2000 CVE Vulnerabilities

1,241 CVEs published in 2000.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2000-0093An installation of Red Hat uses DES password encryption with crypt() for the initial password, instead of md5.
CVE-2000-0088Buffer overflow in the conversion utilities for Japanese, Korean and Chinese Word 5 documents allows an attacker to exec...
CVE-2000-0092The BSD make program allows local users to modify files via a symlink attack when the -j option is being used.
CVE-2000-0086Netopia Timbuktu Pro sends user IDs and passwords in cleartext, which allows remote attackers to obtain them via sniffin...
CVE-2000-0099Buffer overflow in UnixWare ppptalk command allows local users to gain privileges via a long prompt argument.
CVE-2000-0079The W3C CERN httpd HTTP server allows remote attackers to determine the real pathnames of some commands via a request fo...
CVE-2000-0072Visual Casel (Vcasel) does not properly prevent users from executing files, which allows local users to use a relative p...
CVE-2000-0090VMWare 1.1.2 allows local users to cause a denial of service via a symlink attack.
CVE-2000-0065Buffer overflow in InetServ 3.0 allows remote attackers to execute commands via a long GET request.
CVE-2000-0063cgiproc CGI script in Nortel Contivity HTTP server allows remote attackers to read arbitrary files by specifying the fil...
CVE-2000-0064cgiproc CGI script in Nortel Contivity HTTP server allows remote attackers to cause a denial of service via a malformed ...
CVE-2000-0075Super Mail Transfer Package (SMTP), later called MsgCore, has a memory leak which allows remote attackers to cause a den...
CVE-2000-0066WebSite Pro allows remote attackers to determine the real pathname of webdirectories via a malformed URL request.
CVE-2000-0048get_it program in Corel Linux Update allows local users to gain root access by specifying an alternate PATH for the cp p...
CVE-2000-0087Netscape Mail Notification (nsnotify) utility in Netscape Communicator uses IMAP without SSL, even if the user has set a...
CVE-2000-0070NtImpersonateClientOfPort local procedure call in Windows NT 4.0 allows local users to gain privileges, aka "Spoofed LPC...
CVE-2000-0045MySQL allows local users to modify passwords for arbitrary MySQL users via the GRANT privilege.
CVE-2000-0067CyberCash Merchant Connection Kit (MCK) allows local users to modify files via a symlink attack.
CVE-2000-0071IIS 4.0 allows a remote attacker to obtain the real pathname of the document root by requesting non-existent files with ...
CVE-2000-0074PowerScripts PlusMail CGI program allows remote attackers to execute commands via a password file with improper permissi...
CVE-2000-0081Hotmail does not properly filter JavaScript code from a user's mailbox, which allows a remote attacker to execute the co...
CVE-2000-0080AIX techlibss allows local users to overwrite files via a symlink attack.
CVE-2000-0046Buffer overflow in ICQ 99b 1.1.1.1 client allows remote attackers to execute commands via a malformed URL within an ICQ ...
CVE-2000-1220The line printer daemon (lpd) in the lpr package in multiple Linux operating systems allows local users to gain root pri...
CVE-2000-1221The line printer daemon (lpd) in the lpr package in multiple Linux operating systems authenticates by comparing the reve...

Check if your code is affected by 2000 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now