2000 CVE Vulnerabilities

1,241 CVEs published in 2000.

CVE IDSeverityCVSSDescription
CVE-2000-0933The Input Method Editor (IME) in the Simplified Chinese version of Windows 2000 does not disable access to privileged fu...
CVE-2000-0885Buffer overflows in Microsoft Network Monitor (Netmon) allow remote attackers to execute arbitrary commands via a long B...
CVE-2000-0966Buffer overflows in lpspooler in the fileset PrinterMgmt.LP-SPOOL of HP-UX 11.0 and earlier allows local users to gain p...
CVE-2000-0997Format string vulnerabilities in eeprom program in OpenBSD, NetBSD, and possibly other operating systems allows local at...
CVE-2000-0959glibc2 does not properly clear the LD_DEBUG_OUTPUT and LD_DEBUG environmental variables when a program is spawned from a...
CVE-2000-0962The IPSEC implementation in OpenBSD 2.7 does not properly handle empty AH/ESP packets, which allows remote attackers to ...
CVE-2000-0905QNX Embedded Resource Manager in Voyager web server 2.01B in the demo disks for QNX 405 allows remote attackers to read ...
CVE-2000-0963Buffer overflow in ncurses library allows local users to execute arbitrary commands via long environmental information s...
CVE-2000-0938Samba Web Administration Tool (SWAT) in Samba 2.0.7 supplies a different error message when a valid username is provided...
CVE-2000-0927WQuinn QuotaAdvisor 4.1 does not properly record file sizes if they are stored in alternative data streams, which allows...
CVE-2000-0975Directory traversal vulnerability in apexec.pl in Anaconda Foundation Directory allows remote attackers to read arbitrar...
CVE-2000-0958HotJava Browser 3.0 allows remote attackers to access the DOM of a web page by opening a javascript: URL in a named wind...
CVE-2000-0967PHP 3 and 4 do not properly cleanse user-injected format strings, which allows remote attackers to execute arbitrary com...
CVE-2000-0950Format string vulnerability in x-gw in TIS Firewall Toolkit (FWTK) allows local users to execute arbitrary commands via ...
CVE-2000-0942The CiWebHitsFile component in Microsoft Indexing Services for Windows 2000 allows remote attackers to conduct a cross s...
CVE-2000-1212Zope 2.2.0 through 2.2.4 does not properly protect a data updating method on Image and File objects, which allows attack...
CVE-2000-1211Zope 2.2.0 through 2.2.4 does not properly perform security registration for legacy names of object constructors such as...
CVE-2000-1077Buffer overflow in the SHTML logging functionality of iPlanet Web Server 4.x allows remote attackers to execute arbitrar...
CVE-2000-1076Netscape (iPlanet) Certificate Management System 4.2 and Directory Server 4.12 stores the administrative password in pla...
CVE-2000-1078ICQ Web Front HTTPd allows remote attackers to cause a denial of service by requesting a URL that contains a "?" charact...
CVE-2000-1075Directory traversal vulnerability in iPlanet Certificate Management System 4.2 and Directory Server 4.12 allows remote a...
CVE-2000-1071The GUI installation for iCal 2.1 Patch 2 disables access control for the X server using an "xhost +" command, which all...
CVE-2000-1070pollit.cgi in Poll It 2.01 and earlier uses data files that are located under the web document root, which allows remote...
CVE-2000-1072iCal 2.1 Patch 2 installs many files with world-writeable permissions, which allows local users to modify the iCal confi...
CVE-2000-1073csstart program in iCal 2.1 Patch 2 searches for the cshttpd program in the current working directory, which allows loca...

Check if your code is affected by 2000 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now