2000 CVE Vulnerabilities

1,241 CVEs published in 2000.

CVE IDSeverityCVSSDescription
CVE-2000-0260Buffer overflow in the dvwssr.dll DLL in Microsoft Visual Interdev 1.0 allows users to cause a denial of service or exec...
CVE-2000-1218CRITICAL9.8The default configuration for the domain name resolver for Microsoft Windows 98, NT 4.0, 2000, and XP sets the QueryIpMa...
CVE-2000-0254The dansie shopping cart application cart.pl allows remote attackers to obtain the shopping cart database and configurat...
CVE-2000-0250The crypt function in QNX uses weak encryption, which allows local users to decrypt passwords.
CVE-2000-0261The AVM KEN! web server allows remote attackers to read arbitrary files via a .. (dot dot) attack.
CVE-2000-0259The default permissions for the Cryptography\Offload registry key used by the OffloadModExpo in Windows NT 4.0 allows lo...
CVE-2000-0282TalentSoft webpsvr daemon in the Web+ shopping cart application allows remote attackers to read arbitrary files via a .....
CVE-2000-0287The BizDB CGI script bizdb-search.cgi allows remote attackers to execute arbitrary commands via shell metacharacters in ...
CVE-2000-0283The default installation of IRIX Performance Copilot allows remote attackers to access sensitive system information via ...
CVE-2000-0288Infonautics getdoc.cgi allows remote attackers to bypass the payment phase for accessing documents via a modified form v...
CVE-2000-0262The AVM KEN! ISDN Proxy server allows remote attackers to cause a denial of service via a malformed request.
CVE-2000-0258HIGH7.5IIS 4.0 and 5.0 allows remote attackers to cause a denial of service by sending many URLs with a large number of escaped...
CVE-2000-0252The dansie shopping cart application cart.pl allows remote attackers to execute commands via a shell metacharacters in a...
CVE-2000-0253The dansie shopping cart application cart.pl allows remote attackers to modify sensitive purchase information via hidden...
CVE-2000-0294Buffer overflow in healthd for FreeBSD allows local users to gain root privileges.
CVE-2000-0276BeOS 4.5 and 5.0 allow local users to cause a denial of service via malformed direct system calls using interrupt 37.
CVE-2000-0274The Linux trustees kernel patch allows attackers to cause a denial of service by accessing a file or directory with a lo...
CVE-2000-0275CRYPTOCard CryptoAdmin for PalmOS uses weak encryption to store a user's PIN number, which allows an attacker with acces...
CVE-2000-0273PCAnywhere allows remote attackers to cause a denial of service by terminating the connection before PCAnywhere provides...
CVE-2000-0298The unattended installation of Windows 2000 with the OEMPreinstall option sets insecure permissions for the All Users an...
CVE-2000-0279BeOS allows remote attackers to cause a denial of service via malformed packets whose length field is less than the leng...
CVE-2000-0301Ipswitch IMAIL server 6.02 and earlier allows remote attackers to cause a denial of service via the AUTH CRAM-MD5 comman...
CVE-2000-0251HP-UX 11.04 VirtualVault (VVOS) sends data to unprivileged processes via an interface that has multiple aliased IP addre...
CVE-2000-0300The default encryption method of PcAnywhere 9.x uses weak encryption, which allows remote attackers to sniff and decrypt...
CVE-2000-0255The Nbase-Xyplex EdgeBlaster router allows remote attackers to cause a denial of service via a scan for the FormMail CGI...

Check if your code is affected by 2000 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now