Latest CVE Feed
-
7.2
HIGHCVE-2000-0052
Red Hat userhelper program in the usermode package allows local users to gain root access via PAM and a .. (dot dot) attack.... Read more
- Published: Jan. 04, 2000
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2000-0049
Buffer overflow in Winamp client allows remote attackers to execute commands via a long entry in a .pls file.... Read more
Affected Products : winamp- Published: Jan. 04, 2000
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2000-0059
PHP3 with safe_mode enabled does not properly filter shell metacharacters from commands that are executed by popen, which could allow remote attackers to execute commands.... Read more
Affected Products : php- Published: Jan. 04, 2000
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-1999-0894
Red Hat Linux screen program does not use Unix98 ptys, allowing local users to write to other terminals.... Read more
Affected Products : linux- Published: Jan. 04, 2000
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-1999-0744
Buffer overflow in Netscape Enterprise Server and FastTrask Server allows remote attackers to gain privileges via a long HTTP GET request.... Read more
- Published: Jan. 04, 2000
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2000-0062
The DTML implementation in the Z Object Publishing Environment (Zope) allows remote attackers to conduct unauthorized activities.... Read more
Affected Products : zope- Published: Jan. 04, 2000
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2000-0085
Hotmail does not properly filter JavaScript code from a user's mailbox, which allows a remote attacker to execute code via the LOWSRC or DYNRC parameters in the IMG tag.... Read more
Affected Products : hotmail- Published: Jan. 04, 2000
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2000-0057
Cold Fusion CFCACHE tag places temporary cache files within the web document root, allowing remote attackers to obtain sensitive system information.... Read more
Affected Products : coldfusion_server- Published: Jan. 04, 2000
- Modified: Apr. 03, 2025
-
10.0
HIGH- Published: Jan. 04, 2000
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-1999-0735
KDE K-Mail allows local users to gain privileges via a symlink attack in temporary user directories.... Read more
- Published: Jan. 04, 2000
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0082
WebTV email client allows remote attackers to force the client to send email without the user's knowledge via HTML.... Read more
Affected Products : webtv- Published: Jan. 02, 2000
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2000-0077
The October 1998 version of the HP-UX aserver program allows local users to gain privileges by specifying an alternate PATH which aserver uses to find the ps and grep commands.... Read more
Affected Products : hp-ux- Published: Jan. 02, 2000
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2000-0078
The June 1999 version of the HP-UX aserver program allows local users to gain privileges by specifying an alternate PATH which aserver uses to find the awk command.... Read more
Affected Products : hp-ux- Published: Jan. 02, 2000
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-1999-0964
Buffer overflow in FreeBSD setlocale in the libc module allows attackers to execute arbitrary code via a long PATH_LOCALE environment variable.... Read more
Affected Products : freebsd- Published: Jan. 01, 2000
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2000-0120
The Remote Access Service invoke.cfm template in Allaire Spectra 1.0 allows users to bypass authentication via the bAuthenticated parameter.... Read more
Affected Products : spectra- Published: Jan. 01, 2000
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2000-0069
The recover program in Solstice Backup allows local users to restore sensitive files.... Read more
Affected Products : solstice_backup- Published: Jan. 01, 2000
- Modified: Apr. 03, 2025
-
5.1
MEDIUMCVE-1999-1093
Buffer overflow in the Window.External function in the JScript Scripting Engine in Internet Explorer 4.01 SP1 and earlier allows remote attackers to execute arbitrary commands via a malicious web page.... Read more
Affected Products : internet_explorer- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-1999-1124
HTTP Client application in ColdFusion allows remote attackers to bypass access restrictions for web pages on other ports by providing the target page to the mainframeset.cfm application, which requests the page from the server, making it look like the req... Read more
Affected Products : coldfusion- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-1999-1084
The "AEDebug" registry key is installed with insecure permissions, which allows local users to modify the key to specify a Trojan Horse debugger which is automatically executed on a system crash.... Read more
Affected Products : windows_nt- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-1999-0815
Memory leak in SNMP agent in Windows NT 4.0 before SP5 allows remote attackers to conduct a denial of service (memory exhaustion) via a large number of queries.... Read more
Affected Products : windows_nt- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025