-
CVE-1999-0378
•
published on July 12, 2000
InterScan VirusWall for Solaris doesn't scan files for viruses when a single HTTP request includes two GET commands.
-
CVE-1999-0415
•
published on July 12, 2000
The HTTP server in Cisco 7xx series routers 3.2 through 4.2 is enabled by default, which allows remote attackers to change the router's configuration.
-
CVE-1999-0387
•
published on July 12, 2000
A legacy credential caching mechanism used in Windows 95 and Windows 98 systems allows attackers to read plaintext network passwords.
-
CVE-1999-0820
•
published on July 12, 2000
FreeBSD seyon allows users to gain privileges via a modified PATH variable for finding the xterm and seyon-emu commands.
-
CVE-1999-0959
•
published on July 12, 2000
IRIX startmidi program allows local users to modify arbitrary files via a symlink attack.
-
CVE-2000-0011
•
published on July 12, 2000
Buffer overflow in AnalogX SimpleServer:WWW HTTP server allows remote attackers to execute commands via a long GET request.
-
CVE-2000-0015
•
published on July 12, 2000
CascadeView TFTP server allows local users to gain privileges via a symlink attack.
-
CVE-2000-0030
•
published on July 12, 2000
Solaris dmispd dmi_cmd allows local users to fill up restricted disk space by adding files to the /var/dmi/db database.
-
CVE-2000-0034
•
published on July 12, 2000
Netscape 4.7 records user passwords in the preferences.js file during an IMAP or POP session, even if the user has not enabled "remember passwords."
-
CVE-2000-0032
•
published on July 12, 2000
Solaris dmi_cmd allows local users to crash the dmispd daemon by adding a malformed file to the /var/dmi/db database.
-
CVE-2000-0001
•
published on July 12, 2000
RealMedia server allows remote attackers to cause a denial of service via a long ramgen request.
-
CVE-2000-0045
•
published on July 12, 2000
MySQL allows local users to modify passwords for arbitrary MySQL users via the GRANT privilege.
-
CVE-2000-0013
•
published on July 12, 2000
IRIX soundplayer program allows local users to gain privileges by including shell metacharacters in a .wav file, which is executed via the midikeys program.
-
CVE-2000-0018
•
published on July 12, 2000
wmmon in FreeBSD allows local users to gain privileges via the .wmmonrc configuration file.
-
CVE-2000-0092
•
published on July 12, 2000
The BSD make program allows local users to modify files via a symlink attack when the -j option is being used.
-
CVE-2000-0175
•
published on July 12, 2000
Buffer overflow in StarOffice StarScheduler web server allows remote attackers to gain root access via a long GET command.
-
CVE-2000-0157
•
published on July 12, 2000
NetBSD ptrace call on VAX allows local users to gain privileges by modifying the PSL contents in the debugging process.
-
CVE-2000-0174
•
published on July 12, 2000
StarOffice StarScheduler web server allows remote attackers to read arbitrary files via a .. (dot dot) attack.
-
CVE-2000-0168
•
published on July 12, 2000
Microsoft Windows 9x operating systems allow an attacker to cause a denial of service via a pathname that includes file device names, aka the "DOS Device in Path Name" vulnerability.
-
CVE-2000-0303
•
published on July 12, 2000
Quake3 Arena allows malicious server operators to read or modify files on a client via a dot dot (..) attack.