CSV
180,320 results for "vulnerability" Page 13
CVE-2000-1089 Exploit

Buffer overflow in Microsoft Phone Book Service allows local users to execute arbitrary commands, aka the "Phone Book Service Buffer Overflow" vulnerability.

Jan 9, 2001 2 affected product(s) NVD
10.0
CVSS
74.6%
EPSS
⚡ 72.4
CVE-2000-0970

IIS 4.0 and 5.0 .ASP pages send the same Session ID cookie for secure and insecure web sessions, which could allow remote attackers to hijack the secure web session of the user if that user moves to an insecure session, aka the "Session ID Cookie Marking" vulnerability.

Dec 19, 2000 2 affected product(s) NVD
7.5
CVSS
43.5%
EPSS
⚡ 43.1
CVE-2000-1126

Vulnerability in auto_parms and set_parms in HP-UX 11.00 and earlier allows remote attackers to execute arbitrary commands or cause a denial of service.

Jan 9, 2001 6 affected product(s) NVD
10.0
CVSS
5.8%
EPSS
⚡ 41.7
CVE-2000-0969

Format string vulnerability in Half Life dedicated server build 3104 and earlier allows remote attackers to execute arbitrary commands by injecting format strings into the changelevel command, via the system console or rcon.

Dec 19, 2000 1 affected product(s) NVD
10.0
CVSS
3.5%
EPSS
⚡ 41
CVE-2000-1241

Unspecified vulnerability in Haakon Nilsen simple, integrated publishing system (SIPS) before 0.2.4 has an unknown impact and attack vectors, related to a "grave security fault."

Dec 31, 2000 1 affected product(s) NVD
10.0
CVSS
1.4%
EPSS
⚡ 40.4
CVE-2000-0979

File and Print Sharing service in Windows 95, Windows 98, and Windows Me does not properly check the password for a file share, which allows remote attackers to bypass share access controls by sending a 1-byte password that matches the first character of the real password, aka the "Share Level Password" vulnerability.

Dec 19, 2000 4 affected product(s) NVD
6.4
CVSS
45.0%
EPSS
⚡ 39.1
CVE-2000-1113

Buffer overflow in Microsoft Windows Media Player allows remote attackers to execute arbitrary commands via a malformed Active Stream Redirector (.ASX) file, aka the ".ASX Buffer Overrun" vulnerability.

Jan 9, 2001 2 affected product(s) NVD
7.5
CVSS
19.4%
EPSS
⚡ 35.8
CVE-2000-1149

Buffer overflow in RegAPI.DLL used by Windows NT 4.0 Terminal Server allows remote attackers to execute arbitrary commands via a long username, aka the "Terminal Server Login Buffer Overflow" vulnerability.

Jan 9, 2001 1 affected product(s) NVD
7.5
CVSS
16.1%
EPSS
⚡ 34.8
CVE-2000-0982

Internet Explorer before 5.5 forwards cached user credentials for a secure web site to insecure pages on the same web site, which could allow remote attackers to obtain the credentials by monitoring connections to the web server, aka the "Cached Web Credentials" vulnerability.

Dec 19, 2000 5 affected product(s) NVD
7.5
CVSS
12.6%
EPSS
⚡ 33.8
CVE-2000-0991

Buffer overflow in Hilgraeve, Inc. HyperTerminal client on Windows 98, ME, and 2000 allows remote attackers to execute arbitrary commands via a long telnet URL, aka the "HyperTerminal Buffer Overflow" vulnerability.

Dec 19, 2000 1 affected product(s) NVD
7.5
CVSS
9.7%
EPSS
⚡ 32.9
CVE-2000-1104

Variant of the "IIS Cross-Site Scripting" vulnerability as originally discussed in MS:MS00-060 (CVE-2000-0746) allows a malicious web site operator to embed scripts in a link to a trusted site, which are returned without quoting in an error message back to the client. The client then executes those scripts in the same context as the trusted site.

Jan 9, 2001 2 affected product(s) NVD
7.5
CVSS
5.6%
EPSS
⚡ 31.7
CVE-2000-1176

Directory traversal vulnerability in YaBB search.pl CGI script allows remote attackers to read arbitrary files via a .. (dot dot) attack in the "catsearch" form field.

Jan 9, 2001 1 affected product(s) NVD
7.5
CVSS
5.7%
EPSS
⚡ 31.7
CVE-2000-1139

The installation of Microsoft Exchange 2000 before Rev. A creates a user account with a known password, which could allow attackers to gain privileges, aka the "Exchange User Account" vulnerability.

Jan 9, 2001 1 affected product(s) NVD
7.5
CVSS
5.0%
EPSS
⚡ 31.5
CVE-2000-1233

SQL injection vulnerability in read.php3 and other scripts in Phorum 3.0.7 allows remote attackers to execute arbitrary SQL queries via the sSQL parameter.

Dec 31, 2000 1 affected product(s) NVD
7.5
CVSS
2.1%
EPSS
⚡ 30.6
CVE-2000-1236

SQL injection vulnerability in mod_sql in Oracle Internet Application Server (IAS) 3.0.7 and earlier allows remote attackers to execute arbitrary SQL commands via the query string of the URL.

Dec 31, 2000 1 affected product(s) NVD
7.5
CVSS
1.9%
EPSS
⚡ 30.6
CVE-2001-1468

PHP remote file inclusion vulnerability in checklogin.php in phpSecurePages 0.24 and earlier allows remote attackers to execute arbitrary PHP code by modifying the cfgProgDir parameter to reference a URL on a remote web server that contains the code.

Feb 7, 2001 14 affected product(s) NVD
7.5
CVSS
1.9%
EPSS
⚡ 30.6
CVE-2000-0993

Format string vulnerability in pw_error function in BSD libutil library allows local users to gain root privileges via a malformed password in commands such as chpass or passwd.

Dec 19, 2000 13 affected product(s) NVD
7.2
CVSS
1.7%
EPSS
⚡ 29.3
CVE-2000-0994

Format string vulnerability in OpenBSD fstat program (and possibly other BSD-based operating systems) allows local users to gain root privileges via the PWD environmental variable.

Dec 19, 2000 5 affected product(s) NVD
7.2
CVSS
1.4%
EPSS
⚡ 29.2
CVE-2000-0995

Format string vulnerability in OpenBSD yp_passwd program (and possibly other BSD-based operating systems) allows attackers to gain root privileges a malformed name.

Dec 19, 2000 1 affected product(s) NVD
7.2
CVSS
0.6%
EPSS
⚡ 29
CVE-2000-0996

Format string vulnerability in OpenBSD su program (and possibly other BSD-based operating systems) allows local attackers to gain root privileges via a malformed shell.

Dec 19, 2000 1 affected product(s) NVD
7.2
CVSS
0.5%
EPSS
⚡ 29