Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2000-05-03 CVE-2000-0425 Unspecified vulnerability in Lsoft Listserv 1.8
Buffer overflow in the Web Archives component of L-Soft LISTSERV 1.8 allows remote attackers to execute arbitrary commands.
network
low complexity
lsoft
critical
10.0
2000-05-01 CVE-2000-0449 Unspecified vulnerability in Omnis Studio 2.4
Omnis Studio 2.4 uses weak encryption (trivial encoding) for encrypting database fields.
network
low complexity
omnis
critical
10.0
2000-04-24 CVE-2000-0248 Unspecified vulnerability in Redhat Linux 6.2
The web GUI for the Linux Virtual Server (LVS) software in the Red Hat Linux Piranha package has a backdoor password that allows remote attackers to execute arbitrary commands.
network
low complexity
redhat
critical
10.0
2000-04-14 CVE-2000-1218 Origin Validation Error vulnerability in Microsoft products
The default configuration for the domain name resolver for Microsoft Windows 98, NT 4.0, 2000, and XP sets the QueryIpMatching parameter to 0, which causes Windows to accept DNS updates from hosts that it did not query, which allows remote attackers to poison the DNS cache.
network
low complexity
microsoft CWE-346
critical
9.8
2000-04-12 CVE-2000-0287 Unspecified vulnerability in CNC Technology Bizdb 1.0
The BizDB CGI script bizdb-search.cgi allows remote attackers to execute arbitrary commands via shell metacharacters in the dbname parameter.
network
low complexity
cnc
critical
10.0
2000-04-11 CVE-2000-0253 Unspecified vulnerability in Craig Dansie Shopping Cart 3.0.4
The dansie shopping cart application cart.pl allows remote attackers to modify sensitive purchase information via hidden form fields.
network
low complexity
craig-dansie
critical
10.0
2000-03-15 CVE-2000-0233 Unspecified vulnerability in Suse Linux Imap Server 1.0
SuSE Linux IMAP server allows remote attackers to bypass IMAP authentication and gain privileges.
network
low complexity
suse
critical
10.0
2000-03-09 CVE-2000-0175 Unspecified vulnerability in SUN Staroffice 5.1
Buffer overflow in StarOffice StarScheduler web server allows remote attackers to gain root access via a long GET command.
network
low complexity
sun
critical
10.0
2000-03-02 CVE-2000-0177 Unspecified vulnerability in Dnstools Software Dnstools
DNSTools CGI applications allow remote attackers to execute arbitrary commands via shell metacharacters.
network
low complexity
dnstools-software
critical
10.0
2000-02-04 CVE-2000-0128 Unspecified vulnerability in Daniel Beckham the Finger Server
The Finger Server 0.82 allows remote attackers to execute commands via shell metacharacters.
network
low complexity
daniel-beckham
critical
10.0