-
CVE-2000-0129
•
published on February 8, 2000
Buffer overflow in the SHGetPathFromIDList function of the Serv-U FTP server allows attackers to cause a denial of service by performing a LIST command on a malformed .lnk file.
-
CVE-2000-0133
•
published on February 8, 2000
Buffer overflows in Tiny FTPd 0.52 beta3 FTP server allows users to execute commands via the STOR, RNTO, MKD, XMKD, RMD, XRMD, APPE, SIZE, and RNFR commands.
-
CVE-2000-0134
•
published on February 8, 2000
The Check It Out shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.
-
CVE-2000-0132
•
published on February 8, 2000
Microsoft Java Virtual Machine allows remote attackers to read files via the getSystemResourceAsStream function.
-
CVE-2000-0135
•
published on February 8, 2000
The @Retail shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.
-
CVE-2000-0136
•
published on February 8, 2000
The Cart32 shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.
-
CVE-1999-0186
•
published on February 4, 2000
In Solaris, an SNMP subagent has a default community string that allows remote attackers to execute arbitrary commands as root, or modify system parameters.
-
CVE-1999-0254
•
published on February 4, 2000
A hidden SNMP community string in HP OpenView allows remote attackers to modify MIB tables and obtain sensitive information.
-
CVE-1999-0516
•
published on February 4, 2000
An SNMP community name is guessable.
-
CVE-1999-0524
•
published on February 4, 2000
ICMP information such as (1) netmask and (2) timestamp is allowed from arbitrary hosts.
-
CVE-1999-0532
•
published on February 4, 2000
A DNS server allows zone transfers.
-
CVE-1999-0517
•
published on February 4, 2000
An SNMP community name is the default (e.g. public), null, or missing.
-
CVE-1999-0030
•
published on February 4, 2000
root privileges via buffer overflow in xlock command on SGI IRIX systems.
-
CVE-1999-0001
•
published on February 4, 2000
ip_input.c in BSD-derived TCP/IP implementations allows remote attackers to cause a denial of service (crash or hang) via crafted packets.
-
CVE-1999-0004
•
published on February 4, 2000
MIME buffer overflow in email clients, e.g. Solaris mailtool and Outlook.
-
CVE-1999-0033
•
published on February 4, 2000
Command execution in Sun systems via buffer overflow in the at program.
-
CVE-1999-0015
•
published on February 4, 2000
Teardrop IP denial of service.
-
CVE-1999-0061
•
published on February 4, 2000
File creation and deletion, and remote execution, in the BSD line printer daemon (lpd).
-
CVE-1999-0086
•
published on February 4, 2000
AIX routed allows remote users to modify sensitive files.
-
CVE-1999-0104
•
published on February 4, 2000
A later variation on the Teardrop IP denial of service attack, a.k.a. Teardrop-2.