Latest CVE Feed
-
5.0
MEDIUMCVE-2000-0051
The Allaire Spectra Configuration Wizard allows remote attackers to cause a denial of service by repeatedly resubmitting data collections for indexing via a URL.... Read more
Affected Products : spectra- Published: Jan. 04, 2000
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2000-0062
The DTML implementation in the Z Object Publishing Environment (Zope) allows remote attackers to conduct unauthorized activities.... Read more
Affected Products : zope- Published: Jan. 04, 2000
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2000-0049
Buffer overflow in Winamp client allows remote attackers to execute commands via a long entry in a .pls file.... Read more
Affected Products : winamp- Published: Jan. 04, 2000
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2000-0085
Hotmail does not properly filter JavaScript code from a user's mailbox, which allows a remote attacker to execute code via the LOWSRC or DYNRC parameters in the IMG tag.... Read more
Affected Products : hotmail- Published: Jan. 04, 2000
- Modified: Apr. 03, 2025
-
10.0
HIGH- Published: Jan. 04, 2000
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2000-0057
Cold Fusion CFCACHE tag places temporary cache files within the web document root, allowing remote attackers to obtain sensitive system information.... Read more
Affected Products : coldfusion_server- Published: Jan. 04, 2000
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2000-0053
Microsoft Commercial Internet System (MCIS) IMAP server allows remote attackers to cause a denial of service via a malformed IMAP request.... Read more
Affected Products : commercial_internet_system- Published: Jan. 04, 2000
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2000-0059
PHP3 with safe_mode enabled does not properly filter shell metacharacters from commands that are executed by popen, which could allow remote attackers to execute commands.... Read more
Affected Products : php- Published: Jan. 04, 2000
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2000-0050
The Allaire Spectra Webtop allows authenticated users to access other Webtop sections by specifying explicit URLs.... Read more
Affected Products : spectra- Published: Jan. 04, 2000
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-1999-0735
KDE K-Mail allows local users to gain privileges via a symlink attack in temporary user directories.... Read more
- Published: Jan. 04, 2000
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2000-0078
The June 1999 version of the HP-UX aserver program allows local users to gain privileges by specifying an alternate PATH which aserver uses to find the awk command.... Read more
Affected Products : hp-ux- Published: Jan. 02, 2000
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0082
WebTV email client allows remote attackers to force the client to send email without the user's knowledge via HTML.... Read more
Affected Products : webtv- Published: Jan. 02, 2000
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2000-0077
The October 1998 version of the HP-UX aserver program allows local users to gain privileges by specifying an alternate PATH which aserver uses to find the ps and grep commands.... Read more
Affected Products : hp-ux- Published: Jan. 02, 2000
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-1999-0964
Buffer overflow in FreeBSD setlocale in the libc module allows attackers to execute arbitrary code via a long PATH_LOCALE environment variable.... Read more
Affected Products : freebsd- Published: Jan. 01, 2000
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2000-0069
The recover program in Solstice Backup allows local users to restore sensitive files.... Read more
Affected Products : solstice_backup- Published: Jan. 01, 2000
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2000-0120
The Remote Access Service invoke.cfm template in Allaire Spectra 1.0 allows users to bypass authentication via the bAuthenticated parameter.... Read more
Affected Products : spectra- Published: Jan. 01, 2000
- Modified: Apr. 03, 2025
-
1.2
LOWCVE-1999-1042
Cisco Resource Manager (CRM) 1.0 and 1.1 creates world-readable log files and temporary files, which may expose sensitive information, to local users such as user IDs, passwords and SNMP community strings.... Read more
Affected Products : resource_manager- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-1999-1148
FTP service in IIS 4.0 and earlier allows remote attackers to cause a denial of service (resource exhaustion) via many passive (PASV) connections at the same time.... Read more
Affected Products : internet_information_server- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-1999-1587
/usr/ucb/ps in Sun Microsystems Solaris 8 and 9, and certain earlier releases, allows local users to view the environment variables and values of arbitrary processes via the -e option.... Read more
- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-1999-0154
IIS 2.0 and 3.0 allows remote attackers to read the source code for ASP pages by appending a . (dot) to the end of the URL.... Read more
- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025