5.1
    Medium

    CVE-2000-1061

    Last Modified: 5 Oct 2017

    Microsoft Virtual Machine (VM) in Internet Explorer 4.x and 5.x allows an unsigned applet to create and use ActiveX controls, which allows a remote attacker to bypass Internet Explorer's security settings and execute arbitrary commands via a malicious web page or email, aka the "Microsoft VM ActiveX Component" vulnerability.

    Source:Marcin Jackowski
    Published:11 Dec 2000
    5
    Medium

    CVE-2000-1058

    Last Modified: 4 Aug 2012

    Buffer overflow in OverView5 CGI program in HP OpenView Network Node Manager (NNM) 6.1 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, in the SNMP service (snmp.exe), aka the "Java SNMP MIB Browser Object ID parsing problem."

    Source:DCIST
    Published:11 Dec 2000
    10
    Critical

    CVE-2000-1054

    Last Modified: 4 Aug 2012

    Buffer overflow in CSAdmin module in CiscoSecure ACS Server 2.4(2) and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a large packet.

    Source:blackangels
    Published:11 Dec 2000
    10
    Critical

    CVE-2000-1053

    Last Modified: 7 Aug 2012

    Allaire JRun 2.3.3 server allows remote attackers to compile and execute JSP code by inserting it via a cross-site scripting (CSS) attack and directly calling the com.livesoftware.jrun.plugins.JSP JSP servlet.

    Source:Foundstone Labs
    Published:29 Nov 2000
    5
    Medium

    CVE-2000-1050

    Last Modified: 7 Aug 2012

    Allaire JRun 3.0 http servlet server allows remote attackers to directly access the WEB-INF directory via a URL request that contains an extra "/" in the beginning of the request (aka the "extra leading slash").

    Source:Foundstone Labs
    Published:11 Dec 2000
    10
    Critical

    CVE-2000-1046

    Last Modified: 19 Jul 2012

    Multiple buffer overflows in the ESMTP service of Lotus Domino 5.0.2c and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via long (1) "RCPT TO," (2) "SAML FROM," or (3) "SOML FROM" commands.

    Source:smiler
    Published:29 Nov 2000
    7.5
    High

    CVE-2000-1037

    Last Modified: 3 Aug 2012

    Check Point Firewall-1 session agent 3.0 through 4.1 generates different error messages for invalid user names versus invalid passwords, which allows remote attackers to determine valid usernames and guess a password via a brute force attack.

    Source:Nelson Brito
    Published:29 Nov 2000
    5
    Medium

    CVE-2000-1036

    Last Modified: 4 Aug 2012

    Directory traversal vulnerability in Extent RBS ISP web server allows remote attackers to read sensitive information via a .. (dot dot) attack on the Image parameter.

    Source:anon
    Published:11 Dec 2000
    10
    Critical

    CVE-2000-1035

    Last Modified: 27 Sept 2016

    Buffer overflows in TYPSoft FTP Server 0.78 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long USER, PASS, or CWD command.

    Source:dethy
    Published:29 Nov 2000
    7.5
    High

    CVE-2000-1033

    Last Modified: 27 Sept 2016

    Serv-U FTP Server allows remote attackers to bypass its anti-hammering feature by first logging on as a valid user (possibly anonymous) and then attempting to guess the passwords of other users.

    Source:Craig
    Published:29 Nov 2000
    10
    Critical

    CVE-2000-1029

    Last Modified: 27 Oct 2017

    Buffer overflow in host command allows a remote attacker to execute arbitrary commands via a long response to an AXFR query.

    Source:antirez
    Published:29 Nov 2000
    7.2
    High

    CVE-2000-1028

    Last Modified: 9 Aug 2012

    Buffer overflow in cu program in HP-UX 11.0 may allow local users to gain privileges via a long -l command line argument.

    Source:zorgon
    Published:29 Nov 2000
    5
    Medium

    CVE-2000-1027

    Last Modified: 9 Aug 2012

    Cisco Secure PIX Firewall 5.2(2) allows remote attackers to determine the real IP address of a target FTP server by flooding the server with PASV requests, which includes the real IP address in the response when passive mode is established.

    Source:Fabio Pietrosanti
    Published:11 Dec 2000
    10
    Critical

    CVE-2000-1026

    Last Modified: 15 Nov 2017

    Multiple buffer overflows in LBNL tcpdump allow remote attackers to execute arbitrary commands.

    Source:Zhodiac
    Published:11 Dec 2000
    5
    Medium

    CVE-2000-1025

    Last Modified: 8 Aug 2012

    eWave ServletExec JSP/Java servlet engine, versions 3.0C and earlier, allows remote attackers to cause a denial of service via a URL that contains the "/servlet/" string, which invokes the ServletExec servlet and causes an exception if the servlet is already running.

    Source:Foundstone Labs
    Published:29 Nov 2000
    7.5
    High

    CVE-2000-1023

    Last Modified: 4 Aug 2012

    The Alabanza Control Panel does not require passwords to access administrative commands, which allows remote attackers to modify domain name information via the nsManager.cgi CGI program.

    Source:Weihan Leow
    Published:29 Nov 2000
    7.5
    High

    CVE-2000-1022

    Last Modified: 4 Aug 2012

    The mailguard feature in Cisco Secure PIX Firewall 5.2(2) and earlier does not properly restrict access to SMTP commands, which allows remote attackers to execute restricted commands by sending a DATA command before sending the restricted commands.

    Source:Lincoln Yeoh
    Published:11 Dec 2000
    7.5
    High

    CVE-2000-1021

    Last Modified: 3 Aug 2012

    Heap overflow in WebConfig in Mdaemon 3.1.1 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long URL.

    Source:Ussr Labs
    Published:29 Nov 2000
    5
    Medium

    CVE-2000-1016

    Last Modified: 4 Aug 2012

    The default configuration of Apache (httpd.conf) on SuSE 6.4 includes an alias for the /usr/doc directory, which allows remote attackers to read package documentation and obtain system configuration information via an HTTP request for the /doc/packages URL.

    Source:t0maszek
    Published:11 Dec 2000
    7.5
    High

    CVE-2000-1014

    Last Modified: 4 Aug 2012

    Format string vulnerability in the search97.cgi CGI script in SCO help http server for Unixware 7 allows remote attackers to execute arbitrary commands via format characters in the queryText parameter.

    Source:Juliano Rizzo
    Published:11 Dec 2000
    7.2
    High

    CVE-2000-1009

    Last Modified: 15 Nov 2017

    dump in Red Hat Linux 6.2 trusts the pathname specified by the RSH environmental variable, which allows local users to obtain root privileges by modifying the RSH variable to point to a Trojan horse program.

    Source:mat
    Published:29 Nov 2000
    4.6
    Medium

    CVE-2000-1008

    Last Modified: 5 Aug 2012

    PalmOS 3.5.2 and earlier uses weak encryption to store the user password, which allows attackers with physical access to the Palm device to decrypt the password and gain access to the device.

    Source:@stake
    Published:29 Nov 2000
    5
    Medium

    CVE-2000-1005

    Last Modified: 6 Aug 2012

    Directory traversal vulnerability in html_web_store.cgi and web_store.cgi CGI programs in eXtropia WebStore allows remote attackers to read arbitrary files via a .. (dot dot) attack on the page parameter.

    Source:f0bic
    Published:11 Dec 2000
    5
    Medium

    CVE-2000-1002

    Last Modified: 2 Aug 2012

    POP3 daemon in Stalker CommuniGate Pro 3.3.2 generates different error messages for invalid usernames versus invalid passwords, which allows remote attackers to determine valid email addresses on the server for SPAM attacks.

    Source:Ussr Labs
    Published:11 Dec 2000
    7.2
    High

    CVE-2000-0998

    Last Modified: 4 Oct 2017

    Format string vulnerability in top program allows local attackers to gain root privileges via the "kill" or "renice" function.

    Source:truefinder
    Published:29 Nov 2000
    7.2
    High

    CVE-2000-0994

    Last Modified: 5 Aug 2012

    Format string vulnerability in OpenBSD fstat program (and possibly other BSD-based operating systems) allows local users to gain root privileges via the PWD environmental variable.

    Source:K2
    Published:19 Dec 2000
    7.2
    High

    CVE-2000-0993

    Last Modified: 16 Apr 2026

    Format string vulnerability in pw_error function in BSD libutil library allows local users to gain root privileges via a malformed password in commands such as chpass or passwd.

    Source:caddis
    Published:19 Dec 2000
    5
    Medium

    CVE-2000-0992

    Last Modified: 5 Aug 2012

    Directory traversal vulnerability in scp in sshd 1.2.xx allows a remote malicious scp server to overwrite arbitrary files via a .. (dot dot) attack.

    Source:Michal Zalewski
    Published:19 Dec 2000
    7.5
    High

    CVE-2000-0991

    Last Modified: 7 Aug 2012

    Buffer overflow in Hilgraeve, Inc. HyperTerminal client on Windows 98, ME, and 2000 allows remote attackers to execute arbitrary commands via a long telnet URL, aka the "HyperTerminal Buffer Overflow" vulnerability.

    Source:Ussr Labs
    Published:19 Dec 2000
    5
    Medium

    CVE-2000-0989

    Last Modified: 8 Aug 2012

    Buffer overflow in Intel InBusiness eMail Station 1.04.87 POP service allows remote attackers to cause a denial of service and possibly execute commands via a long username.

    Source:Knud Erik Højgaard
    Published:19 Dec 2000
    4.6
    Medium

    CVE-2000-0987

    Last Modified: 16 Apr 2026

    Buffer overflow in oidldapd in Oracle 8.1.6 allow local users to gain privileges via a long "connect" command line parameter.

    Source:anonymous
    Published:29 Nov 2000
    10
    Critical

    CVE-2000-0985

    Last Modified: 6 Aug 2012

    Buffer overflow in All-Mail 1.1 allows remote attackers to execute arbitrary commands via a long "MAIL FROM" or "RCPT TO" command.

    Source:@stake
    Published:29 Nov 2000
    5
    Medium

    CVE-2000-0984

    Last Modified: 8 Aug 2012

    The HTTP server in Cisco IOS 12.0 through 12.1 allows local users to cause a denial of service (crash and reload) via a URL containing a "?/" string.

    Source:Alberto Solino
    Published:19 Dec 2000
    5
    Medium

    CVE-2000-0983

    Last Modified: 6 Aug 2012

    Microsoft NetMeeting with Remote Desktop Sharing enabled allows remote attackers to cause a denial of service (CPU utilization) via a sequence of null bytes to the NetMeeting port, aka the "NetMeeting Desktop Sharing" vulnerability.

    Source:Kirk Corey
    Published:19 Dec 2000
    6.4
    Medium

    CVE-2000-0979

    Last Modified: 13 Aug 2012

    File and Print Sharing service in Windows 95, Windows 98, and Windows Me does not properly check the password for a file share, which allows remote attackers to bypass share access controls by sending a 1-byte password that matches the first character of the real password, aka the "Share Level Password" vulnerability.

    Source:stickler
    Published:19 Dec 2000
    5
    Medium

    CVE-2000-0977

    Last Modified: 7 Aug 2012

    mailfile.cgi CGI program in MailFile 1.10 allows remote attackers to read arbitrary files by specifying the target file name in the "filename" parameter in a POST request, which is then sent by email to the address specified in the "email" parameter.

    Source:Dirk Brockhausen
    Published:19 Dec 2000
    4.6
    Medium

    CVE-2000-0976

    Last Modified: 6 Aug 2012

    Buffer overflow in xlib in XFree 3.3.x possibly allows local users to execute arbitrary commands via a long DISPLAY environment variable or a -display command line parameter.

    Source:Michal Zalewski
    Published:19 Dec 2000
    5
    Medium

    CVE-2000-0975

    Last Modified: 18 Aug 2012

    Directory traversal vulnerability in apexec.pl in Anaconda Foundation Directory allows remote attackers to read arbitrary files via a .. (dot dot) attack.

    Source:pestilence
    Published:19 Dec 2000
    10
    Critical

    CVE-2000-0973

    Last Modified: 6 Aug 2012

    Buffer overflow in curl earlier than 6.0-1.1, and curl-ssl earlier than 6.0-1.2, allows remote attackers to execute arbitrary commands by forcing a long error message to be generated.

    Source:zillion
    Published:13 Oct 2000
    5.5
    Medium

    CVE-2000-0972

    Last Modified: 27 Oct 2016

    HP-UX 11.00 crontab allows local users to read arbitrary files via the -e option by creating a symlink to the target file during the crontab session, quitting the session, and reading the error messages that crontab generates.

    Source:dubhe
    Published:19 Dec 2000
    10
    Critical

    CVE-2000-0971

    Last Modified: 7 Aug 2012

    Avirt Mail 4.0 and 4.2 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long "RCPT TO" or "MAIL FROM" command.

    Source:Martin
    Published:29 Nov 2000
    10
    Critical

    CVE-2000-0967

    Last Modified: 28 Mar 2016

    PHP 3 and 4 do not properly cleanse user-injected format strings, which allows remote attackers to execute arbitrary commands by triggering error messages that are improperly written to the error logs.

    Source:Gneisenau
    Published:12 Oct 2000
    5
    Medium

    CVE-2000-0958

    Last Modified: 8 Aug 2012

    HotJava Browser 3.0 allows remote attackers to access the DOM of a web page by opening a javascript: URL in a named window.

    Source:Georgi Guninski
    Published:19 Dec 2000
    7.5
    High

    CVE-2000-0955

    Last Modified: 26 Oct 2017

    Cisco Virtual Central Office 4000 (VCO/4K) uses weak encryption to store usernames and passwords in the SNMP MIB, which allows an attacker who knows the community name to crack the password and gain privileges.

    Source:@stake
    Published:29 Nov 2000
    5
    Medium

    CVE-2000-0953

    Last Modified: 6 Aug 2012

    Shambala Server 4.5 allows remote attackers to cause a denial of service by opening then closing a connection.

    Source:zillion
    Published:19 Dec 2000
    5
    Medium

    CVE-2000-0951

    Last Modified: 5 Aug 2012

    A misconfiguration in IIS 5.0 with Index Server enabled and the Index property set allows remote attackers to list directories in the web root via a Web Distributed Authoring and Versioning (WebDAV) search.

    Source:David Litchfield
    Published:19 Dec 2000
    7.2
    High

    CVE-2000-0949

    Last Modified: 27 Oct 2016

    Heap overflow in savestr function in LBNL traceroute 1.4a5 and earlier allows a local user to execute arbitrary commands via the -g option.

    Source:Michel Kaempf
    Published:28 Sept 2000
    10
    Critical

    CVE-2000-0945

    Last Modified: 8 Aug 2012

    The web configuration interface for Catalyst 3500 XL switches allows remote attackers to execute arbitrary commands without authentication when the enable password is not set, via a URL containing the /exec/ directory.

    Source:blackangels
    Published:19 Dec 2000
    9.8
    Critical

    CVE-2000-0944

    Last Modified: 16 Mar 2016

    CGI Script Center News Update 1.1 does not properly validate the original news administration password during a password change operation, which allows remote attackers to modify the password without knowing the original password.

    Source:morpheus[bd]
    Published:19 Dec 2000
    5.1
    Medium

    CVE-2000-0942

    Last Modified: 8 Aug 2012

    The CiWebHitsFile component in Microsoft Indexing Services for Windows 2000 allows remote attackers to conduct a cross site scripting (CSS) attack via a CiRestriction parameter in a .htw request, aka the "Indexing Services Cross Site Scripting" vulnerability.

    Source:Georgi Guninski
    Published:19 Dec 2000