Vulnerabilities (CVE)

Filtered by NVD-CWE-Other
Total 29911 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2000-0878 1 Ranson Johnson 1 Mailto Cgi Script 2026-06-16 7.5 HIGH N/A
The mailto CGI script allows remote attacker to execute arbitrary commands via shell metacharacters in the emailadd form field.
CVE-2000-0877 1 Ranson Johnson 1 Mailform 2026-06-16 5.0 MEDIUM N/A
mailform.pl CGI script in MailForm 2.0 allows remote attackers to read arbitrary files by specifying the file name in the XX-attach_file parameter, which MailForm then sends to the attacker.
CVE-2000-0875 1 Texas Imperial Software 2 Wftpd, Wftpd Pro 2026-06-16 5.0 MEDIUM N/A
WFTPD and WFTPD Pro 2.41 RC12 allows remote attackers to cause a denial of service by sending a long string of unprintable characters.
CVE-2000-0874 1 Qualcomm 1 Eudora 2026-06-16 5.0 MEDIUM N/A
Eudora mail client includes the absolute path of the sender's host within a virtual card (VCF).
CVE-2000-0873 1 Ibm 1 Aix 2026-06-16 2.1 LOW N/A
netstat in AIX 4.x.x does not properly restrict access to the -Zi option, which allows local users to clear network interface statistics and possibly hide evidence of unusual network activities.
CVE-2000-0872 1 Nathan Purciful 1 Phpphotoalbum 2026-06-16 5.0 MEDIUM N/A
explorer.php in PhotoAlbum 0.9.9 allows remote attackers to read arbitrary files via a .. (dot dot) attack.
CVE-2000-0871 1 Khamil Landross And Zack Jones 1 Eftp 2026-06-16 5.0 MEDIUM N/A
Buffer overflow in EFTP allows remote attackers to cause a denial of service by sending a string that does not contain a newline, then disconnecting from the server.
CVE-2000-0870 1 Khamil Landross And Zack Jones 1 Eftp 2026-06-16 7.5 HIGH N/A
Buffer overflow in EFTP allows remote attackers to cause a denial of service via a long string.
CVE-2000-0869 2 Apache, Suse 2 Http Server, Suse Linux 2026-06-16 5.0 MEDIUM N/A
The default configuration of Apache 1.3.12 in SuSE Linux 6.4 enables WebDAV, which allows remote attackers to list arbitrary directories via the PROPFIND HTTP request method.
CVE-2000-0868 2 Apache, Suse 2 Http Server, Suse Linux 2026-06-16 5.0 MEDIUM N/A
The default configuration of Apache 1.3.12 in SuSE Linux 6.4 allows remote attackers to read source code for CGI scripts by replacing the /cgi-bin/ in the requested URL with /cgi-bin-sdb/.
CVE-2000-0867 5 Debian, Mandrakesoft, Redhat and 2 more 5 Debian Linux, Mandrake Linux, Linux and 2 more 2026-06-16 7.2 HIGH N/A
Kernel logging daemon (klogd) in Linux does not properly cleanse user-injected format strings, which allows local users to gain root privileges by triggering malformed kernel messages.
CVE-2000-0866 1 Borland Software 1 Interbase Superserver 2026-06-16 2.1 LOW N/A
Interbase 6 SuperServer for Linux allows an attacker to cause a denial of service via a query containing 0 bytes.
CVE-2000-0865 1 Tridia 1 Doublevision 2026-06-16 7.2 HIGH N/A
Buffer overflow in dvtermtype in Tridia Double Vision 3.07.00 allows local users to gain root privileges via a long terminal type argument.
CVE-2000-0863 1 Listmanager 1 Linux 2026-06-16 7.2 HIGH N/A
Buffer overflow in listmanager earlier than 2.105.1 allows local users to gain additional privileges.
CVE-2000-0862 1 Allaire 1 Spectra 2026-06-16 6.4 MEDIUM N/A
Vulnerability in an administrative interface utility for Allaire Spectra 1.0.1 allows remote attackers to read and modify sensitive configuration information.
CVE-2000-0861 1 Gnu 1 Mailman 2026-06-16 7.2 HIGH N/A
Mailman 1.1 allows list administrators to execute arbitrary commands via shell metacharacters in the %(listname) macro expansion.
CVE-2000-0860 1 Php 1 Php 2026-06-16 5.0 MEDIUM N/A
The file upload capability in PHP versions 3 and 4 allows remote attackers to read arbitrary files by setting hidden form fields whose names match the names of internal PHP script variables.
CVE-2000-0859 1 Gordano 1 Ntmail 2026-06-16 5.0 MEDIUM N/A
The web configuration server for NTMail V5 and V6 allows remote attackers to cause a denial of service via a series of partial HTTP requests.
CVE-2000-0858 1 Microsoft 2 Internet Information Server, Windows Nt 2026-06-16 5.0 MEDIUM N/A
Vulnerability in Microsoft Windows NT 4.0 allows remote attackers to cause a denial of service in IIS by sending it a series of malformed requests which cause INETINFO.EXE to fail, aka the "Invalid URL" vulnerability.
CVE-2000-0857 1 Sebastian Kienzl 1 Muh 2026-06-16 7.5 HIGH N/A
The logging capability in muh 2.05d IRC server does not properly cleanse user-injected format strings, which allows remote attackers to cause a denial of service or execute arbitrary commands via a malformed nickname.