Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2000-03-11 CVE-2000-0237 Unspecified vulnerability in Netscape Enterprise Server 3.5/3.6
Netscape Enterprise Server with Web Publishing enabled allows remote attackers to list arbitrary directories via a GET request for the /publisher directory, which provides a Java applet that allows the attacker to browse the directories.
network
low complexity
netscape
6.4
2000-03-11 CVE-2000-0181 Unspecified vulnerability in Checkpoint Firewall-1 3.0/4.0/4.1
Firewall-1 3.0 and 4.0 leaks packets with private IP address information, which could allow remote attackers to determine the real IP address of the host that is making the connection.
network
low complexity
checkpoint
5.0
2000-03-11 CVE-2000-0171 Unspecified vulnerability in AT Computing Atsar Linux 1.4
atsadc in the atsar package for Linux does not properly check the permissions of an output file, which allows local users to gain root privileges.
local
low complexity
at-computing
7.2
2000-03-10 CVE-2000-0223 Unspecified vulnerability in SAM Hawker Wmcdplay 1.0Beta2
Buffer overflow in the wmcdplay CD player program for the WindowMaker desktop allows local users to gain root privileges via a long parameter.
local
low complexity
sam-hawker
7.2
2000-03-10 CVE-2000-0183 Unspecified vulnerability in Michael Sandrof Ircii 4.4.7
Buffer overflow in ircII 4.4 IRC client allows remote attackers to execute commands via the DCC chat capability.
network
high complexity
michael-sandrof
5.1
2000-03-10 CVE-2000-0173 Unspecified vulnerability in SCO Unixware 7.1/7.1.1
Vulnerability in the EELS system in SCO UnixWare 7.1.x allows remote attackers to cause a denial of service.
network
low complexity
sco
5.0
2000-03-09 CVE-2000-0184 Linux printtool sets the permissions of printer configuration files to be world-readable, which allows local attackers to obtain printer share passwords.
local
low complexity
mandrakesoft redhat
2.1
2000-03-09 CVE-2000-0175 Unspecified vulnerability in SUN Staroffice 5.1
Buffer overflow in StarOffice StarScheduler web server allows remote attackers to gain root access via a long GET command.
network
low complexity
sun
critical
10.0
2000-03-09 CVE-2000-0174 Unspecified vulnerability in SUN Staroffice 5.1
StarOffice StarScheduler web server allows remote attackers to read arbitrary files via a ..
network
low complexity
sun
5.0
2000-03-08 CVE-2000-0202 Unspecified vulnerability in Microsoft Data Engine and SQL Server
Microsoft SQL Server 7.0 and Microsoft Data Engine (MSDE) 1.0 allow remote attackers to gain privileges via a malformed Select statement in an SQL query.
network
low complexity
microsoft
7.5