Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2000-04-28 CVE-2000-0342 Link Following vulnerability in Qualcomm Eudora 4.0
Eudora 4.x allows remote attackers to bypass the user warning for executable attachments such as .exe, .com, and .bat by using a .lnk file that refers to the attachment, aka "Stealth Attachment."
network
low complexity
qualcomm CWE-59
7.5
2000-04-27 CVE-2000-0429 Unspecified vulnerability in Mcmurtrey Whitaker and Associates Cart32 2.6/3.0
A backdoor password in Cart32 3.0 and earlier allows remote attackers to execute arbitrary commands.
network
low complexity
mcmurtrey-whitaker-and-associates
7.5
2000-04-27 CVE-1999-0706 Linux xmonisdn package allows local users to gain root privileges by modifying the IFS or PATH environmental variables.
network
low complexity
isc redhat
7.5
2000-04-26 CVE-2000-0380 Improper Input Validation vulnerability in Cisco IOS
The IOS HTTP service in Cisco routers and switches running IOS 11.1 through 12.1 allows remote attackers to cause a denial of service by requesting a URL that contains a %% string.
network
cisco CWE-20
7.1
2000-04-26 CVE-2000-0249 Unspecified vulnerability in IBM AIX 4.3/4.3.1/4.3.2
The AIX Fast Response Cache Accelerator (FRCA) allows local users to modify arbitrary files via the configuration capability in the frcactrl program.
local
low complexity
ibm
7.2
2000-04-25 CVE-2000-0326 Weak Password Encryption vulnerability in Meeting Maker
Meeting Maker uses weak encryption (a polyalphabetic substitution cipher) for passwords, which allows remote attackers to sniff and decrypt passwords for Meeting Maker accounts.
network
low complexity
on-technology
5.0
2000-04-24 CVE-2000-0337 Unspecified vulnerability in SUN Solaris and Sunos
Buffer overflow in Xsun X server in Solaris 7 allows local users to gain root privileges via a long -dev parameter.
local
low complexity
sun
7.2
2000-04-24 CVE-2000-0334 Unspecified vulnerability in Allaire Spectra 1.0/1.0.1
The Allaire Spectra container editor preview tool does not properly enforce object security, which allows an attacker to conduct unauthorized activities via an object-method that is added to the container object with a publishing rule.
local
low complexity
allaire
2.1
2000-04-24 CVE-2000-0321 Buffer Overflow vulnerability in Icradius 0.14
Buffer overflow in IC Radius package allows a remote attacker to cause a denial of service via a long user name.
network
low complexity
icradius
5.0
2000-04-24 CVE-2000-0317 Buffer Overflow vulnerability in SUN Solaris and Sunos
Buffer overflow in Solaris 7 lpset allows local users to gain root privileges via a long -r option.
local
low complexity
sun
7.2