Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 7.5

    HIGH
    CVE-2000-0629

    The default configuration of the Sun Java web server 2.0 and earlier allows remote attackers to execute arbitrary commands by uploading Java code to the server via board.html, then directly calling the JSP compiler servlet.... Read more

    Affected Products : java_system_web_server
    • EPSS Score: %1.52
    • Published: Jul. 12, 2000
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2000-0642

    The default configuration of WebActive HTTP Server 1.00 stores the web access log active.log in the document root, which allows remote attackers to view the logs by directly requesting the page.... Read more

    Affected Products : webactive
    • EPSS Score: %0.74
    • Published: Jul. 12, 2000
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2000-0628

    The source.asp example script in the Apache ASP module Apache::ASP 1.93 and earlier allows remote attackers to modify files.... Read more

    Affected Products : apache_asp
    • EPSS Score: %0.89
    • Published: Jul. 11, 2000
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2000-0669

    Novell NetWare 5.0 allows remote attackers to cause a denial of service by flooding port 40193 with random data.... Read more

    Affected Products : netware
    • EPSS Score: %2.19
    • Published: Jul. 11, 2000
    • Modified: Apr. 03, 2025
  • 4.6

    MEDIUM
    CVE-2000-0654

    Microsoft Enterprise Manager allows local users to obtain database passwords via the Data Transformation Service (DTS) package Registered Servers Dialog dialog, aka a variant of the "DTS Password" vulnerability.... Read more

    Affected Products : sql_server
    • EPSS Score: %1.02
    • Published: Jul. 11, 2000
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2000-0648

    WFTPD and WFTPD Pro 2.41 allows local users to cause a denial of service by executing the RENAME TO (RNTO) command before a RENAME FROM (RNFR) command.... Read more

    Affected Products : wftpd
    • EPSS Score: %1.39
    • Published: Jul. 11, 2000
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-2000-0638

    bb-hostsvc.sh in Big Brother 1.4h1 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack on the HOSTSVC parameter.... Read more

    Affected Products : big_brother
    • EPSS Score: %4.22
    • Published: Jul. 11, 2000
    • Modified: Apr. 03, 2025
  • 2.1

    LOW
    CVE-2000-0650

    The default installation of VirusScan 4.5 and NetShield 4.5 has insecure permissions for the registry key that identifies the AutoUpgrade directory, which allows local users to execute arbitrary commands by replacing SETUP.EXE in that directory with a Tro... Read more

    Affected Products : netshield virusscan
    • EPSS Score: %0.09
    • Published: Jul. 11, 2000
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2000-0661

    WircSrv IRC Server 5.07s allows remote attackers to cause a denial of service via a long string to the server port.... Read more

    Affected Products : irc_server
    • EPSS Score: %0.89
    • Published: Jul. 10, 2000
    • Modified: Apr. 03, 2025
  • 2.1

    LOW
    CVE-2000-0605

    Blackboard CourseInfo 4.0 stores the local and SQL administrator user names and passwords in cleartext in a registry key whose access control allows users to access the passwords.... Read more

    Affected Products : courseinfo
    • EPSS Score: %0.13
    • Published: Jul. 10, 2000
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-2000-0614

    Tnef program in Linux systems allows remote attackers to overwrite arbitrary files via TNEF encoded compressed attachments which specify absolute path names for the decompressed output.... Read more

    Affected Products : suse_linux
    • EPSS Score: %0.96
    • Published: Jul. 10, 2000
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2000-0635

    The view_page.html sample page in the MiniVend shopping cart program allows remote attackers to execute arbitrary commands via shell metacharacters.... Read more

    Affected Products : minivend
    • EPSS Score: %1.26
    • Published: Jul. 10, 2000
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2000-0640

    Guild FTPd allows remote attackers to determine the existence of files outside the FTP root via a .. (dot dot) attack, which provides different error messages depending on whether the file exists or not.... Read more

    Affected Products : guildftpd
    • EPSS Score: %4.54
    • Published: Jul. 08, 2000
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2000-0641

    Savant web server allows remote attackers to execute arbitrary commands via a long GET request.... Read more

    Affected Products : savant_webserver
    • EPSS Score: %13.30
    • Published: Jul. 08, 2000
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-2000-0573

    The lreply function in wu-ftpd 2.6.0 and earlier does not properly cleanse an untrusted format string, which allows remote attackers to execute arbitrary commands via the SITE EXEC command.... Read more

    Affected Products : hp-ux
    • EPSS Score: %91.38
    • Published: Jul. 07, 2000
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2000-0574

    FTP servers such as OpenBSD ftpd, NetBSD ftpd, ProFTPd and Opieftpd do not properly cleanse untrusted format strings that are used in the setproctitle function (sometimes called by set_proc_title), which allows remote attackers to cause a denial of servic... Read more

    Affected Products : wu-ftpd ftpd
    • EPSS Score: %12.74
    • Published: Jul. 07, 2000
    • Modified: Apr. 03, 2025
  • 4.6

    MEDIUM
    CVE-2000-0603

    Microsoft SQL Server 7.0 allows a local user to bypass permissions for stored procedures by referencing them via a temporary stored procedure, aka the "Stored Procedure Permissions" vulnerability.... Read more

    Affected Products : sql_server
    • EPSS Score: %1.03
    • Published: Jul. 07, 2000
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2000-0651

    The ClientTrust program in Novell BorderManager does not properly verify the origin of authentication requests, which could allow remote attackers to impersonate another user by replaying the authentication requests and responses from port 3024 of the vic... Read more

    Affected Products : bordermanager
    • EPSS Score: %0.50
    • Published: Jul. 07, 2000
    • Modified: Apr. 03, 2025
  • 6.4

    MEDIUM
    CVE-2000-0571

    LocalWEB HTTP server 1.2.0 allows remote attackers to cause a denial of service via a long GET request.... Read more

    Affected Products : localweb_http_server
    • EPSS Score: %3.21
    • Published: Jul. 05, 2000
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2000-0591

    Novell BorderManager 3.0 and 3.5 allows remote attackers to bypass URL filtering by encoding characters in the requested URL.... Read more

    Affected Products : bordermanager
    • EPSS Score: %0.18
    • Published: Jul. 05, 2000
    • Modified: Apr. 03, 2025
Showing 20 of 292521 Results