Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2000-12-11 CVE-2000-1075 Directory traversal vulnerability in iPlanet Certificate Management System 4.2 and Directory Server 4.12 allows remote attackers to read arbitrary files via a ..
network
low complexity
netscape sun
5.0
2000-12-11 CVE-2000-1070 Unspecified vulnerability in Cgi-World Poll IT and Poll IT PRO
pollit.cgi in Poll It 2.01 and earlier uses data files that are located under the web document root, which allows remote attackers to access sensitive or private information.
network
low complexity
cgi-world
5.0
2000-12-11 CVE-2000-1069 Unspecified vulnerability in Cgi-World Poll IT and Poll IT PRO
pollit.cgi in Poll It 2.01 and earlier allows remote attackers to access administrative functions without knowing the real password by specifying the same value to the entered_password and admin_password parameters.
network
low complexity
cgi-world
6.4
2000-12-11 CVE-2000-1066 Denial of Service vulnerability in Freebsd 4.0/4.1/4.1.1
The getnameinfo function in FreeBSD 4.1.1 and earlier, and possibly other operating systems, allows a remote attacker to cause a denial of service via a long DNS hostname.
network
low complexity
freebsd
5.0
2000-12-11 CVE-2000-1065 DoS vulnerability in HP Jetdirect X.08.04/X.08.05/X.08.20
Vulnerability in IP implementation of HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service (printer crash) via a malformed packet.
network
low complexity
hp
5.0
2000-12-11 CVE-2000-1064 DoS vulnerability in HP Jetdirect X.08.04/X.08.05/X.08.20
Buffer overflow in the LPD service in HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service.
network
low complexity
hp
5.0
2000-12-11 CVE-2000-1063 DoS vulnerability in HP Jetdirect X.08.04/X.08.05/X.08.20
Buffer overflow in the Telnet service in HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service.
network
low complexity
hp
5.0
2000-12-11 CVE-2000-1062 DoS vulnerability in HP Jetdirect X.08.04/X.08.05/X.08.20
Buffer overflow in the FTP service in HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service.
network
low complexity
hp
5.0
2000-12-11 CVE-2000-1061 Unspecified vulnerability in Microsoft IE 4.X/5.X
Microsoft Virtual Machine (VM) in Internet Explorer 4.x and 5.x allows an unsigned applet to create and use ActiveX controls, which allows a remote attacker to bypass Internet Explorer's security settings and execute arbitrary commands via a malicious web page or email, aka the "Microsoft VM ActiveX Component" vulnerability.
network
high complexity
microsoft
5.1
2000-12-11 CVE-2000-1060 Unspecified vulnerability in Xfree86 Project Xfce 3.5.1
The default configuration of XFCE 3.5.1 bypasses the Xauthority access control mechanism with an "xhost + localhost" command in the xinitrc program, which allows local users to sniff X Windows traffic and gain privileges.
local
low complexity
xfree86-project
4.6