Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2000-06-15 CVE-2000-0484 Unspecified vulnerability in MAX Feoktistov Small Http Server 1.212
Small HTTP Server ver 3.06 contains a memory corruption bug causing a memory overflow.
network
low complexity
max-feoktistov
5.0
2000-06-15 CVE-2000-0475 Unspecified vulnerability in Microsoft Windows 2000
Windows 2000 allows a local user process to access another user's desktop within the same windows station, aka the "Desktop Separation" vulnerability.
local
low complexity
microsoft
4.6
2000-06-14 CVE-2000-0543 Unspecified vulnerability in PGP Certificate Server 2.5/2.5.1
The command port for PGP Certificate Server 2.5.0 and 2.5.1 allows remote attackers to cause a denial of service if their hostname does not have a reverse DNS entry and they connect to port 4000.
network
low complexity
pgp
5.0
2000-06-14 CVE-2000-0478 Unspecified vulnerability in Symantec Norton Antivirus 1.5/2.0
In some cases, Norton Antivirus for Exchange (NavExchange) enters a "fail-open" state which allows viruses to pass through the server.
network
low complexity
symantec
5.0
2000-06-14 CVE-2000-0477 Unspecified vulnerability in Symantec Norton Antivirus 1.5/2.0
Buffer overflow in Norton Antivirus for Exchange (NavExchange) allows remote attackers to cause a denial of service via a .zip file that contains long file names.
network
low complexity
symantec
5.0
2000-06-13 CVE-2000-0542 Unspecified vulnerability in Ericsson AXC Tigris Multiservice Access Platform 623.0/627.0/711.0
Tigris remote access server before 11.5.4.22 does not properly record Radius accounting information when a user fails the initial login authentication but subsequently succeeds.
network
low complexity
ericsson
5.0
2000-06-12 CVE-2000-0535 OpenSSL 0.9.4 and OpenSSH for FreeBSD do not properly check for the existence of the /dev/random or /dev/urandom devices, which are absent on FreeBSD Alpha systems, which causes them to produce weak keys which may be more easily broken.
network
low complexity
openssl freebsd
5.0
2000-06-09 CVE-2000-0555 Multiple vulnerability in Lilikoi Ceilidh 2.60
Ceilidh allows remote attackers to cause a denial of service via a large number of POST requests.
network
low complexity
lilikoi
5.0
2000-06-09 CVE-2000-0550 Kerberos 4 KDC program improperly frees memory twice (aka "double-free"), which allows remote attackers to cause a denial of service.
network
low complexity
cygnus mit
5.0
2000-06-09 CVE-2000-0549 Kerberos 4 KDC program does not properly check for null termination of AUTH_MSG_KDC_REQUEST requests, which allows remote attackers to cause a denial of service via a malformed request.
network
low complexity
cygnus mit
5.0