Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2000-11-14 CVE-2000-0881 Unspecified vulnerability in Plus Technologies Lpplus 3.2.2/3.3
The dccscan setuid program in LPPlus does not properly check if the user has the permissions to print the file that is specified to dccscan, which allows local users to print arbitrary files.
local
low complexity
plus-technologies
2.1
2000-11-14 CVE-2000-0880 Unspecified vulnerability in Plus Technologies Lpplus 3.2.2/3.3
LPPlus creates the lpdprocess file with world-writeable permissions, which allows local users to kill arbitrary processes by specifying an alternate process ID and using the setuid dcclpdshut program to kill the process that was specified in the lpdprocess file.
local
low complexity
plus-technologies
3.6
2000-11-14 CVE-2000-0879 Unspecified vulnerability in Plus Technologies Lpplus 3.2.2/3.3
LPPlus programs dccsched, dcclpdser, dccbkst, dccshut, dcclpdshut, and dccbkstshut are installed setuid root and world executable, which allows arbitrary local users to start and stop various LPD services.
local
low complexity
plus-technologies
2.1
2000-11-14 CVE-2000-0873 Unspecified vulnerability in IBM AIX
netstat in AIX 4.x.x does not properly restrict access to the -Zi option, which allows local users to clear network interface statistics and possibly hide evidence of unusual network activities.
local
low complexity
ibm
2.1
2000-11-14 CVE-2000-0866 Denial of Service vulnerability in Borland Software Interbase Superserver 6.0
Interbase 6 SuperServer for Linux allows an attacker to cause a denial of service via a query containing 0 bytes.
local
low complexity
borland-software
2.1
2000-11-14 CVE-2000-0849 Unspecified vulnerability in Microsoft Windows Media Services 4.0/4.1
Race condition in Microsoft Windows Media server allows remote attackers to cause a denial of service in the Windows Media Unicast Service via a malformed request, aka the "Unicast Service Race Condition" vulnerability.
network
high complexity
microsoft
2.6
2000-11-14 CVE-2000-0829 Unspecified vulnerability in Redhat Linux and Tmpwatch
The tmpwatch utility in Red Hat Linux forks a new process for each directory level, which allows local users to cause a denial of service by creating deeply nested directories in /tmp or /var/tmp/.
local
low complexity
redhat
2.1
2000-10-20 CVE-2000-0802 Unspecified vulnerability in PGP Personal Privacy 6.5.3
The BAIR program does not properly restrict access to the Internet Explorer Internet options menu, which allows local users to obtain access to the menu by modifying the registry key that starts BAIR.
local
low complexity
pgp
3.6
2000-10-20 CVE-2000-0771 Unspecified vulnerability in Microsoft Windows 2000
Microsoft Windows 2000 allows local users to cause a denial of service by corrupting the local security policy via malformed RPC traffic, aka the "Local Security Policy Corruption" vulnerability.
local
low complexity
microsoft
2.1
2000-10-20 CVE-2000-0768 Unspecified vulnerability in Microsoft IE and Internet Explorer
A function in Internet Explorer 4.x and 5.x does not properly verify the domain of a frame within a browser window, which allows a remote attacker to read client files, aka a variant of the "Frame Domain Verification" vulnerability.
network
high complexity
microsoft
2.6