Latest CVE Feed
-
2.1
LOWCVE-1999-0595
A Windows NT system does not clear the system page file during shutdown, which might allow sensitive information to be recorded.... Read more
- EPSS Score: %0.75
- Published: Jan. 20, 2000
- Modified: Apr. 03, 2025
-
6.2
MEDIUMCVE-2000-0092
The BSD make program allows local users to modify files via a symlink attack when the -j option is being used.... Read more
- EPSS Score: %0.06
- Published: Jan. 19, 2000
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2000-0079
The W3C CERN httpd HTTP server allows remote attackers to determine the real pathnames of some commands via a request for a nonexistent URL.... Read more
Affected Products : cern_httpd- EPSS Score: %0.64
- Published: Jan. 18, 2000
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2000-0099
Buffer overflow in UnixWare ppptalk command allows local users to gain privileges via a long prompt argument.... Read more
Affected Products : unixware- EPSS Score: %0.08
- Published: Jan. 18, 2000
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-1999-0992
HP VirtualVault with the PHSS_17692 patch allows unprivileged processes to bypass access restrictions via the Trusted Gateway Proxy (TGP).... Read more
Affected Products : vvos- EPSS Score: %0.41
- Published: Jan. 18, 2000
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0086
Netopia Timbuktu Pro sends user IDs and passwords in cleartext, which allows remote attackers to obtain them via sniffing.... Read more
Affected Products : timbuktu_pro- EPSS Score: %0.65
- Published: Jan. 18, 2000
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0064
cgiproc CGI script in Nortel Contivity HTTP server allows remote attackers to cause a denial of service via a malformed URL that includes shell metacharacters.... Read more
Affected Products : contivity- EPSS Score: %0.66
- Published: Jan. 17, 2000
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2000-0065
Buffer overflow in InetServ 3.0 allows remote attackers to execute commands via a long GET request.... Read more
Affected Products : inetserv- EPSS Score: %4.51
- Published: Jan. 17, 2000
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2000-0072
Visual Casel (Vcasel) does not properly prevent users from executing files, which allows local users to use a relative pathname to specify an alternate file which has an approved name and possibly gain privileges.... Read more
Affected Products : visual_casel- EPSS Score: %0.08
- Published: Jan. 17, 2000
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0063
cgiproc CGI script in Nortel Contivity HTTP server allows remote attackers to read arbitrary files by specifying the filename in a parameter to the script.... Read more
Affected Products : contivity- EPSS Score: %0.65
- Published: Jan. 17, 2000
- Modified: Apr. 03, 2025
-
3.6
LOWCVE-2000-0090
VMWare 1.1.2 allows local users to cause a denial of service via a symlink attack.... Read more
Affected Products : workstation- EPSS Score: %0.06
- Published: Jan. 17, 2000
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0066
WebSite Pro allows remote attackers to determine the real pathname of webdirectories via a malformed URL request.... Read more
Affected Products : website_professional- EPSS Score: %0.56
- Published: Jan. 13, 2000
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0075
Super Mail Transfer Package (SMTP), later called MsgCore, has a memory leak which allows remote attackers to cause a denial of service by repeating multiple HELO, MAIL FROM, RCPT TO, and DATA commands in the same session.... Read more
Affected Products : msgcore- EPSS Score: %4.01
- Published: Jan. 13, 2000
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2000-0070
NtImpersonateClientOfPort local procedure call in Windows NT 4.0 allows local users to gain privileges, aka "Spoofed LPC Port Request."... Read more
Affected Products : windows_nt- EPSS Score: %2.72
- Published: Jan. 12, 2000
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0087
Netscape Mail Notification (nsnotify) utility in Netscape Communicator uses IMAP without SSL, even if the user has set a preference for Communicator to use an SSL connection, allowing a remote attacker to sniff usernames and passwords in plaintext.... Read more
- EPSS Score: %0.81
- Published: Jan. 12, 2000
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2000-0048
get_it program in Corel Linux Update allows local users to gain root access by specifying an alternate PATH for the cp program.... Read more
Affected Products : linux- EPSS Score: %0.14
- Published: Jan. 12, 2000
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-1999-1002
Netscape Navigator uses weak encryption for storing a user's Netscape mail password.... Read more
Affected Products : communicator- EPSS Score: %0.30
- Published: Jan. 12, 2000
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2000-0067
CyberCash Merchant Connection Kit (MCK) allows local users to modify files via a symlink attack.... Read more
Affected Products : merchant_connection_kit- EPSS Score: %0.12
- Published: Jan. 11, 2000
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0071
IIS 4.0 allows a remote attacker to obtain the real pathname of the document root by requesting non-existent files with .ida or .idq extensions.... Read more
- EPSS Score: %40.67
- Published: Jan. 11, 2000
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2000-0074
PowerScripts PlusMail CGI program allows remote attackers to execute commands via a password file with improper permissions.... Read more
Affected Products : plusmail- EPSS Score: %5.52
- Published: Jan. 11, 2000
- Modified: Apr. 03, 2025