Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2000-11-14 CVE-2000-0860 Unspecified vulnerability in PHP
The file upload capability in PHP versions 3 and 4 allows remote attackers to read arbitrary files by setting hidden form fields whose names match the names of internal PHP script variables.
network
low complexity
php
5.0
2000-11-14 CVE-2000-0859 Unspecified vulnerability in Gordano Ntmail 5.0/6.0
The web configuration server for NTMail V5 and V6 allows remote attackers to cause a denial of service via a series of partial HTTP requests.
network
low complexity
gordano
5.0
2000-11-14 CVE-2000-0858 Unspecified vulnerability in Microsoft Internet Information Server and Windows NT
Vulnerability in Microsoft Windows NT 4.0 allows remote attackers to cause a denial of service in IIS by sending it a series of malformed requests which cause INETINFO.EXE to fail, aka the "Invalid URL" vulnerability.
network
low complexity
microsoft
5.0
2000-11-14 CVE-2000-0855 Denial of Service vulnerability in Xs4All Data Xs4All Data Sunftp 1.0Build9
SunFTP build 9(1) allows remote attackers to cause a denial of service by connecting to the server and disconnecting before sending a newline.
network
low complexity
xs4all-data
5.0
2000-11-14 CVE-2000-0853 Unspecified vulnerability in Yabb 20000901
YaBB Bulletin Board 9.1.2000 allows remote attackers to read arbitrary files via a ..
network
low complexity
yabb
5.0
2000-11-14 CVE-2000-0851 Unspecified vulnerability in Microsoft Windows 2000
Buffer overflow in the Still Image Service in Windows 2000 allows local users to gain additional privileges via a long WM_USER message, aka the "Still Image Service Privilege Escalation" vulnerability.
local
low complexity
microsoft
4.6
2000-11-14 CVE-2000-0845 Unspecified vulnerability in Digital Unix 4.0F
kdebug daemon (kdebugd) in Digital Unix 4.0F allows remote attackers to read arbitrary files by specifying the full file name in the initialization packet.
network
low complexity
digital
6.4
2000-11-14 CVE-2000-0842 Unspecified vulnerability in SCO Unixware 7.0
The search97cgi/vtopic" in the UnixWare 7 scohelphttp webserver allows remote attackers to read arbitrary files via a ..
network
low complexity
sco
5.0
2000-11-14 CVE-2000-0839 Unspecified vulnerability in Ipswitch Wincom LPD 1.00.90
WinCOM LPD 1.00.90 allows remote attackers to cause a denial of service via a large number of LPD options to the LPD port (515).
network
low complexity
ipswitch
5.0
2000-11-14 CVE-2000-0838 Unspecified vulnerability in Fastream FUR Http Server 1.0B
Fastream FUR HTTP server 1.0b allows remote attackers to cause a denial of service via a long GET request.
network
low complexity
fastream
5.0