Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 4.6

    MEDIUM
    CVE-2000-0050

    The Allaire Spectra Webtop allows authenticated users to access other Webtop sections by specifying explicit URLs.... Read more

    Affected Products : spectra
    • Published: Jan. 04, 2000
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-1999-0876

    Buffer overflow in Internet Explorer 4.0 via EMBED tag.... Read more

    Affected Products : internet_explorer ie
    • Published: Jan. 04, 2000
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2000-0057

    Cold Fusion CFCACHE tag places temporary cache files within the web document root, allowing remote attackers to obtain sensitive system information.... Read more

    Affected Products : coldfusion_server
    • Published: Jan. 04, 2000
    • Modified: Apr. 03, 2025
  • 4.6

    MEDIUM
    CVE-1999-0735

    KDE K-Mail allows local users to gain privileges via a symlink attack in temporary user directories.... Read more

    Affected Products : linux k-mail
    • Published: Jan. 04, 2000
    • Modified: Apr. 03, 2025
  • 7.2

    HIGH
    CVE-2000-0049

    Buffer overflow in Winamp client allows remote attackers to execute commands via a long entry in a .pls file.... Read more

    Affected Products : winamp
    • Published: Jan. 04, 2000
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-2000-0059

    PHP3 with safe_mode enabled does not properly filter shell metacharacters from commands that are executed by popen, which could allow remote attackers to execute commands.... Read more

    Affected Products : php
    • Published: Jan. 04, 2000
    • Modified: Apr. 03, 2025
  • 7.2

    HIGH
    CVE-2000-0052

    Red Hat userhelper program in the usermode package allows local users to gain root access via PAM and a .. (dot dot) attack.... Read more

    Affected Products : linux mandrake_linux turbolinux
    • Published: Jan. 04, 2000
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2000-0085

    Hotmail does not properly filter JavaScript code from a user's mailbox, which allows a remote attacker to execute code via the LOWSRC or DYNRC parameters in the IMG tag.... Read more

    Affected Products : hotmail
    • Published: Jan. 04, 2000
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-2000-0062

    The DTML implementation in the Z Object Publishing Environment (Zope) allows remote attackers to conduct unauthorized activities.... Read more

    Affected Products : zope
    • Published: Jan. 04, 2000
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-1999-0744

    Buffer overflow in Netscape Enterprise Server and FastTrask Server allows remote attackers to gain privileges via a long HTTP GET request.... Read more

    Affected Products : enterprise_server fasttrack_server
    • Published: Jan. 04, 2000
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2000-0051

    The Allaire Spectra Configuration Wizard allows remote attackers to cause a denial of service by repeatedly resubmitting data collections for indexing via a URL.... Read more

    Affected Products : spectra
    • Published: Jan. 04, 2000
    • Modified: Apr. 03, 2025
  • 7.2

    HIGH
    CVE-2000-0077

    The October 1998 version of the HP-UX aserver program allows local users to gain privileges by specifying an alternate PATH which aserver uses to find the ps and grep commands.... Read more

    Affected Products : hp-ux
    • Published: Jan. 02, 2000
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2000-0082

    WebTV email client allows remote attackers to force the client to send email without the user's knowledge via HTML.... Read more

    Affected Products : webtv
    • Published: Jan. 02, 2000
    • Modified: Apr. 03, 2025
  • 7.2

    HIGH
    CVE-2000-0078

    The June 1999 version of the HP-UX aserver program allows local users to gain privileges by specifying an alternate PATH which aserver uses to find the awk command.... Read more

    Affected Products : hp-ux
    • Published: Jan. 02, 2000
    • Modified: Apr. 03, 2025
  • 7.2

    HIGH
    CVE-1999-0964

    Buffer overflow in FreeBSD setlocale in the libc module allows attackers to execute arbitrary code via a long PATH_LOCALE environment variable.... Read more

    Affected Products : freebsd
    • Published: Jan. 01, 2000
    • Modified: Apr. 03, 2025
  • 2.1

    LOW
    CVE-2000-0069

    The recover program in Solstice Backup allows local users to restore sensitive files.... Read more

    Affected Products : solstice_backup
    • Published: Jan. 01, 2000
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2000-0120

    The Remote Access Service invoke.cfm template in Allaire Spectra 1.0 allows users to bypass authentication via the bAuthenticated parameter.... Read more

    Affected Products : spectra
    • Published: Jan. 01, 2000
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-1999-1455

    RSH service utility RSHSVC in Windows NT 3.5 through 4.0 does not properly restrict access as specified in the .Rhosts file when a user comes from an authorized host, which could allow unauthorized users to access the service by logging in from an authori... Read more

    Affected Products : windows_nt
    • Published: Dec. 31, 1999
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-1999-1339

    Vulnerability when Network Address Translation (NAT) is enabled in Linux 2.2.10 and earlier with ipchains, or FreeBSD 3.2 with ipfw, allows remote attackers to cause a denial of service (kernel panic) via a ping -R (record route) command.... Read more

    Affected Products : linux_kernel freebsd
    • Published: Dec. 31, 1999
    • Modified: Apr. 03, 2025
  • 3.5

    LOW
    CVE-1999-1590

    Directory traversal vulnerability in Muhammad A. Muquit wwwcount (Count.cgi) 2.3 allows remote attackers to read arbitrary GIF files via ".." sequences in the image parameter, a different vulnerability than CVE-1999-0021.... Read more

    Affected Products : wwwcount
    • Published: Dec. 31, 1999
    • Modified: Apr. 03, 2025
Showing 20 of 292910 Results