Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2001-03-12 CVE-2000-0314 traceroute in NetBSD 1.3.3 and Linux systems allows local users to flood other systems by providing traceroute with a large waittime (-w) option, which is not parsed properly and sets the time delay for sending packets to zero.
network
low complexity
debian digital netbsd redhat slackware
5.0
2001-03-12 CVE-2000-0313 Unspecified vulnerability in Openbsd 2.6
Vulnerability in OpenBSD 2.6 allows a local user to change interface media configurations.
local
low complexity
openbsd
4.6
2001-03-12 CVE-2000-0312 Unspecified vulnerability in Openbsd 2.5
cron in OpenBSD 2.5 allows local users to gain root privileges via an argv[] that is not NULL terminated, which is passed to cron's fake popen function.
local
low complexity
openbsd
7.2
2001-03-12 CVE-2000-0310 Unspecified vulnerability in Openbsd 2.4
IP fragment assembly in OpenBSD 2.4 allows a remote attacker to cause a denial of service by sending a large number of fragmented packets.
network
low complexity
openbsd
5.0
2001-03-12 CVE-2000-0309 Unspecified vulnerability in Openbsd 2.4
The i386 trace-trap handling in OpenBSD 2.4 with DDB enabled allows a local user to cause a denial of service.
local
low complexity
openbsd
2.1
2001-03-12 CVE-2000-0308 Insecure file permissions for Netscape FastTrack Server 2.x, Enterprise Server 2.0, and Proxy Server 2.5 in SCO UnixWare 7.0.x and 2.1.3 allow an attacker to gain root privileges.
network
low complexity
netscape sco
critical
10.0
2001-03-12 CVE-2000-0307 Unspecified vulnerability in SCO Open Desktop, Openserver and Unixware
Vulnerability in xserver in SCO UnixWare 2.1.x and OpenServer 5.05 and earlier allows an attacker to cause a denial of service which prevents access to reserved port numbers below 1024.
network
low complexity
sco
5.0
2001-03-12 CVE-1999-0924 Unspecified vulnerability in Allaire Coldfusion Server 4.0
The Syntax Checker in ColdFusion Server 4.0 allows remote attackers to conduct a denial of service.
network
low complexity
allaire
5.0
2001-03-12 CVE-1999-0923 Unspecified vulnerability in Allaire Coldfusion Server 4.0
Sample runnable code snippets in ColdFusion Server 4.0 allow remote attackers to read files, conduct a denial of service, or use the server as a proxy for other HTTP calls.
network
low complexity
allaire
7.5
2001-03-12 CVE-1999-0922 Unspecified vulnerability in Allaire Coldfusion Server 4.0
An example application in ColdFusion Server 4.0 allows remote attackers to view source code via the sourcewindow.cfm file.
network
low complexity
allaire
5.0