Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2000-05-28 CVE-2000-0456 Unspecified vulnerability in Netbsd 1.4.1/1.4.2
NetBSD 1.4.2 and earlier allows local users to cause a denial of service by repeatedly running certain system calls in the kernel which do not yield the CPU, aka "cpu-hog".
local
low complexity
netbsd
2.1
2000-05-26 CVE-2000-0553 Unspecified vulnerability in Darren Reed Ipfilter 3.3.15/3.4.3
Race condition in IPFilter firewall 3.4.3 and earlier, when configured with overlapping "return-rst" and "keep state" rules, allows remote attackers to bypass access restrictions.
network
high complexity
darren-reed
2.6
2000-05-24 CVE-2000-0445 Unspecified vulnerability in PGP 5.0I/5.0Linux/6.5Linux
The pgpk command in PGP 5.x on Unix systems uses an insufficiently random data source for non-interactive key pair generation, which may produce predictable keys.
local
low complexity
pgp
2.1
2000-05-10 CVE-2000-0409 Unspecified vulnerability in Netscape Communicator
Netscape 4.73 and earlier follows symlinks when it imports a new certificate, which allows local users to overwrite files of the user importing the certificate.
local
high complexity
netscape
3.7
2000-05-10 CVE-2000-0406 Unspecified vulnerability in Netscape Communicator
Netscape Communicator before version 4.73 and Navigator 4.07 do not properly validate SSL certificates, which allows remote attackers to steal information by redirecting traffic from a legitimate web server to their own malicious server, aka the "Acros-Suencksen SSL" vulnerability.
network
high complexity
netscape
2.6
2000-05-09 CVE-2000-0387 Unspecified vulnerability in Alexander Siegel Golddig 2.0
The makelev program in the golddig game from the FreeBSD ports collection allows local users to overwrite arbitrary files.
local
low complexity
alexander-siegel
2.1
2000-05-08 CVE-2000-0382 Unspecified vulnerability in Allaire Clustercats 1.0
ColdFusion ClusterCATS appends stale query string arguments to a URL during HTML redirection, which may provide sensitive information to the redirected site.
network
high complexity
allaire
2.6
2000-05-02 CVE-2000-0293 Unspecified vulnerability in Suse Linux
aaa_base in SuSE Linux 6.3, and cron.daily in earlier versions, allow local users to delete arbitrary files by creating files whose names include spaces, which are then incorrectly interpreted by aaa_base when it deletes expired files from the /tmp directory.
local
low complexity
suse
2.1
2000-04-24 CVE-2000-0334 Unspecified vulnerability in Allaire Spectra 1.0/1.0.1
The Allaire Spectra container editor preview tool does not properly enforce object security, which allows an attacker to conduct unauthorized activities via an object-method that is added to the container object with a publishing rule.
local
low complexity
allaire
2.1
2000-04-22 CVE-2000-0458 Unspecified vulnerability in IMP
The MSWordView application in IMP creates world-readable files in the /tmp directory, which allows other local users to read potentially sensitive information.
local
low complexity
imp
2.1