Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2001-08-31 CVE-2000-1201 Denial-Of-Service vulnerability in Firewall-1
Check Point FireWall-1 allows remote attackers to cause a denial of service (high CPU) via a flood of packets to port 264.
network
low complexity
checkpoint
5.0
2001-08-31 CVE-2000-1200 Unspecified vulnerability in Microsoft Windows NT 4.0
Windows NT allows remote attackers to list all users in a domain by obtaining the domain SID with the LsaQueryInformationPolicy policy function via a null session and using the SID to list the users.
network
low complexity
microsoft
5.0
2001-08-31 CVE-2000-1199 Unspecified vulnerability in Postgresql 6.3.2/6.5.3
PostgreSQL stores usernames and passwords in plaintext in (1) pg_shadow and (2) pg_pwd, which allows attackers with sufficient privileges to gain access to databases.
local
low complexity
postgresql
4.6
2001-08-31 CVE-2000-1198 Improper Locking vulnerability in Qualcomm Qpopper 2.53/3.0
qpopper POP server creates lock files with predictable names, which allows local users to cause a denial of service for other users (lack of mail access) by creating lock files for other mail boxes.
local
low complexity
qualcomm CWE-667
5.5
2001-08-31 CVE-2000-1197 Denial of Service vulnerability in University of Washington Imap 4.5
POP2 or POP3 server (pop3d) in imap-uw IMAP package on FreeBSD and other operating systems creates lock files with predictable names, which allows local users to cause a denial of service (lack of mail access) for other users by creating lock files for other mail boxes.
local
low complexity
university-of-washington
2.1
2001-08-31 CVE-2000-1196 Unspecified vulnerability in Netscape Publishingxpert 2.5
PSCOErrPage.htm in Netscape PublishingXpert 2.5 before SP2 allows remote attackers to read arbitrary files by specifying the target file in the errPagePath parameter.
network
low complexity
netscape
5.0
2001-08-31 CVE-2000-1195 Security Bypass vulnerability in Openlinux Eserver
telnet daemon (telnetd) from the Linux netkit package before netkit-telnet-0.16 allows remote attackers to bypass authentication when telnetd is running with the -L command line option.
network
low complexity
caldera
7.5
2001-08-31 CVE-2000-1194 Buffer Overflow vulnerability in Argosoft FTP Server 1.0
Argosoft FRP server 1.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long string to the (1) USER or (2) CWD commands.
network
low complexity
argosoft
7.5
2001-08-31 CVE-2000-1193 Unspecified vulnerability in SGI Irix 6.3/6.4/6.5
Performance Metrics Collector Daemon (PMCD) in Performance Copilot in IRIX 6.x allows remote attackers to cause a denial of service (resource exhaustion) via an extremely long string to the PMCD port.
network
low complexity
sgi
5.0
2001-08-31 CVE-2000-1192 Unspecified vulnerability in BTT Software Snmp Trap Watcher 1.16
Buffer overflow in BTT Software SNMP Trap Watcher 1.16 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long string trap.
network
low complexity
btt-software
7.5