Latest CVE Feed
-
2.1
LOWCVE-2000-0402
The Mixed Mode authentication capability in Microsoft SQL Server 7.0 stores the System Administrator (sa) account in plaintext in a log file which is readable by any user, aka the "SQL Server 7.0 Service Pack Password" vulnerability.... Read more
Affected Products : sql_server- Published: May. 30, 2000
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0495
Microsoft Windows Media Encoder allows remote attackers to cause a denial of service via a malformed request, aka the "Malformed Windows Media Encoder Request" vulnerability.... Read more
Affected Products : windows_media_services- Published: May. 30, 2000
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0486
Buffer overflow in Cisco TACACS+ tac_plus server allows remote attackers to cause a denial of service via a malformed packet with a long length field.... Read more
- Published: May. 30, 2000
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2000-0485
Microsoft SQL Server allows local users to obtain database passwords via the Data Transformation Service (DTS) package Properties dialog, aka the "DTS Password" vulnerability.... Read more
Affected Products : sql_server- Published: May. 30, 2000
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2000-0488
Buffer overflow in ITHouse mail server 1.04 allows remote attackers to execute arbitrary commands via a long RCPT TO mail command.... Read more
Affected Products : ithouse_mail_server- Published: May. 30, 2000
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2000-0455
Buffer overflow in xlockmore xlock program version 4.16 and earlier allows local users to read sensitive data from memory via a long -mode option.... Read more
Affected Products : xlock- Published: May. 29, 2000
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2000-0454
Buffer overflow in Linux cdrecord allows local users to gain privileges via the dev parameter.... Read more
Affected Products : mandrake_linux- Published: May. 29, 2000
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2000-0461
The undocumented semconfig system call in BSD freezes the state of semaphores, which allows local users to cause a denial of service of the semaphore system by using the semconfig call.... Read more
- Published: May. 29, 2000
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0564
The guestbook CGI program in ICQ Web Front service for ICQ 2000a, 99b, and others allows remote attackers to cause a denial of service via a URL with a long name parameter.... Read more
Affected Products : icq- Published: May. 29, 2000
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2000-0462
ftpd in NetBSD 1.4.2 does not properly parse entries in /etc/ftpchroot and does not chroot the specified users, which allows those users to access other files outside of their home directory.... Read more
Affected Products : netbsd- Published: May. 28, 2000
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2000-0456
NetBSD 1.4.2 and earlier allows local users to cause a denial of service by repeatedly running certain system calls in the kernel which do not yield the CPU, aka "cpu-hog".... Read more
Affected Products : netbsd- Published: May. 28, 2000
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2000-0460
Buffer overflow in KDE kdesud on Linux allows local uses to gain privileges via a long DISPLAY environmental variable.... Read more
Affected Products : kde- Published: May. 27, 2000
- Modified: Apr. 03, 2025
-
2.6
LOWCVE-2000-0553
Race condition in IPFilter firewall 3.4.3 and earlier, when configured with overlapping "return-rst" and "keep state" rules, allows remote attackers to bypass access restrictions.... Read more
Affected Products : ipfilter- Published: May. 26, 2000
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0517
Netscape 4.73 and earlier does not properly warn users about a potentially invalid certificate if the user has previously accepted the certificate for a different web site, which could allow remote attackers to spoof a legitimate web site by compromising ... Read more
Affected Products : communicator- Published: May. 26, 2000
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0403
The CIFS Computer Browser service on Windows NT 4.0 allows a remote attacker to cause a denial of service by sending a large number of host announcement requests to the master browse tables, aka the "HostAnnouncement Flooding" or "HostAnnouncement Frame" ... Read more
Affected Products : windows_nt- Published: May. 25, 2000
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0404
The CIFS Computer Browser service allows remote attackers to cause a denial of service by sending a ResetBrowser frame to the Master Browser, aka the "ResetBrowser Frame" vulnerability.... Read more
- Published: May. 25, 2000
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2000-0491
Buffer overflow in the XDMCP parsing code of GNOME gdm, KDE kdm, and wdm allows remote attackers to execute arbitrary commands or cause a denial of service via a long FORWARD_QUERY request.... Read more
- Published: May. 24, 2000
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0444
HP Web JetAdmin 6.0 allows remote attackers to cause a denial of service via a malformed URL to port 8000.... Read more
Affected Products : jetadmin- Published: May. 24, 2000
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2000-0443
The web interface server in HP Web JetAdmin 5.6 allows remote attackers to read arbitrary files via a .. (dot dot) attack.... Read more
Affected Products : jetadmin- Published: May. 24, 2000
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2000-0442
Qpopper 2.53 and earlier allows local users to gain privileges via a formatting string in the From: header, which is processed by the euidl command.... Read more
- Published: May. 24, 2000
- Modified: Apr. 03, 2025