileges via format characters in the vbell_msg…
- CVE-2000-09031 PoCDirectory traversal vulnerability in Voyager web server 2.01B in the demo disks for QNX 405 allows remote attackers to read arbitrary…
- CVE-2000-09041 PoCVoyager web server 2.01B in the demo disks for QNX 405 stores sensitive web client information in the .photon directory in the web…
- CVE-2000-09061 PoCDirectory traversal vulnerability in Moreover.com cached_feed.cgi script version 4.July.00 allows remote attackers to read arbitrary files…
- CVE-2000-09081 PoCBrowseGate 2.80 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via long Authorization or…
- CVE-2000-09091 PoCBuffer overflow in the automatic mail checking component of Pine 4.21 and earlier allows remote attackers to execute arbitrary commands…
- CVE-2000-09121 PoCMultiHTML CGI script allows remote attackers to read arbitrary files and possibly execute arbitrary commands by specifying the file name…
- CVE-2000-09141 PoCOpenBSD 2.6 and earlier allows remote attackers to cause a denial of service by flooding the server with ARP requests.
- CVE-2000-09161 PoCFreeBSD 4.1.1 and earlier, and possibly other BSD-based OSes, uses an insufficient random number generator to generate initial TCP…
- CVE-2000-09177 PoCsFormat string vulnerability in use_syslog() function in LPRng 3.6.24 allows remote attackers to execute arbitrary commands.
- CVE-2000-09191 PoCDirectory traversal vulnerability in PHPix Photo Album 1.0.2 and earlier allows remote attackers to read arbitrary files via a .. (dot…
- CVE-2000-09201 PoCDirectory traversal vulnerability in BOA web server 0.94.8.2 and earlier allows remote attackers to read arbitrary files via a modified ..…
- CVE-2000-09211 PoCDirectory traversal vulnerability in Hassan Consulting shop.cgi shopping cart program allows remote attackers to read arbitrary files via…
- CVE-2000-09221 PoCDirectory traversal vulnerability in Bytes Interactive Web Shopper shopping cart program (shopper.cgi) 2.0 and earlier allows remote…
- CVE-2000-09241 PoCDirectory traversal vulnerability in search.cgi CGI script in Armada Master Index allows remote attackers to read arbitrary files via a ..…
- CVE-2000-09251 PoCThe default installation of SmartWin CyberOffice Shopping Cart 2 (aka CyberShop) installs the _private directory with world readable…
- CVE-2000-09261 PoCSmartWin CyberOffice Shopping Cart 2 (aka CyberShop) allows remote attackers to modify price information by changing the "Price" hidden…
- CVE-2000-09291 PoCMicrosoft Windows Media Player 7 allows attackers to cause a denial of service in RTF-enabled email clients via an embedded OCX control…
- CVE-2000-09301 PoCPegasus Mail 3.12 allows remote attackers to read arbitrary files via an embedded URL that calls the mailto: protocol with a -F switch.
- CVE-2000-09352 PoCsSamba Web Administration Tool (SWAT) in Samba 2.0.7 allows local users to overwrite arbitrary files via a symlink attack on the cgi.log…
- CVE-2000-09361 PoCSamba Web Administration Tool (SWAT) in Samba 2.0.7 installs the cgi.log logging file with world readable permissions, which allows local…
- CVE-2000-09371 PoCSamba Web Administration Tool (SWAT) in Samba 2.0.7 does not log login attempts in which the username is correct but the password is…
- CVE-2000-09411 PoCKootenay Web KW Whois 1.0 CGI program allows remote attackers to execute arbitrary commands via shell metacharacters in the "whois"…
- CVE-2000-09421 PoCThe CiWebHitsFile component in Microsoft Indexing Services for Windows 2000 allows remote attackers to conduct a cross site scripting…
- CVE-2000-09441 PoCCGI Script Center News Update 1.1 does not properly validate the original news administration password during a password change operation,…
- CVE-2000-09452 PoCsThe web configuration interface for Catalyst 3500 XL switches allows remote attackers to execute arbitrary commands without authentication…
- CVE-2000-09495 PoCsHeap overflow in savestr function in LBNL traceroute 1.4a5 and earlier allows a local user to execute arbitrary commands via the -g option.
- CVE-2000-09511 PoCA misconfiguration in IIS 5.0 with Index Server enabled and the Index property set allows remote attackers to list directories in the web…
- CVE-2000-09531 PoCShambala Server 4.5 allows remote attackers to cause a denial of service by opening then closing a connection.
- CVE-2000-09551 PoCCisco Virtual Central Office 4000 (VCO/4K) uses weak encryption to store usernames and passwords in the SNMP MIB, which allows an attacker…
- CVE-2000-09581 PoCHotJava Browser 3.0 allows remote attackers to access the DOM of a web page by opening a javascript: URL in a named window.
- CVE-2000-09672 PoCsPHP 3 and 4 do not properly cleanse user-injected format strings, which allows remote attackers to execute arbitrary commands by…
- CVE-2000-09711 PoCAvirt Mail 4.0 and 4.2 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long "RCPT TO"…
- CVE-2000-09722 PoCsHP-UX 11.00 crontab allows local users to read arbitrary files via the -e option by creating a symlink to the target file during the…
- CVE-2000-09732 PoCsBuffer overflow in curl earlier than 6.0-1.1, and curl-ssl earlier than 6.0-1.2, allows remote attackers to execute arbitrary commands by…
- CVE-2000-09751 PoCDirectory traversal vulnerability in apexec.pl in Anaconda Foundation Directory allows remote attackers to read arbitrary files via a ..…
- CVE-2000-09761 PoCBuffer overflow in xlib in XFree 3.3.x possibly allows local users to execute arbitrary commands via a long DISPLAY environment variable…
- CVE-2000-09771 PoCmailfile.cgi CGI program in MailFile 1.10 allows remote attackers to read arbitrary files by specifying the target file name in the…
- CVE-2000-09793 PoCsFile and Print Sharing service in Windows 95, Windows 98, and Windows Me does not properly check the password for a file share, which…
- CVE-2000-09831 PoCMicrosoft NetMeeting with Remote Desktop Sharing enabled allows remote attackers to cause a denial of service (CPU utilization) via a…
- CVE-2000-09841 PoCThe HTTP server in Cisco IOS 12.0 through 12.1 allows local users to cause a denial of service (crash and reload) via a URL containing a…
- CVE-2000-09851 PoCBuffer overflow in All-Mail 1.1 allows remote attackers to execute arbitrary commands via a long "MAIL FROM" or "RCPT TO" command.
- CVE-2000-09872 PoCsBuffer overflow in oidldapd in Oracle 8.1.6 allow local users to gain privileges via a long "connect" command line parameter.
- CVE-2000-09891 PoCBuffer overflow in Intel InBusiness eMail Station 1.04.87 POP service allows remote attackers to cause a denial of service and possibly…
- CVE-2000-09911 PoCBuffer overflow in Hilgraeve, Inc. HyperTerminal client on Windows 98, ME, and 2000 allows remote attackers to execute arbitrary commands…
- CVE-2000-09921 PoCDirectory traversal vulnerability in scp in sshd 1.2.xx allows a remote malicious scp server to overwrite arbitrary files via a .. (dot…
- CVE-2000-09931 PoCFormat string vulnerability in pw_error function in BSD libutil library allows local users to gain root privileges via a malformed…
- CVE-2000-09941 PoCFormat string vulnerability in OpenBSD fstat program (and possibly other BSD-based operating systems) allows local users to gain root…
- CVE-2000-09982 PoCsFormat string vulnerability in top program allows local attackers to gain root privileges via the "kill" or "renice" function.