Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2000-01-06 CVE-2000-0044 Unspecified vulnerability in Jgaa Warftpd 1.70B/1.8.2
Macros in War FTP 1.70 and 1.67b2 allow local or remote attackers to read arbitrary files or execute commands.
network
low complexity
jgaa
critical
10.0
2000-01-04 CVE-2000-0059 Unspecified vulnerability in PHP
PHP3 with safe_mode enabled does not properly filter shell metacharacters from commands that are executed by popen, which could allow remote attackers to execute commands.
network
low complexity
php
critical
10.0
2000-01-04 CVE-1999-0894 Unspecified vulnerability in Redhat Linux
Red Hat Linux screen program does not use Unix98 ptys, allowing local users to write to other terminals.
network
low complexity
redhat
critical
10.0
1999-12-31 CVE-1999-1584 Unspecified vulnerability in SUN Openwindows and Sunos
Unknown vulnerability in (1) loadmodule, and (2) modload if modload is installed with setuid/setgid privileges, in SunOS 4.1.1 through 4.1.3c, and Open Windows 3.0, allows local users to gain root privileges via environment variables, a different vulnerability than CVE-1999-1586.
network
low complexity
sun
critical
10.0
1999-12-31 CVE-1999-1512 Unspecified vulnerability in Amavis Virus Scanner
The AMaViS virus scanner 0.2.0-pre4 and earlier allows remote attackers to execute arbitrary commands as root via an infected mail message with shell metacharacters in the reply-to field.
network
low complexity
amavis
critical
10.0
1999-12-31 CVE-1999-1324 Improper Restriction of Excessive Authentication Attempts vulnerability in HP Openvms VAX 5.3/5.4/5.5
VAXstations running Open VMS 5.3 through 5.5-2 with VMS DECwindows or MOTIF do not properly disable access to user accounts that exceed the break-in limit threshold for failed login attempts, which makes it easier for attackers to conduct brute force password guessing.
network
low complexity
hp CWE-307
critical
9.8
1999-12-31 CVE-1999-1293 Unspecified vulnerability in Apache Http Server
mod_proxy in Apache 1.2.5 and earlier allows remote attackers to cause a denial of service via malformed FTP commands, which causes Apache to dump core.
network
low complexity
apache
critical
10.0
1999-12-30 CVE-2000-0003 Unspecified vulnerability in SCO Unixware
Buffer overflow in UnixWare rtpm program allows local users to gain privileges via a long environmental variable.
network
low complexity
sco
critical
10.0
1999-12-29 CVE-2000-0042 Unspecified vulnerability in CSM Mail Server
Buffer overflow in CSM mail server allows remote attackers to cause a denial of service or execute commands via a long HELO command.
network
low complexity
csm
critical
10.0
1999-12-28 CVE-1999-1573 Unspecified vulnerability in HP Hp-Ux
Multiple unknown vulnerabilities in the "r-cmnds" (1) remshd, (2) rexecd, (3) rlogind, (4) rlogin, (5) remsh, (6) rcp, (7) rexec, and (8) rdist for HP-UX 10.00 through 11.00 allow attackers to gain privileges or access files.
network
low complexity
hp
critical
10.0