Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 2.1

    LOW
    CVE-2000-0067

    CyberCash Merchant Connection Kit (MCK) allows local users to modify files via a symlink attack.... Read more

    Affected Products : merchant_connection_kit
    • EPSS Score: %0.12
    • Published: Jan. 11, 2000
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2000-0074

    PowerScripts PlusMail CGI program allows remote attackers to execute commands via a password file with improper permissions.... Read more

    Affected Products : plusmail
    • EPSS Score: %5.52
    • Published: Jan. 11, 2000
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2000-0071

    IIS 4.0 allows a remote attacker to obtain the real pathname of the document root by requesting non-existent files with .ida or .idq extensions.... Read more

    • EPSS Score: %40.67
    • Published: Jan. 11, 2000
    • Modified: Apr. 03, 2025
  • 6.4

    MEDIUM
    CVE-2000-0045

    MySQL allows local users to modify passwords for arbitrary MySQL users via the GRANT privilege.... Read more

    Affected Products : mysql
    • EPSS Score: %2.09
    • Published: Jan. 11, 2000
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2000-0046

    Buffer overflow in ICQ 99b 1.1.1.1 client allows remote attackers to execute commands via a malformed URL within an ICQ message.... Read more

    Affected Products : icq
    • EPSS Score: %4.73
    • Published: Jan. 10, 2000
    • Modified: Apr. 03, 2025
  • 2.1

    LOW
    CVE-2000-0080

    AIX techlibss allows local users to overwrite files via a symlink attack.... Read more

    Affected Products : aix
    • EPSS Score: %0.11
    • Published: Jan. 10, 2000
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-2000-0081

    Hotmail does not properly filter JavaScript code from a user's mailbox, which allows a remote attacker to execute the code by using hexadecimal codes to specify the javascript: protocol, e.g. jAvascript.... Read more

    Affected Products : hotmail
    • EPSS Score: %29.29
    • Published: Jan. 10, 2000
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-2000-1220

    The line printer daemon (lpd) in the lpr package in multiple Linux operating systems allows local users to gain root privileges by causing sendmail to execute with arbitrary command line arguments, as demonstrated using the -C option to specify a configur... Read more

    Affected Products : linux irix
    • EPSS Score: %3.13
    • Published: Jan. 08, 2000
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-2000-1221

    The line printer daemon (lpd) in the lpr package in multiple Linux operating systems authenticates by comparing the reverse-resolved hostname of the local machine to the hostname of the print server as returned by gethostname, which allows remote attacker... Read more

    Affected Products : debian_linux linux irix
    • EPSS Score: %12.18
    • Published: Jan. 08, 2000
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-2000-0061

    Internet Explorer 5 does not modify the security zone for a document that is being loaded into a window until after the document has been loaded, which could allow remote attackers to execute Javascript in a different security context while the document i... Read more

    Affected Products : internet_explorer
    • EPSS Score: %17.03
    • Published: Jan. 07, 2000
    • Modified: Apr. 03, 2025
  • 7.2

    HIGH
    CVE-2000-0055

    Buffer overflow in Solaris chkperm command allows local users to gain root access via a long -n option.... Read more

    Affected Products : solaris sunos
    • EPSS Score: %0.06
    • Published: Jan. 06, 2000
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-2000-0044

    Macros in War FTP 1.70 and 1.67b2 allow local or remote attackers to read arbitrary files or execute commands.... Read more

    Affected Products : warftpd
    • EPSS Score: %2.53
    • Published: Jan. 06, 2000
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2000-0084

    CuteFTP uses weak encryption to store password information in its tree.dat file.... Read more

    Affected Products : cuteftp
    • EPSS Score: %0.33
    • Published: Jan. 06, 2000
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2000-0058

    Network HotSync program in Handspring Visor does not have authentication, which allows remote attackers to retrieve email and files.... Read more

    Affected Products : visor_network_hotsync
    • EPSS Score: %0.80
    • Published: Jan. 05, 2000
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2000-0056

    IMail IMONITOR status.cgi CGI script allows remote attackers to cause a denial of service with many calls to status.cgi.... Read more

    Affected Products : imail
    • EPSS Score: %1.13
    • Published: Jan. 05, 2000
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2000-0053

    Microsoft Commercial Internet System (MCIS) IMAP server allows remote attackers to cause a denial of service via a malformed IMAP request.... Read more

    Affected Products : commercial_internet_system
    • EPSS Score: %14.20
    • Published: Jan. 04, 2000
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-2000-0062

    The DTML implementation in the Z Object Publishing Environment (Zope) allows remote attackers to conduct unauthorized activities.... Read more

    Affected Products : zope
    • EPSS Score: %0.92
    • Published: Jan. 04, 2000
    • Modified: Apr. 03, 2025
  • 4.6

    MEDIUM
    CVE-2000-0050

    The Allaire Spectra Webtop allows authenticated users to access other Webtop sections by specifying explicit URLs.... Read more

    Affected Products : spectra
    • EPSS Score: %0.07
    • Published: Jan. 04, 2000
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-2000-0059

    PHP3 with safe_mode enabled does not properly filter shell metacharacters from commands that are executed by popen, which could allow remote attackers to execute commands.... Read more

    Affected Products : php
    • EPSS Score: %4.09
    • Published: Jan. 04, 2000
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2000-0085

    Hotmail does not properly filter JavaScript code from a user's mailbox, which allows a remote attacker to execute code via the LOWSRC or DYNRC parameters in the IMG tag.... Read more

    Affected Products : hotmail
    • EPSS Score: %12.04
    • Published: Jan. 04, 2000
    • Modified: Apr. 03, 2025
Showing 20 of 292247 Results