Vulnerabilities (CVE)

Filtered by NVD-CWE-Other
Total 29910 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2000-0100 1 Microsoft 1 Systems Management Server 2026-06-16 7.2 HIGH N/A
The SMS Remote Control program is installed with insecure permissions, which allows local users to gain privileges by modifying or replacing the program.
CVE-2000-0099 1 Sco 1 Unixware 2026-06-16 7.2 HIGH N/A
Buffer overflow in UnixWare ppptalk command allows local users to gain privileges via a long prompt argument.
CVE-2000-0098 1 Microsoft 1 Index Server 2026-06-16 5.0 MEDIUM N/A
Microsoft Index Server allows remote attackers to determine the real path for a web directory via a request to an Internet Data Query file that does not exist.
CVE-2000-0097 1 Microsoft 1 Index Server 2026-06-16 5.0 MEDIUM N/A
The WebHits ISAPI filter in Microsoft Index Server allows remote attackers to read arbitrary files, aka the "Malformed Hit-Highlighting Argument" vulnerability.
CVE-2000-0096 1 Qualcomm 1 Qpopper 2026-06-16 7.2 HIGH N/A
Buffer overflow in qpopper 3.0 beta versions allows local users to gain privileges via a long LIST command.
CVE-2000-0095 1 Hp 1 Hp-ux 2026-06-16 5.0 MEDIUM N/A
The PMTU discovery procedure used by HP-UX 10.30 and 11.00 for determining the optimum MTU generates large amounts of traffic in response to small packets, allowing remote attackers to cause the system to be used as a packet amplifier.
CVE-2000-0094 1 Netbsd 1 Netbsd 2026-06-16 7.2 HIGH N/A
procfs in BSD systems allows local users to gain root privileges by modifying the /proc/pid/mem interface via a modified file descriptor for stderr.
CVE-2000-0093 1 Redhat 1 Linux 2026-06-16 10.0 HIGH N/A
An installation of Red Hat uses DES password encryption with crypt() for the initial password, instead of md5.
CVE-2000-0092 3 Freebsd, Netbsd, Openbsd 3 Freebsd, Netbsd, Openbsd 2026-06-16 6.2 MEDIUM N/A
The BSD make program allows local users to modify files via a symlink attack when the -j option is being used.
CVE-2000-0091 1 Inter7 1 Vpopmail 2026-06-16 10.0 HIGH N/A
Buffer overflow in vchkpw/vpopmail POP authentication package allows remote attackers to gain root privileges via a long username or password.
CVE-2000-0090 1 Vmware 1 Workstation 2026-06-16 3.6 LOW N/A
VMWare 1.1.2 allows local users to cause a denial of service via a symlink attack.
CVE-2000-0089 1 Microsoft 1 Windows Nt 2026-06-16 2.1 LOW N/A
The rdisk utility in Microsoft Terminal Server Edition and Windows NT 4.0 stores registry hive information in a temporary file with permissions that allow local users to read it, aka the "RDISK Registry Enumeration File" vulnerability.
CVE-2000-0088 1 Microsoft 4 Office, Office Converter Pack, Powerpoint and 1 more 2026-06-16 7.2 HIGH N/A
Buffer overflow in the conversion utilities for Japanese, Korean and Chinese Word 5 documents allows an attacker to execute commands, aka the "Malformed Conversion Data" vulnerability.
CVE-2000-0087 1 Netscape 2 Communicator, Navigator 2026-06-16 5.0 MEDIUM N/A
Netscape Mail Notification (nsnotify) utility in Netscape Communicator uses IMAP without SSL, even if the user has set a preference for Communicator to use an SSL connection, allowing a remote attacker to sniff usernames and passwords in plaintext.
CVE-2000-0086 1 Netopia 1 Timbuktu Pro 2026-06-16 5.0 MEDIUM N/A
Netopia Timbuktu Pro sends user IDs and passwords in cleartext, which allows remote attackers to obtain them via sniffing.
CVE-2000-0085 1 Microsoft 1 Hotmail 2026-06-16 7.5 HIGH N/A
Hotmail does not properly filter JavaScript code from a user's mailbox, which allows a remote attacker to execute code via the LOWSRC or DYNRC parameters in the IMG tag.
CVE-2000-0084 1 Globalscape 1 Cuteftp 2026-06-16 5.0 MEDIUM N/A
CuteFTP uses weak encryption to store password information in its tree.dat file.
CVE-2000-0083 1 Hp 1 Hp-ux 2026-06-16 4.6 MEDIUM N/A
HP asecure creates the Audio Security File audio.sec with insecure permissions, which allows local users to cause a denial of service or gain additional privileges.
CVE-2000-0082 1 Microsoft 1 Webtv 2026-06-16 5.0 MEDIUM N/A
WebTV email client allows remote attackers to force the client to send email without the user's knowledge via HTML.
CVE-2000-0081 1 Microsoft 1 Hotmail 2026-06-16 10.0 HIGH N/A
Hotmail does not properly filter JavaScript code from a user's mailbox, which allows a remote attacker to execute the code by using hexadecimal codes to specify the javascript: protocol, e.g. jAvascript.