Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2000-02-01 CVE-2000-0151 Unspecified vulnerability in GNU Make 3.77.44
GNU make follows symlinks when it reads a Makefile from stdin, which allows other local users to execute commands.
local
high complexity
gnu
6.2
2000-02-01 CVE-2000-0131 Unspecified vulnerability in Jgaa Warftpd 1.66X4S/1.67.3
Buffer overflow in War FTPd 1.6x allows users to cause a denial of service via long MKD and CWD commands.
network
low complexity
jgaa
5.0
2000-02-01 CVE-2000-0105 Unspecified vulnerability in Microsoft Outlook Express 5.0
Outlook Express 5.01 and Internet Explorer 5.01 allow remote attackers to view a user's email messages via a script that accesses a variable that references subsequent email messages that are read by the client.
network
low complexity
microsoft
5.0
2000-01-26 CVE-2000-0126 Unspecified vulnerability in Microsoft Internet Information Server 3.0/4.0
Sample Internet Data Query (IDQ) scripts in IIS 3 and 4 allow remote attackers to read files via a ..
network
low complexity
microsoft
5.0
2000-01-26 CVE-2000-0098 Unspecified vulnerability in Microsoft Index Server 2.0
Microsoft Index Server allows remote attackers to determine the real path for a web directory via a request to an Internet Data Query file that does not exist.
network
low complexity
microsoft
5.0
2000-01-26 CVE-2000-0097 Unspecified vulnerability in Microsoft Index Server 2.0
The WebHits ISAPI filter in Microsoft Index Server allows remote attackers to read arbitrary files, aka the "Malformed Hit-Highlighting Argument" vulnerability.
network
low complexity
microsoft
5.0
2000-01-24 CVE-2000-0095 Unspecified vulnerability in HP Hp-Ux 10.30/11.00
The PMTU discovery procedure used by HP-UX 10.30 and 11.00 for determining the optimum MTU generates large amounts of traffic in response to small packets, allowing remote attackers to cause the system to be used as a packet amplifier.
network
low complexity
hp
5.0
2000-01-21 CVE-2000-0115 Unspecified vulnerability in Microsoft Internet Information Server
IIS allows local users to cause a denial of service via invalid regular expressions in a Visual Basic script in an ASP page.
network
low complexity
microsoft
5.0
2000-01-19 CVE-2000-0092 The BSD make program allows local users to modify files via a symlink attack when the -j option is being used.
local
high complexity
freebsd netbsd openbsd
6.2
2000-01-18 CVE-2000-0086 Unspecified vulnerability in Netopia Timbuktu PRO 2.0/3.0
Netopia Timbuktu Pro sends user IDs and passwords in cleartext, which allows remote attackers to obtain them via sniffing.
network
low complexity
netopia
5.0