1.2
    Low

    CVE-2000-0224

    Last Modified: 11 Jul 2012

    ARCserve agent in SCO UnixWare 7.x allows local attackers to gain root privileges via a symlink attack.

    Source:Shawn Bracken
    Published:15 Feb 2000
    7.2
    High

    CVE-2000-0223

    Last Modified: 13 Jul 2012

    Buffer overflow in the wmcdplay CD player program for the WindowMaker desktop allows local users to gain root privileges via a long parameter.

    Source:Krahmer
    Published:10 Mar 2000
    5
    Medium

    CVE-2000-0221

    Last Modified: 12 Jul 2012

    The Nautica Marlin bridge allows remote attackers to cause a denial of service via a zero length UDP packet to the SNMP port.

    Source:Christophe GRENIER
    Published:25 Feb 2000
    7.2
    High

    CVE-2000-0219

    Last Modified: 12 Jul 2012

    Red Hat 6.0 allows local users to gain root access by booting single user and hitting ^C at the password prompt.

    Source:Darren Reed
    Published:23 Feb 2000
    7.2
    High

    CVE-2000-0218

    Last Modified: 16 Apr 2026

    Buffer overflow in Linux mount and umount allows local users to gain root privileges via a long relative pathname.

    Source:bloodmask
    Published:3 Feb 2000
    4.6
    Medium

    CVE-2000-0214

    Last Modified: 12 Jul 2012

    FTP Explorer uses weak encryption for storing the username, password, and profile of FTP sites.

    Source:Nelson Brito
    Published:24 Feb 2000
    5
    Medium

    CVE-2000-0213

    Last Modified: 12 Jul 2012

    The Sambar server includes batch files ECHO.BAT and HELLO.BAT in the CGI directory, which allow remote attackers to execute commands via shell metacharacters.

    Source:Georich Chorbadzhiyski
    Published:23 Feb 2000
    5
    Medium

    CVE-2000-0212

    Last Modified: 16 Jul 2012

    InterAccess TelnetD Server 4.0 allows remote attackers to conduct a denial of service via malformed terminal client configuration information.

    Source:Ussr Labs
    Published:24 Feb 2000
    5
    Medium

    CVE-2000-0211

    Last Modified: 12 Jul 2012

    The Windows Media server allows remote attackers to cause a denial of service via a series of client handshake packets that are sent in an improper sequence, aka the "Misordered Windows Media Services Handshake" vulnerability.

    Source:Kit Knox
    Published:23 Feb 2000
    1.2
    Low

    CVE-2000-0210

    Last Modified: 11 Jul 2012

    The lit program in Sun Flex License Manager (FlexLM) follows symlinks, which allows local users to modify arbitrary files.

    Source:sp00n
    Published:21 Feb 2000
    5
    Medium

    CVE-2000-0208

    Last Modified: 12 Jul 2012

    The htdig (ht://Dig) CGI program htsearch allows remote attackers to read arbitrary files by enclosing the file name with backticks (`) in parameters to htsearch.

    Source:Geoff Hutchison
    Published:29 Feb 2000
    7.5
    High

    CVE-2000-0207

    Last Modified: 12 Jul 2012

    SGI InfoSearch CGI program infosrch.cgi allows remote attackers to execute commands via shell metacharacters.

    Source:rpc
    Published:1 Mar 2000
    6.2
    Medium

    CVE-2000-0206

    Last Modified: 15 Nov 2017

    The installation of Oracle 8.1.5.x on Linux follows symlinks and creates the orainstRoot.sh file with world-writeable permissions, which allows local users to gain privileges.

    Source:Keyser Soze
    Published:5 Mar 2000
    5
    Medium

    CVE-2000-0204

    Last Modified: 16 Jul 2012

    The Trend Micro OfficeScan client allows remote attackers to cause a denial of service by making 5 connections to port 12345, which raises CPU utilization to 100%.

    Source:Jeff Stevens
    Published:28 Feb 2000
    5.1
    Medium

    CVE-2000-0200

    Last Modified: 16 Jul 2012

    Buffer overflow in Microsoft Clip Art Gallery allows remote attackers to cause a denial of service or execute commands via a malformed CIL (clip art library) file, aka the "Clip Art Buffer Overrun" vulnerability.

    Source:dildog
    Published:6 Mar 2000
    5
    Medium

    CVE-2000-0198

    Last Modified: 13 Jul 2012

    Buffer overflow in POP3 and IMAP servers in the MERCUR mail server suite allows remote attackers to cause a denial of service.

    Source:Ussr Labs
    Published:15 Mar 2000
    7.2
    High

    CVE-2000-0195

    Last Modified: 22 Nov 2017

    setxconf in Corel Linux allows local users to gain root access via the -T parameter, which executes the user's .xserverrc file.

    Source:suid
    Published:24 Feb 2000
    7.2
    High

    CVE-2000-0194

    Last Modified: 12 Jul 2012

    buildxconf in Corel Linux allows local users to modify or create arbitrary files via the -x or -f parameters.

    Source:suid
    Published:24 Feb 2000
    7.2
    High

    CVE-2000-0193

    Last Modified: 12 Jul 2012

    The default configuration of Dosemu in Corel Linux 1.0 allows local users to execute the system.com program and gain privileges.

    Source:suid
    Published:2 Mar 2000
    5
    Medium

    CVE-2000-0192

    Last Modified: 13 Jul 2012

    The default installation of Caldera OpenLinux 2.3 includes the CGI program rpm_query, which allows remote attackers to determine what packages are installed on the system.

    Source:harikiri
    Published:5 Mar 2000
    10
    Critical

    CVE-2000-0191

    Last Modified: 12 Jul 2012

    Axis StorPoint CD allows remote attackers to access administrator URLs without authentication via a .. (dot dot) attack.

    Source:Infosec Swedish based tigerteam
    Published:29 Feb 2000
    7.5
    High

    CVE-2000-0187

    Last Modified: 27 Oct 2016

    EZShopper 3.0 loadpage.cgi CGI script allows remote attackers to read arbitrary files via a .. (dot dot) attack or execute commands via shell metacharacters.

    Source:Zero X
    Published:27 Feb 2000
    5
    Medium

    CVE-2000-0185

    Last Modified: 13 Jul 2012

    RealMedia RealServer reveals the real IP address of a Real Server, even if the address is supposed to be private.

    Source:tschweikle
    Published:8 Mar 2000
    5.1
    Medium

    CVE-2000-0183

    Last Modified: 13 Jul 2012

    Buffer overflow in ircII 4.4 IRC client allows remote attackers to execute commands via the DCC chat capability.

    Source:bladi
    Published:10 Mar 2000
    5
    Medium

    CVE-2000-0180

    Last Modified: 13 Jul 2012

    Sojourn search engine allows remote attackers to read arbitrary files via a .. (dot dot) attack.

    Source:Cerberus Security Team
    Published:14 Mar 2000
    5
    Medium

    CVE-2000-0179

    Last Modified: 12 Jul 2012

    HP OpenView OmniBack 2.55 allows remote attackers to cause a denial of service via a large number of connections to port 5555.

    Source:Jon Hittner
    Published:28 Feb 2000
    10
    Critical

    CVE-2000-0177

    Last Modified: 12 Jul 2012

    DNSTools CGI applications allow remote attackers to execute arbitrary commands via shell metacharacters.

    Source:Jonathan Leto
    Published:2 Mar 2000
    5
    Medium

    CVE-2000-0174

    Last Modified: 13 Jul 2012

    StarOffice StarScheduler web server allows remote attackers to read arbitrary files via a .. (dot dot) attack.

    Source:Vanja Hrustic
    Published:9 Mar 2000
    7.2
    High

    CVE-2000-0172

    Last Modified: 13 Jul 2012

    The mtr program only uses a seteuid call when attempting to drop privileges, which could allow local users to gain root privileges.

    Source:Babcia Padlina
    Published:3 Mar 2000
    7.2
    High

    CVE-2000-0171

    Last Modified: 13 Jul 2012

    atsadc in the atsar package for Linux does not properly check the permissions of an output file, which allows local users to gain root privileges.

    Source:S. Krahmer
    Published:11 Mar 2000
    7.2
    High

    CVE-2000-0170

    Last Modified: 12 Jul 2012

    Buffer overflow in the man program in Linux allows local users to gain privileges via the MANPAGER environmental variable.

    Source:Babcia Padlina
    Published:26 Feb 2000
    7.5
    High

    CVE-2000-0169

    Last Modified: 13 Jul 2012

    Batch files in the Oracle web listener ows-bin directory allow remote attackers to execute commands via a malformed URL that includes '?&'.

    Source:Cerberus Security Team
    Published:15 Mar 2000
    5
    Medium

    CVE-2000-0168

    Last Modified: 13 Jul 2012

    Microsoft Windows 9x operating systems allow an attacker to cause a denial of service via a pathname that includes file device names, aka the "DOS Device in Path Name" vulnerability.

    Source:anonymous
    Published:4 Mar 2000
    2.1
    Low

    CVE-2000-0167

    Last Modified: 7 Aug 2012

    IIS Inetinfo.exe allows local users to cause a denial of service by creating a mail file with a long name and a .txt.eml extension in the pickup directory.

    Source:Valentijn
    Published:15 Feb 2000
    10
    Critical

    CVE-2000-0166

    Last Modified: 16 Jul 2012

    Buffer overflow in the InterAccess telnet server TelnetD allows remote attackers to execute commands via a long login name.

    Source:Ussr Labs
    Published:21 Feb 2000
    7.5
    High

    CVE-2000-0165

    Last Modified: 6 Jul 2012

    The Delegate application proxy has several buffer overflows which allow a remote attacker to execute commands.

    Source:scut
    Published:13 Nov 1999
    4.6
    Medium

    CVE-2000-0163

    Last Modified: 22 Nov 2017

    asmon and ascpu in FreeBSD allow local users to gain root privileges via a configuration file.

    Source:anonymous
    Published:21 Feb 2000
    5.1
    Medium

    CVE-2000-0156

    Last Modified: 10 Jul 2012

    Internet Explorer 4.x and 5.x allows remote web servers to access files on the client that are outside of its security domain, aka the "Image Source Redirect" vulnerability.

    Source:Georgi Guninski
    Published:16 Feb 2000
    7.2
    High

    CVE-2000-0155

    Last Modified: 22 Nov 2017

    Windows NT Autorun executes the autorun.inf file on non-removable media, which allows local attackers to specify an alternate program to execute when other users access a drive.

    Source:Eric Stevens
    Published:18 Feb 2000
    1.2
    Low

    CVE-2000-0154

    Last Modified: 11 Jul 2012

    The ARCserve agent in UnixWare allows local attackers to modify arbitrary files via a symlink attack.

    Source:Shawn Bracken
    Published:16 Feb 2000
    5
    Medium

    CVE-2000-0152

    Last Modified: 11 Jul 2012

    Remote attackers can cause a denial of service in Novell BorderManager 3.5 by pressing the enter key in a telnet connection to port 2000.

    Source:Chicken Man
    Published:22 Mar 2000
    5
    Medium

    CVE-2000-0149

    Last Modified: 11 Jul 2012

    Zeus web server allows remote attackers to view the source code for CGI programs via a null character (%00) at the end of a URL.

    Source:Vanja Hrustic
    Published:8 Feb 2000
    5
    Medium

    CVE-2000-0146

    Last Modified: 11 Jul 2012

    The Java Server in the Novell GroupWise Web Access Enhancement Pack allows remote attackers to cause a denial of service via a long URL to the servlet.

    Source:Adam Gray
    Published:7 Feb 2000
    5
    Medium

    CVE-2000-0142

    Last Modified: 11 Jul 2012

    The authentication protocol in Timbuktu Pro 2.0b650 allows remote attackers to cause a denial of service via connections to port 407 and 1417.

    Source:eth0
    Published:11 Feb 2000
    2.1
    Low

    CVE-2000-0139

    Last Modified: 11 Jul 2012

    Internet Anywhere POP3 Mail Server allows local users to cause a denial of service via a malformed RETR command.

    Source:Nobuo Miwa
    Published:3 Dec 1999
    7.5
    High

    CVE-2000-0136

    Last Modified: 19 Jul 2012

    The Cart32 shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.

    Source:CDI
    Published:1 Feb 2000
    10
    Critical

    CVE-2000-0133

    Last Modified: 10 Jul 2012

    Buffer overflows in Tiny FTPd 0.52 beta3 FTP server allows users to execute commands via the STOR, RNTO, MKD, XMKD, RMD, XRMD, APPE, SIZE, and RNFR commands.

    Source:UNYUN
    Published:1 Feb 2000
    2.6
    Low

    CVE-2000-0132

    Last Modified: 10 Jul 2012

    Microsoft Java Virtual Machine allows remote attackers to read files via the getSystemResourceAsStream function.

    Source:Hiromitsu Takagi
    Published:31 Jan 2000
    5
    Medium

    CVE-2000-0131

    Last Modified: 10 Jul 2012

    Buffer overflow in War FTPd 1.6x allows users to cause a denial of service via long MKD and CWD commands.

    Source:crc
    Published:1 Feb 2000
    2.1
    Low

    CVE-2000-0129

    Last Modified: 27 Sept 2016

    Buffer overflow in the SHGetPathFromIDList function of the Serv-U FTP server allows attackers to cause a denial of service by performing a LIST command on a malformed .lnk file.

    Source:Ussr Labs
    Published:4 Feb 2000