2000 CVE Vulnerabilities

1,241 CVEs published in 2000.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2000-0093——An installation of Red Hat uses DES password encryption with crypt() for the initial password, instead of md5.
CVE-2000-0088——Buffer overflow in the conversion utilities for Japanese, Korean and Chinese Word 5 documents allows an attacker to exec...
CVE-2000-0092——The BSD make program allows local users to modify files via a symlink attack when the -j option is being used.
CVE-2000-0086——Netopia Timbuktu Pro sends user IDs and passwords in cleartext, which allows remote attackers to obtain them via sniffin...
CVE-2000-0099——Buffer overflow in UnixWare ppptalk command allows local users to gain privileges via a long prompt argument.
CVE-2000-0079——The W3C CERN httpd HTTP server allows remote attackers to determine the real pathnames of some commands via a request fo...
CVE-2000-0072——Visual Casel (Vcasel) does not properly prevent users from executing files, which allows local users to use a relative p...
CVE-2000-0090——VMWare 1.1.2 allows local users to cause a denial of service via a symlink attack.
CVE-2000-0065——Buffer overflow in InetServ 3.0 allows remote attackers to execute commands via a long GET request.
CVE-2000-0063——cgiproc CGI script in Nortel Contivity HTTP server allows remote attackers to read arbitrary files by specifying the fil...
CVE-2000-0064——cgiproc CGI script in Nortel Contivity HTTP server allows remote attackers to cause a denial of service via a malformed ...
CVE-2000-0075——Super Mail Transfer Package (SMTP), later called MsgCore, has a memory leak which allows remote attackers to cause a den...
CVE-2000-0066——WebSite Pro allows remote attackers to determine the real pathname of webdirectories via a malformed URL request.
CVE-2000-0048——get_it program in Corel Linux Update allows local users to gain root access by specifying an alternate PATH for the cp p...
CVE-2000-0087——Netscape Mail Notification (nsnotify) utility in Netscape Communicator uses IMAP without SSL, even if the user has set a...
CVE-2000-0070——NtImpersonateClientOfPort local procedure call in Windows NT 4.0 allows local users to gain privileges, aka "Spoofed LPC...
CVE-2000-0045——MySQL allows local users to modify passwords for arbitrary MySQL users via the GRANT privilege.
CVE-2000-0067——CyberCash Merchant Connection Kit (MCK) allows local users to modify files via a symlink attack.
CVE-2000-0071——IIS 4.0 allows a remote attacker to obtain the real pathname of the document root by requesting non-existent files with ...
CVE-2000-0074——PowerScripts PlusMail CGI program allows remote attackers to execute commands via a password file with improper permissi...
CVE-2000-0081——Hotmail does not properly filter JavaScript code from a user's mailbox, which allows a remote attacker to execute the co...
CVE-2000-0080——AIX techlibss allows local users to overwrite files via a symlink attack.
CVE-2000-0046——Buffer overflow in ICQ 99b 1.1.1.1 client allows remote attackers to execute commands via a malformed URL within an ICQ ...
CVE-2000-1220——The line printer daemon (lpd) in the lpr package in multiple Linux operating systems allows local users to gain root pri...
CVE-2000-1221——The line printer daemon (lpd) in the lpr package in multiple Linux operating systems authenticates by comparing the reve...

Check if your code is affected by 2000 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now