Search

Published: All 7d 30d 90d 12m
Severity: All Critical High Medium Low

14,631 CVEs · Low severity

CVEs (14,631, showing first 500)

Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.

Showing 226–250 of 14,631 (capped at 500)

CVE ID Severity Patch CVSS Published Description
CVE-2000-0565 LOW 2.1 2000-06-13 SmartFTP Daemon 0.2 allows a local user to access arbitrary files by uploading and specifying an alternate user configuration file via a .. (dot dot) attack.
CVE-2000-0501 LOW 2.6 2000-06-16 Race condition in MDaemon 2.8.5.0 POP server allows local users to cause a denial of service by entering a UIDL command and quickly exiting the server.
CVE-2000-0578 LOW 3.7 2000-06-21 SGI MIPSPro compilers C, C++, F77 and F90 generate temporary files in /tmp with predictable file names, which could allow local users to insert malicious contents into thes…
CVE-2000-0579 LOW 3.7 2000-06-21 IRIX crontab creates temporary files with predictable file names and with the umask of the user, which could allow local users to modify another user's crontab file as it i…
CVE-1999-0585 LOW 2.1 2000-07-01 A Windows NT administrator account has the default name of Administrator.
CVE-2000-0605 LOW 2.1 2000-07-10 Blackboard CourseInfo 4.0 stores the local and SQL administrator user names and passwords in cleartext in a registry key whose access control allows users to access the passwords.
CVE-2000-0650 LOW 2.1 2000-07-11 The default installation of VirusScan 4.5 and NetShield 4.5 has insecure permissions for the registry key that identifies the AutoUpgrade directory, which allows local user…
CVE-2000-0649 LOW 2.6 2000-07-13 IIS 4.0 allows remote attackers to obtain the internal IP address of the server via an HTTP 1.0 request for a web page which is protected by basic authentication and has no…
CVE-2000-0633 LOW 2.1 2000-07-18 Vulnerability in Mandrake Linux usermode package allows local users to to reboot or halt the system.
CVE-2000-0615 LOW 2.1 2000-07-19 LPRng 3.6.x improperly installs lpd as setuid root, which can allow local users to append lpd trace and logging messages to files.
CVE-2000-0667 LOW 3.6 2000-07-27 Vulnerability in gpm in Caldera Linux allows local users to delete arbitrary files or conduct a denial of service.
CVE-2000-0816 LOW 2.1 2000-10-06 Linux tmpwatch --fuser option allows local users to execute arbitrary commands by creating files whose names contain shell metacharacters.
CVE-2000-0679 LOW 2.1 2000-10-20 The CVS 1.10.8 client trusts pathnames that are provided by the CVS server, which allows the server to force the client to create arbitrary files.
CVE-2000-0691 LOW 2.1 2000-10-20 The faxrunq and faxrunqd in the mgetty package allows local users to create or modify arbitrary files via a symlink attack which creates a symlink in from /var/spool/fax/ou…
CVE-2000-0715 LOW 2.1 2000-10-20 DiskCheck script diskcheck.pl in Red Hat Linux 6.2 allows local users to create or overwrite arbitrary files via a symlink attack on a temporary file.
CVE-2000-0716 LOW 2.6 2000-10-20 WorldClient email client in MDaemon 2.8 includes the session ID in the referer field of an HTTP request when the user clicks on a URL, which allows the visited web site to …
CVE-2000-0718 LOW 1.2 2000-10-20 A race condition in MandrakeUpdate allows local users to modify RPM files while they are in the /tmp directory before they are installed.
CVE-2000-0723 LOW 1.2 2000-10-20 Helix GNOME Updater helix-update 0.5 and earlier does not properly create /tmp directories, which allows local users to create empty system configuration files such as /etc…
CVE-2000-0726 LOW 2.6 2000-10-20 CGIMail.exe CGI program in Stalkerlab Mailers 1.1.2 allows remote attackers to read arbitrary files by specifying the file in the $Attach$ hidden form variable.
CVE-2000-0729 LOW 2.1 2000-10-20 FreeBSD 5.x, 4.x, and 3.x allows local users to cause a denial of service by executing a program with a malformed ELF image header.
CVE-2000-0754 LOW 2.1 2000-10-20 Vulnerability in HP OpenView Network Node Manager (NMM) version 6.1 related to passwords.
CVE-2000-0767 LOW Patched 2.6 2000-10-20 The ActiveX control for invoking a scriptlet in Internet Explorer 4.x and 5.x renders arbitrary file types instead of HTML, which allows an attacker to read arbitrary files…
CVE-2000-0768 LOW Patched 2.6 2000-10-20 A function in Internet Explorer 4.x and 5.x does not properly verify the domain of a frame within a browser window, which allows a remote attacker to read client files, aka…
CVE-2000-0771 LOW 2.1 2000-10-20 Microsoft Windows 2000 allows local users to cause a denial of service by corrupting the local security policy via malformed RPC traffic, aka the "Local Security Policy Cor…
CVE-2000-0799 LOW 3.7 2000-10-20 inpview in InPerson in SGI IRIX 5.3 through IRIX 6.5.10 allows local users to gain privileges via a symlink attack on the .ilmpAAA temporary file.