Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2000-10-20 CVE-2000-0676 Unspecified vulnerability in Netscape Communicator
Netscape Communicator and Navigator 4.04 through 4.74 allows remote attackers to read arbitrary files by using a Java applet to open a connection to a URL using the "file", "http", "https", and "ftp" protocols, as demonstrated by Brown Orifice.
network
low complexity
netscape
5.0
2000-10-20 CVE-2000-0360 Unspecified vulnerability in ISC INN
Buffer overflow in INN 2.2.1 and earlier allows remote attackers to cause a denial of service via a maliciously formatted article.
network
low complexity
isc
5.0
2000-10-20 CVE-2000-0031 Unspecified vulnerability in Redhat Linux 6.0/6.1
The initscripts package in Red Hat Linux allows local users to gain privileges via a symlink attack.
local
high complexity
redhat
6.2
2000-10-18 CVE-2000-1214 Buffer Overflow vulnerability in RedHat Linux ping
Buffer overflows in the (1) outpack or (2) buf variables of ping in iputils before 20001010, as distributed on Red Hat Linux 6.2 through 7J and other operating systems, may allow local users to gain privileges.
local
low complexity
immunix iputils redhat
4.6
2000-10-14 CVE-1999-1563 Unspecified vulnerability in Nachuatec D435 and D445
Nachuatec D435 and D445 printer allows remote attackers to cause a denial of service via ICMP redirect storm.
network
low complexity
nachuatec
5.0
2000-08-08 CVE-2000-0545 Buffer Overflow vulnerability in BSD mailx 8.1.1-10
Buffer overflow in mailx mail command (aka Mail) on Linux systems allows local users to gain privileges via a long -c (carbon copy) parameter.
local
low complexity
sgi
4.6
2000-08-03 CVE-2000-0278 Unspecified vulnerability in Saleslogix Corporation Eviewer 1.0
The SalesLogix Eviewer allows remote attackers to cause a denial of service by accessing the URL for the slxweb.dll administration program, which does not authenticate the user.
network
low complexity
saleslogix
5.0
2000-07-27 CVE-2000-0673 Unspecified vulnerability in Microsoft Windows 2000 and Windows NT
The NetBIOS Name Server (NBNS) protocol does not perform authentication, which allows remote attackers to cause a denial of service by sending a spoofed Name Conflict or Name Release datagram, aka the "NetBIOS Name Server Protocol Spoofing" vulnerability.
network
low complexity
microsoft
5.0
2000-07-27 CVE-2000-0668 pam_console PAM module in Linux systems allows a user to access the system console and reboot the system when a display manager such as gdm or kdm has XDMCP enabled.
network
low complexity
michael-k-johnson conectiva redhat
5.0
2000-07-26 CVE-2000-0664 Unspecified vulnerability in Analogx Simpleserver WWW 1.0.6
AnalogX SimpleServer:WWW 1.06 and earlier allows remote attackers to read arbitrary files via a modified ..
network
low complexity
analogx
5.0