Latest CVE Feed
-
2.6
LOWCVE-2000-0519
Internet Explorer 4.x and 5.x does not properly re-validate an SSL certificate if the user establishes a new SSL session with the same server during the same Internet Explorer session, aka one of two different "SSL Certificate Validation" vulnerabilities.... Read more
- Published: Jun. 05, 2000
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2000-0537
BRU backup software allows local users to append data to arbitrary files by specifying an alternate configuration file with the BRUEXECLOG environmental variable.... Read more
Affected Products : bru- Published: Jun. 05, 2000
- Modified: Apr. 03, 2025
-
2.6
LOWCVE-2000-0518
Internet Explorer 4.x and 5.x does not properly verify all contents of an SSL certificate if a connection is made to the server via an image or a frame, aka one of two different "SSL Certificate Validation" vulnerabilities.... Read more
- Published: Jun. 05, 2000
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0492
PassWD 1.2 uses weak encryption (trivial encoding) to store passwords, which allows an attacker who can read the password file to easliy decrypt the passwords.... Read more
Affected Products : passwd- Published: Jun. 04, 2000
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2000-0536
xinetd 2.1.8.x does not properly restrict connections if hostnames are used for access control and the connecting host does not have a reverse DNS entry.... Read more
Affected Products : xinetd- Published: Jun. 04, 2000
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2000-0468
man in HP-UX 10.20 and 11 allows local attackers to overwrite files via a symlink attack.... Read more
Affected Products : hp-ux- Published: Jun. 02, 2000
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-1999-0590
A system does not present an appropriate legal message or warning to a user who is accessing it.... Read more
- Published: Jun. 01, 2000
- Modified: Apr. 03, 2025
-
3.6
LOWCVE-2000-0487
The Protected Store in Windows 2000 does not properly select the strongest encryption when available, which causes it to use a default of 40-bit encryption instead of 56-bit DES encryption, aka the "Protected Store Key Length" vulnerability.... Read more
Affected Products : windows_2000- Published: Jun. 01, 2000
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2000-0470
Allegro RomPager HTTP server allows remote attackers to cause a denial of service via a malformed authentication request.... Read more
Affected Products : rom_pager- Published: Jun. 01, 2000
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0507
Imate Webmail Server 2.5 allows remote attackers to cause a denial of service via a long HELO command.... Read more
Affected Products : imate_webmail_server- Published: Jun. 01, 2000
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2000-0490
Buffer overflow in the NetWin DSMTP 2.7q in the NetWin dmail package allows remote attackers to execute arbitrary commands via a long ETRN request.... Read more
Affected Products : dmail- Published: Jun. 01, 2000
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2000-0493
Buffer overflow in Simple Network Time Sync (SMTS) daemon allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long string.... Read more
Affected Products : time_sync- Published: Jun. 01, 2000
- Modified: Apr. 03, 2025
-
7.8
HIGHCVE-2000-0474
Real Networks RealServer 7.x allows remote attackers to cause a denial of service via a malformed request for a page in the viewsource directory.... Read more
Affected Products : realserver- Published: Jun. 01, 2000
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0476
xterm, Eterm, and rxvt allow an attacker to cause a denial of service by embedding certain escape characters which force the window to be resized.... Read more
- Published: Jun. 01, 2000
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2000-0509
Buffer overflows in the finger and whois demonstration scripts in Sambar Server 4.3 allow remote attackers to execute arbitrary commands via a long hostname.... Read more
Affected Products : sambar_server- Published: Jun. 01, 2000
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2000-0467
Buffer overflow in Linux splitvt 1.6.3 and earlier allows local users to gain root privileges via a long password in the screen locking function.... Read more
Affected Products : splitvt- Published: Jun. 01, 2000
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2000-0530
The KApplication class in the KDE 1.1.2 configuration file management capability allows local users to overwrite arbitrary files.... Read more
- Published: May. 31, 2000
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0505
The Apache 1.3.x HTTP server for Windows platforms allows remote attackers to list directory contents by requesting a URL containing a large number of / characters.... Read more
- Published: May. 31, 2000
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2000-0488
Buffer overflow in ITHouse mail server 1.04 allows remote attackers to execute arbitrary commands via a long RCPT TO mail command.... Read more
Affected Products : ithouse_mail_server- Published: May. 30, 2000
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0486
Buffer overflow in Cisco TACACS+ tac_plus server allows remote attackers to cause a denial of service via a malformed packet with a long length field.... Read more
- Published: May. 30, 2000
- Modified: Apr. 03, 2025