2000 CVE Vulnerabilities

1,241 CVEs published in 2000.

CVE IDSeverityCVSSDescription
CVE-2000-0956cyrus-sasl before 1.5.24 in Red Hat Linux 7.0 does not properly verify the authorization for a local user, which could a...
CVE-2000-0957The pluggable authentication module for mysql (pam_mysql) before 0.4.7 does not properly cleanse user input when constru...
CVE-2000-0955Cisco Virtual Central Office 4000 (VCO/4K) uses weak encryption to store usernames and passwords in the SNMP MIB, which ...
CVE-2000-0958HotJava Browser 3.0 allows remote attackers to access the DOM of a web page by opening a javascript: URL in a named wind...
CVE-2000-0962The IPSEC implementation in OpenBSD 2.7 does not properly handle empty AH/ESP packets, which allows remote attackers to ...
CVE-2000-0951A misconfiguration in IIS 5.0 with Index Server enabled and the Index property set allows remote attackers to list direc...
CVE-2000-0952global.cgi CGI program in Global 3.55 and earlier on NetBSD allows remote attackers to execute arbitrary commands via sh...
CVE-2000-0949Heap overflow in savestr function in LBNL traceroute 1.4a5 and earlier allows a local user to execute arbitrary commands...
CVE-2000-0948GnoRPM before 0.95 allows local users to modify arbitrary files via a symlink attack.
CVE-2000-0950Format string vulnerability in x-gw in TIS Firewall Toolkit (FWTK) allows local users to execute arbitrary commands via ...
CVE-2000-0953Shambala Server 4.5 allows remote attackers to cause a denial of service by opening then closing a connection.
CVE-2000-0963Buffer overflow in ncurses library allows local users to execute arbitrary commands via long environmental information s...
CVE-2000-0933The Input Method Editor (IME) in the Simplified Chinese version of Windows 2000 does not disable access to privileged fu...
CVE-2000-0947Format string vulnerability in cfd daemon in GNU CFEngine before 1.6.0a11 allows attackers to execute arbitrary commands...
CVE-2000-0909Buffer overflow in the automatic mail checking component of Pine 4.21 and earlier allows remote attackers to execute arb...
CVE-2000-0954Shambala Server 4.5 stores passwords in plaintext, which could allow local users to obtain the passwords and compromise ...
CVE-2000-0902getalbum.php in PhotoAlbum before 0.9.9 allows remote attackers to read arbitrary files via a .. (dot dot) attack.
CVE-2000-0911IMP 2.2 and earlier allows attackers to read and delete arbitrary files by modifying the attachment_name hidden form var...
CVE-2000-0904Voyager web server 2.01B in the demo disks for QNX 405 stores sensitive web client information in the .photon directory ...
CVE-2000-0919Directory traversal vulnerability in PHPix Photo Album 1.0.2 and earlier allows remote attackers to read arbitrary files...
CVE-2000-0885Buffer overflows in Microsoft Network Monitor (Netmon) allow remote attackers to execute arbitrary commands via a long B...
CVE-2000-0817Buffer overflow in the HTTP protocol parser for Microsoft Network Monitor (Netmon) allows remote attackers to execute ar...
CVE-2000-0943Buffer overflow in bftp daemon (bftpd) 1.0.11 allows remote attackers to cause a denial of service and possibly execute ...
CVE-2000-0901Format string vulnerability in screen 3.9.5 and earlier allows local users to gain root privileges via format characters...
CVE-2000-0925The default installation of SmartWin CyberOffice Shopping Cart 2 (aka CyberShop) installs the _private directory with wo...

Check if your code is affected by 2000 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now