-
CVE-2000-0493
•
published on October 13, 2000
Buffer overflow in Simple Network Time Sync (SMTS) daemon allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long string.
-
CVE-2000-0495
•
published on October 13, 2000
Microsoft Windows Media Encoder allows remote attackers to cause a denial of service via a malformed request, aka the "Malformed Windows Media Encoder Request" vulnerability.
-
CVE-2000-0506
•
published on October 13, 2000
The "capabilities" feature in Linux before 2.2.16 allows local users to cause a denial of service or gain privileges by setting the capabilities to prevent a setuid program from dropping privileges, aka the "Linux kernel setuid/setcap vulnerability."
-
CVE-2000-0507
•
published on October 13, 2000
Imate Webmail Server 2.5 allows remote attackers to cause a denial of service via a long HELO command.
-
CVE-2000-0508
•
published on October 13, 2000
rpc.lockd in Red Hat Linux 6.1 and 6.2 allows remote attackers to cause a denial of service via a malformed request.
-
CVE-2000-0510
•
published on October 13, 2000
CUPS (Common Unix Printing System) 1.04 and earlier allows remote attackers to cause a denial of service via a malformed IPP request.
-
CVE-2000-0426
•
published on October 13, 2000
UltraBoard 1.6 and other versions allow remote attackers to cause a denial of service by referencing UltraBoard in the Session parameter, which causes UltraBoard to fork copies of itself.
-
CVE-2000-0446
•
published on October 13, 2000
Buffer overflow in MDBMS database server allows remote attackers to execute arbitrary commands via a long string.
-
CVE-2000-0475
•
published on October 13, 2000
Windows 2000 allows a local user process to access another user's desktop within the same windows station, aka the "Desktop Separation" vulnerability.
-
CVE-2000-0500
•
published on October 13, 2000
The default configuration of BEA WebLogic 5.1.0 allows a remote attacker to view source code of programs by requesting a URL beginning with /file/, which causes the default servlet to display the file without further processing.
-
CVE-2000-0501
•
published on October 13, 2000
Race condition in MDaemon 2.8.5.0 POP server allows local users to cause a denial of service by entering a UIDL command and quickly exiting the server.
-
CVE-2000-0513
•
published on October 13, 2000
CUPS (Common Unix Printing System) 1.04 and earlier allows remote attackers to cause a denial of service by authenticating with a user name that does not exist or does not have a shadow password.
-
CVE-2000-0440
•
published on October 13, 2000
NetBSD 1.4.2 and earlier allows remote attackers to cause a denial of service by sending a packet with an unaligned IP timestamp option.
-
CVE-2000-0443
•
published on October 13, 2000
The web interface server in HP Web JetAdmin 5.6 allows remote attackers to read arbitrary files via a .. (dot dot) attack.
-
CVE-2000-0445
•
published on October 13, 2000
The pgpk command in PGP 5.x on Unix systems uses an insufficiently random data source for non-interactive key pair generation, which may produce predictable keys.
-
CVE-2000-0448
•
published on October 13, 2000
The WebShield SMTP Management Tool version 4.5.44 does not properly restrict access to the management port when an IP address does not resolve to a hostname, which allows remote attackers to access the configuration via the GET_CONFIG command.
-
CVE-2000-0451
•
published on October 13, 2000
The Intel express 8100 ISDN router allows remote attackers to cause a denial of service via oversized or fragmented ICMP packets.
-
CVE-2000-0459
•
published on October 13, 2000
IMP does not remove files properly if the MSWordView application quits, which allows local users to cause a denial of service by filling up the disk space by requesting a large number of documents and prematurely stopping the request.
-
CVE-2000-0466
•
published on October 13, 2000
AIX cdmount allows local users to gain root privileges via shell metacharacters.
-
CVE-2000-0478
•
published on October 13, 2000
In some cases, Norton Antivirus for Exchange (NavExchange) enters a "fail-open" state which allows viruses to pass through the server.