Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2000-11-14 CVE-2000-0828 Buffer Overflow vulnerability in Mobius Documentdirect for the Internet 1.2
Buffer overflow in ddicgi.exe in Mobius DocumentDirect for the Internet 1.2 allows remote attackers to execute arbitrary commands via a long User-Agent parameter.
network
low complexity
mobius
critical
10.0
2000-11-14 CVE-2000-0827 Buffer Overflow vulnerability in Mobius Documentdirect for the Internet 1.2
Buffer overflow in the web authorization form of Mobius DocumentDirect for the Internet 1.2 allows remote attackers to cause a denial of service or execute arbitrary commands via a long username.
network
low complexity
mobius
critical
10.0
2000-11-14 CVE-2000-0826 Buffer Overflow vulnerability in Mobius Documentdirect for the Internet 1.2
Buffer overflow in ddicgi.exe program in Mobius DocumentDirect for the Internet 1.2 allows remote attackers to execute arbitrary commands via a long GET request.
network
low complexity
mobius
critical
10.0
2000-11-14 CVE-2000-0812 Unspecified vulnerability in SUN Java System web Server
The administration module in Sun Java web server allows remote attackers to execute arbitrary commands by uploading Java code to the module and invoke the com.sun.server.http.pagecompile.jsp92.JspServlet by requesting a URL that begins with a /servlet/ tag.
network
low complexity
sun
critical
10.0
2000-10-20 CVE-2000-0800 Unspecified vulnerability in Suse Linux
String parsing error in rpc.kstatd in the linuxnfs or knfsd packages in SuSE and possibly other Linux systems allows remote attackers to gain root privileges.
network
low complexity
suse
critical
10.0
2000-10-20 CVE-2000-0784 Remote Command Execution vulnerability in RapidStream Unauthenticated
sshd program in the Rapidstream 2.1 Beta VPN appliance has a hard-coded "rsadmin" account with a null password, which allows remote attackers to execute arbitrary commands via ssh.
network
low complexity
rapidstream
critical
10.0
2000-10-20 CVE-2000-0757 Remote Command Execution vulnerability in Aptis Software Totalbill 3.0
The sysgen service in Aptis Totalbill does not perform authentication, which allows remote attackers to gain root privileges by connecting to the service and specifying the commands to be executed.
network
low complexity
aptis-software
critical
10.0
2000-10-20 CVE-2000-0747 Unspecified vulnerability in Conectiva Linux 4.1/4.2/5.0
The logrotate script for OpenLDAP before 1.2.11 in Conectiva Linux sends an improper signal to the kernel log daemon (klogd) and kills it.
network
low complexity
conectiva
critical
10.0
2000-10-20 CVE-2000-0743 Unspecified vulnerability in University of Minnesota Gopherd 2.3/2.3.1
Buffer overflow in University of Minnesota (UMN) gopherd 2.x allows remote attackers to execute arbitrary commands via a DES key generation request (GDESkey) that contains a long ticket value.
network
low complexity
university-of-minnesota
critical
10.0
2000-10-20 CVE-2000-0733 Unspecified vulnerability in SGI Irix
Telnetd telnet server in IRIX 5.2 through 6.1 does not properly cleans user-injected format strings, which allows remote attackers to execute arbitrary commands via a long RLD variable in the IAC-SB-TELOPT_ENVIRON request.
network
low complexity
sgi
critical
10.0