Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 7.5

    HIGH
    CVE-2000-0085

    Hotmail does not properly filter JavaScript code from a user's mailbox, which allows a remote attacker to execute code via the LOWSRC or DYNRC parameters in the IMG tag.... Read more

    Affected Products : hotmail
    • Published: Jan. 04, 2000
    • Modified: Apr. 03, 2025
  • 7.2

    HIGH
    CVE-2000-0049

    Buffer overflow in Winamp client allows remote attackers to execute commands via a long entry in a .pls file.... Read more

    Affected Products : winamp
    • Published: Jan. 04, 2000
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-2000-0062

    The DTML implementation in the Z Object Publishing Environment (Zope) allows remote attackers to conduct unauthorized activities.... Read more

    Affected Products : zope
    • Published: Jan. 04, 2000
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2000-0051

    The Allaire Spectra Configuration Wizard allows remote attackers to cause a denial of service by repeatedly resubmitting data collections for indexing via a URL.... Read more

    Affected Products : spectra
    • Published: Jan. 04, 2000
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2000-0053

    Microsoft Commercial Internet System (MCIS) IMAP server allows remote attackers to cause a denial of service via a malformed IMAP request.... Read more

    Affected Products : commercial_internet_system
    • Published: Jan. 04, 2000
    • Modified: Apr. 03, 2025
  • 4.6

    MEDIUM
    CVE-2000-0050

    The Allaire Spectra Webtop allows authenticated users to access other Webtop sections by specifying explicit URLs.... Read more

    Affected Products : spectra
    • Published: Jan. 04, 2000
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-1999-0876

    Buffer overflow in Internet Explorer 4.0 via EMBED tag.... Read more

    Affected Products : internet_explorer ie
    • Published: Jan. 04, 2000
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2000-0057

    Cold Fusion CFCACHE tag places temporary cache files within the web document root, allowing remote attackers to obtain sensitive system information.... Read more

    Affected Products : coldfusion_server
    • Published: Jan. 04, 2000
    • Modified: Apr. 03, 2025
  • 4.6

    MEDIUM
    CVE-1999-0735

    KDE K-Mail allows local users to gain privileges via a symlink attack in temporary user directories.... Read more

    Affected Products : linux k-mail
    • Published: Jan. 04, 2000
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-1999-0744

    Buffer overflow in Netscape Enterprise Server and FastTrask Server allows remote attackers to gain privileges via a long HTTP GET request.... Read more

    Affected Products : enterprise_server fasttrack_server
    • Published: Jan. 04, 2000
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-2000-0059

    PHP3 with safe_mode enabled does not properly filter shell metacharacters from commands that are executed by popen, which could allow remote attackers to execute commands.... Read more

    Affected Products : php
    • Published: Jan. 04, 2000
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-1999-0894

    Red Hat Linux screen program does not use Unix98 ptys, allowing local users to write to other terminals.... Read more

    Affected Products : linux
    • Published: Jan. 04, 2000
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2000-0082

    WebTV email client allows remote attackers to force the client to send email without the user's knowledge via HTML.... Read more

    Affected Products : webtv
    • Published: Jan. 02, 2000
    • Modified: Apr. 03, 2025
  • 7.2

    HIGH
    CVE-2000-0077

    The October 1998 version of the HP-UX aserver program allows local users to gain privileges by specifying an alternate PATH which aserver uses to find the ps and grep commands.... Read more

    Affected Products : hp-ux
    • Published: Jan. 02, 2000
    • Modified: Apr. 03, 2025
  • 7.2

    HIGH
    CVE-2000-0078

    The June 1999 version of the HP-UX aserver program allows local users to gain privileges by specifying an alternate PATH which aserver uses to find the awk command.... Read more

    Affected Products : hp-ux
    • Published: Jan. 02, 2000
    • Modified: Apr. 03, 2025
  • 7.2

    HIGH
    CVE-1999-0964

    Buffer overflow in FreeBSD setlocale in the libc module allows attackers to execute arbitrary code via a long PATH_LOCALE environment variable.... Read more

    Affected Products : freebsd
    • Published: Jan. 01, 2000
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2000-0120

    The Remote Access Service invoke.cfm template in Allaire Spectra 1.0 allows users to bypass authentication via the bAuthenticated parameter.... Read more

    Affected Products : spectra
    • Published: Jan. 01, 2000
    • Modified: Apr. 03, 2025
  • 2.1

    LOW
    CVE-2000-0069

    The recover program in Solstice Backup allows local users to restore sensitive files.... Read more

    Affected Products : solstice_backup
    • Published: Jan. 01, 2000
    • Modified: Apr. 03, 2025
  • 2.1

    LOW
    CVE-1999-1362

    Win32k.sys in Windows NT 4.0 before SP2 allows local users to cause a denial of service (crash) by calling certain WIN32K functions with incorrect parameters.... Read more

    Affected Products : windows_nt
    • Published: Dec. 31, 1999
    • Modified: Apr. 03, 2025
  • 4.6

    MEDIUM
    CVE-1999-1317

    Windows NT 4.0 SP4 and earlier allows local users to gain privileges by modifying the symbolic link table in the \?? object folder using a different case letter (upper or lower) to point to a different device.... Read more

    Affected Products : windows_nt
    • Published: Dec. 31, 1999
    • Modified: Apr. 03, 2025
Showing 20 of 292811 Results