Search Results (29880 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2000-0726 1 Stalkerlab 1 Mailers 2025-04-03 N/A
CGIMail.exe CGI program in Stalkerlab Mailers 1.1.2 allows remote attackers to read arbitrary files by specifying the file in the $Attach$ hidden form variable.
CVE-2000-0727 1 Xpdf 1 Xpdf 2025-04-03 N/A
xpdf PDF viewer client earlier than 0.91 does not properly launch a web browser for embedded URL's, which allows an attacker to execute arbitrary commands via a URL that contains shell metacharacters.
CVE-2000-0720 1 Gwscripts 1 Gwscripts News Publisher 2025-04-03 N/A
news.cgi in GWScripts News Publisher does not properly authenticate requests to add an author to the author index, which allows remote attackers to add new authors by directly posting an HTTP request to the new.cgi program with an addAuthor parameter, and setting the Referer to the news.cgi program.
CVE-2000-0735 1 Rimarts Inc. 1 Becky Internet Mail 2025-04-03 N/A
Buffer overflow in Becky! Internet Mail client 1.26.03 and earlier allows remote attackers to cause a denial of service via a long Content-type: MIME header when the user replies to a message.
CVE-2000-0731 1 Jeremy Arnold 1 Worm Webserver 2025-04-03 N/A
Directory traversal vulnerability in Worm HTTP server allows remote attackers to read arbitrary files via a .. (dot dot) attack.
CVE-2000-0732 1 Jeremy Arnold 1 Worm Webserver 2025-04-03 N/A
Worm HTTP server allows remote attackers to cause a denial of service via a long URL.
CVE-2000-0734 2 Eeye Digital Security, Spynet 2 Iris, Capturenet 2025-04-03 N/A
eEye IRIS 1.01 beta allows remote attackers to cause a denial of service via a large number of UDP connections.
CVE-2000-0740 1 Network Associates 1 Net Tools Pki Server 2025-04-03 N/A
Buffer overflow in strong.exe program in NAI Net Tools PKI server 1.0 before HotFix 3 allows remote attackers to execute arbitrary commands via a long URL in the HTTPS port.
CVE-2000-0739 1 Network Associates 1 Net Tools Pki Server 2025-04-03 N/A
Directory traversal vulnerability in strong.exe program in NAI Net Tools PKI server 1.0 before HotFix 3 allows remote attackers to read arbitrary files via a .. (dot dot) attack in an HTTPS request to the enrollment server.
CVE-2000-0741 1 Network Associates 1 Net Tools Pki Server 2025-04-03 N/A
Format string vulnerability in strong.exe program in NAI Net Tools PKI server 1.0 before HotFix 3 allows remote attackers to execute arbitrary code via format strings in a URL with a .XUDA extension.
CVE-2000-0743 1 University Of Minnesota 1 Gopherd 2025-04-03 N/A
Buffer overflow in University of Minnesota (UMN) gopherd 2.x allows remote attackers to execute arbitrary commands via a DES key generation request (GDESkey) that contains a long ticket value.
CVE-2000-0745 1 Francisco Burzi 1 Php-nuke 2025-04-03 N/A
admin.php3 in PHP-Nuke does not properly verify the PHP-Nuke administrator password, which allows remote attackers to gain privileges by requesting a URL that does not specify the aid or pwd parameter.
CVE-2000-0751 3 Netbsd, Openbsd, Redhat 3 Netbsd, Openbsd, Linux 2025-04-03 N/A
mopd (Maintenance Operations Protocol loader daemon) does not properly cleanse user-injected format strings, which allows remote attackers to execute arbitrary commands.
CVE-2000-0750 3 Netbsd, Openbsd, Redhat 3 Netbsd, Openbsd, Linux 2025-04-03 N/A
Buffer overflow in mopd (Maintenance Operations Protocol loader daemon) allows remote attackers to execute arbitrary commands via a long file name.
CVE-2000-0752 1 Freebsd 1 Freebsd 2025-04-03 N/A
Buffer overflows in brouted in FreeBSD and possibly other OSes allows local users to gain root privileges via long command line arguments.
CVE-2000-0753 1 Microsoft 1 Outlook 2025-04-03 N/A
The Microsoft Outlook mail client identifies the physical path of the sender's machine within a winmail.dat attachment to Rich Text Format (RTF) files.
CVE-2000-0754 1 Hp 1 Openview Network Node Manager 2025-04-03 N/A
Vulnerability in HP OpenView Network Node Manager (NMM) version 6.1 related to passwords.
CVE-2000-0759 1 Apache 1 Tomcat 2025-04-03 N/A
Jakarta Tomcat 3.1 under Apache reveals physical path information when a remote attacker requests a URL that does not exist, which generates an error message that includes the physical path.
CVE-2000-0763 1 David Bagley 1 Xlock 2025-04-03 N/A
xlockmore and xlockf do not properly cleanse user-injected format strings, which allows local users to gain root privileges via the -d option.
CVE-2000-0761 1 Ibm 1 Os2 Ftp Server 2025-04-03 N/A
OS2/Warp 4.5 FTP server allows remote attackers to cause a denial of service via a long username.