Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 7.5

    HIGH
    CVE-2000-0144

    Axis 700 Network Scanner does not properly restrict access to administrator URLs, which allows users to bypass the password protection via a .. (dot dot) attack.... Read more

    Affected Products : 700_network_document_server
    • EPSS Score: %0.49
    • Published: Feb. 07, 2000
    • Modified: Apr. 03, 2025
  • 3.6

    LOW
    CVE-2000-0472

    Buffer overflow in innd 2.2.2 allows remote attackers to execute arbitrary commands via a cancel request containing a long message ID.... Read more

    Affected Products : inn
    • EPSS Score: %4.93
    • Published: Feb. 06, 2000
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2000-0145

    The libguile.so library file used by gnucash in Debian GNU/Linux is installed with world-writable permissions.... Read more

    Affected Products : debian_linux
    • EPSS Score: %0.38
    • Published: Feb. 05, 2000
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-2000-0128

    The Finger Server 0.82 allows remote attackers to execute commands via shell metacharacters.... Read more

    Affected Products : the_finger_server
    • EPSS Score: %4.89
    • Published: Feb. 04, 2000
    • Modified: Apr. 03, 2025
  • 2.1

    LOW
    CVE-2000-0129

    Buffer overflow in the SHGetPathFromIDList function of the Serv-U FTP server allows attackers to cause a denial of service by performing a LIST command on a malformed .lnk file.... Read more

    Affected Products : windows_95 windows_98 windows_nt
    • EPSS Score: %0.12
    • Published: Feb. 04, 2000
    • Modified: Apr. 03, 2025
  • 2.1

    LOW
    CVE-2000-0089

    The rdisk utility in Microsoft Terminal Server Edition and Windows NT 4.0 stores registry hive information in a temporary file with permissions that allow local users to read it, aka the "RDISK Registry Enumeration File" vulnerability.... Read more

    Affected Products : windows_nt
    • EPSS Score: %2.92
    • Published: Feb. 04, 2000
    • Modified: Apr. 03, 2025
  • 2.1

    LOW
    CVE-2000-0124

    surfCONTROL SuperScout does not properly asign a category to web sites with a . (dot) at the end, which may allow users to bypass web access restrictions.... Read more

    Affected Products : superscout
    • EPSS Score: %0.13
    • Published: Feb. 03, 2000
    • Modified: Apr. 03, 2025
  • 7.2

    HIGH
    CVE-2000-0218

    Buffer overflow in Linux mount and umount allows local users to gain root privileges via a long relative pathname.... Read more

    Affected Products : suse_linux openlinux
    • EPSS Score: %0.15
    • Published: Feb. 03, 2000
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2000-0122

    Frontpage Server Extensions allows remote attackers to determine the physical path of a virtual directory via a GET request to the htimage.exe CGI program.... Read more

    Affected Products : frontpage
    • EPSS Score: %40.32
    • Published: Feb. 03, 2000
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2000-0127

    The Webspeed configuration program does not properly disable access to the WSMadmin utility, which allows remote attackers to gain privileges via wsisa.dll.... Read more

    Affected Products : webspeed
    • EPSS Score: %0.61
    • Published: Feb. 03, 2000
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2000-0125

    wwwthreads does not properly cleanse numeric data or table names that are passed to SQL queries, which allows remote attackers to gain privileges for wwwthreads forums.... Read more

    Affected Products : wwwthreads
    • EPSS Score: %3.22
    • Published: Feb. 03, 2000
    • Modified: Apr. 03, 2025
  • 7.2

    HIGH
    CVE-2000-0112

    The default installation of Debian GNU/Linux uses an insecure Master Boot Record (MBR) which allows a local user to boot from a floppy disk during the installation.... Read more

    Affected Products : debian_linux
    • EPSS Score: %0.06
    • Published: Feb. 02, 2000
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2000-0114

    Frontpage Server Extensions allows remote attackers to determine the name of the anonymous account via an RPC POST request to shtml.dll in the /_vti_bin/ virtual directory.... Read more

    Affected Products : internet_information_server
    • EPSS Score: %6.68
    • Published: Feb. 02, 2000
    • Modified: Apr. 03, 2025
  • 5.1

    MEDIUM
    CVE-2000-0469

    Selena Sol WebBanner 4.0 allows remote attackers to read arbitrary files via a .. (dot dot) attack.... Read more

    Affected Products : webbanner
    • EPSS Score: %0.85
    • Published: Feb. 02, 2000
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2000-0104

    The Shoptron shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.... Read more

    Affected Products : shoptron
    • EPSS Score: %0.64
    • Published: Feb. 01, 2000
    • Modified: Apr. 03, 2025
  • 4.3

    MEDIUM
    CVE-2000-1205

    Cross site scripting vulnerabilities in Apache 1.3.0 through 1.3.11 allow remote attackers to execute script as other web site visitors via (1) the printenv CGI (printenv.pl), which does not encode its output, (2) pages generated by the ap_send_error_resp... Read more

    Affected Products : http_server
    • EPSS Score: %9.48
    • Published: Feb. 01, 2000
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2000-0108

    The Intellivend shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.... Read more

    Affected Products : intellivend
    • EPSS Score: %0.64
    • Published: Feb. 01, 2000
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2000-0101

    The Make-a-Store OrderPage shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.... Read more

    Affected Products : orderpage
    • EPSS Score: %0.55
    • Published: Feb. 01, 2000
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2000-0105

    Outlook Express 5.01 and Internet Explorer 5.01 allow remote attackers to view a user's email messages via a script that accesses a variable that references subsequent email messages that are read by the client.... Read more

    Affected Products : outlook_express
    • EPSS Score: %57.55
    • Published: Feb. 01, 2000
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2000-0131

    Buffer overflow in War FTPd 1.6x allows users to cause a denial of service via long MKD and CWD commands.... Read more

    Affected Products : warftpd
    • EPSS Score: %4.16
    • Published: Feb. 01, 2000
    • Modified: Apr. 03, 2025
Showing 20 of 292095 Results