-
CVE-2000-0405
•
published on July 12, 2000
Buffer overflow in L0pht AntiSniff allows remote attackers to execute arbitrary commands via a malformed DNS response packet.
-
CVE-2000-0409
•
published on July 12, 2000
Netscape 4.73 and earlier follows symlinks when it imports a new certificate, which allows local users to overwrite files of the user importing the certificate.
-
CVE-2000-0417
•
published on July 12, 2000
The HTTP administration interface to the Cayman 3220-H DSL router allows remote attackers to cause a denial of service via a long username or password.
-
CVE-2000-0424
•
published on July 12, 2000
The CGI counter 4.0.7 by George Burgyan allows remote attackers to execute arbitrary commands via shell metacharacters.
-
CVE-2000-0427
•
published on July 12, 2000
The Aladdin Knowledge Systems eToken device allows attackers with physical access to the device to obtain sensitive information without knowing the PIN of the owner by resetting the PIN in the EEPROM.
-
CVE-2000-0428
•
published on July 12, 2000
Buffer overflow in the SMTP gateway for InterScan Virus Wall 3.32 and earlier allows a remote attacker to execute arbitrary commands via a long filename for a uuencoded attachment.
-
CVE-2000-0432
•
published on July 12, 2000
The calender.pl and the calendar_admin.pl calendar scripts by Matt Kruse allow remote attackers to execute arbitrary commands via shell metacharacters.
-
CVE-2000-0438
•
published on July 12, 2000
Buffer overflow in fdmount on Linux systems allows local users in the "floppy" group to execute arbitrary commands via a long mountpoint parameter.
-
CVE-2000-0439
•
published on July 12, 2000
Internet Explorer 4.0 and 5.0 allows a malicious web site to obtain client cookies from another domain by including that domain name and escaped characters in a URL, aka the "Unauthorized Cookie Access" vulnerability.
-
CVE-2000-0441
•
published on July 12, 2000
Vulnerability in AIX 3.2.x and 4.x allows local users to gain write access to files on locally or remotely mounted AIX filesystems.
-
CVE-2000-0452
•
published on July 12, 2000
Buffer overflow in the ESMTP service of Lotus Domino Server 5.0.1 allows remote attackers to cause a denial of service via a long MAIL FROM command.
-
CVE-2000-0453
•
published on July 12, 2000
XFree86 3.3.x and 4.0 allows a user to cause a denial of service via a negative counter value in a malformed TCP packet that is sent to port 6000.
-
CVE-2000-0454
•
published on July 12, 2000
Buffer overflow in Linux cdrecord allows local users to gain privileges via the dev parameter.
-
CVE-2000-0455
•
published on July 12, 2000
Buffer overflow in xlockmore xlock program version 4.16 and earlier allows local users to read sensitive data from memory via a long -mode option.
-
CVE-2000-0460
•
published on July 12, 2000
Buffer overflow in KDE kdesud on Linux allows local uses to gain privileges via a long DISPLAY environmental variable.
-
CVE-2000-0461
•
published on July 12, 2000
The undocumented semconfig system call in BSD freezes the state of semaphores, which allows local users to cause a denial of service of the semaphore system by using the semconfig call.
-
CVE-2000-0462
•
published on July 12, 2000
ftpd in NetBSD 1.4.2 does not properly parse entries in /etc/ftpchroot and does not chroot the specified users, which allows those users to access other files outside of their home directory.
-
CVE-2000-0463
•
published on July 12, 2000
BeOS 5.0 allows remote attackers to cause a denial of service via fragmented TCP packets.
-
CVE-2000-0473
•
published on July 12, 2000
Buffer overflow in AnalogX SimpleServer 1.05 allows a remote attacker to cause a denial of service via a long GET request for a program in the cgi-bin directory.
-
CVE-2000-0399
•
published on July 12, 2000
Buffer overflow in MDaemon POP server allows remote attackers to cause a denial of service via a long user name.