2000 CVE Vulnerabilities

1,241 CVEs published in 2000.

CVE IDSeverityCVSSDescription
CVE-2000-0670The cvsweb CGI script in CVSWeb 1.80 allows remote attackers with write access to a CVS repository to execute arbitrary ...
CVE-2000-0643Buffer overflow in WebActive HTTP Server 1.00 allows remote attackers to cause a denial of service via a long URL.
CVE-2000-0674ftp.pl CGI program for Virtual Visions FTP browser allows remote attackers to read directories outside of the document r...
CVE-2000-0372Vulnerability in Caldera rmt command in the dump package 0.4b4 allows a local user to gain root privileges.
CVE-2000-0660The WDaemon web server for WorldClient 2.1 allows remote attackers to read arbitrary files via a .. (dot dot) attack.
CVE-2000-0629The default configuration of the Sun Java web server 2.0 and earlier allows remote attackers to execute arbitrary comman...
CVE-2000-0628The source.asp example script in the Apache ASP module Apache::ASP 1.93 and earlier allows remote attackers to modify fi...
CVE-2000-0669Novell NetWare 5.0 allows remote attackers to cause a denial of service by flooding port 40193 with random data.
CVE-2000-0654Microsoft Enterprise Manager allows local users to obtain database passwords via the Data Transformation Service (DTS) p...
CVE-2000-0648WFTPD and WFTPD Pro 2.41 allows local users to cause a denial of service by executing the RENAME TO (RNTO) command befor...
CVE-2000-0650The default installation of VirusScan 4.5 and NetShield 4.5 has insecure permissions for the registry key that identifie...
CVE-2000-0638bb-hostsvc.sh in Big Brother 1.4h1 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack...
CVE-2000-0605Blackboard CourseInfo 4.0 stores the local and SQL administrator user names and passwords in cleartext in a registry key...
CVE-2000-0614Tnef program in Linux systems allows remote attackers to overwrite arbitrary files via TNEF encoded compressed attachmen...
CVE-2000-0635The view_page.html sample page in the MiniVend shopping cart program allows remote attackers to execute arbitrary comman...
CVE-2000-0661WircSrv IRC Server 5.07s allows remote attackers to cause a denial of service via a long string to the server port.
CVE-2000-0641Savant web server allows remote attackers to execute arbitrary commands via a long GET request.
CVE-2000-0640Guild FTPd allows remote attackers to determine the existence of files outside the FTP root via a .. (dot dot) attack, w...
CVE-2000-0574FTP servers such as OpenBSD ftpd, NetBSD ftpd, ProFTPd and Opieftpd do not properly cleanse untrusted format strings tha...
CVE-2000-0603Microsoft SQL Server 7.0 allows a local user to bypass permissions for stored procedures by referencing them via a tempo...
CVE-2000-0573The lreply function in wu-ftpd 2.6.0 and earlier does not properly cleanse an untrusted format string, which allows remo...
CVE-2000-0651The ClientTrust program in Novell BorderManager does not properly verify the origin of authentication requests, which co...
CVE-2000-0575SSH 1.2.27 with Kerberos authentication support stores Kerberos tickets in a file which is created in the current direct...
CVE-2000-0576Oracle Web Listener for AIX versions 4.0.7.0.0 and 4.0.8.1.0 allows remote attackers to cause a denial of service via a ...
CVE-2000-0572The Razor configuration management tool uses weak encryption for its password file, which allows local users to gain pri...

Check if your code is affected by 2000 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now