3.7
    Low

    CVE-2000-0799

    Last Modified: 15 Nov 2017

    inpview in InPerson in SGI IRIX 5.3 through IRIX 6.5.10 allows local users to gain privileges via a symlink attack on the .ilmpAAA temporary file.

    Source:Last Stage of Delirium
    Published:20 Oct 2000
    10
    Critical

    CVE-2000-0798

    Last Modified: 15 Nov 2017

    The truncate function in IRIX 6.x does not properly check for privileges when the file is in the xfs file system, which allows local users to delete the contents of arbitrary files.

    Source:Last Stage of Delirium
    Published:21 Sept 2000
    7.2
    High

    CVE-2000-0797

    Last Modified: 15 Nov 2017

    Buffer overflow in gr_osview in IRIX 6.2 and 6.3 allows local users to gain privileges via a long -D option.

    Source:Last Stage of Delirium
    Published:20 Oct 2000
    7.2
    High

    CVE-2000-0796

    Last Modified: 15 Nov 2017

    Buffer overflow in dmplay in IRIX 6.2 and 6.3 allows local users to gain root privileges via a long command line option.

    Source:Last Stage of Delirium
    Published:20 Oct 2000
    7.2
    High

    CVE-2000-0795

    Last Modified: 22 Nov 2017

    Buffer overflow in lpstat in IRIX 6.2 and 6.3 allows local users to gain root privileges via a long -n option.

    Source:LSD-PLaNET
    Published:20 Oct 2000
    7.2
    High

    CVE-2000-0794

    Last Modified: 15 Nov 2017

    Buffer overflow in IRIX libgl.so library allows local users to gain root privileges via a long HOME variable to programs such as (1) gmemusage and (2) gr_osview.

    Source:Last Stage of Delirium
    Published:21 Sept 2000
    7.5
    High

    CVE-2000-0787

    Last Modified: 1 Aug 2012

    IRC Xchat client versions 1.4.2 and earlier allows remote attackers to execute arbitrary commands by encoding shell metacharacters into a URL which XChat uses to launch a web browser.

    Source:zenith parsec
    Published:17 Aug 2000
    5
    Medium

    CVE-2000-0782

    Last Modified: 1 Aug 2012

    netauth.cgi program in Netwin Netauth 4.2e and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack.

    Source:Marc Maiffret
    Published:13 Oct 2000
    6.4
    Medium

    CVE-2000-0780

    Last Modified: 2 Aug 2012

    The web server in IPSWITCH IMail 6.04 and earlier allows remote attackers to read and delete arbitrary files via a .. (dot dot) attack.

    Source:Timescape
    Published:13 Oct 2000
    5
    Medium

    CVE-2000-0778

    Last Modified: 1 Aug 2012

    IIS 5.0 allows remote attackers to obtain source code for .ASP files and other scripts via an HTTP GET request with a "Translate: f" header, aka the "Specialized Header" vulnerability.

    Source:smiler
    Published:13 Oct 2000
    7.5
    High

    CVE-2000-0776

    Last Modified: 1 Aug 2012

    Mediahouse Statistics Server 5.02x allows remote attackers to execute arbitrary commands via a long HTTP GET request.

    Source:Zan
    Published:20 Oct 2000
    7.5
    High

    CVE-2000-0775

    Last Modified: 2 Aug 2012

    Buffer overflow in RobTex Viking server earlier than 1.06-370 allows remote attackers to cause a denial of service or execute arbitrary commands via a long HTTP GET request, or long Unless-Modified-Since, If-Range, or If-Modified-Since headers.

    Source:wildcoyote
    Published:21 Sept 2000
    7.5
    High

    CVE-2000-0766

    Last Modified: 2 Aug 2012

    Buffer overflow in vqSoft vqServer 1.4.49 allows remote attackers to cause a denial of service or possibly gain privileges via a long HTTP GET request.

    Source:sinfony
    Published:20 Oct 2000
    7.2
    High

    CVE-2000-0763

    Last Modified: 1 Aug 2012

    xlockmore and xlockf do not properly cleanse user-injected format strings, which allows local users to gain root privileges via the -d option.

    Source:noir
    Published:13 Oct 2000
    6.4
    Medium

    CVE-2000-0760

    Last Modified: 31 Jul 2012

    The Snoop servlet in Jakarta Tomcat 3.1 and 3.0 under Apache reveals sensitive system information when a remote attacker requests a nonexistent URL with a .snp extension.

    Source:ET LoWNOISE
    Published:21 Sept 2000
    6.4
    Medium

    CVE-2000-0759

    Last Modified: 31 Jul 2012

    Jakarta Tomcat 3.1 under Apache reveals physical path information when a remote attacker requests a URL that does not exist, which generates an error message that includes the physical path.

    Source:ET LoWNOISE
    Published:21 Sept 2000
    10
    Critical

    CVE-2000-0757

    Last Modified: 1 Aug 2012

    The sysgen service in Aptis Totalbill does not perform authentication, which allows remote attackers to gain root privileges by connecting to the service and specifying the commands to be executed.

    Source:Brian Masney
    Published:21 Sept 2000
    7.5
    High

    CVE-2000-0751

    Last Modified: 6 Jul 2013

    mopd (Maintenance Operations Protocol loader daemon) does not properly cleanse user-injected format strings, which allows remote attackers to execute arbitrary commands.

    Source:r0t
    Published:8 Aug 2000
    7.5
    High

    CVE-2000-0745

    Last Modified: 1 Aug 2012

    admin.php3 in PHP-Nuke does not properly verify the PHP-Nuke administrator password, which allows remote attackers to gain privileges by requesting a URL that does not specify the aid or pwd parameter.

    Source:bruj0
    Published:13 Oct 2000
    10
    Critical

    CVE-2000-0743

    Last Modified: 1 Aug 2012

    Buffer overflow in University of Minnesota (UMN) gopherd 2.x allows remote attackers to execute arbitrary commands via a DES key generation request (GDESkey) that contains a long ticket value.

    Source:Chris Sharp
    Published:13 Oct 2000
    7.5
    High

    CVE-2000-0741

    Last Modified: 31 Jul 2012

    Format string vulnerability in strong.exe program in NAI Net Tools PKI server 1.0 before HotFix 3 allows remote attackers to execute arbitrary code via format strings in a URL with a .XUDA extension.

    Source:Juliano Rizzo
    Published:20 Oct 2000
    5
    Medium

    CVE-2000-0740

    Last Modified: 31 Jul 2012

    Buffer overflow in strong.exe program in NAI Net Tools PKI server 1.0 before HotFix 3 allows remote attackers to execute arbitrary commands via a long URL in the HTTPS port.

    Source:juliano
    Published:20 Oct 2000
    5
    Medium

    CVE-2000-0739

    Last Modified: 31 Jul 2012

    Directory traversal vulnerability in strong.exe program in NAI Net Tools PKI server 1.0 before HotFix 3 allows remote attackers to read arbitrary files via a .. (dot dot) attack in an HTTPS request to the enrollment server.

    Source:Juliano Rizzo
    Published:20 Oct 2000
    4.6
    Medium

    CVE-2000-0737

    Last Modified: 31 Jul 2012

    The Service Control Manager (SCM) in Windows 2000 creates predictable named pipes, which allows a local user with console access to gain administrator privileges, aka the "Service Control Manager Named Pipe Impersonation" vulnerability.

    Source:Maceo
    Published:13 Oct 2000
    5
    Medium

    CVE-2000-0734

    Last Modified: 5 Aug 2012

    eEye IRIS 1.01 beta allows remote attackers to cause a denial of service via a large number of UDP connections.

    Source:Ussr Labs
    Published:21 Sept 2000
    10
    Critical

    CVE-2000-0733

    Last Modified: 1 Aug 2012

    Telnetd telnet server in IRIX 5.2 through 6.1 does not properly cleans user-injected format strings, which allows remote attackers to execute arbitrary commands via a long RLD variable in the IAC-SB-TELOPT_ENVIRON request.

    Source:Last Stage of Delirium
    Published:13 Oct 2000
    6.2
    Medium

    CVE-2000-0721

    Last Modified: 1 Aug 2012

    The FSserial, FlagShip_c, and FlagShip_p programs in the FlagShip package are installed world-writeable, which allows local users to replace them with Trojan horses.

    Source:Narrow
    Published:21 Sept 2000
    5
    Medium

    CVE-2000-0720

    Last Modified: 2 Aug 2012

    news.cgi in GWScripts News Publisher does not properly authenticate requests to add an author to the author index, which allows remote attackers to add new authors by directly posting an HTTP request to the new.cgi program with an addAuthor parameter, and setting the Referer to the news.cgi program.

    Source:n30
    Published:20 Oct 2000
    7.5
    High

    CVE-2000-0711

    Last Modified: 5 Aug 2012

    Netscape Communicator does not properly prevent a ServerSocket object from being created by untrusted entities, which allows remote attackers to create a server on the victim's system via a malicious applet, as demonstrated by Brown Orifice.

    Source:Alexey Yarovinsky
    Published:13 Oct 2000
    5
    Medium

    CVE-2000-0708

    Last Modified: 2 Aug 2012

    Buffer overflow in Pragma Systems TelnetServer 2000 version 4.0 allows remote attackers to cause a denial of service via a long series of null characters to the rexec port.

    Source:Ussr Labs
    Published:13 Oct 2000
    10
    Critical

    CVE-2000-0706

    Last Modified: 1 Aug 2012

    Buffer overflows in ntop running in web mode allows remote attackers to execute arbitrary commands.

    Source:anonymous
    Published:13 Oct 2000
    5
    Medium

    CVE-2000-0705

    Last Modified: 31 Jul 2012

    ntop running in web mode allows remote attackers to read arbitrary files via a .. (dot dot) attack.

    Source:dubhe
    Published:7 Aug 2000
    10
    Critical

    CVE-2000-0704

    Last Modified: 1 Aug 2012

    Buffer overflow in SGI Omron WorldView Wnn allows remote attackers to execute arbitrary commands via long JS_OPEN, JS_MKDIR, or JS_FILE_INFO commands.

    Source:UNYUN
    Published:21 Sept 2000
    7.2
    High

    CVE-2000-0703

    Last Modified: 31 Jul 2012

    suidperl (aka sperl) does not properly cleanse the escape sequence "~!" before calling /bin/mail to send an error report, which allows local users to gain privileges by setting the "interactive" environmental variable and calling suidperl with a filename that contains the escape sequence.

    Source:Sebastian Krahmer
    Published:7 Aug 2000
    7.2
    High

    CVE-2000-0702

    Last Modified: 1 Aug 2012

    The net.init rc script in HP-UX 11.00 (S008net.init) allows local users to overwrite arbitrary files via a symlink attack that points from /tmp/stcp.conf to the targeted file.

    Source:Kyong-won Cho
    Published:20 Oct 2000
    10
    Critical

    CVE-2000-0699

    Last Modified: 16 Apr 2026

    Format string vulnerability in ftpd in HP-UX 10.20 allows remote attackers to cause a denial of service or execute arbitrary commands via format strings in the PASS command.

    Source:venglin
    Published:20 Oct 2000
    5
    Medium

    CVE-2000-0698

    Last Modified: 1 Aug 2012

    Minicom 1.82.1 and earlier on some Linux systems allows local users to create arbitrary files owned by the uucp user via a symlink attack.

    Source:Michal Zalewski
    Published:20 Oct 2000
    10
    Critical

    CVE-2000-0697

    Last Modified: 1 Aug 2012

    The administration interface for the dwhttpd web server in Solaris AnswerBook2 allows interface users to remotely execute commands via shell metacharacters.

    Source:Lluis Mora
    Published:21 Sept 2000
    7.5
    High

    CVE-2000-0696

    Last Modified: 31 Jul 2012

    The administration interface for the dwhttpd web server in Solaris AnswerBook2 does not properly authenticate requests to its supporting CGI scripts, which allows remote attackers to add user accounts to the interface by directly calling the admin CGI script.

    Source:Lluis Mora
    Published:21 Sept 2000
    7.2
    High

    CVE-2000-0695

    Last Modified: 1 Aug 2012

    Buffer overflows in pgxconfig in the Raptor GFX configuration tool allow local users to gain privileges via command line options.

    Source:suid
    Published:21 Sept 2000
    7.2
    High

    CVE-2000-0693

    Last Modified: 1 Aug 2012

    pgxconfig in the Raptor GFX configuration tool uses a relative path name for a system call to the "cp" program, which allows local users to execute arbitrary commands by modifying their path to point to an alternate "cp" program.

    Source:suid
    Published:20 Oct 2000
    2.1
    Low

    CVE-2000-0691

    Last Modified: 2 Aug 2012

    The faxrunq and faxrunqd in the mgetty package allows local users to create or modify arbitrary files via a symlink attack which creates a symlink in from /var/spool/fax/outgoing/.last_run to the target file.

    Source:Stan Bubrouski
    Published:25 Aug 2000
    10
    Critical

    CVE-2000-0690

    Last Modified: 2 Aug 2012

    Auction Weaver CGI script 1.02 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the fromfile parameter.

    Source:teleh0r
    Published:21 Sept 2000
    7.5
    High

    CVE-2000-0689

    Last Modified: 1 Aug 2012

    Account Manager LITE does not properly authenticate attempts to change the administrator password, which allows remote attackers to gain privileges for the Account Manager by directly calling the amadmin.pl script with the setpasswd parameter.

    Source:teleh0r
    Published:21 Sept 2000
    7.5
    High

    CVE-2000-0688

    Last Modified: 2 Aug 2012

    Subscribe Me LITE does not properly authenticate attempts to change the administrator password, which allows remote attackers to gain privileges for the Account Manager by directly calling the subscribe.pl script with the setpwd parameter.

    Source:teleh0r
    Published:21 Sept 2000
    10
    Critical

    CVE-2000-0685

    Last Modified: 31 Jul 2012

    BEA WebLogic 5.1.x does not properly restrict access to the PageCompileServlet, which could allow remote attackers to compile and execute Java JHTML code by directly invoking the servlet on any source file.

    Source:Foundstone Inc.
    Published:13 Oct 2000
    10
    Critical

    CVE-2000-0684

    Last Modified: 24 Jul 2012

    BEA WebLogic 5.1.x does not properly restrict access to the JSPServlet, which could allow remote attackers to compile and execute Java JSP code by directly invoking the servlet on any source file.

    Source:Brian Carrier
    Published:13 Oct 2000
    7.2
    High

    CVE-2000-0680

    Last Modified: 17 Aug 2017

    The CVS 1.10.8 server does not properly restrict users from creating arbitrary Checkin.prog or Update.prog programs, which allows remote CVS committers to modify or create Trojan horse programs with the Checkin.prog or Update.prog names, then performing a CVS commit action.

    Source:Tanaka Akira
    Published:21 Sept 2000
    2.1
    Low

    CVE-2000-0679

    Last Modified: 25 Jul 2012

    The CVS 1.10.8 client trusts pathnames that are provided by the CVS server, which allows the server to force the client to create arbitrary files.

    Source:Tanaka Akira
    Published:20 Oct 2000
    5
    Medium

    CVE-2000-0676

    Last Modified: 5 Aug 2012

    Netscape Communicator and Navigator 4.04 through 4.74 allows remote attackers to read arbitrary files by using a Java applet to open a connection to a URL using the "file", "http", "https", and "ftp" protocols, as demonstrated by Brown Orifice.

    Source:Dan Brumleve
    Published:3 Aug 2000