Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2000-05-10 CVE-2000-0410 Unspecified vulnerability in Allaire Coldfusion Server 4.5.1
ColdFusion Server 4.5.1 allows remote attackers to cause a denial of service by making repeated requests to a CFCACHE tagged cache file that is not stored in memory.
network
low complexity
allaire
5.0
2000-05-10 CVE-2000-0409 Unspecified vulnerability in Netscape Communicator
Netscape 4.73 and earlier follows symlinks when it imports a new certificate, which allows local users to overwrite files of the user importing the certificate.
local
high complexity
netscape
3.7
2000-05-10 CVE-2000-0406 Unspecified vulnerability in Netscape Communicator
Netscape Communicator before version 4.73 and Navigator 4.07 do not properly validate SSL certificates, which allows remote attackers to steal information by redirecting traffic from a legitimate web server to their own malicious server, aka the "Acros-Suencksen SSL" vulnerability.
network
high complexity
netscape
2.6
2000-05-10 CVE-2000-0304 Unspecified vulnerability in Microsoft products
Microsoft IIS 4.0 and 5.0 with the IISADMPWD virtual directory installed allows a remote attacker to cause a denial of service via a malformed request to the inetinfo.exe program, aka the "Undelimited .HTR Request" vulnerability.
network
low complexity
microsoft
5.0
2000-05-09 CVE-2000-0387 Unspecified vulnerability in Alexander Siegel Golddig 2.0
The makelev program in the golddig game from the FreeBSD ports collection allows local users to overwrite arbitrary files.
local
low complexity
alexander-siegel
2.1
2000-05-08 CVE-2000-0384 Unspecified vulnerability in Intel Netstructure 7110 and Netstructure 7180
NetStructure 7110 and 7180 have undocumented accounts (servnow, root, and wizard) whose passwords are easily guessable from the NetStructure's MAC address, which could allow remote attackers to gain root access.
network
low complexity
intel
critical
10.0
2000-05-08 CVE-2000-0382 Unspecified vulnerability in Allaire Clustercats 1.0
ColdFusion ClusterCATS appends stale query string arguments to a URL during HTML redirection, which may provide sensitive information to the redirected site.
network
high complexity
allaire
2.6
2000-05-06 CVE-2000-0413 Path Disclosure vulnerability in Microsoft products
The shtml.exe program in the FrontPage extensions package of IIS 4.0 and 5.0 allows remote attackers to determine the physical path of HTML, HTM, ASP, and SHTML files by requesting a file that does not exist, which generates an error message that reveals the path.
network
low complexity
microsoft
5.0
2000-05-05 CVE-2000-0426 Unspecified vulnerability in Ultrascripts Ultraboard 1.6
UltraBoard 1.6 and other versions allow remote attackers to cause a denial of service by referencing UltraBoard in the Session parameter, which causes UltraBoard to fork copies of itself.
network
low complexity
ultrascripts
5.0
2000-05-05 CVE-2000-0423 Buffer Overflow vulnerability in Netwin Dnews 5.3
Buffer overflow in Netwin DNEWSWEB CGI program allows remote attackers to execute arbitrary commands via long parameters such as group, cmd, and utag.
network
low complexity
netwin
5.0