Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2000-12-31 CVE-2000-1232 Unspecified vulnerability in Phorum 3.0.7
upgrade.php3 in Phorum 3.0.7 could allow remote attackers to modify certain Phorum database tables via an unknown method.
network
low complexity
phorum
5.0
2000-12-31 CVE-2000-1231 Unspecified vulnerability in Phorum 3.0.7
code.php3 in Phorum 3.0.7 allows remote attackers to read arbitrary files in the phorum directory via the query string.
network
low complexity
phorum
5.0
2000-12-31 CVE-2000-1230 Unspecified vulnerability in Phorum 3.0.7
Backdoor in auth.php3 in Phorum 3.0.7 allows remote attackers to access restricted web pages via an HTTP request with the PHP_AUTH_USER parameter set to "boogieman".
network
low complexity
phorum
5.0
2000-12-31 CVE-2000-1229 Unspecified vulnerability in Phorum 3.0.7
Directory traversal vulnerability in Phorum 3.0.7 allows remote Phorum administrators to read arbitrary files via ".." (dot dot) sequences in the default .langfile name field in the Master Settings administrative function, which causes the file to be displayed in admin.php3.
network
low complexity
phorum
5.0
2000-12-31 CVE-2000-1228 Unspecified vulnerability in Phorum 3.0.7
Phorum 3.0.7 allows remote attackers to change the administrator password without authentication via an HTTP request for admin.php3 that sets step, option, confirm and newPssword variables.
network
low complexity
phorum
5.0
2000-12-31 CVE-2000-1227 Unspecified vulnerability in Microsoft Windows 2000 and Windows NT
Windows NT 4.0 and Windows 2000 hosts allow remote attackers to cause a denial of service (unavailable connections) by sending multiple SMB SMBnegprots requests but not reading the response that is sent back.
network
low complexity
microsoft
5.0
2000-12-31 CVE-2000-1226 Unspecified vulnerability in Snort 1.6
Snort 1.6, when running in straight ASCII packet logging mode or IDS mode with straight decoded ASCII packet logging selected, allows remote attackers to cause a denial of service (crash) by sending non-IP protocols that Snort does not know about, as demonstrated by an nmap protocol scan.
network
low complexity
snort
5.0
2000-12-31 CVE-2000-1225 Unspecified vulnerability in Imatix Xitami 2.5B
Xitami 2.5b installs the testcgi.exe program by default in the cgi-bin directory, which allows remote attackers to gain sensitive configuration information about the web server by accessing the program.
network
low complexity
imatix
5.0
2000-12-19 CVE-2000-0992 Directory traversal vulnerability in scp in sshd 1.2.xx allows a remote malicious scp server to overwrite arbitrary files via a ..
network
low complexity
openbsd ssh
5.0
2000-12-19 CVE-2000-0989 Unspecified vulnerability in Intel Inbusiness Email Station 1.4.87
Buffer overflow in Intel InBusiness eMail Station 1.04.87 POP service allows remote attackers to cause a denial of service and possibly execute commands via a long username.
network
low complexity
intel
5.0