Total
284436 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2000-0537 | 1 Tolis Group | 1 Bru | 2024-11-20 | N/A |
BRU backup software allows local users to append data to arbitrary files by specifying an alternate configuration file with the BRUEXECLOG environmental variable. | ||||
CVE-2000-0536 | 1 Xinetd | 1 Xinetd | 2024-11-20 | N/A |
xinetd 2.1.8.x does not properly restrict connections if hostnames are used for access control and the connecting host does not have a reverse DNS entry. | ||||
CVE-2000-0535 | 2 Freebsd, Openssl | 2 Freebsd, Openssl | 2024-11-20 | N/A |
OpenSSL 0.9.4 and OpenSSH for FreeBSD do not properly check for the existence of the /dev/random or /dev/urandom devices, which are absent on FreeBSD Alpha systems, which causes them to produce weak keys which may be more easily broken. | ||||
CVE-2000-0534 | 1 Aps Filter Development Team | 1 Apsfilter | 2024-11-20 | N/A |
The apsfilter software in the FreeBSD ports package does not properly read user filter configurations, which allows local users to execute commands as the lpd user. | ||||
CVE-2000-0533 | 1 Sgi | 1 Workshop Debugger And Performance Tools | 2024-11-20 | N/A |
Vulnerability in cvconnect in SGI IRIX WorkShop allows local users to overwrite arbitrary files. | ||||
CVE-2000-0532 | 1 Freebsd | 1 Freebsd | 2024-11-20 | N/A |
A FreeBSD patch for SSH on 2000-01-14 configures ssh to listen on port 722 as well as port 22, which might allow remote attackers to access SSH through port 722 even if port 22 is otherwise filtered. | ||||
CVE-2000-0531 | 2 Caldera, Redhat | 3 Openlinux, Openlinux Eserver, Linux | 2024-11-20 | N/A |
Linux gpm program allows local users to cause a denial of service by flooding the /dev/gpmctl device with STREAM sockets. | ||||
CVE-2000-0530 | 2 Caldera, Kde | 2 Openlinux, Kde | 2024-11-20 | N/A |
The KApplication class in the KDE 1.1.2 configuration file management capability allows local users to overwrite arbitrary files. | ||||
CVE-2000-0529 | 1 Network Associates | 1 Net Tools Pki Server | 2024-11-20 | N/A |
Net Tools PKI Server allows remote attackers to cause a denial of service via a long HTTP request. | ||||
CVE-2000-0528 | 1 Network Associates | 1 Net Tools Pki Server | 2024-11-20 | N/A |
Net Tools PKI Server does not properly restrict access to remote attackers when the XUDA template files do not contain absolute pathnames for other files. | ||||
CVE-2000-0527 | 1 3r Soft | 1 Mailstudio 2000 | 2024-11-20 | N/A |
userreg.cgi CGI program in MailStudio 2000 2.0 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters. | ||||
CVE-2000-0526 | 1 3r Soft | 1 Mailstudio 2000 | 2024-11-20 | N/A |
mailview.cgi CGI program in MailStudio 2000 2.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack. | ||||
CVE-2000-0525 | 1 Openbsd | 1 Openssh | 2024-11-20 | N/A |
OpenSSH does not properly drop privileges when the UseLogin option is enabled, which allows local users to execute arbitrary commands by providing the command to the ssh daemon. | ||||
CVE-2000-0524 | 1 Microsoft | 2 Exchange Server, Outlook | 2024-11-20 | N/A |
Microsoft Outlook and Outlook Express allow remote attackers to cause a denial of service by sending email messages with blank fields such as BCC, Reply-To, Return-Path, or From. | ||||
CVE-2000-0523 | 1 Etype | 1 Eserv | 2024-11-20 | N/A |
Buffer overflow in the logging feature of EServ 2.9.2 and earlier allows an attacker to execute arbitrary commands via a long MKD command. | ||||
CVE-2000-0522 | 1 Rsa | 1 Ace Server | 2024-11-20 | N/A |
RSA ACE/Server allows remote attackers to cause a denial of service by flooding the server's authentication request port with UDP packets, which causes the server to crash. | ||||
CVE-2000-0521 | 1 Michael Lamont | 1 Savant Webserver | 2024-11-20 | N/A |
Savant web server allows remote attackers to read source code of CGI scripts via a GET request that does not include the HTTP version number. | ||||
CVE-2000-0520 | 1 Stelian | 1 Pop Dump | 2024-11-20 | N/A |
Buffer overflow in restore program 0.4b17 and earlier in dump package allows local users to execute arbitrary commands via a long tape name. | ||||
CVE-2000-0519 | 1 Microsoft | 2 Ie, Internet Explorer | 2024-11-20 | N/A |
Internet Explorer 4.x and 5.x does not properly re-validate an SSL certificate if the user establishes a new SSL session with the same server during the same Internet Explorer session, aka one of two different "SSL Certificate Validation" vulnerabilities. | ||||
CVE-2000-0518 | 1 Microsoft | 2 Ie, Internet Explorer | 2024-11-20 | N/A |
Internet Explorer 4.x and 5.x does not properly verify all contents of an SSL certificate if a connection is made to the server via an image or a frame, aka one of two different "SSL Certificate Validation" vulnerabilities. |