{"resultsPerPage":2000,"startIndex":800,"totalResults":377168,"format":"NVD_CVE","version":"2.0","timestamp":"2026-08-14T05:16:42.021","vulnerabilities":[{"cve":{"id":"CVE-1999-0645","sourceIdentifier":"cve@mitre.org","published":"1999-01-01T05:00:00.000","lastModified":"2023-11-07T01:55:00.070","vulnStatus":"Rejected","cveTags":[],"descriptions":[{"lang":"en","value":"Rejected reason: DO NOT USE THIS CANDIDATE NUMBER.  ConsultIDs: None.  Reason: this candidate is solely about a configuration that does not directly introduce security vulnerabilities, so it is more appropriate to cover under the Common Configuration Enumeration (CCE).  Notes: the former description is: \"The IRC service is running."}],"metrics":{},"references":[],"evaluatorSolution":"IRC Service is an unsecured protocol that typically does not authenticate the identity of users and does not encrypt its network communications.  IRC is not commonly deployed on enterprise networks.  If an organization decides to use it, it should be patched and configured properly, otherwise it should be disabled.","evaluatorImpact":"This Common Vulnerabilities and Exposures (CVE) entry is a configuration issue and not a software flaw. As such, it doesn’t fit in the CVE software flaw list. The Common Vulnerability Scoring System (CVSS) base score for this CVE entry has been set to 0 because this CVE entry has no impact as a software flaw according to CVSS. This does not mean that the configuration issue is not important and there may be security implications relative to computers having this configuration."}},{"cve":{"id":"CVE-1999-0646","sourceIdentifier":"cve@mitre.org","published":"1999-01-01T05:00:00.000","lastModified":"2023-11-07T01:55:00.103","vulnStatus":"Rejected","cveTags":[],"descriptions":[{"lang":"en","value":"Rejected reason: DO NOT USE THIS CANDIDATE NUMBER.  ConsultIDs: None.  Reason: this candidate is solely about a configuration that does not directly introduce security vulnerabilities, so it is more appropriate to cover under the Common Configuration Enumeration (CCE).  Notes: the former description is: \"The LDAP service is running."}],"metrics":{},"references":[],"evaluatorSolution":"The software should be patched and configured properly to prevent information disclosure.  It can be tunneled over SSL/TLS.","evaluatorImpact":"This Common Vulnerabilities and Exposures (CVE) entry is a configuration issue and not a software flaw. As such, it doesn’t fit in the CVE software flaw list. The Common Vulnerability Scoring System (CVSS) base score for this CVE entry has been set to 0 because this CVE entry has no impact as a software flaw according to CVSS. This does not mean that the configuration issue is not important and there may be security implications relative to computers having this configuration."}},{"cve":{"id":"CVE-1999-0647","sourceIdentifier":"cve@mitre.org","published":"1999-01-01T05:00:00.000","lastModified":"2023-11-07T01:55:00.137","vulnStatus":"Rejected","cveTags":[],"descriptions":[{"lang":"en","value":"Rejected reason: DO NOT USE THIS CANDIDATE NUMBER.  ConsultIDs: None.  Reason: this candidate is solely about a configuration that does not directly introduce security vulnerabilities, so it is more appropriate to cover under the Common Configuration Enumeration (CCE).  Notes: the former description is: \"The bootparam (bootparamd) service is running."}],"metrics":{},"references":[],"evaluatorSolution":"The bootparam service is an unsecured protocol for Internet facing systems and should only be used on a trusted network segment, otherwise disabled.  The software should be patched and configured properly.","evaluatorImpact":"This Common Vulnerabilities and Exposures (CVE) entry is a configuration issue and not a software flaw. As such, it doesn’t fit in the CVE software flaw list. The Common Vulnerability Scoring System (CVSS) base score for this CVE entry has been set to 0 because this CVE entry has no impact as a software flaw according to CVSS. This does not mean that the configuration issue is not important and there may be security implications relative to computers having this configuration."}},{"cve":{"id":"CVE-1999-0648","sourceIdentifier":"cve@mitre.org","published":"1999-01-01T05:00:00.000","lastModified":"2023-11-07T01:55:00.170","vulnStatus":"Rejected","cveTags":[],"descriptions":[{"lang":"en","value":"Rejected reason: DO NOT USE THIS CANDIDATE NUMBER.  ConsultIDs: None.  Reason: this candidate is solely about a configuration that does not directly introduce security vulnerabilities, so it is more appropriate to cover under the Common Configuration Enumeration (CCE).  Notes: the former description is: \"The X25 service is running."}],"metrics":{},"references":[],"evaluatorSolution":"X25 is an unsecured protocol for Internet facing systems and should only be used on a limited basis to provide a specific functional requirement, otherwise disabled.  The software should be patched and configured properly.","evaluatorImpact":"This Common Vulnerabilities and Exposures (CVE) entry is a configuration issue and not a software flaw. As such, it doesn’t fit in the CVE software flaw list. The Common Vulnerability Scoring System (CVSS) base score for this CVE entry has been set to 0 because this CVE entry has no impact as a software flaw according to CVSS. This does not mean that the configuration issue is not important and there may be security implications relative to computers having this configuration."}},{"cve":{"id":"CVE-1999-0649","sourceIdentifier":"cve@mitre.org","published":"1999-01-01T05:00:00.000","lastModified":"2023-11-07T01:55:00.207","vulnStatus":"Rejected","cveTags":[],"descriptions":[{"lang":"en","value":"Rejected reason: DO NOT USE THIS CANDIDATE NUMBER.  ConsultIDs: None.  Reason: this candidate is solely about a configuration that does not directly introduce security vulnerabilities, so it is more appropriate to cover under the Common Configuration Enumeration (CCE).  Notes: the former description is: \"The FSP service is running."}],"metrics":{},"references":[]}},{"cve":{"id":"CVE-1999-0650","sourceIdentifier":"cve@mitre.org","published":"1999-01-01T05:00:00.000","lastModified":"2026-06-16T21:48:46.887","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The netstat service is running, which provides sensitive information to remote attackers."},{"lang":"es","value":"El servicio netstat se está ejecutando, lo que provee información sensible a atacantes remotos."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/72","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/72","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0651","sourceIdentifier":"cve@mitre.org","published":"1999-01-01T05:00:00.000","lastModified":"2026-06-16T21:48:47.017","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The rsh/rlogin service is running."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2995","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2995","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0652","sourceIdentifier":"cve@mitre.org","published":"1999-01-01T05:00:00.000","lastModified":"2023-11-07T01:55:00.253","vulnStatus":"Rejected","cveTags":[],"descriptions":[{"lang":"en","value":"Rejected reason: DO NOT USE THIS CANDIDATE NUMBER.  ConsultIDs: None.  Reason: this candidate is solely about a configuration that does not directly introduce security vulnerabilities, so it is more appropriate to cover under the Common Configuration Enumeration (CCE).  Notes: the former description is: \"A database service is running, e.g. a SQL server, Oracle, or mySQL."}],"metrics":{},"references":[],"evaluatorSolution":"The software should be patched and configured properly to prevent information leakage and unauthorized access.","evaluatorImpact":"This Common Vulnerabilities and Exposures (CVE) entry is a configuration issue and not a software flaw. As such, it doesn’t fit in the CVE software flaw list. The Common Vulnerability Scoring System (CVSS) base score for this CVE entry has been set to 0 because this CVE entry has no impact as a software flaw according to CVSS. This does not mean that the configuration issue is not important and there may be security implications relative to computers having this configuration."}},{"cve":{"id":"CVE-1999-0653","sourceIdentifier":"cve@mitre.org","published":"1999-01-01T05:00:00.000","lastModified":"2026-06-16T21:48:47.190","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A component service related to NIS+ is running."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"references":[{"url":"https://www.cve.org/CVERecord?id=CVE-1999-0653","source":"cve@mitre.org"},{"url":"https://www.cve.org/CVERecord?id=CVE-1999-0653","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0654","sourceIdentifier":"cve@mitre.org","published":"1999-01-01T05:00:00.000","lastModified":"2026-06-16T21:48:47.320","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The OS/2 or POSIX subsystem in NT is enabled."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0654","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0654","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0655","sourceIdentifier":"cve@mitre.org","published":"1999-01-01T05:00:00.000","lastModified":"2023-11-07T01:55:00.307","vulnStatus":"Rejected","cveTags":[],"descriptions":[{"lang":"en","value":"Rejected reason: DO NOT USE THIS CANDIDATE NUMBER.  ConsultIDs: None.  Reason: this candidate is not about any specific product, protocol, or design, so it is out of scope of CVE.  Notes: the former description is: \"A service may include useful information in its banner or help function (such as the name and version), making it useful for information gathering activities."}],"metrics":{},"references":[],"evaluatorImpact":"This Common Vulnerabilities and Exposures (CVE) entry is a configuration issue and not a software flaw. As such, it doesn’t fit in the CVE software flaw list. The Common Vulnerability Scoring System (CVSS) base score for this CVE entry has been set to 0 because this CVE entry has no impact as a software flaw according to CVSS. This does not mean that the configuration issue is not important and there may be security implications relative to computers having this configuration."}},{"cve":{"id":"CVE-1999-0656","sourceIdentifier":"cve@mitre.org","published":"1999-01-01T05:00:00.000","lastModified":"2026-06-16T21:48:47.460","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The ugidd RPC interface, by design, allows remote attackers to enumerate valid usernames by specifying arbitrary UIDs that ugidd maps to local user and group names."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-16"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","matchCriteriaId":"155AD4FB-E527-4103-BCEF-801B653DEA37"}]}]}],"references":[{"url":"http://ca.com/au/securityadvisor/vulninfo/Vuln.aspx?ID=1638","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/348","source":"cve@mitre.org"},{"url":"http://ca.com/au/securityadvisor/vulninfo/Vuln.aspx?ID=1638","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/348","source":"af854a3a-2127-422b-91ae-364da2661108"}],"evaluatorImpact":"This Common Vulnerabilities and Exposures (CVE) entry is a configuration issue and not a software flaw. As such, it doesn’t fit in the CVE software flaw list. The Common Vulnerability Scoring System (CVSS) base score for this CVE entry has been set to 0 because this CVE entry has no impact as a software flaw according to CVSS. This does not mean that the configuration issue is not important and there may be security implications relative to computers having this configuration."}},{"cve":{"id":"CVE-1999-0657","sourceIdentifier":"cve@mitre.org","published":"1999-01-01T05:00:00.000","lastModified":"2026-06-16T21:48:47.590","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WinGate is being used."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:N","baseScore":0.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":10.0,"impactScore":0.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"references":[{"url":"https://www.cve.org/CVERecord?id=CVE-1999-0657","source":"cve@mitre.org"},{"url":"https://www.cve.org/CVERecord?id=CVE-1999-0657","source":"af854a3a-2127-422b-91ae-364da2661108"}],"evaluatorImpact":"This Common Vulnerabilities and Exposures (CVE) entry is a configuration issue and not a software flaw. As such, it doesn’t fit in the CVE software flaw list. The Common Vulnerability Scoring System (CVSS) base score for this CVE entry has been set to 0 because this CVE entry has no impact as a software flaw according to CVSS. This does not mean that the configuration issue is not important and there may be security implications relative to computers having this configuration."}},{"cve":{"id":"CVE-1999-0658","sourceIdentifier":"cve@mitre.org","published":"1999-01-01T05:00:00.000","lastModified":"2023-11-07T01:55:00.370","vulnStatus":"Rejected","cveTags":[],"descriptions":[{"lang":"en","value":"Rejected reason: DO NOT USE THIS CANDIDATE NUMBER.  ConsultIDs: None.  Reason: this candidate is solely about a configuration that does not directly introduce security vulnerabilities, so it is more appropriate to cover under the Common Configuration Enumeration (CCE).  Notes: the former description is: \"DCOM is running."}],"metrics":{},"references":[],"evaluatorImpact":"This Common Vulnerabilities and Exposures (CVE) entry is a configuration issue and not a software flaw. As such, it doesn’t fit in the CVE software flaw list. The Common Vulnerability Scoring System (CVSS) base score for this CVE entry has been set to 0 because this CVE entry has no impact as a software flaw according to CVSS. This does not mean that the configuration issue is not important and there may be security implications relative to computers having this configuration."}},{"cve":{"id":"CVE-1999-0659","sourceIdentifier":"cve@mitre.org","published":"1999-01-01T05:00:00.000","lastModified":"2023-11-07T01:55:00.407","vulnStatus":"Rejected","cveTags":[],"descriptions":[{"lang":"en","value":"Rejected reason: DO NOT USE THIS CANDIDATE NUMBER.  ConsultIDs: None.  Reason: this candidate is solely about a configuration that does not directly introduce security vulnerabilities, so it is more appropriate to cover under the Common Configuration Enumeration (CCE).  Notes: the former description is: \"A Windows NT Primary Domain Controller (PDC) or Backup Domain Controller (BDC) is present."}],"metrics":{},"references":[],"evaluatorImpact":"This Common Vulnerabilities and Exposures (CVE) entry is a configuration issue and not a software flaw. As such, it doesn’t fit in the CVE software flaw list. The Common Vulnerability Scoring System (CVSS) base score for this CVE entry has been set to 0 because this CVE entry has no impact as a software flaw according to CVSS. This does not mean that the configuration issue is not important and there may be security implications relative to computers having this configuration."}},{"cve":{"id":"CVE-1999-0660","sourceIdentifier":"cve@mitre.org","published":"1999-01-01T05:00:00.000","lastModified":"2023-11-07T01:55:00.443","vulnStatus":"Rejected","cveTags":[],"descriptions":[{"lang":"en","value":"Rejected reason: DO NOT USE THIS CANDIDATE NUMBER.  ConsultIDs: None.  Reason: this candidate is not about any specific product, protocol, or design, so it is out of scope of CVE.  It might be more appropriate to cover under the Common Configuration Enumeration (CCE).  Notes: the former description is: \"A hacker utility, back door, or Trojan Horse is installed on a system, e.g. NetBus, Back Orifice, Rootkit, etc."}],"metrics":{},"references":[],"evaluatorImpact":"This Common Vulnerabilities and Exposures (CVE) entry is a configuration issue and not a software flaw. As such, it doesn’t fit in the CVE software flaw list. The Common Vulnerability Scoring System (CVSS) base score for this CVE entry has been set to 0 because this CVE entry has no impact as a software flaw according to CVSS. This does not mean that the configuration issue is not important and there may be security implications relative to computers having this configuration."}},{"cve":{"id":"CVE-1999-0661","sourceIdentifier":"cve@mitre.org","published":"1999-01-01T05:00:00.000","lastModified":"2026-06-16T21:48:47.763","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A system is running a version of software that was replaced with a Trojan Horse at one of its distribution points, such as (1) TCP Wrappers 7.6, (2) util-linux 2.9g, (3) wuarchive ftpd (wuftpd) 2.2 and 2.1f, (4) IRC client (ircII) ircII 2.2.9, (5) OpenSSH 3.4p1, or (6) Sendmail 8.12.6."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=102820843403741&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=102821663814127&w=2","source":"cve@mitre.org"},{"url":"http://online.securityfocus.com/archive/1/294539","source":"cve@mitre.org"},{"url":"http://www.cert.org/advisories/CA-1994-07.html","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://www.cert.org/advisories/CA-1994-14.html","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://www.cert.org/advisories/CA-1999-01.html","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://www.cert.org/advisories/CA-1999-02.html","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://www.cert.org/advisories/CA-2002-28.html","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://www.iss.net/security_center/static/10313.php","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/5921","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=102820843403741&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=102821663814127&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://online.securityfocus.com/archive/1/294539","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.cert.org/advisories/CA-1994-07.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"http://www.cert.org/advisories/CA-1994-14.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"http://www.cert.org/advisories/CA-1999-01.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"http://www.cert.org/advisories/CA-1999-02.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"http://www.cert.org/advisories/CA-2002-28.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"http://www.iss.net/security_center/static/10313.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/5921","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0662","sourceIdentifier":"cve@mitre.org","published":"1999-01-01T05:00:00.000","lastModified":"2026-06-16T21:48:47.910","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A system-critical program or library does not have the appropriate patch, hotfix, or service pack installed, or is outdated or obsolete."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0662","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0662","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0663","sourceIdentifier":"cve@mitre.org","published":"1999-01-01T05:00:00.000","lastModified":"2026-06-16T21:48:48.027","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A system-critical program, library, or file has a checksum or other integrity measurement that indicates that it has been modified."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"references":[{"url":"https://www.cve.org/CVERecord?id=CVE-1999-0663","source":"cve@mitre.org"},{"url":"https://www.cve.org/CVERecord?id=CVE-1999-0663","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0664","sourceIdentifier":"cve@mitre.org","published":"1999-01-01T05:00:00.000","lastModified":"2026-06-16T21:48:48.140","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"An application-critical Windows NT registry key has inappropriate permissions."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"references":[{"url":"https://www.cve.org/CVERecord?id=CVE-1999-0664","source":"cve@mitre.org"},{"url":"https://www.cve.org/CVERecord?id=CVE-1999-0664","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0665","sourceIdentifier":"cve@mitre.org","published":"1999-01-01T05:00:00.000","lastModified":"2026-06-16T21:48:48.253","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"An application-critical Windows NT registry key has an inappropriate value."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"references":[{"url":"https://www.cve.org/CVERecord?id=CVE-1999-0665","source":"cve@mitre.org"},{"url":"https://www.cve.org/CVERecord?id=CVE-1999-0665","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0698","sourceIdentifier":"cve@mitre.org","published":"1999-01-01T05:00:00.000","lastModified":"2026-06-16T21:48:52.313","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in IP protocol logger (ippl) on Red Hat and Debian Linux."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0698","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0698","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1430","sourceIdentifier":"cve@mitre.org","published":"1999-01-01T05:00:00.000","lastModified":"2026-06-16T21:50:25.463","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"PIM software for Royal daVinci does not properly password-protext access to data stored in the .mdb (Microsoft Access) file, which allows local users to read the data without a password by directly accessing the files with a different application, such as Access."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:royal:davinci:1.0:*:*:*:*:*:*:*","matchCriteriaId":"EB0B3280-54D4-4158-A9FC-98CE007EF904"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=91540043723185&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/185","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=91540043723185&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/185","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1440","sourceIdentifier":"cve@mitre.org","published":"1999-01-01T05:00:00.000","lastModified":"2026-06-16T21:50:26.737","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Win32 ICQ 98a 1.30, and possibly other versions, does not display the entire portion of long filenames, which could allow attackers to send an executable file with a long name that contains so many spaces that the .exe extension is not displayed, which could make the user believe that the file is safe to open from the client."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mirabilis:icq_98a:*:*:*:*:*:*:*:*","versionEndIncluding":"1.30","matchCriteriaId":"496E6612-1278-4A40-891E-B1B9B6596107"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=91522424302962&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/132","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=91522424302962&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/132","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1568","sourceIdentifier":"cve@mitre.org","published":"1999-01-01T05:00:00.000","lastModified":"2026-06-16T21:50:44.103","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Off-by-one error in NcFTPd FTP server before 2.4.1 allows a remote attacker to cause a denial of service (crash) via a long PORT command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","baseScore":7.5,"baseSeverity":"HIGH","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH"},"exploitabilityScore":3.9,"impactScore":3.6},{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","baseScore":7.5,"baseSeverity":"HIGH","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH"},"exploitabilityScore":3.9,"impactScore":3.6}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}],"ssvcV203":[{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","ssvcData":{"timestamp":"2025-01-16T17:39:39.255679Z","id":"CVE-1999-1568","options":[{"exploitation":"none"},{"automatable":"yes"},{"technicalImpact":"partial"}],"role":"CISA Coordinator","version":"2.0.3"}}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-193"}]},{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","type":"Secondary","description":[{"lang":"en","value":"CWE-193"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ncftp:ncftpd_server:*:*:*:*:*:*:*:*","versionEndExcluding":"2.4.1","matchCriteriaId":"3D72A5C7-F7F3-41D4-A909-DBBD0B00C05E"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=91981352617720&w=2","source":"cve@mitre.org","tags":["Mailing List"]},{"url":"http://www.securityfocus.com/archive/1/12699","source":"cve@mitre.org","tags":["Broken Link","Third Party Advisory","VDB Entry"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1833","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://marc.info/?l=bugtraq&m=91981352617720&w=2","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List"]},{"url":"http://www.securityfocus.com/archive/1/12699","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Third Party Advisory","VDB Entry"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1833","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]}]}},{"cve":{"id":"CVE-1999-0402","sourceIdentifier":"cve@mitre.org","published":"1999-01-02T05:00:00.000","lastModified":"2026-06-16T21:48:19.250","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"wget 1.5.3 follows symlinks to change permissions of the target file instead of the symlink itself."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:wget:1.5.3:*:*:*:*:*:*:*","matchCriteriaId":"50DD71F2-0B3C-4082-950A-CBFA5C601AEF"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0402","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0402","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1170","sourceIdentifier":"cve@mitre.org","published":"1999-01-02T05:00:00.000","lastModified":"2026-06-16T21:49:52.153","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IPswitch IMail allows local users to gain additional privileges and modify or add mail accounts by setting the \"flags\" registry key to 1920."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:imail:5.0:*:*:*:*:*:*:*","matchCriteriaId":"EFEFE5A5-6589-4316-9C9F-2F8109696158"},{"vulnerable":true,"criteria":"cpe:2.3:a:progress:ws_ftp_server:1.0.1.e:*:*:*:*:*:*:*","matchCriteriaId":"D9BE1954-74C5-4A91-9C9A-C0647F281017"},{"vulnerable":true,"criteria":"cpe:2.3:a:progress:ws_ftp_server:1.0.2.e:*:*:*:*:*:*:*","matchCriteriaId":"3DE6789D-5DA5-489F-A900-F4788286ACE5"}]}]}],"references":[{"url":"http://marc.info/?l=ntbugtraq&m=91816507920544&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/218","source":"cve@mitre.org","tags":["Exploit"]},{"url":"http://marc.info/?l=ntbugtraq&m=91816507920544&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/218","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]}]}},{"cve":{"id":"CVE-1999-1422","sourceIdentifier":"cve@mitre.org","published":"1999-01-02T05:00:00.000","lastModified":"2026-06-16T21:50:24.433","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default configuration of Slackware 3.4, and possibly other versions, includes . (dot, the current directory) in the PATH environmental variable, which could allow local users to create Trojan horse programs that are inadvertently executed by other users."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:slackware:slackware_linux:2.0.35:*:*:*:*:*:*:*","matchCriteriaId":"82E436BF-6017-4A3F-AD98-683019DCE436"},{"vulnerable":true,"criteria":"cpe:2.3:o:slackware:slackware_linux:3.4:*:*:*:*:*:*:*","matchCriteriaId":"E6732144-10D4-4114-A7DA-32157EE3EF38"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=91540043023167&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/211","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=91540043023167&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/211","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0005","sourceIdentifier":"cve@mitre.org","published":"1999-01-02T05:00:00.000","lastModified":"2026-06-16T21:50:48.357","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"HP-UX aserver program allows local users to gain privileges via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:7.00:*:*:*:*:*:*:*","matchCriteriaId":"903312B4-BE2F-4170-AA8A-2802E2554662"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:7.02:*:*:*:*:*:*:*","matchCriteriaId":"4E21C6EC-D15D-487B-B2FA-BF32D9B8EA79"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:7.04:*:*:*:*:*:*:*","matchCriteriaId":"DC664E65-5C9C-4796-86E5-A0B2539ED793"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:7.06:*:*:*:*:*:*:*","matchCriteriaId":"DA3F0D15-D854-4BD0-8590-9C941840BC5B"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:7.08:*:*:*:*:*:*:*","matchCriteriaId":"23628ED6-1EF9-494F-BBA0-DEC67A6B12E3"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:8.00:*:*:*:*:*:*:*","matchCriteriaId":"A573388D-BD8F-48D3-8BA9-E4D11402CA22"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:8.01:*:*:*:*:*:*:*","matchCriteriaId":"9B172217-D993-4D8C-8E37-4D966D103AAF"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:8.02:*:*:*:*:*:*:*","matchCriteriaId":"6973B4FC-8009-4336-BED4-7B032EA1E570"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:8.04:*:*:*:*:*:*:*","matchCriteriaId":"2777DC9F-683A-4892-B305-4EFEFDDBCCE4"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:8.05:*:*:*:*:*:*:*","matchCriteriaId":"31B1ADC1-9B6D-4B5E-A05A-D69599A3A0D5"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:8.06:*:*:*:*:*:*:*","matchCriteriaId":"D0EB2E93-9774-442C-BB60-E428F53EE6F4"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:8.07:*:*:*:*:*:*:*","matchCriteriaId":"44521B9A-7796-4E4A-99F0-026D45BDB7B5"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:8.08:*:*:*:*:*:*:*","matchCriteriaId":"F489B454-F1ED-4DEA-8248-A97D68611FCD"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:8.09:*:*:*:*:*:*:*","matchCriteriaId":"C6296277-D10E-4CAA-96F5-BEB61B4640FF"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:9.00:*:*:*:*:*:*:*","matchCriteriaId":"6E436D06-FA3A-43F6-AF84-2E9C2F42E3FF"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:9.01:*:*:*:*:*:*:*","matchCriteriaId":"DCB1B6DC-4FF9-40DC-BAD5-91A04E79981E"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:9.03:*:*:*:*:*:*:*","matchCriteriaId":"E7FA635E-C0FE-495C-A2BB-D9C30A95FD00"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:9.04:*:*:*:*:*:*:*","matchCriteriaId":"E178238D-E17A-48C9-8922-AC92474BDF55"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:9.05:*:*:*:*:*:*:*","matchCriteriaId":"560C17E1-6154-4291-A838-5E76139B9FB5"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:9.06:*:*:*:*:*:*:*","matchCriteriaId":"3194CFA3-F0B3-487A-99C6-1A7DF1EF0586"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:9.07:*:*:*:*:*:*:*","matchCriteriaId":"035890F7-BF48-4669-812A-1DCBD91A8F34"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:9.08:*:*:*:*:*:*:*","matchCriteriaId":"F9AED8F3-2501-444D-8141-37FEE2246747"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:9.09:*:*:*:*:*:*:*","matchCriteriaId":"10974B0F-DA3A-4E3E-8914-8CEB366E9CC4"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:9.10:*:*:*:*:*:*:*","matchCriteriaId":"C54F7F74-7DD7-431E-AE75-1D1199D63032"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.00:*:*:*:*:*:*:*","matchCriteriaId":"3187435B-C052-4DBA-AA79-F8AC0287EE14"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.01:*:*:*:*:*:*:*","matchCriteriaId":"53BBFE9A-6846-4625-91AC-47AA0BC0933A"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.08:*:*:*:*:*:*:*","matchCriteriaId":"2170549C-80D2-4FF8-AC07-BD4124125B02"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.09:*:*:*:*:*:*:*","matchCriteriaId":"066D4E93-366F-42D4-B27D-8AF981F5F2AD"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.10:*:*:*:*:*:*:*","matchCriteriaId":"38BFA923-7D80-4F01-AF9F-6F13209948AC"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.16:*:*:*:*:*:*:*","matchCriteriaId":"38E41C26-A086-4C9C-83D8-CB910F4B67F1"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.20:*:*:*:*:*:*:*","matchCriteriaId":"EDE44C49-172C-4899-8CC8-29AA99A7CD2F"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.24:*:*:*:*:*:*:*","matchCriteriaId":"4259A901-A1CF-44EE-80C4-2031D3FCADC3"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.30:*:*:*:*:*:*:*","matchCriteriaId":"09070FE3-EF6B-41F6-89D8-3C9E31F3A6BF"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.34:*:*:*:*:*:*:*","matchCriteriaId":"CFD50216-90AC-480E-A11C-E88E64C6D84A"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:11.00:*:*:*:*:*:*:*","matchCriteriaId":"771931F7-9180-4EBD-8627-E1CF17D24647"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:hp:aserver:*:*:*:*:*:*:*:*","matchCriteriaId":"F978F803-AC52-4856-A86F-CD53E9F6C6D6"},{"vulnerable":true,"criteria":"cpe:2.3:h:hp:9000:7_800:*:*:*:*:*:*:*","matchCriteriaId":"587A1F2E-EBE3-4349-A859-A2B780C51CC4"}]}]}],"references":[{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5635","source":"cve@mitre.org"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5635","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0389","sourceIdentifier":"cve@mitre.org","published":"1999-01-03T05:00:00.000","lastModified":"2026-06-16T21:48:17.530","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the bootp server in the Debian Linux netstd package."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:1.1:*:*:*:*:*:*:*","matchCriteriaId":"A9EDD1D3-6E5C-4D98-9360-33949353BD7A"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:1.2:*:*:*:*:*:*:*","matchCriteriaId":"87E89840-3B57-4CBA-BE90-0BBA61F21F96"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:1.3:*:*:*:*:*:*:*","matchCriteriaId":"745ACC17-B6D6-4B4E-9648-A8B45C4A3F7A"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:1.3.1:*:*:*:*:*:*:*","matchCriteriaId":"7A632089-47D7-410D-AE12-F801193FA18F"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.0:*:*:*:*:*:*:*","matchCriteriaId":"203BDD63-2FA5-42FD-A9CD-6BDBB41A63C4"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/324","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/324","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-0914","sourceIdentifier":"cve@mitre.org","published":"1999-01-03T05:00:00.000","lastModified":"2026-06-16T21:49:19.180","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the FTP client in the Debian GNU/Linux netstd package."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:1.1:*:*:*:*:*:*:*","matchCriteriaId":"A9EDD1D3-6E5C-4D98-9360-33949353BD7A"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:1.2:*:*:*:*:*:*:*","matchCriteriaId":"87E89840-3B57-4CBA-BE90-0BBA61F21F96"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:1.3:*:*:*:*:*:*:*","matchCriteriaId":"745ACC17-B6D6-4B4E-9648-A8B45C4A3F7A"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:1.3.1:*:*:*:*:*:*:*","matchCriteriaId":"7A632089-47D7-410D-AE12-F801193FA18F"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.0:*:*:*:*:*:*:*","matchCriteriaId":"203BDD63-2FA5-42FD-A9CD-6BDBB41A63C4"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/324","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/324","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0054","sourceIdentifier":"cve@mitre.org","published":"1999-01-03T05:00:00.000","lastModified":"2026-06-16T21:50:54.393","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"search.cgi in the SolutionScripts Home Free package allows remote attackers to view directories via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:solution_scripts:home_free:1.0:*:*:*:*:*:*:*","matchCriteriaId":"D14F142F-FD23-497D-9080-0F22BF179E0A"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/921","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/921","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0390","sourceIdentifier":"cve@mitre.org","published":"1999-01-04T05:00:00.000","lastModified":"2026-06-16T21:48:17.653","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Dosemu Slang library in Linux."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:4.0:*:*:*:*:*:*:*","matchCriteriaId":"C9092D88-585D-4A0C-B181-E8D93563C74B"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:4.1:*:*:*:*:*:*:*","matchCriteriaId":"D8211154-6685-4FF0-B3ED-43A5E5763A10"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:4.2:*:*:*:*:*:*:*","matchCriteriaId":"F299301C-6BFC-436C-9CFD-2E291D3702AE"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.0:*:*:*:*:*:*:*","matchCriteriaId":"4BF54738-3C44-4FD4-AA9C-CAB2E86B1DC1"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.1:*:*:*:*:*:*:*","matchCriteriaId":"4EF44364-0F57-4B74-81B0-501EA6B58501"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:i386:*:*:*:*:*","matchCriteriaId":"363AB7DB-A8BA-4D58-97C4-1DF1F0F43E07"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:5.0:*:*:*:*:*:*:*","matchCriteriaId":"830D48B8-D21D-4D31-99A1-20C231804DBE"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:5.1:*:*:*:*:*:*:*","matchCriteriaId":"5C0BBDD2-9FF9-4CB7-BCAF-D4AF15DC2C7C"}]}]}],"references":[{"url":"ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-1999-006.1.txt","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/187","source":"cve@mitre.org"},{"url":"ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-1999-006.1.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/187","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0464","sourceIdentifier":"cve@mitre.org","published":"1999-01-04T05:00:00.000","lastModified":"2026-06-16T21:48:27.057","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Local users can perform a denial of service in Tripwire 1.2 and earlier using long filenames."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:tripwire:tripwire:*:*:*:*:*:*:*:*","versionEndIncluding":"1.2","matchCriteriaId":"E13D2DE3-0BFB-4C49-A462-9117FD727B40"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=91553066310826&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=91592136122066&w=2","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/6609","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=91553066310826&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=91592136122066&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/6609","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0391","sourceIdentifier":"cve@mitre.org","published":"1999-01-05T05:00:00.000","lastModified":"2026-06-16T21:48:17.787","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The cryptographic challenge of SMB authentication in Windows 95 and Windows 98 can be reused, allowing an attacker to replay the response and impersonate a user."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:terminal_server:*:*:*:*:*:*:*:*","matchCriteriaId":"40242161-D5AD-4314-AB95-E61292C49DF2"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:3.5.1:sp1:*:*:*:*:*:*","matchCriteriaId":"EF8BECF6-3C33-4D8C-B54E-A0D2F3295E81"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:3.5.1:sp2:*:*:*:*:*:*","matchCriteriaId":"828B4519-24D8-45A7-8448-D5FF6C83A2C3"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:3.5.1:sp3:*:*:*:*:*:*","matchCriteriaId":"F495AF7A-CC31-4045-BACC-902950C80ABF"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:3.5.1:sp4:*:*:*:*:*:*","matchCriteriaId":"68DFA54C-3DB9-4A94-A446-CF28671FE4F6"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:3.5.1:sp5:*:*:*:*:*:*","matchCriteriaId":"55A2AC4C-6B85-4B60-BFE1-C9588C5973B0"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp1:*:*:*:*:*:*","matchCriteriaId":"5BDCBCB8-DAA3-465F-ADDE-9143B8251989"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp2:*:*:*:*:*:*","matchCriteriaId":"B86E0671-ED68-4549-B3AC-FD8BD79B0860"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp3:*:*:*:*:*:*","matchCriteriaId":"BB76E7EC-C396-4537-9065-4E815DA7097C"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp4:*:*:*:*:*:*","matchCriteriaId":"4CD026E2-B073-40A6-AD4A-8C76B9169B01"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp5:*:*:*:*:*:*","matchCriteriaId":"DBFB3E49-3FB5-4947-856D-727CBFFBA543"}]}]}],"references":[{"url":"https://marc.info/?l=bugtraq&m=91552769809542&w=2","source":"cve@mitre.org"},{"url":"https://marc.info/?l=bugtraq&m=91552769809542&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0458","sourceIdentifier":"cve@mitre.org","published":"1999-01-06T05:00:00.000","lastModified":"2026-06-16T21:48:26.313","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"L0phtcrack 2.5 used temporary files in the system TEMP directory which could contain password information."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:l0pht:l0phtcrack:2.5:*:*:*:*:*:*:*","matchCriteriaId":"BFA5C409-12E4-47B8-B0E2-A11EE687EE4A"}]}]}],"references":[{"url":"http://www.osvdb.org/915","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/915","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1268","sourceIdentifier":"cve@mitre.org","published":"1999-01-06T05:00:00.000","lastModified":"2026-06-16T21:50:04.577","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in KDE konsole allows local users to hijack or observe sessions of other users by accessing certain devices."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:kde:kde:*:*:*:*:*:*:*:*","matchCriteriaId":"D54C9BCD-7544-4005-8F61-45C3EC054385"}]}]}],"references":[{"url":"http://lists.kde.org/?l=kde-devel&m=91560433413263&w=2","source":"cve@mitre.org","tags":["Patch"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1645","source":"cve@mitre.org"},{"url":"http://lists.kde.org/?l=kde-devel&m=91560433413263&w=2","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1645","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0442","sourceIdentifier":"cve@mitre.org","published":"1999-01-07T05:00:00.000","lastModified":"2026-06-16T21:48:24.340","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Solaris ff.core allows local users to modify files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5:*:x86:*:*:*:*:*","matchCriteriaId":"200D8CB2-0D52-40A8-9CD9-6E4513605201"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5.1:*:x86:*:*:*:*:*","matchCriteriaId":"F66BAF35-A8B9-4E95-B270-444206FDD35B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.6:*:*:*:*:*:*:*","matchCriteriaId":"34EBF074-78C8-41AF-88F1-DA6726E56F8B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:7.0:*:x86:*:*:*:*:*","matchCriteriaId":"8F1F312C-413F-4DB4-ABF4-48E33F6FECF2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:-:*:*:*:*:*:*:*","matchCriteriaId":"369207B4-96FA-4324-9445-98FAE8ECF5DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5:*:*:*:*:*:*:*","matchCriteriaId":"5B72953B-E873-4E44-A3CF-12D770A0D416"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5.1:*:*:*:*:*:*:*","matchCriteriaId":"39F847DB-65A9-47DA-BCFA-A179E5E2301A"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/327","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/327","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0392","sourceIdentifier":"cve@mitre.org","published":"1999-01-10T05:00:00.000","lastModified":"2026-06-16T21:48:17.903","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Thomas Boutell's cgic library version up to 1.05."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:thomas_boutell:cgic_library:*:*:*:*:*:*:*:*","versionEndIncluding":"1.05","matchCriteriaId":"921BE0C0-B2CE-4EC6-BBBA-8CBDBAF5AD22"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0392","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0392","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0063","sourceIdentifier":"cve@mitre.org","published":"1999-01-11T05:00:00.000","lastModified":"2026-06-16T21:47:29.447","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Cisco IOS 12.0 and other versions can be crashed by malicious UDP packets to the syslog port."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.3aa:*:*:*:*:*:*:*","matchCriteriaId":"D8783C0A-990A-4B79-8BF9-64E425DA585E"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.3db:*:*:*:*:*:*:*","matchCriteriaId":"046D8679-38F8-4DC9-82A7-2562DE0495F7"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0:*:*:*:*:*:*:*","matchCriteriaId":"8F86F790-6247-42F2-9487-3D60A2842F52"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(1\\)w:*:*:*:*:*:*:*","matchCriteriaId":"53D87AC5-0F63-4AE8-AC05-FCEC98D18BDC"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(1\\)xa3:*:*:*:*:*:*:*","matchCriteriaId":"AE210B04-7ECD-419C-9258-0F619A353A8A"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(1\\)xb:*:*:*:*:*:*:*","matchCriteriaId":"3B467741-B277-4128-9804-E13ED23FD310"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(1\\)xe:*:*:*:*:*:*:*","matchCriteriaId":"5E7EE856-9CE7-49FD-8ADC-05C580CD54A7"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(2\\)xc:*:*:*:*:*:*:*","matchCriteriaId":"5145C737-2D5E-4BD4-BA9F-66ED2887A4DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(2\\)xd:*:*:*:*:*:*:*","matchCriteriaId":"C48466C4-5A1E-4C71-8822-32D387B36B8B"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0db:*:*:*:*:*:*:*","matchCriteriaId":"4F7CF26C-AEAA-42D7-8136-56E77E73DCB2"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0s:*:*:*:*:*:*:*","matchCriteriaId":"2C398460-3F38-4AA7-A4B1-FD8A01588DB5"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0t:*:*:*:*:*:*:*","matchCriteriaId":"CA7F94E8-86FC-456B-A7BB-57953F67F754"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0063","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0063","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1172","sourceIdentifier":"cve@mitre.org","published":"1999-01-14T05:00:00.000","lastModified":"2026-06-16T21:49:52.400","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"By design, Maximizer Enterprise 4 calendar and address book program allows arbitrary users to modify the calendar of other users when the calendar is being shared."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:maximizer:maximizer_enterprise:4:*:*:*:*:*:*:*","matchCriteriaId":"E0BA5470-4FC1-4BCA-9C20-A3757C02B508"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/11947","source":"cve@mitre.org","tags":["Exploit"]},{"url":"http://www.securityfocus.com/archive/1/11947","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]}]}},{"cve":{"id":"CVE-1999-1376","sourceIdentifier":"cve@mitre.org","published":"1999-01-14T05:00:00.000","lastModified":"2026-06-16T21:50:18.477","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in fpcount.exe in IIS 4.0 with FrontPage Server Extensions allows remote attackers to execute arbitrary commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=91638375309890&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=91632724913080&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=91638375309890&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=91632724913080&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1538","sourceIdentifier":"cve@mitre.org","published":"1999-01-14T05:00:00.000","lastModified":"2026-06-16T21:50:40.317","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"When IIS 2 or 3 is upgraded to IIS 4, ism.dll is inadvertently left in /scripts/iisadmin, which does not restrict access to the local machine and allows an unauthorized user to gain access to sensitive server information, including the Administrator's password."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=91638375309890&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=91632724913080&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/189","source":"cve@mitre.org","tags":["Exploit"]},{"url":"http://marc.info/?l=bugtraq&m=91638375309890&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=91632724913080&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/189","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]}]}},{"cve":{"id":"CVE-1999-0457","sourceIdentifier":"cve@mitre.org","published":"1999-01-17T05:00:00.000","lastModified":"2026-06-16T21:48:26.190","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Linux ftpwatch program allows local users to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:1.3:*:*:*:*:*:*:*","matchCriteriaId":"745ACC17-B6D6-4B4E-9648-A8B45C4A3F7A"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:1.3.1:*:*:*:*:*:*:*","matchCriteriaId":"7A632089-47D7-410D-AE12-F801193FA18F"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.0:*:*:*:*:*:*:*","matchCriteriaId":"203BDD63-2FA5-42FD-A9CD-6BDBB41A63C4"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/317","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/317","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0678","sourceIdentifier":"cve@mitre.org","published":"1999-01-17T05:00:00.000","lastModified":"2026-06-16T21:48:49.777","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A default configuration of Apache on Debian GNU/Linux sets the ServerRoot to /usr/doc, which allows remote users to read documentation files for the entire server."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:-:*:*:*:*:*:*:*","matchCriteriaId":"D623D8C0-65D2-4269-A1D4-5CB3899F44C8"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:o:debian:debian_linux:2.1:*:*:*:*:*:*:*","matchCriteriaId":"3C67BDA1-9451-4026-AC6D-E912C882A757"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/318","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://www.securityfocus.com/bid/318","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]}]}},{"cve":{"id":"CVE-1999-0119","sourceIdentifier":"cve@mitre.org","published":"1999-01-19T05:00:00.000","lastModified":"2026-06-16T21:47:37.760","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Windows NT 4.0 beta allows users to read and delete shares."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:beta:*:*:*:*:*","matchCriteriaId":"567075E0-2F68-4B60-B29C-B030C9076530"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/11","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/11","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0451","sourceIdentifier":"cve@mitre.org","published":"1999-01-19T05:00:00.000","lastModified":"2026-06-16T21:48:25.460","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in Linux 2.0.36 allows local users to prevent any server from listening on any non-privileged port."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.0:*:*:*:*:*:*:*","matchCriteriaId":"96A6EE7E-C79C-4B25-AFF0-C6638CB3C99A"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.2.0:*:*:*:*:*:*:*","matchCriteriaId":"146F7A77-A950-4CAD-BDA9-C239696F569D"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/343","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/343","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-0121","sourceIdentifier":"cve@mitre.org","published":"1999-01-21T05:00:00.000","lastModified":"2026-06-16T21:47:38.013","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in dtaction command gives root access."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0121","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0121","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1264","sourceIdentifier":"cve@mitre.org","published":"1999-01-21T05:00:00.000","lastModified":"2026-06-16T21:50:04.060","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WebRamp M3 router does not disable remote telnet or HTTP access to itself, even when access has been explicitly disabled."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:ramp_networks:webramp:300:*:*:*:*:*:*:*","matchCriteriaId":"917A7968-E410-46FE-A44D-585B8BC3E34A"},{"vulnerable":true,"criteria":"cpe:2.3:h:ramp_networks:webramp:m3:*:*:*:*:*:*:*","matchCriteriaId":"7032B75E-7490-42D8-8284-22CB61F1E5DE"},{"vulnerable":true,"criteria":"cpe:2.3:h:ramp_networks:webramp:m3i:*:*:*:*:*:*:*","matchCriteriaId":"31C9BDDE-03E6-4C10-A6C3-D71E5A152C8E"},{"vulnerable":true,"criteria":"cpe:2.3:h:ramp_networks:webramp:m3t:*:*:*:*:*:*:*","matchCriteriaId":"24053FF2-851C-4AB9-B4A6-864A4C94065D"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=91815321510224&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/12048","source":"cve@mitre.org","tags":["Exploit"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1670","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=91815321510224&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/12048","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1670","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1544","sourceIdentifier":"cve@mitre.org","published":"1999-01-24T05:00:00.000","lastModified":"2026-06-16T21:50:41.087","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in FTP server in Microsoft IIS 3.0 and 4.0 allows local and sometimes remote attackers to cause a denial of service via a long NLST (ls) command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"547AB6E2-4E9F-4783-8BB4-0AE297A38C9C"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=91722115016183&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=91722115016183&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0352","sourceIdentifier":"cve@mitre.org","published":"1999-01-25T05:00:00.000","lastModified":"2026-06-16T21:48:12.740","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ControlIT 4.5 and earlier (aka Remotely Possible) has weak password encryption."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0352","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0352","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0356","sourceIdentifier":"cve@mitre.org","published":"1999-01-25T05:00:00.000","lastModified":"2026-06-16T21:48:13.230","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ControlIT v4.5 and earlier uses weak encryption to store usernames and passwords in an address book."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0356","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0356","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0357","sourceIdentifier":"cve@mitre.org","published":"1999-01-25T05:00:00.000","lastModified":"2026-06-16T21:48:13.350","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Windows 98 and other operating systems allows remote attackers to cause a denial of service via crafted \"oshare\" packets, possibly involving invalid fragmentation offsets."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98:*:gold:*:*:*:*:*:*","matchCriteriaId":"2D3B703C-79B2-4FA2-9E12-713AB977A880"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0357","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0357","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1458","sourceIdentifier":"cve@mitre.org","published":"1999-01-25T05:00:00.000","lastModified":"2026-06-16T21:50:29.020","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in at program in Digital UNIX 4.0 allows local users to gain root privileges via a long command line argument."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:digital:unix:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E1E08495-C0C5-40A9-A8FF-834F5F6083B3"},{"vulnerable":true,"criteria":"cpe:2.3:o:digital:unix:4.0a:*:*:*:*:*:*:*","matchCriteriaId":"781D13E2-35BB-4D58-A68F-86401D08D438"},{"vulnerable":true,"criteria":"cpe:2.3:o:digital:unix:4.0b:*:*:*:*:*:*:*","matchCriteriaId":"07476CFD-859F-4AD7-8514-130E7A86BAE5"},{"vulnerable":true,"criteria":"cpe:2.3:o:digital:unix:4.0c:*:*:*:*:*:*:*","matchCriteriaId":"A5F097D7-CD52-44FC-851C-7DB42E57DCB8"},{"vulnerable":true,"criteria":"cpe:2.3:o:digital:unix:4.0d:*:*:*:*:*:*:*","matchCriteriaId":"8C250283-4343-4569-A6EA-988FB7319AA7"},{"vulnerable":true,"criteria":"cpe:2.3:o:digital:unix:4.0e:*:*:*:*:*:*:*","matchCriteriaId":"32AE5D68-92A0-4950-A6FF-ECD5F56FDD90"}]}]}],"references":[{"url":"http://ftp1.support.compaq.com/public/dunix/v4.0d/ssrt0583u.README","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/12121","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3138","source":"cve@mitre.org"},{"url":"http://ftp1.support.compaq.com/public/dunix/v4.0d/ssrt0583u.README","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/12121","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3138","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0347","sourceIdentifier":"cve@mitre.org","published":"1999-01-26T05:00:00.000","lastModified":"2026-06-16T21:48:12.110","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internet Explorer 4.01 allows remote attackers to read local files and spoof web pages via a \"%01\" character in an \"about:\" Javascript URL, which causes Internet Explorer to use the domain specified after the character."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=91745430007021&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=91756771207719&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=91745430007021&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=91756771207719&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0400","sourceIdentifier":"cve@mitre.org","published":"1999-01-26T05:00:00.000","lastModified":"2026-06-16T21:48:19.000","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in Linux 2.2.0 running the ldd command on a core file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.2.0:*:*:*:*:*:*:*","matchCriteriaId":"146F7A77-A950-4CAD-BDA9-C239696F569D"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/344","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/344","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-0449","sourceIdentifier":"cve@mitre.org","published":"1999-01-26T05:00:00.000","lastModified":"2026-06-16T21:48:25.213","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The ExAir sample site in IIS 4 allows remote attackers to cause a denial of service (CPU consumption) via a direct request to the (1) advsearch.asp, (2) query.asp, or (3) search.asp scripts."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:C","baseScore":7.8,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"}]}]}],"references":[{"url":"http://www.osvdb.org/2","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/3","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/4","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/193","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/3","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/4","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/193","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0450","sourceIdentifier":"cve@mitre.org","published":"1999-01-26T05:00:00.000","lastModified":"2026-06-16T21:48:25.340","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"In IIS, an attacker could determine a real path using a request for a non-existent URL that would be interpreted by Perl (perl.exe)."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"547AB6E2-4E9F-4783-8BB4-0AE297A38C9C"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_services:2.0:*:*:*:*:*:*:*","matchCriteriaId":"E701AB0D-E335-47DF-A0CA-607D5C6E9255"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_services:5.0:*:*:*:*:*:*:*","matchCriteriaId":"413C07EA-139F-4B7D-A58B-835BD2591FA0"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/194","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/194","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0348","sourceIdentifier":"cve@mitre.org","published":"1999-01-27T05:00:00.000","lastModified":"2026-06-16T21:48:12.237","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IIS ASP caching problem releases sensitive information when two virtual servers share the same physical directory."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-200"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ197003","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/930","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ197003","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/930","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0349","sourceIdentifier":"cve@mitre.org","published":"1999-01-27T05:00:00.000","lastModified":"2026-06-16T21:48:12.357","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A buffer overflow in the FTP list (ls) command in IIS allows remote attackers to conduct a denial of service and, in some cases, execute arbitrary commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-119"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"547AB6E2-4E9F-4783-8BB4-0AE297A38C9C"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ188348","source":"cve@mitre.org"},{"url":"http://www.eeye.com/html/Research/Advisories/IIS%20Remote%20FTP%20Exploit/DoS%20Attack.html","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-003","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ188348","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.eeye.com/html/Research/Advisories/IIS%20Remote%20FTP%20Exploit/DoS%20Attack.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-003","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1450","sourceIdentifier":"cve@mitre.org","published":"1999-01-27T05:00:00.000","lastModified":"2026-06-16T21:50:27.977","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in (1) rlogin daemon rshd and (2) scheme on SCO UNIX OpenServer 5.0.5 and earlier, and SCO UnixWare 7.0.1 and earlier, allows remote attackers to gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sco:openserver:*:*:*:*:*:*:*:*","versionEndIncluding":"5.0.5","matchCriteriaId":"641472D4-4143-47A7-B3CE-84021F67EC75"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:openserver:5.0:*:*:*:*:*:*:*","matchCriteriaId":"2C19F7B3-9043-4E53-90DE-92A4387858A7"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:openserver:5.0.2:*:*:*:*:*:*:*","matchCriteriaId":"0169CBF5-9301-42D2-A6DA-73393BD986D8"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:openserver:5.0.4:*:*:*:*:*:*:*","matchCriteriaId":"035FBF8B-EB91-4211-9979-8A9E913A54A1"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:*:*:*:*:*:*:*:*","versionEndIncluding":"2.1.3","matchCriteriaId":"B64BFE2D-88F0-4046-9D0C-96D215AD935E"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:*:*:*:*:*:*:*:*","versionEndIncluding":"7.0.1","matchCriteriaId":"1ED5F32A-8869-407C-B79B-49ECE360B3F3"}]}]}],"references":[{"url":"ftp://ftp.sco.COM/SSE/sse020.ltr","source":"cve@mitre.org"},{"url":"ftp://ftp.sco.com/SSE/security_bulletins/SB-99.03b","source":"cve@mitre.org"},{"url":"ftp://ftp.sco.com/SSE/security_bulletins/SB-99.06b","source":"cve@mitre.org"},{"url":"ftp://ftp.sco.COM/SSE/sse020.ltr","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"ftp://ftp.sco.com/SSE/security_bulletins/SB-99.03b","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"ftp://ftp.sco.com/SSE/security_bulletins/SB-99.06b","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0461","sourceIdentifier":"cve@mitre.org","published":"1999-01-28T05:00:00.000","lastModified":"2026-06-16T21:48:26.697","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Versions of rpcbind including Linux, IRIX, and Wietse Venema's rpcbind allow a remote attacker to insert and delete entries by spoofing a source address."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:*:*:*:*:*:*:*:*","matchCriteriaId":"056B3397-81A9-4128-9F49-ECEBE1743EE8"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.6.20.1:*:*:*:*:*:*:*","matchCriteriaId":"1E3313D5-52E8-49B3-B145-170D9A26DA43"}]}]}],"references":[{"url":"https://www.cve.org/CVERecord?id=CVE-1999-0461","source":"cve@mitre.org"},{"url":"https://www.cve.org/CVERecord?id=CVE-1999-0461","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0952","sourceIdentifier":"cve@mitre.org","published":"1999-01-28T05:00:00.000","lastModified":"2026-06-16T21:49:23.740","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Solaris lpstat via class argument allows local users to gain root access."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.6:*:*:*:*:*:*:*","matchCriteriaId":"34EBF074-78C8-41AF-88F1-DA6726E56F8B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=91759216618637&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=91759216618637&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1546","sourceIdentifier":"cve@mitre.org","published":"1999-01-29T05:00:00.000","lastModified":"2026-06-16T21:50:41.320","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"netstation.navio-com.rte 1.1.0.1 configuration script for Navio NC on IBM AIX exports /tmp over NFS as world-readable and world-writable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:navio_nc_browser:1.1.0.1:*:*:*:*:*:*:*","matchCriteriaId":"3423E98F-A223-4D71-8F8B-B1CEC011B6B4"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/12217","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1724","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/12217","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1724","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0370","sourceIdentifier":"cve@mitre.org","published":"1999-01-29T05:00:00.000","lastModified":"2026-06-16T21:51:34.520","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The debug option in Caldera Linux smail allows remote attackers to execute commands via shell metacharacters in the -D option for the rmail command."},{"lang":"es","value":"La opción de depuración en smail de Caldera Linux permite a atacantes remotos ejecutar comandos mediante metacaracteres de shell en la opción -D del comando rmail."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux:1.0:*:*:*:*:*:*:*","matchCriteriaId":"ABC52A20-B706-432D-9A15-45F48EB1B08B"},{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux:1.1:*:*:*:*:*:*:*","matchCriteriaId":"F8A9DB15-1F04-4864-A8AD-FCCB35A63B2A"},{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux:1.2:*:*:*:*:*:*:*","matchCriteriaId":"A5C77FA7-C977-4223-B6AC-91B82C45129C"},{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux:1.3:*:*:*:*:*:*:*","matchCriteriaId":"EED21F27-4ADA-42AC-B28E-F849F47D4043"}]}]}],"references":[{"url":"ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-1999-001.0.txt","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1268","source":"cve@mitre.org"},{"url":"ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-1999-001.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1268","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0360","sourceIdentifier":"cve@mitre.org","published":"1999-01-30T05:00:00.000","lastModified":"2026-06-16T21:48:13.747","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"MS Site Server 2.0 with IIS 4 can allow users to upload content, including ASP, to the target web site, thus allowing them to execute commands remotely."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:site_server:2.0:*:*:*:*:*:*:*","matchCriteriaId":"447E490B-C3C4-4B0B-8F95-FBD871A412B6"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=91763097004101&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=91763097004101&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0291","sourceIdentifier":"cve@mitre.org","published":"1999-02-01T05:00:00.000","lastModified":"2026-06-16T21:48:05.093","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The WinGate proxy is installed without a password, which allows remote attackers to redirect connections without authentication."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:qbik:wingate:*:*:*:*:*:*:*:*","matchCriteriaId":"E13C7802-12EA-41D8-B145-43621072999A"}]}]}],"references":[{"url":"https://www.cve.org/CVERecord?id=CVE-1999-0291","source":"cve@mitre.org"},{"url":"https://www.cve.org/CVERecord?id=CVE-1999-0291","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0351","sourceIdentifier":"cve@mitre.org","published":"1999-02-01T05:00:00.000","lastModified":"2026-06-16T21:48:12.610","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"FTP PASV \"Pizza Thief\" denial of service and unauthorized data access.  Attackers can steal data by connecting to a port that was intended for use by a client."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:P","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ftp:ftp_pasv:*:*:*:*:*:*:*:*","matchCriteriaId":"11B890DA-EDA2-4CC2-8F80-0446C0F3CD8D"}]}]}],"references":[{"url":"http://attrition.org/security/advisory/misc/infowar/iw_sec_01.txt","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3389","source":"cve@mitre.org"},{"url":"http://attrition.org/security/advisory/misc/infowar/iw_sec_01.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3389","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0358","sourceIdentifier":"cve@mitre.org","published":"1999-02-01T05:00:00.000","lastModified":"2026-06-16T21:48:13.480","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Digital Unix 4.0 has a buffer overflow in the inc program of the mh package."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:digital:unix:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E1E08495-C0C5-40A9-A8FF-834F5F6083B3"},{"vulnerable":true,"criteria":"cpe:2.3:o:digital:unix:4.0a:*:*:*:*:*:*:*","matchCriteriaId":"781D13E2-35BB-4D58-A68F-86401D08D438"},{"vulnerable":true,"criteria":"cpe:2.3:o:digital:unix:4.0b:*:*:*:*:*:*:*","matchCriteriaId":"07476CFD-859F-4AD7-8514-130E7A86BAE5"},{"vulnerable":true,"criteria":"cpe:2.3:o:digital:unix:4.0c:*:*:*:*:*:*:*","matchCriteriaId":"A5F097D7-CD52-44FC-851C-7DB42E57DCB8"},{"vulnerable":true,"criteria":"cpe:2.3:o:digital:unix:4.0d:*:*:*:*:*:*:*","matchCriteriaId":"8C250283-4343-4569-A6EA-988FB7319AA7"},{"vulnerable":true,"criteria":"cpe:2.3:o:digital:unix:4.0e:*:*:*:*:*:*:*","matchCriteriaId":"32AE5D68-92A0-4950-A6FF-ECD5F56FDD90"}]}]}],"references":[{"url":"http://www.ciac.org/ciac/bulletins/j-027.shtml","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/12121","source":"cve@mitre.org"},{"url":"http://www.ciac.org/ciac/bulletins/j-027.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/12121","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0373","sourceIdentifier":"cve@mitre.org","published":"1999-02-01T05:00:00.000","lastModified":"2026-06-16T21:48:15.430","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the \"Super\" utility in Debian GNU/Linux, and other operating systems, allows local users to execute commands as root."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.0:*:*:*:*:*:*:*","matchCriteriaId":"203BDD63-2FA5-42FD-A9CD-6BDBB41A63C4"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0373","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0373","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0403","sourceIdentifier":"cve@mitre.org","published":"1999-02-01T05:00:00.000","lastModified":"2026-06-16T21:48:19.373","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A bug in Cyrix CPUs on Linux allows local users to perform a denial of service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:cyrix:linux:*:*:*:*:*:*:*:*","matchCriteriaId":"36B180B3-E7C9-45EE-976C-D329C783F956"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=91821080015725&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=91821080015725&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0459","sourceIdentifier":"cve@mitre.org","published":"1999-02-01T05:00:00.000","lastModified":"2026-06-16T21:48:26.440","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Local users can perform a denial of service in Alpha Linux, using MILO to force a reboot."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0459","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0459","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0362","sourceIdentifier":"cve@mitre.org","published":"1999-02-02T05:00:00.000","lastModified":"2026-06-16T21:48:13.990","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WS_FTP server remote denial of service through cwd command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:ws_ftp_server:1.0.1eval:*:*:*:*:*:*:*","matchCriteriaId":"2FFFF21C-9F80-4BFC-B71C-E534F42020BF"},{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:ws_ftp_server:1.0.2eval:*:*:*:*:*:*:*","matchCriteriaId":"EA1CFEE0-7707-4B3D-8E84-0C42F56F5666"}]}]}],"references":[{"url":"http://www.eeye.com/html/Research/Advisories/AD02021999.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/217","source":"cve@mitre.org"},{"url":"http://www.eeye.com/html/Research/Advisories/AD02021999.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/217","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0363","sourceIdentifier":"cve@mitre.org","published":"1999-02-02T05:00:00.000","lastModified":"2026-06-16T21:48:14.117","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"SuSE 5.2 PLP lpc program has a buffer overflow that leads to root compromise."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:plp:line_printer_control:*:*:*:*:*:*:*:*","matchCriteriaId":"E3A00539-B11C-4B4D-8EF1-CE42F5224B0F"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:5.2:*:*:*:*:*:*:*","matchCriteriaId":"D1C826AA-6E2F-4DAC-A7A2-9F47729B5DA5"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/328","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/328","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0383","sourceIdentifier":"cve@mitre.org","published":"1999-02-02T05:00:00.000","lastModified":"2026-06-16T21:48:16.773","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ACC Tigris allows public access without a login."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:acc:tigris:10.5.8:*:*:*:*:*:*:*","matchCriteriaId":"65BC8A0A-4070-4F0E-A6B1-CD2C9C01945B"}]}]}],"references":[{"url":"http://www.osvdb.org/267","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/183","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/267","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/183","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1171","sourceIdentifier":"cve@mitre.org","published":"1999-02-02T05:00:00.000","lastModified":"2026-06-16T21:49:52.283","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IPswitch WS_FTP allows local users to gain additional privileges and modify or add mail accounts by setting the \"flags\" registry key to 1920."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:imail:5.0:*:*:*:*:*:*:*","matchCriteriaId":"EFEFE5A5-6589-4316-9C9F-2F8109696158"},{"vulnerable":true,"criteria":"cpe:2.3:a:progress:ws_ftp_server:1.0.1.e:*:*:*:*:*:*:*","matchCriteriaId":"D9BE1954-74C5-4A91-9C9A-C0647F281017"},{"vulnerable":true,"criteria":"cpe:2.3:a:progress:ws_ftp_server:1.0.2.e:*:*:*:*:*:*:*","matchCriteriaId":"3DE6789D-5DA5-489F-A900-F4788286ACE5"}]}]}],"references":[{"url":"http://marc.info/?l=ntbugtraq&m=91816507920544&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/218","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=91816507920544&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/218","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1453","sourceIdentifier":"cve@mitre.org","published":"1999-02-02T05:00:00.000","lastModified":"2026-06-16T21:50:28.370","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internet Explorer 4 allows remote attackers (malicious web site operators) to read the contents of the clipboard via the Internet WebBrowser ActiveX object."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:N/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0:*:*:*:*:*:*:*","matchCriteriaId":"A5B815D9-BC21-4A17-AF00-B8AD181027D7"}]}]}],"references":[{"url":"http://marc.info/?l=ntbugtraq&m=91979439932341&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/215","source":"cve@mitre.org","tags":["Exploit"]},{"url":"http://marc.info/?l=ntbugtraq&m=91979439932341&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/215","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]}]}},{"cve":{"id":"CVE-1999-0365","sourceIdentifier":"cve@mitre.org","published":"1999-02-04T05:00:00.000","lastModified":"2026-06-16T21:48:14.403","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The metamail package allows remote command execution using shell metacharacters that are not quoted in a mailcap entry."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:metainfo:metaip:3.1:*:*:*:*:*:*:*","matchCriteriaId":"E14CE1E9-2C59-4798-AF3A-924B6E1D8AA0"},{"vulnerable":true,"criteria":"cpe:2.3:a:metainfo:sendmail:2.0:*:*:*:*:*:*:*","matchCriteriaId":"B4C8975F-66CD-458F-BBAD-F97E21881634"},{"vulnerable":true,"criteria":"cpe:2.3:a:metainfo:sendmail:2.5:*:*:*:*:*:*:*","matchCriteriaId":"E25900E0-2008-4AA8-9EEC-F1C0B13B6645"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0365","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0365","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1169","sourceIdentifier":"cve@mitre.org","published":"1999-02-04T05:00:00.000","lastModified":"2026-06-16T21:49:52.033","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"nobo 1.2 allows remote attackers to cause a denial of service (crash) via a series of large UDP packets."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:flavio_veloso:nobo:*:*:*:*:*:*:*:*","versionEndIncluding":"1.2","matchCriteriaId":"A83F305D-DDBB-48B2-AC94-690CA506F397"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/12284","source":"cve@mitre.org","tags":["Exploit"]},{"url":"http://www.securityfocus.com/archive/1/12284","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]}]}},{"cve":{"id":"CVE-1999-1201","sourceIdentifier":"cve@mitre.org","published":"1999-02-06T05:00:00.000","lastModified":"2026-06-16T21:49:56.067","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Windows 95 and Windows 98 systems, when configured with multiple TCP/IP stacks bound to the same MAC address, allow remote attackers to cause a denial of service (traffic amplification) via a certain ICMP echo (ping) packet, which causes all stacks to send a ping response, aka TCP Chorusing."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_95:*:*:*:*:*:*:*:*","matchCriteriaId":"82F7322B-8022-4D0B-ADB3-D0F5B6F20309"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98:*:gold:*:*:*:*:*:*","matchCriteriaId":"2D3B703C-79B2-4FA2-9E12-713AB977A880"}]}]}],"references":[{"url":"http://marc.info/?l=ntbugtraq&m=91849617221319&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/225","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7542","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=91849617221319&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/225","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7542","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0350","sourceIdentifier":"cve@mitre.org","published":"1999-02-08T05:00:00.000","lastModified":"2026-06-16T21:48:12.480","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Race condition in the db_loader program in ClearCase gives local users root access by setting SUID bits."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:C/I:C/A:C","baseScore":6.2,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"MEDIUM","exploitabilityScore":1.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:rational_software:clearcase:3.2:*:*:*:*:*:*:*","matchCriteriaId":"9B2B1CFB-9ADB-4250-888D-80E885F3DD87"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0350","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0350","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0366","sourceIdentifier":"cve@mitre.org","published":"1999-02-08T05:00:00.000","lastModified":"2026-06-16T21:48:14.543","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"In some cases, Service Pack 4 for Windows NT 4.0 can allow access to network shares using a blank password, through a problem with a null NT hash value."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-287"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp4:*:*:*:*:*:*","matchCriteriaId":"4CD026E2-B073-40A6-AD4A-8C76B9169B01"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ214840","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-004","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ214840","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-004","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0367","sourceIdentifier":"cve@mitre.org","published":"1999-02-09T05:00:00.000","lastModified":"2026-06-16T21:48:14.657","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"NetBSD netstat command allows local users to access kernel memory."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:2.0.4:*:*:*:*:*:*:*","matchCriteriaId":"36419DD6-0DB4-4BB6-A35F-D8FDB89402F1"}]}]}],"references":[{"url":"http://www.osvdb.org/7571","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/7571","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0368","sourceIdentifier":"cve@mitre.org","published":"1999-02-09T05:00:00.000","lastModified":"2026-06-16T21:48:14.780","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflows in wuarchive ftpd (wu-ftpd) and ProFTPD lead to remote root access, a.k.a. palmetto."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:proftpd_project:proftpd:1.2_pre1:*:*:*:*:*:*:*","matchCriteriaId":"CE1015CB-9A33-48D5-861A-A1FC0D8D0FA6"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.4.2_beta18:*:*:*:*:*:*:*","matchCriteriaId":"2D48DE48-5216-42AB-BEA8-EA490C5D4278"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.4.2_beta18_vr9:*:*:*:*:*:*:*","matchCriteriaId":"4989799F-143A-45E5-A30C-9E3203649770"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux:1.3:*:*:*:*:*:*:*","matchCriteriaId":"EED21F27-4ADA-42AC-B28E-F849F47D4043"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.0:*:*:*:*:*:*:*","matchCriteriaId":"203BDD63-2FA5-42FD-A9CD-6BDBB41A63C4"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.0:*:*:*:*:*:*:*","matchCriteriaId":"4BF54738-3C44-4FD4-AA9C-CAB2E86B1DC1"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.1:*:*:*:*:*:*:*","matchCriteriaId":"4EF44364-0F57-4B74-81B0-501EA6B58501"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:openserver:5.0:*:*:*:*:*:*:*","matchCriteriaId":"2C19F7B3-9043-4E53-90DE-92A4387858A7"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:openserver:5.0.2:*:*:*:*:*:*:*","matchCriteriaId":"0169CBF5-9301-42D2-A6DA-73393BD986D8"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:openserver:5.0.3:*:*:*:*:*:*:*","matchCriteriaId":"6236FA51-E996-4E84-A8CC-2635A814CCC6"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:openserver:5.0.4:*:*:*:*:*:*:*","matchCriteriaId":"035FBF8B-EB91-4211-9979-8A9E913A54A1"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:openserver:5.0.5:*:*:*:*:*:*:*","matchCriteriaId":"B8BA72B4-C4AF-41C6-92ED-30B286E00EF5"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.0:*:*:*:*:*:*:*","matchCriteriaId":"17439B5B-0B66-490B-9B53-2C9D576C879F"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.0.1:*:*:*:*:*:*:*","matchCriteriaId":"EF9FD7BF-97E4-426D-881F-03C9D5B8895D"},{"vulnerable":true,"criteria":"cpe:2.3:o:slackware:slackware_linux:3.4:*:*:*:*:*:*:*","matchCriteriaId":"E6732144-10D4-4114-A7DA-32157EE3EF38"},{"vulnerable":true,"criteria":"cpe:2.3:o:slackware:slackware_linux:3.5:*:*:*:*:*:*:*","matchCriteriaId":"125918E7-53BB-407A-8D95-5D95CDF39A88"},{"vulnerable":true,"criteria":"cpe:2.3:o:slackware:slackware_linux:3.6:*:*:*:*:*:*:*","matchCriteriaId":"CE0BBA4F-C61A-4A8E-A7E2-CE0DF76DF592"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0368","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0368","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0407","sourceIdentifier":"cve@mitre.org","published":"1999-02-09T05:00:00.000","lastModified":"2026-06-16T21:48:19.880","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"By default, IIS 4.0 has a virtual directory /IISADMPWD which contains files that can be used as proxies for brute force password attacks, or to identify valid users on the system."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=91983486431506&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92000623021036&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=91983486431506&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=92000623021036&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0353","sourceIdentifier":"cve@mitre.org","published":"1999-02-10T05:00:00.000","lastModified":"2026-06-16T21:48:12.860","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"rpc.pcnfsd in HP gives remote root access by changing the permissions on the main printer spool directory."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:C/I:C/A:C","baseScore":9.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":8.6,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.01:*:*:*:*:*:*:*","matchCriteriaId":"53BBFE9A-6846-4625-91AC-47AA0BC0933A"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.10:*:*:*:*:*:*:*","matchCriteriaId":"38BFA923-7D80-4F01-AF9F-6F13209948AC"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.20:*:*:*:*:*:*:*","matchCriteriaId":"EDE44C49-172C-4899-8CC8-29AA99A7CD2F"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:11.00:*:*:*:*:*:*:*","matchCriteriaId":"771931F7-9180-4EBD-8627-E1CF17D24647"}]}]}],"references":[{"url":"http://www.ciac.org/ciac/bulletins/j-026.shtml","source":"cve@mitre.org"},{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9902-091","source":"cve@mitre.org"},{"url":"http://www.ciac.org/ciac/bulletins/j-026.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9902-091","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0370","sourceIdentifier":"cve@mitre.org","published":"1999-02-10T05:00:00.000","lastModified":"2026-06-16T21:48:15.047","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"In Sun Solaris and SunOS, man and catman contain vulnerabilities that allow overwriting arbitrary files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.4:*:x86:*:*:*:*:*","matchCriteriaId":"1F881110-7B54-49DA-B23A-710273430C44"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5.1:*:x86:*:*:*:*:*","matchCriteriaId":"F66BAF35-A8B9-4E95-B270-444206FDD35B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.6:*:*:*:*:*:*:*","matchCriteriaId":"34EBF074-78C8-41AF-88F1-DA6726E56F8B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:7.0:*:x86:*:*:*:*:*","matchCriteriaId":"8F1F312C-413F-4DB4-ABF4-48E33F6FECF2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:-:*:*:*:*:*:*:*","matchCriteriaId":"369207B4-96FA-4324-9445-98FAE8ECF5DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.4:*:*:*:*:*:*:*","matchCriteriaId":"7AAC8954-74A8-4FE3-ABE7-57DA041D9D8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5:*:*:*:*:*:*:*","matchCriteriaId":"5B72953B-E873-4E44-A3CF-12D770A0D416"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5.1:*:*:*:*:*:*:*","matchCriteriaId":"39F847DB-65A9-47DA-BCFA-A179E5E2301A"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/165","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/165","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0371","sourceIdentifier":"cve@mitre.org","published":"1999-02-11T05:00:00.000","lastModified":"2026-06-16T21:48:15.167","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Lynx allows a local user to overwrite sensitive files through /tmp symlinks."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:P/I:N/A:N","baseScore":1.2,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":1.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:university_of_kansas:lynx:*:*:*:*:*:*:*:*","versionEndIncluding":"2.7.1","matchCriteriaId":"9A682FFA-5C41-40BF-80EE-081604A77975"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0371","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0371","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1375","sourceIdentifier":"cve@mitre.org","published":"1999-02-11T05:00:00.000","lastModified":"2026-06-16T21:50:18.353","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"FileSystemObject (FSO) in the showfile.asp Active Server Page (ASP) allows remote attackers to read arbitrary files by specifying the name in the file parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"547AB6E2-4E9F-4783-8BB4-0AE297A38C9C"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"}]}]}],"references":[{"url":"http://marc.info/?l=ntbugtraq&m=91877455626320&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/230","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://marc.info/?l=ntbugtraq&m=91877455626320&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/230","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-0372","sourceIdentifier":"cve@mitre.org","published":"1999-02-12T05:00:00.000","lastModified":"2026-06-16T21:48:15.307","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The installer for BackOffice Server includes account names and passwords in a setup file (reboot.ini) which is not deleted."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-200"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:*:*:*:*:*:*:*:*","matchCriteriaId":"ED27882B-A02A-4D5F-9117-A47976C676E0"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:backoffice:4.0:*:*:*:*:*:*:*","matchCriteriaId":"60EAD9D1-B3E1-4DE3-9FCE-CBC2BC025561"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ217004","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-005","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ217004","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-005","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1203","sourceIdentifier":"cve@mitre.org","published":"1999-02-12T05:00:00.000","lastModified":"2026-06-16T21:49:56.330","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Multilink PPP for ISDN dialup users in Ascend before 4.6 allows remote attackers to cause a denial of service via a spoofed endpoint identifier."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:ascend:multilink_ppp_for_isdn:*:*:*:*:*:*:*:*","versionEndIncluding":"4.6","matchCriteriaId":"490D93A3-D6B1-49F3-A24E-78DE9406740F"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=91868964203769&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=91888117502765&w=2","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/7498.php","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=91868964203769&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=91888117502765&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.iss.net/security_center/static/7498.php","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0404","sourceIdentifier":"cve@mitre.org","published":"1999-02-14T05:00:00.000","lastModified":"2026-06-16T21:48:19.490","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the Mail-Max SMTP server for Windows systems allows remote command execution."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:smartmax_software:mailmax:*:*:*:*:*:*:*:*","matchCriteriaId":"DB602C18-FC87-417F-B955-D4E1446A638C"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0404","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0404","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0714","sourceIdentifier":"cve@mitre.org","published":"1999-02-15T05:00:00.000","lastModified":"2026-06-16T21:48:54.203","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in Compaq Tru64 UNIX edauth command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:digital:unix:3.2g:*:*:*:*:*:*:*","matchCriteriaId":"BD4B2280-5114-4CBD-9B06-221BD9CE4229"},{"vulnerable":true,"criteria":"cpe:2.3:o:digital:unix:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E1E08495-C0C5-40A9-A8FF-834F5F6083B3"},{"vulnerable":true,"criteria":"cpe:2.3:o:digital:unix:4.0a:*:*:*:*:*:*:*","matchCriteriaId":"781D13E2-35BB-4D58-A68F-86401D08D438"},{"vulnerable":true,"criteria":"cpe:2.3:o:digital:unix:4.0b:*:*:*:*:*:*:*","matchCriteriaId":"07476CFD-859F-4AD7-8514-130E7A86BAE5"},{"vulnerable":true,"criteria":"cpe:2.3:o:digital:unix:4.0c:*:*:*:*:*:*:*","matchCriteriaId":"A5F097D7-CD52-44FC-851C-7DB42E57DCB8"},{"vulnerable":true,"criteria":"cpe:2.3:o:digital:unix:4.0d:*:*:*:*:*:*:*","matchCriteriaId":"8C250283-4343-4569-A6EA-988FB7319AA7"},{"vulnerable":true,"criteria":"cpe:2.3:o:digital:unix:4.0e:*:*:*:*:*:*:*","matchCriteriaId":"32AE5D68-92A0-4950-A6FF-ECD5F56FDD90"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0714","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0714","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1260","sourceIdentifier":"cve@mitre.org","published":"1999-02-15T05:00:00.000","lastModified":"2026-06-16T21:50:03.557","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"mSQL (Mini SQL) 2.0.6 allows remote attackers to obtain sensitive server information such as logged users, database names, and server version via the ServerStats query."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:hughes:msql:*:*:*:*:*:*:*:*","versionEndIncluding":"2.0.6","matchCriteriaId":"826AF2F8-DAB3-4B7A-B9BF-41840FADA14F"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=91910115718150&w=2","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1777","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=91910115718150&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1777","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0374","sourceIdentifier":"cve@mitre.org","published":"1999-02-16T05:00:00.000","lastModified":"2026-06-16T21:48:15.563","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Debian GNU/Linux cfengine package is susceptible to a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.0:*:*:*:*:*:*:*","matchCriteriaId":"203BDD63-2FA5-42FD-A9CD-6BDBB41A63C4"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0374","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0374","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0375","sourceIdentifier":"cve@mitre.org","published":"1999-02-16T05:00:00.000","lastModified":"2026-06-16T21:48:15.687","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in webd in Network Flight Recorder (NFR) 2.0.2-Research allows remote attackers to execute commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:network_flight_recorder:network_flight_recorder:*:*:*:*:*:*:*:*","versionEndIncluding":"2.0.3","matchCriteriaId":"C82EC0C8-CE94-45E4-A265-FFDDE04CDE2A"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0375","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0375","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1180","sourceIdentifier":"cve@mitre.org","published":"1999-02-16T05:00:00.000","lastModified":"2026-06-16T21:49:53.360","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"O'Reilly WebSite 1.1e and Website Pro 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in an argument to (1) args.cmd or (2) args.bat."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oreilly:website:1.1e:*:*:*:*:*:*:*","matchCriteriaId":"2B146157-C821-410B-919E-856A5F1A8F2D"},{"vulnerable":true,"criteria":"cpe:2.3:a:oreilly:website_pro:*:*:*:*:*:*:*:*","versionEndIncluding":"2.4","matchCriteriaId":"3557C5A7-5359-4D3D-BBAE-0E5CA7CEA679"},{"vulnerable":true,"criteria":"cpe:2.3:a:oreilly:website_pro:2.0:*:*:*:*:*:*:*","matchCriteriaId":"B4814EF8-FC41-4CBE-A405-07FDE65D0C34"},{"vulnerable":true,"criteria":"cpe:2.3:a:oreilly:website_pro:2.1:*:*:*:*:*:*:*","matchCriteriaId":"6B476C94-D3B1-4959-A75E-921A3E8F5C71"}]}]}],"references":[{"url":"http://oliver.efri.hr/~crv/security/bugs/NT/buffer.html","source":"cve@mitre.org"},{"url":"http://www.tryc.on.ca/archives/bugtraq/1999_1/0612.html","source":"cve@mitre.org"},{"url":"http://oliver.efri.hr/~crv/security/bugs/NT/buffer.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.tryc.on.ca/archives/bugtraq/1999_1/0612.html","source":"af854a3a-2127-422b-91ae-364da2661108"}],"evaluatorSolution":"O'Reilly has corrected this issue in WebSite Professional 2.5, which is now available from:  http://website.oreilly.com"}},{"cve":{"id":"CVE-1999-0396","sourceIdentifier":"cve@mitre.org","published":"1999-02-17T05:00:00.000","lastModified":"2026-06-16T21:48:18.427","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A race condition between the select() and accept() calls in NetBSD TCP servers allows remote attackers to cause a denial of service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:N/I:N/A:P","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:2.0.4:*:*:*:*:*:*:*","matchCriteriaId":"36419DD6-0DB4-4BB6-A35F-D8FDB89402F1"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.4:*:*:*:*:*:*:*","matchCriteriaId":"FEBE290B-5EC6-4BBA-B645-294C150E417A"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0396","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0396","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1060","sourceIdentifier":"cve@mitre.org","published":"1999-02-17T05:00:00.000","lastModified":"2026-06-16T21:49:37.310","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Tetrix TetriNet daemon 1.13.16 allows remote attackers to cause a denial of service and possibly execute arbitrary commands by connecting to port 31457 from a host with a long DNS hostname."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:tetrix:tetrinet:1.13.16:*:*:*:*:*:*:*","matchCriteriaId":"8DD10D50-353E-434F-9796-992001ADB7A3"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=91937090211855&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/340","source":"cve@mitre.org","tags":["Exploit","Patch"]},{"url":"http://marc.info/?l=bugtraq&m=91937090211855&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/340","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch"]}]}},{"cve":{"id":"CVE-1999-1405","sourceIdentifier":"cve@mitre.org","published":"1999-02-17T05:00:00.000","lastModified":"2026-06-16T21:50:22.220","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"snap command in AIX before 4.3.2 creates the /tmp/ibmsupt directory with world-readable permissions and does not remove or clear the directory when snap -a is executed, which could allow local users to access the shadowed password file by creating /tmp/ibmsupt/general/passwd before root runs snap -a."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:3.2.5:*:*:*:*:*:*:*","matchCriteriaId":"D3C00FC9-AD97-4226-A0EA-7DB14AA592DE"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1:*:*:*:*:*:*:*","matchCriteriaId":"FBF25306-E7C2-4F9A-A809-4779A6C0A079"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1.2:*:*:*:*:*:*:*","matchCriteriaId":"FB038A89-1CA6-4313-B7CE-56C894945FFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1.3:*:*:*:*:*:*:*","matchCriteriaId":"2B3BC86F-5718-4232-BFFF-6244A7C09B8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1.4:*:*:*:*:*:*:*","matchCriteriaId":"E6118CC1-6E51-4E1B-8F58-43B337515222"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1.5:*:*:*:*:*:*:*","matchCriteriaId":"F3D3B348-270F-4209-B31A-2B40F5E4A601"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.2:*:*:*:*:*:*:*","matchCriteriaId":"05F20EC2-ADE6-4F96-A2E7-1DCCA819D657"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.2.1:*:*:*:*:*:*:*","matchCriteriaId":"91D7C561-4D23-430B-A7D8-137E52B08FF5"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=91936783009385&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=91954824614013&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/375","source":"cve@mitre.org","tags":["Exploit"]},{"url":"http://marc.info/?l=bugtraq&m=91936783009385&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=91954824614013&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/375","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]}],"evaluatorSolution":"Fixed in AIX 4.3 and 4.3.2\r\nAIX 4.3.x APAR: IX88263\r\nAIX 4.2.x APAR: IX88261"}},{"cve":{"id":"CVE-1999-0405","sourceIdentifier":"cve@mitre.org","published":"1999-02-18T05:00:00.000","lastModified":"2026-06-16T21:48:19.623","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A buffer overflow in lsof allows local users to obtain root privilege."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.0:*:*:*:*:*:*:*","matchCriteriaId":"203BDD63-2FA5-42FD-A9CD-6BDBB41A63C4"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.0.5:*:*:*:*:*:*:*","matchCriteriaId":"224CAC5B-96B0-4015-8106-63B486F37053"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.0:*:*:*:*:*:*:*","matchCriteriaId":"F1F098C1-D09E-49B4-9B51-E84B6C4EA6CD"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.0.5:*:*:*:*:*:*:*","matchCriteriaId":"34797660-41F5-4358-B70F-2A40DE48F182"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.1.0:*:*:*:*:*:*:*","matchCriteriaId":"27C9E23D-AB82-4AE1-873E-C5493BB96AA1"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.1.5:*:*:*:*:*:*:*","matchCriteriaId":"4054D69F-596F-4EB4-BE9A-E2478343F55A"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.1.6:*:*:*:*:*:*:*","matchCriteriaId":"CA26ABBE-9973-45FA-9E9B-82170B751219"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.1.7.1:*:*:*:*:*:*:*","matchCriteriaId":"BF8F9B2F-E898-4F87-A245-32A41748587B"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2.2:*:*:*:*:*:*:*","matchCriteriaId":"EBDDEC3F-52EB-4E1E-84C4-B472600059EC"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2.3:*:*:*:*:*:*:*","matchCriteriaId":"B58E02AE-38B4-466E-BF73-2F0B80AF7BA5"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2.4:*:*:*:*:*:*:*","matchCriteriaId":"3928D5CF-6FC0-434C-8A80-ABDBF346C2C9"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2.5:*:*:*:*:*:*:*","matchCriteriaId":"314BA420-4C74-4060-8ACE-D7A7C041CF2B"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2.6:*:*:*:*:*:*:*","matchCriteriaId":"2EAD7613-A5B3-4621-B981-290C7C6B8BA0"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2.8:*:*:*:*:*:*:*","matchCriteriaId":"D1CA3337-9BEE-49C5-9EDE-8CDBE5580537"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.0:*:*:*:*:*:*:*","matchCriteriaId":"EE38C50A-81FE-412E-9717-3672FAE6A6F4"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.1:*:*:*:*:*:*:*","matchCriteriaId":"263F3734-7076-4EA8-B4C0-F37CFC4E979E"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.2:*:*:*:*:*:*:*","matchCriteriaId":"0419DD66-FF66-48BC-AD3B-F6AFD0551E36"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:i386:*:*:*:*:*","matchCriteriaId":"363AB7DB-A8BA-4D58-97C4-1DF1F0F43E07"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:4.2:*:*:*:*:*:*:*","matchCriteriaId":"451453AC-65FF-4E3B-9AC1-2DDB2E2182E4"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:4.3:*:*:*:*:*:*:*","matchCriteriaId":"7716120D-5110-42B0-A574-9AA2AC8D3C32"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:4.4:*:*:*:*:*:*:*","matchCriteriaId":"CB4C8426-CAF2-4366-94C0-1BA1C544FB6F"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:4.4.1:*:*:*:*:*:*:*","matchCriteriaId":"5CC7D746-B98B-4FAF-B816-57222759A344"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:5.0:*:*:*:*:*:*:*","matchCriteriaId":"830D48B8-D21D-4D31-99A1-20C231804DBE"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:5.1:*:*:*:*:*:*:*","matchCriteriaId":"5C0BBDD2-9FF9-4CB7-BCAF-D4AF15DC2C7C"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:5.2:*:*:*:*:*:*:*","matchCriteriaId":"D1C826AA-6E2F-4DAC-A7A2-9F47729B5DA5"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:5.3:*:*:*:*:*:*:*","matchCriteriaId":"BCC94EF9-5872-402F-B2FC-06331A924BB2"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"F163E145-09F7-4BE2-9B46-5B6713070BAB"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"124E1802-7984-45ED-8A92-393FC20662FD"}]}]}],"references":[{"url":"http://www.osvdb.org/3163","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/3163","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1495","sourceIdentifier":"cve@mitre.org","published":"1999-02-18T05:00:00.000","lastModified":"2026-06-16T21:50:33.817","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"xtvscreen in SuSE Linux 6.0 allows local users to overwrite arbitrary files via a symlink attack on the pic000.pnm file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"F163E145-09F7-4BE2-9B46-5B6713070BAB"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/12580","source":"cve@mitre.org","tags":["Exploit"]},{"url":"http://www.securityfocus.com/bid/325","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1792","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/12580","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]},{"url":"http://www.securityfocus.com/bid/325","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1792","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0367","sourceIdentifier":"cve@mitre.org","published":"1999-02-18T05:00:00.000","lastModified":"2026-06-16T21:51:34.143","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in eterm 0.8.8 in Debian GNU/Linux allows an attacker to gain root privileges."},{"lang":"es","value":"Vulnerabilidad en eterm 0.8.8 en Devial GNU/Linux permite a un atacante obtener privilegios de root."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:michael_jennings:eterm:0.8.8:*:*:*:*:*:*:*","matchCriteriaId":"CE5961CA-6A25-421C-9856-899A7E442149"}]}]}],"references":[{"url":"http://www.debian.org/security/1999/19990218","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.debian.org/security/1999/19990218","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-0406","sourceIdentifier":"cve@mitre.org","published":"1999-02-19T05:00:00.000","lastModified":"2026-06-16T21:48:19.760","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Digital Unix Networker program nsralist has a buffer overflow which allows local users to obtain root privilege."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:digital:unix:*:*:*:*:*:*:*:*","matchCriteriaId":"2FE14F36-1B9B-447F-BA87-D7780F33C975"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0406","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0406","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0412","sourceIdentifier":"cve@mitre.org","published":"1999-02-19T05:00:00.000","lastModified":"2026-06-16T21:48:20.530","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"In IIS and other web servers, an attacker can attack commands as SYSTEM if the server is running as SYSTEM and loading an ISAPI extension."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"547AB6E2-4E9F-4783-8BB4-0AE297A38C9C"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_services:2.0:*:*:*:*:*:*:*","matchCriteriaId":"E701AB0D-E335-47DF-A0CA-607D5C6E9255"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/501","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/501","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0460","sourceIdentifier":"cve@mitre.org","published":"1999-02-19T05:00:00.000","lastModified":"2026-06-16T21:48:26.563","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Linux autofs module through long directory names allows local users to perform a denial of service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.0:*:*:*:*:*:*:*","matchCriteriaId":"96A6EE7E-C79C-4B25-AFF0-C6638CB3C99A"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.1:*:*:*:*:*:*:*","matchCriteriaId":"5E4A2912-12AC-4DF1-8023-A0B7DBE9A866"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.3.0:*:*:*:*:*:*:*","matchCriteriaId":"BC74D465-3256-4D87-8F47-C4D7CEA6E2D4"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/312","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/312","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-0485","sourceIdentifier":"cve@mitre.org","published":"1999-02-19T05:00:00.000","lastModified":"2026-06-16T21:48:29.883","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Remote attackers can cause a system crash through ipintr() in ipq in OpenBSD."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:N/I:N/A:P","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.4:*:*:*:*:*:*:*","matchCriteriaId":"FEBE290B-5EC6-4BBA-B645-294C150E417A"}]}]}],"references":[{"url":"http://www.osvdb.org/7558","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/7558","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1101","sourceIdentifier":"cve@mitre.org","published":"1999-02-19T05:00:00.000","lastModified":"2026-06-16T21:49:43.450","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Kabsoftware Lydia utility uses weak encryption to store user passwords in the lydia.ini file, which allows local users to easily decrypt the passwords and gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:kab_software:lydia:*:*:*:*:*:*:*:*","versionEndIncluding":"3.2","matchCriteriaId":"8B027B36-D8C1-4093-8D41-C0B58CD05C39"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/12618","source":"cve@mitre.org","tags":["Exploit"]},{"url":"http://www.securityfocus.com/archive/1/12618","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]}]}},{"cve":{"id":"CVE-1999-1255","sourceIdentifier":"cve@mitre.org","published":"1999-02-19T05:00:00.000","lastModified":"2026-06-16T21:50:02.930","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Hyperseek allows remote attackers to modify the hyperseek configuration by directly calling the admin.cgi program with an edit_file action parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ccs_network:hyperseek_search_engine:*:*:*:*:*:*:*:*","versionEndIncluding":"2000","matchCriteriaId":"78378424-44A3-49DB-BDA8-F6AE1B6C028F"}]}]}],"references":[{"url":"http://www.rootshell.com/archive-j457nxiqi3gq59dv/199902/hyperseek.txt.html","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1914","source":"cve@mitre.org"},{"url":"http://www.rootshell.com/archive-j457nxiqi3gq59dv/199902/hyperseek.txt.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1914","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1372","sourceIdentifier":"cve@mitre.org","published":"1999-02-19T05:00:00.000","lastModified":"2026-06-16T21:50:17.973","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Triactive Remote Manager with Basic authentication enabled stores the username and password in cleartext in registry keys, which could allow local users to gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:triactive:remote_management:*:*:*:*:*:*:*:*","matchCriteriaId":"D2FE8FAC-7CE9-4965-8F3A-3F51AE963548"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=91966339502073&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=91966339502073&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1482","sourceIdentifier":"cve@mitre.org","published":"1999-02-19T05:00:00.000","lastModified":"2026-06-16T21:50:32.183","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"SVGAlib zgv 3.0-7 and earlier allows local users to gain root access via a privilege leak of the iopl(3) privileges to child processes."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:svgalib:zgv:*:*:*:*:*:*:*:*","versionEndIncluding":"3.0.7","matchCriteriaId":"143C891B-8B11-4FCF-8FC1-0FCA3BDEC20D"}]}]}],"references":[{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=1999-02-15&msg=Pine.LNX.3.96.990219175605.9622A-100000%40ferret.lmh.ox.ac.uk","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=1999-02-15&msg=Pine.LNX.3.96.990219175605.9622A-100000%40ferret.lmh.ox.ac.uk","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0376","sourceIdentifier":"cve@mitre.org","published":"1999-02-20T05:00:00.000","lastModified":"2026-06-16T21:48:15.863","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Local users in Windows NT can obtain administrator privileges by changing the KnownDLLs list to reference malicious programs."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:3.5.1:*:*:*:*:*:*:*","matchCriteriaId":"D0D4EAC2-A948-461F-B5DD-0AE73CF05D29"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp1:*:*:*:*:*:*","matchCriteriaId":"5BDCBCB8-DAA3-465F-ADDE-9143B8251989"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp2:*:*:*:*:*:*","matchCriteriaId":"B86E0671-ED68-4549-B3AC-FD8BD79B0860"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp3:*:*:*:*:*:*","matchCriteriaId":"BB76E7EC-C396-4537-9065-4E815DA7097C"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp4:*:*:*:*:*:*","matchCriteriaId":"4CD026E2-B073-40A6-AD4A-8C76B9169B01"}]}]}],"references":[{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-006","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-006","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1168","sourceIdentifier":"cve@mitre.org","published":"1999-02-20T05:00:00.000","lastModified":"2026-06-16T21:49:51.903","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"install.iss installation script for Internet Security Scanner (ISS) for Linux, version 5.3, allows local users to change the permissions of arbitrary files via a symlink attack on a temporary file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:iss:internet_security_scanner:5.3:*:linux:*:*:*:*:*","matchCriteriaId":"F960A59D-4D00-4AD0-85F1-6B457DAB547E"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/12640","source":"cve@mitre.org","tags":["Exploit"]},{"url":"http://www.securityfocus.com/archive/1/12640","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]}]}},{"cve":{"id":"CVE-1999-1049","sourceIdentifier":"cve@mitre.org","published":"1999-02-21T05:00:00.000","lastModified":"2026-06-16T21:49:35.950","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ARCserve NT agents use weak encryption (XOR) for passwords, which allows remote attackers to sniff the authentication request to port 6050 and decrypt the password."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:broadcom:arcserve_backup:*:*:*:*:*:*:*:*","versionEndIncluding":"6.5","matchCriteriaId":"06562367-E088-443A-B2DE-F75A71241E18"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=91972006211238&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=91972006211238&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0377","sourceIdentifier":"cve@mitre.org","published":"1999-02-22T05:00:00.000","lastModified":"2026-06-16T21:48:15.993","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Process table attack in Unix systems allows a remote attacker to perform a denial of service by filling a machine's process tables through multiple connections to network services."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:unix:unix:*:*:*:*:*:*:*:*","matchCriteriaId":"F7A7C398-5356-45D6-AA5C-53E63BC88DCA"}]}]}],"references":[{"url":"http://www.securitytracker.com/id/1033881","source":"cve@mitre.org"},{"url":"http://www.securitytracker.com/id/1033881","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0378","sourceIdentifier":"cve@mitre.org","published":"1999-02-22T05:00:00.000","lastModified":"2026-06-16T21:48:16.117","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"InterScan VirusWall for Solaris doesn't scan files for viruses when a single HTTP request includes two GET commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:trend_micro:interscan_viruswall:*:*:*:*:*:*:*:*","matchCriteriaId":"3F3D7981-9319-4EAE-B4CB-A12DB51C0412"}]}]}],"references":[{"url":"http://www.osvdb.org/6167","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/6167","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0379","sourceIdentifier":"cve@mitre.org","published":"1999-02-22T05:00:00.000","lastModified":"2026-06-16T21:48:16.247","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Taskpads allows remote web sites to execute commands on the visiting user's machine via certain methods that are marked as Safe for Scripting."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:backoffice_resource_kit:2.0:*:*:*:*:*:*:*","matchCriteriaId":"EEC012B1-DF28-4CC3-852B-99CADFEC8492"}]}]}],"references":[{"url":"http://www.osvdb.org/1019","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/498","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-007","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1019","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/498","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-007","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0441","sourceIdentifier":"cve@mitre.org","published":"1999-02-22T05:00:00.000","lastModified":"2026-06-16T21:48:24.220","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Remote attackers can perform a denial of service in WinGate machines using a buffer overflow in the Winsock Redirector Service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:qbik:wingate:3.0:*:*:*:*:*:*:*","matchCriteriaId":"4C7BC4C8-FB7B-4A88-B97B-984D9AA8EA1D"}]}]}],"references":[{"url":"http://www.eeye.com/html/Research/Advisories/AD02221999.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/509","source":"cve@mitre.org"},{"url":"http://www.eeye.com/html/Research/Advisories/AD02221999.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/509","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0484","sourceIdentifier":"cve@mitre.org","published":"1999-02-23T05:00:00.000","lastModified":"2026-06-16T21:48:29.763","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in OpenBSD ping."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:*:*:*:*:*:*:*:*","matchCriteriaId":"CA3CDD3C-DBA6-4BA2-967D-AD746822F3CF"}]}]}],"references":[{"url":"http://www.osvdb.org/6130","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/6130","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1247","sourceIdentifier":"cve@mitre.org","published":"1999-02-24T05:00:00.000","lastModified":"2026-06-16T21:50:01.920","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in HP Camera component of HP DCE/9000 in HP-UX 9.x allows attackers to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:9:*:*:*:*:*:*:*","matchCriteriaId":"5E54D276-792B-40D2-B39B-5050028DE988"}]}]}],"references":[{"url":"http://packetstormsecurity.org/advisories/hpalert/006","source":"cve@mitre.org","tags":["Patch"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2061","source":"cve@mitre.org"},{"url":"http://packetstormsecurity.org/advisories/hpalert/006","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2061","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0380","sourceIdentifier":"cve@mitre.org","published":"1999-02-25T05:00:00.000","lastModified":"2026-06-16T21:48:16.370","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"SLMail 3.1 and 3.2 allows local users to access any file in the NTFS file system when the Remote Administration Service (RAS) is enabled by setting a user's Finger File to point to the target file, then running finger on the user."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:seattle_lab_software:slmail:3.0.2421:*:*:*:*:*:*:*","matchCriteriaId":"B582E8B5-0BF7-48C6-B92A-C617D1B9F576"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=91996412724720&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=91999015212415&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=92110501504997&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/497","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5392","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=91996412724720&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=91999015212415&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=92110501504997&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/497","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5392","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0408","sourceIdentifier":"cve@mitre.org","published":"1999-02-25T05:00:00.000","lastModified":"2026-06-16T21:48:19.997","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Files created from interactive shell sessions in Cobalt RaQ microservers (e.g. .bash_history) are world readable, and thus are accessible from the web server."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sun:cobalt_raq:*:*:*:*:*:*:*:*","matchCriteriaId":"4F6F4069-9641-4D10-8C83-51141AFF221B"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/337","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/337","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0483","sourceIdentifier":"cve@mitre.org","published":"1999-02-25T05:00:00.000","lastModified":"2026-06-16T21:48:29.640","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"OpenBSD crash using nlink value in FFS and EXT2FS filesystems."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:*:*:*:*:*:*:*:*","matchCriteriaId":"CA3CDD3C-DBA6-4BA2-967D-AD746822F3CF"}]}]}],"references":[{"url":"http://www.osvdb.org/6129","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/6129","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0381","sourceIdentifier":"cve@mitre.org","published":"1999-02-26T05:00:00.000","lastModified":"2026-06-16T21:48:16.503","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"super 3.11.6 and other versions have a buffer overflow in the syslog utility which allows a local user to gain root access."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.0:*:*:*:*:*:*:*","matchCriteriaId":"203BDD63-2FA5-42FD-A9CD-6BDBB41A63C4"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.6.20.1:*:*:*:*:*:*:*","matchCriteriaId":"1E3313D5-52E8-49B3-B145-170D9A26DA43"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/342","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.3.96.990225011801.12757A-100000%40eleet","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/342","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.3.96.990225011801.12757A-100000%40eleet","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0221","sourceIdentifier":"cve@mitre.org","published":"1999-03-01T05:00:00.000","lastModified":"2026-06-16T21:47:56.547","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service of Ascend routers through port 150 (remote administration)."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:lucent:ascend_routers:*:*:*:*:*:*:*:*","matchCriteriaId":"549685E5-F9DE-48A0-BB41-EB4580FD8ECD"}]}]}],"references":[{"url":"https://www.cve.org/CVERecord?id=CVE-1999-0221","source":"cve@mitre.org"},{"url":"https://www.cve.org/CVERecord?id=CVE-1999-0221","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0222","sourceIdentifier":"cve@mitre.org","published":"1999-03-01T05:00:00.000","lastModified":"2026-06-16T21:47:56.680","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in Cisco IOS web server allows attackers to reboot the router using a long URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:router:*:*:*:*:*:*:*:*","matchCriteriaId":"EF6E96F8-E95E-4F3A-8CAF-936327BA3E54"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/60159","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/60159","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0223","sourceIdentifier":"cve@mitre.org","published":"1999-03-01T05:00:00.000","lastModified":"2026-06-16T21:47:56.797","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Solaris syslogd crashes when receiving a message from a host that doesn't have an inverse DNS entry."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.4:*:*:*:*:*:*:*","matchCriteriaId":"7AAC8954-74A8-4FE3-ABE7-57DA041D9D8F"}]}]}],"references":[{"url":"http://sunsolve.Sun.COM/pub-cgi/retrieve.pl?patchid=103291&collection=fpatches","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1878","source":"cve@mitre.org"},{"url":"http://sunsolve.Sun.COM/pub-cgi/retrieve.pl?patchid=103291&collection=fpatches","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1878","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0261","sourceIdentifier":"cve@mitre.org","published":"1999-03-01T05:00:00.000","lastModified":"2026-06-16T21:48:01.477","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Netmanager Chameleon SMTPd has several buffer overflows that cause a crash."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"references":[{"url":"http://www.insecure.org/sploits/netmanage.chameleon.overflows.html","source":"cve@mitre.org"},{"url":"http://www.insecure.org/sploits/netmanage.chameleon.overflows.html","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0386","sourceIdentifier":"cve@mitre.org","published":"1999-03-01T05:00:00.000","lastModified":"2026-06-16T21:48:17.143","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Personal Web Server and FrontPage Personal Web Server in some Windows systems allows a remote attacker to read files on the server by using a nonstandard URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:frontpage:*:*:*:*:*:*:*:*","matchCriteriaId":"0951E183-2BFE-4B19-9F06-107B5E22DBC5"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:personal_web_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"9E075F89-BC5D-48D8-8CA1-B56C2CAD50F6"}]}]}],"references":[{"url":"http://www.osvdb.org/111","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-010","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/111","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-010","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0413","sourceIdentifier":"cve@mitre.org","published":"1999-03-01T05:00:00.000","lastModified":"2026-06-16T21:48:20.670","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A buffer overflow in the SGI X server allows local users to gain root access through the X server font path."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:5.3:*:*:*:*:*:*:*","matchCriteriaId":"26144F94-63FD-4907-B548-09B68C2FC9B3"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.2:*:*:*:*:*:*:*","matchCriteriaId":"0ECE564D-B4BB-4C05-88CC-CDC3F8E4E366"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.3:*:*:*:*:*:*:*","matchCriteriaId":"B2D59247-56FA-46B4-BB51-2DAE71AFC145"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.4:*:*:*:*:*:*:*","matchCriteriaId":"15BE08F8-5F3F-45DB-BFE0-1F6F2F57A4D4"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5:*:*:*:*:*:*:*","matchCriteriaId":"C30D6962-3DBB-4DF8-A04F-8E47AFEDCF99"}]}]}],"references":[{"url":"ftp://patches.sgi.com/support/free/security/advisories/19990301-01-PX","source":"cve@mitre.org"},{"url":"ftp://patches.sgi.com/support/free/security/advisories/19990301-01-PX","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0414","sourceIdentifier":"cve@mitre.org","published":"1999-03-01T05:00:00.000","lastModified":"2026-06-16T21:48:20.800","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"In Linux before version 2.0.36, remote attackers can spoof a TCP connection and pass data to the application layer before fully establishing the connection."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.0.30:*:*:*:*:*:*:*","matchCriteriaId":"29AC849E-7D4E-4C00-8BD0-672F413A80B5"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.0.35:*:*:*:*:*:*:*","matchCriteriaId":"B03D22C9-94C6-4AC5-AAD0-15F06BCC5CA7"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.0.36:*:*:*:*:*:*:*","matchCriteriaId":"541B4ED8-E970-4C67-B5AF-7DE5B7F754D1"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.0.37:*:*:*:*:*:*:*","matchCriteriaId":"1E55F8A8-1ABD-4760-9074-353BBAEE005B"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0414","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0414","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0419","sourceIdentifier":"cve@mitre.org","published":"1999-03-01T05:00:00.000","lastModified":"2026-06-16T21:48:21.433","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"When the Microsoft SMTP service attempts to send a message to a server and receives a 4xx error code, it quickly and repeatedly attempts to redeliver the message, causing a denial of service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0419","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0419","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0426","sourceIdentifier":"cve@mitre.org","published":"1999-03-01T05:00:00.000","lastModified":"2026-06-16T21:48:22.267","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default permissions of /dev/kmem in Linux versions before 2.0.36 allows IP spoofing."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","baseScore":9.8,"baseSeverity":"CRITICAL","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":3.9,"impactScore":5.9}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-276"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"F163E145-09F7-4BE2-9B46-5B6713070BAB"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0426","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0426","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]}]}},{"cve":{"id":"CVE-1999-0429","sourceIdentifier":"cve@mitre.org","published":"1999-03-01T05:00:00.000","lastModified":"2026-06-16T21:48:22.620","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Lotus Notes 4.5 client may send a copy of encrypted mail in the clear across the network if the user does not set the \"Encrypt Saved Mail\" preference."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:lotus_notes:4.5:*:*:*:*:*:*:*","matchCriteriaId":"8376F4C1-44AE-42A8-A087-E3845FD2A0A8"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=92221437025743&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92241547418689&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92246997917866&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92249282302994&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92221437025743&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=92241547418689&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=92246997917866&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=92249282302994&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0430","sourceIdentifier":"cve@mitre.org","published":"1999-03-01T05:00:00.000","lastModified":"2026-06-16T21:48:22.743","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Cisco Catalyst LAN switches running Catalyst 5000 supervisor software allows remote attackers to perform a denial of service by forcing the supervisor module to reload."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:catalyst_12xx_supervisor_software:4.29:*:*:*:*:*:*:*","matchCriteriaId":"46FC1323-E34A-4263-8B7E-87A3A7BCAC14"},{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:catalyst_29xx_supervisor_software:1.0:*:*:*:*:*:*:*","matchCriteriaId":"CF25B831-1F07-4DFB-93AF-D08419D17A5C"},{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:catalyst_29xx_supervisor_software:2.1.5:*:*:*:*:*:*:*","matchCriteriaId":"176EBD41-3021-42D4-974F-6C80DEB2463E"},{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:catalyst_29xx_supervisor_software:2.1.501:*:*:*:*:*:*:*","matchCriteriaId":"C3BBD6C0-3377-4145-8136-645808680986"},{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:catalyst_29xx_supervisor_software:2.1.502:*:*:*:*:*:*:*","matchCriteriaId":"97D89F9B-F082-4C7D-80BF-A39DE234BBE4"},{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:catalyst_5xxx_supervisor_software:1.0:*:*:*:*:*:*:*","matchCriteriaId":"DCC1EA92-6A3B-46B4-8779-9B401693FF14"},{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:catalyst_5xxx_supervisor_software:2.1.5:*:*:*:*:*:*:*","matchCriteriaId":"7A734789-8584-4231-AF14-BCE70F2BB43C"},{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:catalyst_5xxx_supervisor_software:2.1.501:*:*:*:*:*:*:*","matchCriteriaId":"41A72040-25D5-4AE3-BC44-BDF9B380E8E6"},{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:catalyst_5xxx_supervisor_software:2.1.502:*:*:*:*:*:*:*","matchCriteriaId":"C333C250-9275-4B25-94C2-A00BA4EECD95"}]}]}],"references":[{"url":"http://www.osvdb.org/1103","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1103","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0431","sourceIdentifier":"cve@mitre.org","published":"1999-03-01T05:00:00.000","lastModified":"2026-06-16T21:48:22.873","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Linux 2.2.3 and earlier allow a remote attacker to perform an IP fragmentation attack, causing a denial of service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionEndIncluding":"2.2.3","matchCriteriaId":"B02C3FC5-70D5-4471-9B87-C23DE94D7C1D"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.1.89:*:*:*:*:*:*:*","matchCriteriaId":"15004105-9A55-4592-96D6-3FF539EC7513"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.2.0:*:*:*:*:*:*:*","matchCriteriaId":"146F7A77-A950-4CAD-BDA9-C239696F569D"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.2.10:*:*:*:*:*:*:*","matchCriteriaId":"AA3D3E03-0ABE-4325-AD67-BA8EA16B6DBE"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.2.12:*:*:*:*:*:*:*","matchCriteriaId":"0EEF4480-D50B-464C-AE39-A12455DBC99F"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.2.13:*:*:*:*:*:*:*","matchCriteriaId":"6BBFD0DB-0A18-4545-9B4B-697AAC11E9C5"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.2.14:*:*:*:*:*:*:*","matchCriteriaId":"15928E10-7D41-45B2-87D6-8AA10190A8EB"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.2.15:*:*:*:*:*:*:*","matchCriteriaId":"C18E13C4-F42D-4168-B25E-544E1549C46B"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.2.15:pre16:*:*:*:*:*:*","matchCriteriaId":"1C4B2ABB-0283-4532-9E29-B37BFF5FDFB7"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.2.15_pre20:*:*:*:*:*:*:*","matchCriteriaId":"C4DADA29-DCD3-44C4-9BDB-B881D6FCE3A3"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.2.16:*:*:*:*:*:*:*","matchCriteriaId":"F0DB9B7C-3608-44E3-AE47-D231D1F7B8EC"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.2.16:pre6:*:*:*:*:*:*","matchCriteriaId":"4BD794C6-11F5-4A2B-9A3C-E03069A1526B"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0431","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0431","source":"af854a3a-2127-422b-91ae-364da2661108"}],"evaluatorSolution":"This problem was fixed in Linux kernel 2.2.4 and later releases."}},{"cve":{"id":"CVE-1999-0432","sourceIdentifier":"cve@mitre.org","published":"1999-03-01T05:00:00.000","lastModified":"2026-06-16T21:48:23.010","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ftp on HP-UX 11.00 allows local users to gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:11.00:*:*:*:*:*:*:*","matchCriteriaId":"771931F7-9180-4EBD-8627-E1CF17D24647"}]}]}],"references":[{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9903-094","source":"cve@mitre.org"},{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9903-094","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0435","sourceIdentifier":"cve@mitre.org","published":"1999-03-01T05:00:00.000","lastModified":"2026-06-16T21:48:23.417","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"MC/ServiceGuard and MC/LockManager in HP-UX allows local users to gain privileges through SAM."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.00:*:*:*:*:*:*:*","matchCriteriaId":"3187435B-C052-4DBA-AA79-F8AC0287EE14"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.01:*:*:*:*:*:*:*","matchCriteriaId":"53BBFE9A-6846-4625-91AC-47AA0BC0933A"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.20:*:*:*:*:*:*:*","matchCriteriaId":"EDE44C49-172C-4899-8CC8-29AA99A7CD2F"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:11.00:*:*:*:*:*:*:*","matchCriteriaId":"771931F7-9180-4EBD-8627-E1CF17D24647"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0435","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0435","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0436","sourceIdentifier":"cve@mitre.org","published":"1999-03-01T05:00:00.000","lastModified":"2026-06-16T21:48:23.550","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Domain Enterprise Server Management System (DESMS) in HP-UX allows local users to gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:hp:desms:*:*:*:*:*:*:*:*","matchCriteriaId":"F565AAAE-5ACE-42D2-9DA6-281FE3F76DA5"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.20:*:*:*:*:*:*:*","matchCriteriaId":"EDE44C49-172C-4899-8CC8-29AA99A7CD2F"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:11.00:*:*:*:*:*:*:*","matchCriteriaId":"771931F7-9180-4EBD-8627-E1CF17D24647"}]}]}],"references":[{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9903-095","source":"cve@mitre.org"},{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9903-095","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0437","sourceIdentifier":"cve@mitre.org","published":"1999-03-01T05:00:00.000","lastModified":"2026-06-16T21:48:23.680","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Remote attackers can perform a denial of service in WebRamp systems by sending a malicious string to the HTTP port."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:ramp_networks:webramp:*:*:*:*:*:*:*:*","matchCriteriaId":"F73D838D-0F7C-4BED-9F48-B80FE5E66820"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0437","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0437","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0438","sourceIdentifier":"cve@mitre.org","published":"1999-03-01T05:00:00.000","lastModified":"2026-06-16T21:48:23.810","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Remote attackers can perform a denial of service in WebRamp systems by sending a malicious UDP packet to port 5353, changing its IP address."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:ramp_networks:webramp_200i:1.0:*:*:*:*:*:*:*","matchCriteriaId":"DC097E3D-FB10-469C-A303-D72D5E009FFE"},{"vulnerable":true,"criteria":"cpe:2.3:h:ramp_networks:webramp_m3:1.0:*:*:*:*:*:*:*","matchCriteriaId":"697F9986-CDD4-479F-A375-53FF40C2C419"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0438","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0438","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0440","sourceIdentifier":"cve@mitre.org","published":"1999-03-01T05:00:00.000","lastModified":"2026-06-16T21:48:24.073","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The byte code verifier component of the Java Virtual Machine (JVM) allows remote execution through malicious web pages."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.5:*:*:*:*:*:*:*","matchCriteriaId":"4E9A5461-B0F2-49DB-A69C-3D2D27709647"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:navigator:4.0:*:*:*:*:*:*:*","matchCriteriaId":"05CFEB93-B230-473E-A6D0-73CA0C48CB9B"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:navigator:4.01:*:*:*:*:*:*:*","matchCriteriaId":"60AA08F1-9932-404D-830E-E6D126FC732B"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:navigator:4.02:*:*:*:*:*:*:*","matchCriteriaId":"C2FBC98E-49CF-48F1-9206-DDE8166AA8E4"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:navigator:4.03:*:*:*:*:*:*:*","matchCriteriaId":"E57BB283-31F4-487A-87CA-A251BFC5133C"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:navigator:4.04:*:*:*:*:*:*:*","matchCriteriaId":"8B4D5F1E-DD1B-4CCE-B16D-05AB2DEBCB18"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:navigator:4.05:*:*:*:*:*:*:*","matchCriteriaId":"E20267FF-FCF8-42BF-9CF1-127FF856C6FC"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:navigator:4.5:*:*:*:*:*:*:*","matchCriteriaId":"F7EC6F62-37FF-46DD-997C-A4D77182BBEA"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:navigator:4.06:*:*:*:*:*:*:*","matchCriteriaId":"D5904FD1-9806-4C73-A4E8-98C1F8F078EF"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:navigator:4.07:*:*:*:*:*:*:*","matchCriteriaId":"431D7EED-1152-4245-92B9-023A4AC88EA8"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:navigator:4.08:*:*:*:*:*:*:*","matchCriteriaId":"04BBF8B2-8378-4CA3-B8D4-4ED5D7B8A674"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:navigator:4.61:*:*:*:*:*:*:*","matchCriteriaId":"0B3EFA3B-5DE7-40D0-960D-283491163E74"},{"vulnerable":true,"criteria":"cpe:2.3:a:sun:java:*:*:*:*:*:*:*:*","matchCriteriaId":"5DDA9F90-5D16-4E04-B285-D32C362279C6"}]}]}],"references":[{"url":"http://java.sun.com/pr/1999/03/pr990329-01.html","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92333596624452&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1939","source":"cve@mitre.org"},{"url":"http://java.sun.com/pr/1999/03/pr990329-01.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=92333596624452&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1939","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0476","sourceIdentifier":"cve@mitre.org","published":"1999-03-01T05:00:00.000","lastModified":"2026-06-16T21:48:28.750","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A weak encryption algorithm is used for passwords in SCO TermVision, allowing them to be easily decrypted by a local user."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sco:openserver:*:*:*:*:*:*:*:*","matchCriteriaId":"B5F14C63-9596-4675-B217-F22F8A18CD1B"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0476","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0476","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0479","sourceIdentifier":"cve@mitre.org","published":"1999-03-01T05:00:00.000","lastModified":"2026-06-16T21:48:29.133","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service Netscape Enterprise Server with VirtualVault on HP-UX VVOS systems."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:enterprise_server:3.6:*:*:*:*:*:*:*","matchCriteriaId":"3577B789-DBB6-413D-B964-B32FE3E8CD8B"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.24:*:*:*:*:*:*:*","matchCriteriaId":"4259A901-A1CF-44EE-80C4-2031D3FCADC3"}]}]}],"references":[{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9903-092","source":"cve@mitre.org"},{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9903-092","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1046","sourceIdentifier":"cve@mitre.org","published":"1999-03-01T05:00:00.000","lastModified":"2026-06-16T21:49:35.570","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in IMonitor in IMail 5.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long string to port 8181."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:imail:5.0:*:*:*:*:*:*:*","matchCriteriaId":"EFEFE5A5-6589-4316-9C9F-2F8109696158"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=92038879607336&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/504","source":"cve@mitre.org","tags":["Exploit"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1897","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92038879607336&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/504","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1897","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0371","sourceIdentifier":"cve@mitre.org","published":"1999-03-01T05:00:00.000","lastModified":"2026-06-16T21:51:34.640","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The libmediatool library used for the KDE mediatool allows local users to create arbitrary files via a symlink attack."},{"lang":"es","value":"La librería libmediatool usada para el mediatool de KDE permite a usuarios locales crear ficheros arbitrarios mediante un ataque de enlaces simbólicos (symlink attack)"}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:N/I:P/A:N","baseScore":1.2,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":1.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:kde:kde:1.1:*:*:*:*:*:*:*","matchCriteriaId":"55B38F8C-9451-441B-BCD8-E41C1A2231DD"},{"vulnerable":true,"criteria":"cpe:2.3:o:kde:kde:1.1.1:*:*:*:*:*:*:*","matchCriteriaId":"D04A4717-229D-4E20-8FD2-DC13757B0AC5"}]}]}],"references":[{"url":"ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-1999-005.0.txt","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1269","source":"cve@mitre.org"},{"url":"ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-1999-005.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1269","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1551","sourceIdentifier":"cve@mitre.org","published":"1999-03-02T05:00:00.000","lastModified":"2026-06-16T21:50:41.970","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Ipswitch IMail Service 5.0 allows an attacker to cause a denial of service (crash) and possibly execute arbitrary commands via a long URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:imail:5.0:*:*:*:*:*:*:*","matchCriteriaId":"EFEFE5A5-6589-4316-9C9F-2F8109696158"},{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:imail:6.0:*:*:*:*:*:*:*","matchCriteriaId":"9EADF489-0420-4C47-9F73-78114C2042F3"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=92038879607336&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/505","source":"cve@mitre.org","tags":["Exploit","Patch"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1898","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92038879607336&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/505","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1898","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0409","sourceIdentifier":"cve@mitre.org","published":"1999-03-04T05:00:00.000","lastModified":"2026-06-16T21:48:20.127","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in gnuplot in Linux version 3.5 allows local users to obtain root access."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:3.5:*:*:*:*:*:*:*","matchCriteriaId":"6542B24A-901D-4DAC-B2FF-A60FE4EA62F5"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:5.2:*:*:*:*:*:*:*","matchCriteriaId":"D1C826AA-6E2F-4DAC-A7A2-9F47729B5DA5"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/319","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/319","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1256","sourceIdentifier":"cve@mitre.org","published":"1999-03-04T05:00:00.000","lastModified":"2026-06-16T21:50:03.053","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Oracle Database Assistant 1.0 in Oracle 8.0.3 Enterprise Edition stores the database master password in plaintext in the spoolmain.log file when a new database is created, which allows local users to obtain the password from that file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:database_assistant:1.0:*:*:*:*:*:*:*","matchCriteriaId":"E405BD60-DB79-45B9-BA62-2DDB29B580B3"}]}]}],"references":[{"url":"http://marc.info/?l=ntbugtraq&m=92056752115116&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/12744","source":"cve@mitre.org","tags":["Exploit"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1902","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=92056752115116&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/12744","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1902","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0019","sourceIdentifier":"cve@mitre.org","published":"1999-03-04T05:00:00.000","lastModified":"2026-06-16T21:50:50.127","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IMail POP3 daemon uses weak encryption, which allows local users to read files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:imail:2006:*:*:*:*:*:*:*","matchCriteriaId":"81B286D0-4168-41FF-AC1F-4E65C3AD7DC0"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0019","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0019","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0410","sourceIdentifier":"cve@mitre.org","published":"1999-03-05T05:00:00.000","lastModified":"2026-06-16T21:48:20.253","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The cancel command in Solaris 2.6 (i386) has a buffer overflow that allows local users to obtain root access."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:-:*:*:*:*:*:*:*","matchCriteriaId":"369207B4-96FA-4324-9445-98FAE8ECF5DB"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/293","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/293","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0411","sourceIdentifier":"cve@mitre.org","published":"1999-03-07T05:00:00.000","lastModified":"2026-06-16T21:48:20.400","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Several startup scripts in SCO OpenServer Enterprise System v 5.0.4p, including S84rpcinit, S95nis, S85tcp, and S89nfs, are vulnerable to a symlink attack, allowing a local user to gain root access."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sco:openserver:3.0:*:*:*:*:*:*:*","matchCriteriaId":"7363FF35-7C67-40DC-AD38-74FD6264BF5A"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:openserver:5:*:*:*:*:*:*:*","matchCriteriaId":"4EDA6C83-76C9-44F1-94A2-1CBCC7DBBB00"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0411","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0411","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0418","sourceIdentifier":"cve@mitre.org","published":"1999-03-08T05:00:00.000","lastModified":"2026-06-16T21:48:21.327","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in SMTP applications such as Sendmail, when a remote attacker (e.g. spammer) uses many \"RCPT TO\" commands in the same connection."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:P","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=92100018214316&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92100018214316&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1254","sourceIdentifier":"cve@mitre.org","published":"1999-03-08T05:00:00.000","lastModified":"2026-06-16T21:50:02.813","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Windows 95, 98, and NT 4.0 allow remote attackers to cause a denial of service by spoofing ICMP redirect messages from a router, which causes Windows to change its routing tables."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_95:*:*:*:*:*:*:*:*","matchCriteriaId":"82F7322B-8022-4D0B-ADB3-D0F5B6F20309"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98:*:gold:*:*:*:*:*:*","matchCriteriaId":"2D3B703C-79B2-4FA2-9E12-713AB977A880"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:*:*:*:*:*:*:*:*","matchCriteriaId":"ED27882B-A02A-4D5F-9117-A47976C676E0"}]}]}],"references":[{"url":"http://marc.info/?l=ntbugtraq&m=92099515709467&w=2","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1947","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=92099515709467&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1947","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1371","sourceIdentifier":"cve@mitre.org","published":"1999-03-08T05:00:00.000","lastModified":"2026-06-16T21:50:17.847","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in /usr/bin/write in Solaris 2.6 and 7 allows local users to gain privileges via a long string in the terminal name argument."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:-:*:*:*:*:*:*:*","matchCriteriaId":"369207B4-96FA-4324-9445-98FAE8ECF5DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5.1:*:*:*:*:*:*:*","matchCriteriaId":"39F847DB-65A9-47DA-BCFA-A179E5E2301A"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=92100752221493&w=2","source":"cve@mitre.org"},{"url":"http://www.securiteam.com/exploits/5ZP0O1P35O.html","source":"cve@mitre.org","tags":["Exploit"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7546","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92100752221493&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securiteam.com/exploits/5ZP0O1P35O.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7546","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1567","sourceIdentifier":"cve@mitre.org","published":"1999-03-08T05:00:00.000","lastModified":"2026-06-16T21:50:43.967","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Seapine Software TestTrack server allows a remote attacker to cause a denial of service (high CPU) via (1) TestTrackWeb.exe and (2) ttcgi.exe by connecting to port 99 and disconnecting without sending any data."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:seapine_software:testtrack:*:*:*:*:*:*:*:*","matchCriteriaId":"DEF95D4B-F5F1-4655-A617-3071E01904FC"}]}]}],"references":[{"url":"http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind9903&L=NTBUGTRAQ&P=R1215","source":"cve@mitre.org"},{"url":"http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind9906&L=NTBUGTRAQ&P=R1680","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1948","source":"cve@mitre.org"},{"url":"http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind9903&L=NTBUGTRAQ&P=R1215","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind9906&L=NTBUGTRAQ&P=R1680","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1948","source":"af854a3a-2127-422b-91ae-364da2661108"}],"vendorComments":[{"organization":"Seapine Software","comment":"This issue was originally reported on 3/8/1999 and Seapine fixed the issue on 3/23/1999. This fix became available with the release of TestTrack Workgroup 1.8.  We would also like to note that the issue existed in the older TestTrack Workgroup product, which was discontinued in 2002.  This problem never existed in the TestTrack Pro product.","lastModified":"2010-07-22T00:00:00"}]}},{"cve":{"id":"CVE-1999-0417","sourceIdentifier":"cve@mitre.org","published":"1999-03-09T05:00:00.000","lastModified":"2026-06-16T21:48:21.200","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"64 bit Solaris 7 procfs allows local users to perform a denial of service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"http://www.osvdb.org/1001","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/448","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1001","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/448","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0415","sourceIdentifier":"cve@mitre.org","published":"1999-03-11T05:00:00.000","lastModified":"2026-06-16T21:48:20.933","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The HTTP server in Cisco 7xx series routers 3.2 through 4.2 is enabled by default, which allows remote attackers to change the router's configuration."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:cisco_7xx_routers:*:*:*:*:*:*:*:*","versionEndIncluding":"4.2","matchCriteriaId":"88BA0771-C31C-45E4-8163-4D6F87F703D2"},{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:cisco_7xx_routers:3.2:*:*:*:*:*:*:*","matchCriteriaId":"08135D2D-7873-4C56-80D7-D43FD1850936"}]}]}],"references":[{"url":"http://ciac.llnl.gov/ciac/bulletins/j-034.shtml","source":"cve@mitre.org"},{"url":"http://www.cisco.com/warp/public/770/7xxconn-pub.shtml","source":"cve@mitre.org"},{"url":"http://ciac.llnl.gov/ciac/bulletins/j-034.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.cisco.com/warp/public/770/7xxconn-pub.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0416","sourceIdentifier":"cve@mitre.org","published":"1999-03-11T05:00:00.000","lastModified":"2026-06-16T21:48:21.073","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in Cisco 7xx series routers allows a remote attacker to cause a system reload via a TCP connection to the router's TELNET port."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:cisco_7xx_routers:*:*:*:*:*:*:*:*","matchCriteriaId":"A4EC01F9-0690-486A-AE1A-46EC8226CE0F"}]}]}],"references":[{"url":"http://ciac.llnl.gov/ciac/bulletins/j-034.shtml","source":"cve@mitre.org"},{"url":"http://www.cisco.com/warp/public/770/7xxconn-pub.shtml","source":"cve@mitre.org"},{"url":"http://ciac.llnl.gov/ciac/bulletins/j-034.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.cisco.com/warp/public/770/7xxconn-pub.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1526","sourceIdentifier":"cve@mitre.org","published":"1999-03-11T05:00:00.000","lastModified":"2026-06-16T21:50:37.780","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Auto-update feature of Macromedia Shockwave 7 transmits a user's password and hard disk information back to Macromedia."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:macromedia:shockwave_flash_plugin:7.0:*:*:*:*:*:*:*","matchCriteriaId":"4E1EDE88-8AF2-4E33-9E9D-526C9D75FC3B"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/12842","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1931","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/12842","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1931","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0382","sourceIdentifier":"cve@mitre.org","published":"1999-03-12T05:00:00.000","lastModified":"2026-06-16T21:48:16.647","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The screen saver in Windows NT does not verify that its security context has been changed properly, allowing attackers to run programs with elevated privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:3.5.1:sp1:*:*:*:*:*:*","matchCriteriaId":"EF8BECF6-3C33-4D8C-B54E-A0D2F3295E81"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:3.5.1:sp2:*:*:*:*:*:*","matchCriteriaId":"828B4519-24D8-45A7-8448-D5FF6C83A2C3"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:3.5.1:sp3:*:*:*:*:*:*","matchCriteriaId":"F495AF7A-CC31-4045-BACC-902950C80ABF"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:3.5.1:sp4:*:*:*:*:*:*","matchCriteriaId":"68DFA54C-3DB9-4A94-A446-CF28671FE4F6"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:3.5.1:sp5:*:*:*:*:*:*","matchCriteriaId":"55A2AC4C-6B85-4B60-BFE1-C9588C5973B0"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp1:*:*:*:*:*:*","matchCriteriaId":"5BDCBCB8-DAA3-465F-ADDE-9143B8251989"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp2:*:*:*:*:*:*","matchCriteriaId":"B86E0671-ED68-4549-B3AC-FD8BD79B0860"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp3:*:*:*:*:*:*","matchCriteriaId":"BB76E7EC-C396-4537-9065-4E815DA7097C"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp4:*:*:*:*:*:*","matchCriteriaId":"4CD026E2-B073-40A6-AD4A-8C76B9169B01"}]}]}],"references":[{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-008","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-008","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0420","sourceIdentifier":"cve@mitre.org","published":"1999-03-17T05:00:00.000","lastModified":"2026-06-16T21:48:21.550","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"umapfs allows local users to gain root privileges by changing their uid through a malicious mount_umap program."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netbsd:umapfs:*:*:*:*:*:*:*:*","matchCriteriaId":"FD5FA59F-5682-4845-AEB8-CCE485FE1BDD"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0420","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0420","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0421","sourceIdentifier":"cve@mitre.org","published":"1999-03-17T05:00:00.000","lastModified":"2026-06-16T21:48:21.673","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"During a reboot after an installation of Linux Slackware 3.6, a remote attacker can obtain root access by logging in to the root account without a password."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:slackware:slackware_linux:3.6:*:*:*:*:*:*:*","matchCriteriaId":"CE0BBA4F-C61A-4A8E-A7E2-CE0DF76DF592"}]}]}],"references":[{"url":"http://www.osvdb.org/981","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/338","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/981","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/338","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-0422","sourceIdentifier":"cve@mitre.org","published":"1999-03-17T05:00:00.000","lastModified":"2026-06-16T21:48:21.797","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"In some cases, NetBSD 1.3.3 mount allows local users to execute programs in some file systems that have the \"noexec\" flag set."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.3.3:*:*:*:*:*:*:*","matchCriteriaId":"2A8F8DE7-7A84-4350-A6D8-FCCB561D63B2"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0422","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0422","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0462","sourceIdentifier":"cve@mitre.org","published":"1999-03-17T05:00:00.000","lastModified":"2026-06-16T21:48:26.813","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"suidperl in Linux Perl does not check the nosuid mount option on file systems, allowing local users to gain root access by placing a setuid script in a mountable file system, e.g. a CD-ROM or floppy disk."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:5.3:*:*:*:*:*:*:*","matchCriteriaId":"BCC94EF9-5872-402F-B2FC-06331A924BB2"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/339","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/339","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-0424","sourceIdentifier":"cve@mitre.org","published":"1999-03-18T05:00:00.000","lastModified":"2026-06-16T21:48:22.030","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"talkback in Netscape 4.5 allows a local user to overwrite arbitrary files of another user whose Netscape crashes."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.5:*:*:*:*:*:*:*","matchCriteriaId":"4E9A5461-B0F2-49DB-A69C-3D2D27709647"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0424","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0424","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0425","sourceIdentifier":"cve@mitre.org","published":"1999-03-18T05:00:00.000","lastModified":"2026-06-16T21:48:22.143","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"talkback in Netscape 4.5 allows a local user to kill an arbitrary process of another user whose Netscape crashes."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:P","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.5:*:*:*:*:*:*:*","matchCriteriaId":"4E9A5461-B0F2-49DB-A69C-3D2D27709647"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0425","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0425","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0433","sourceIdentifier":"cve@mitre.org","published":"1999-03-21T05:00:00.000","lastModified":"2026-06-16T21:48:23.133","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"XFree86 startx command is vulnerable to a symlink attack, allowing local users to create files in restricted directories, possibly allowing them to gain privileges or cause a denial of service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:xfree86_project:x11r6:3.3.3:*:*:*:*:*:*:*","matchCriteriaId":"C104B02C-3F3B-4DB4-8A1D-65A7DAA380EB"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.3.2:*:*:*:*:*:*:*","matchCriteriaId":"2D3C937A-E9D8-474A-ABEB-A927EF7CC5B0"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.3.3:*:*:*:*:*:*:*","matchCriteriaId":"2A8F8DE7-7A84-4350-A6D8-FCCB561D63B2"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.1:*:*:*:*:*:*:*","matchCriteriaId":"4EF44364-0F57-4B74-81B0-501EA6B58501"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:i386:*:*:*:*:*","matchCriteriaId":"363AB7DB-A8BA-4D58-97C4-1DF1F0F43E07"},{"vulnerable":true,"criteria":"cpe:2.3:o:slackware:slackware_linux:3.3:*:*:*:*:*:*:*","matchCriteriaId":"06F2131E-F9F2-4E65-B95C-B52DB25C69F5"},{"vulnerable":true,"criteria":"cpe:2.3:o:slackware:slackware_linux:3.4:*:*:*:*:*:*:*","matchCriteriaId":"E6732144-10D4-4114-A7DA-32157EE3EF38"},{"vulnerable":true,"criteria":"cpe:2.3:o:slackware:slackware_linux:3.5:*:*:*:*:*:*:*","matchCriteriaId":"125918E7-53BB-407A-8D95-5D95CDF39A88"},{"vulnerable":true,"criteria":"cpe:2.3:o:slackware:slackware_linux:3.6:*:*:*:*:*:*:*","matchCriteriaId":"CE0BBA4F-C61A-4A8E-A7E2-CE0DF76DF592"},{"vulnerable":true,"criteria":"cpe:2.3:o:slackware:slackware_linux:4.0:*:*:*:*:*:*:*","matchCriteriaId":"CC3B1DD9-10B5-40FE-AE56-D068C41653DE"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:5.1:*:*:*:*:*:*:*","matchCriteriaId":"5C0BBDD2-9FF9-4CB7-BCAF-D4AF15DC2C7C"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:5.2:*:*:*:*:*:*:*","matchCriteriaId":"D1C826AA-6E2F-4DAC-A7A2-9F47729B5DA5"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"F163E145-09F7-4BE2-9B46-5B6713070BAB"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"124E1802-7984-45ED-8A92-393FC20662FD"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0433","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0433","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0482","sourceIdentifier":"cve@mitre.org","published":"1999-03-21T05:00:00.000","lastModified":"2026-06-16T21:48:29.517","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"OpenBSD kernel crash through TSS handling, as caused by the crashme program."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:*:*:*:*:*:*:*:*","matchCriteriaId":"CA3CDD3C-DBA6-4BA2-967D-AD746822F3CF"}]}]}],"references":[{"url":"http://www.osvdb.org/7557","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/7557","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0428","sourceIdentifier":"cve@mitre.org","published":"1999-03-22T05:00:00.000","lastModified":"2026-06-16T21:48:22.500","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"OpenSSL and SSLeay allow remote attackers to reuse SSL sessions and bypass access controls."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-384"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:openssl:openssl:*:*:*:*:*:*:*:*","versionEndExcluding":"0.9.2b","matchCriteriaId":"E717640E-3476-48AC-8674-7E8F080C7EB8"}]}]}],"references":[{"url":"http://www.osvdb.org/3936","source":"cve@mitre.org","tags":["Broken Link"]},{"url":"http://www.osvdb.org/3936","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"]}]}},{"cve":{"id":"CVE-1999-0481","sourceIdentifier":"cve@mitre.org","published":"1999-03-22T05:00:00.000","lastModified":"2026-06-16T21:48:29.393","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in \"poll\" in OpenBSD."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.4:*:*:*:*:*:*:*","matchCriteriaId":"FEBE290B-5EC6-4BBA-B645-294C150E417A"}]}]}],"references":[{"url":"http://www.osvdb.org/7556","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/7556","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1370","sourceIdentifier":"cve@mitre.org","published":"1999-03-23T05:00:00.000","lastModified":"2026-06-16T21:50:17.730","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The setup wizard (ie5setup.exe) for Internet Explorer 5.0 disables (1) the screen saver, which could leave the system open to users with physical access if a failure occurs during an unattended installation, and (2) the Task Scheduler Service, which might prevent the scheduled execution of security-critical programs."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"}]}]}],"references":[{"url":"http://marc.info/?l=ntbugtraq&m=92220197414799&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=92220197414799&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1397","sourceIdentifier":"cve@mitre.org","published":"1999-03-23T05:00:00.000","lastModified":"2026-06-16T21:50:21.197","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Index Server 2.0 on IIS 4.0 stores physical path information in the ContentIndex\\Catalogs subkey of the AllowedPaths registry key, whose permissions allows local and remote users to obtain the physical paths of directories that are being indexed."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:index_server:2.0:*:*:*:*:*:*:*","matchCriteriaId":"D56759FD-DE03-4E90-8688-B6A49AA24F25"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=92242671024118&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=92223293409756&w=2","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/7559.php","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/476","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92242671024118&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=92223293409756&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.iss.net/security_center/static/7559.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/476","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0153","sourceIdentifier":"cve@mitre.org","published":"1999-03-26T05:00:00.000","lastModified":"2026-06-16T21:51:06.647","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"FrontPage Personal Web Server (PWS) allows remote attackers to read files via a .... (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:frontpage:*:*:*:*:*:*:*:*","matchCriteriaId":"0951E183-2BFE-4B19-9F06-107B5E22DBC5"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:personal_web_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"9E075F89-BC5D-48D8-8CA1-B56C2CAD50F6"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/989","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-02-15&msg=000801bf780a%249ad4b2e0%240100007f%40localhost","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/989","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-02-15&msg=000801bf780a%249ad4b2e0%240100007f%40localhost","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0434","sourceIdentifier":"cve@mitre.org","published":"1999-03-30T05:00:00.000","lastModified":"2026-06-16T21:48:23.283","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"XFree86 xfs command is vulnerable to a symlink attack, allowing local users to create files in restricted directories, possibly allowing them to gain privileges or cause a denial of service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux:1.2:*:*:*:*:*:*:*","matchCriteriaId":"A5C77FA7-C977-4223-B6AC-91B82C45129C"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.0:*:*:*:*:*:*:*","matchCriteriaId":"203BDD63-2FA5-42FD-A9CD-6BDBB41A63C4"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.0:r5:*:*:*:*:*:*","matchCriteriaId":"D3067DBB-FBA1-48E9-9EC8-5A8D74B9F2D1"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.1:*:*:*:*:*:*:*","matchCriteriaId":"3C67BDA1-9451-4026-AC6D-E912C882A757"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.3.3:*:*:*:*:*:*:*","matchCriteriaId":"2A8F8DE7-7A84-4350-A6D8-FCCB561D63B2"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.1:*:*:*:*:*:*:*","matchCriteriaId":"4EF44364-0F57-4B74-81B0-501EA6B58501"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:5.3:*:*:*:*:*:*:*","matchCriteriaId":"BCC94EF9-5872-402F-B2FC-06331A924BB2"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/359","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/359","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1559","sourceIdentifier":"cve@mitre.org","published":"1999-03-31T05:00:00.000","lastModified":"2026-06-16T21:50:42.983","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Xylan OmniSwitch before 3.2.6 allows remote attackers to bypass the login prompt via a CTRL-D (control d) character, which locks other users out of the switch because it only supports one session at a time."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:alcatel:omniswitch:*:*:*:*:*:*:*:*","versionEndIncluding":"3.2.4","matchCriteriaId":"E4EF8121-C699-4F9C-A320-C13C444B2730"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=92299263017061&w=2","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2064","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92299263017061&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2064","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0443","sourceIdentifier":"cve@mitre.org","published":"1999-04-01T05:00:00.000","lastModified":"2026-06-16T21:48:24.467","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Patrol management software allows a remote attacker to conduct a replay attack to steal the administrator password."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:bmc:patrol_agent:3.2.3:*:*:*:*:*:*:*","matchCriteriaId":"6C07DD3D-C806-4218-BBC8-B859940D9330"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/13204","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/13204","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0445","sourceIdentifier":"cve@mitre.org","published":"1999-04-01T05:00:00.000","lastModified":"2026-06-16T21:48:24.720","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"In Cisco routers under some versions of IOS 12.0 running NAT, some packets may not be filtered by input access list filters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0:*:*:*:*:*:*:*","matchCriteriaId":"8F86F790-6247-42F2-9487-3D60A2842F52"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(1\\)w:*:*:*:*:*:*:*","matchCriteriaId":"53D87AC5-0F63-4AE8-AC05-FCEC98D18BDC"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(1\\)xa3:*:*:*:*:*:*:*","matchCriteriaId":"AE210B04-7ECD-419C-9258-0F619A353A8A"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(1\\)xb:*:*:*:*:*:*:*","matchCriteriaId":"3B467741-B277-4128-9804-E13ED23FD310"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(1\\)xe:*:*:*:*:*:*:*","matchCriteriaId":"5E7EE856-9CE7-49FD-8ADC-05C580CD54A7"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(2\\)xc:*:*:*:*:*:*:*","matchCriteriaId":"5145C737-2D5E-4BD4-BA9F-66ED2887A4DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(2\\)xd:*:*:*:*:*:*:*","matchCriteriaId":"C48466C4-5A1E-4C71-8822-32D387B36B8B"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(2\\)xf:*:*:*:*:*:*:*","matchCriteriaId":"08E23131-D207-4D98-96D5-2B71FF792604"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(2\\)xg:*:*:*:*:*:*:*","matchCriteriaId":"1BFB5A8C-BF1B-4111-9E6A-F8D8FE1476AA"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0db:*:*:*:*:*:*:*","matchCriteriaId":"4F7CF26C-AEAA-42D7-8136-56E77E73DCB2"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0s:*:*:*:*:*:*:*","matchCriteriaId":"2C398460-3F38-4AA7-A4B1-FD8A01588DB5"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0t:*:*:*:*:*:*:*","matchCriteriaId":"CA7F94E8-86FC-456B-A7BB-57953F67F754"}]}]}],"references":[{"url":"http://www.osvdb.org/1104","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1104","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0447","sourceIdentifier":"cve@mitre.org","published":"1999-04-01T05:00:00.000","lastModified":"2026-06-16T21:48:24.963","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Local users can gain privileges using the debug utility in the MPE/iX operating system."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:mpe_ix:*:*:*:*:*:*:*:*","matchCriteriaId":"4C767768-3F0A-4E14-A2DF-0967A1A5BBE6"}]}]}],"references":[{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBMP9904-006","source":"cve@mitre.org"},{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBMP9904-006","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0467","sourceIdentifier":"cve@mitre.org","published":"1999-04-01T05:00:00.000","lastModified":"2026-06-16T21:48:27.433","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Webcom CGI Guestbook programs wguest.exe and rguest.exe allow a remote attacker to read arbitrary files using the \"template\" parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:webcom:cgi_guestbook:*:*:*:*:*:*:*:*","matchCriteriaId":"A1E39DAD-2870-4BB8-A146-061F95AC2D0B"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0467","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0467","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0469","sourceIdentifier":"cve@mitre.org","published":"1999-04-01T05:00:00.000","lastModified":"2026-06-16T21:48:27.857","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internet Explorer 5.0 allows window spoofing, allowing a remote attacker to spoof a legitimate web site and capture information from the client."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0469","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0469","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0480","sourceIdentifier":"cve@mitre.org","published":"1999-04-01T05:00:00.000","lastModified":"2026-06-16T21:48:29.260","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Local attackers can conduct a denial of service in Midnight Commander 4.x with a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:midnight_commander:midnight_commander:4:*:*:*:*:*:*:*","matchCriteriaId":"9BBD7E36-FFE4-46FC-89DE-CD7B293A9676"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0480","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0480","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0605","sourceIdentifier":"cve@mitre.org","published":"1999-04-01T05:00:00.000","lastModified":"2026-06-16T21:48:43.337","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"An incorrect configuration of the Order Form 1.0 shopping cart  CGI program could disclose private information."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-200"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:austin_contract_computing:merchant_order_form:1.0:*:*:*:*:*:*:*","matchCriteriaId":"8D202FCD-86B6-413D-8C81-ADC9FAC9A4FB"},{"vulnerable":true,"criteria":"cpe:2.3:a:austin_contract_computing:merchant_order_form:1.2:*:*:*:*:*:*:*","matchCriteriaId":"A686C8B5-4155-4406-880E-3FC6CCDA9620"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=92462991805485&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92462991805485&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0606","sourceIdentifier":"cve@mitre.org","published":"1999-04-01T05:00:00.000","lastModified":"2026-06-16T21:48:43.457","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"An incorrect configuration of the EZMall 2000 shopping cart  CGI program \"mall2000.cgi\" could disclose private information."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-200"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:seaside_enterprises:ezmall:2000:*:*:*:*:*:*:*","matchCriteriaId":"22F8CC0D-AF30-49FB-9C89-6C54B0A725D2"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=92462991805485&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92462991805485&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0608","sourceIdentifier":"cve@mitre.org","published":"1999-04-01T05:00:00.000","lastModified":"2026-06-16T21:48:43.690","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"An incorrect configuration of the PDG Shopping Cart CGI program \"shopper.cgi\" could disclose private information."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:pdgsoft:pdg_shopping_cart:1.5:*:*:*:*:*:*:*","matchCriteriaId":"90887F5A-23E7-4A0B-9E5A-811878D09A82"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=92462991805485&w=2","source":"cve@mitre.org"},{"url":"http://www.pdgsoft.com/Security/security.html.","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3857","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92462991805485&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.pdgsoft.com/Security/security.html.","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3857","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0609","sourceIdentifier":"cve@mitre.org","published":"1999-04-01T05:00:00.000","lastModified":"2026-06-16T21:48:43.817","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"An incorrect configuration of the SoftCart CGI program \"SoftCart.exe\" could disclose private information."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mercantec:softcart:*:*:*:*:*:*:*:*","matchCriteriaId":"BA1BA08E-010F-4FA3-8986-F89ECE098697"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=92462991805485&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92462991805485&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0610","sourceIdentifier":"cve@mitre.org","published":"1999-04-01T05:00:00.000","lastModified":"2026-06-16T21:48:43.933","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"An incorrect configuration of the Webcart CGI program could disclose private information."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mountain_network_systems:webcart:*:*:*:*:*:*:*:*","matchCriteriaId":"4A6C61C6-FD77-4B4B-BF10-0ED456C0580F"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=92462991805485&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92462991805485&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0921","sourceIdentifier":"cve@mitre.org","published":"1999-04-01T05:00:00.000","lastModified":"2026-06-16T21:49:20.013","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"BMC Patrol allows any remote attacker to flood its UDP port, causing a denial of service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:bmc:patrol_agent:3.2.5:*:*:*:*:*:*:*","matchCriteriaId":"7B1CDFC2-10EC-4955-B254-5A22F910EFE8"}]}]}],"references":[{"url":"http://www.iss.net/security_center/static/4291.php","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/13204","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1879","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/4291.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/13204","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1879","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0439","sourceIdentifier":"cve@mitre.org","published":"1999-04-05T04:00:00.000","lastModified":"2026-06-16T21:48:23.947","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in procmail before version 3.12 allows remote or local attackers to execute commands via expansions in the procmailrc configuration file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:procmail:procmail:*:*:*:*:*:*:*:*","versionEndIncluding":"3.12","matchCriteriaId":"7FE4462E-5A4D-4DD3-A3B3-2C77EFA56A3E"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux:*:*:*:*:*:*:*:*","matchCriteriaId":"4EC3F7E5-5D49-471B-A705-ADD2642E5B46"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0439","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0439","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0474","sourceIdentifier":"cve@mitre.org","published":"1999-04-05T04:00:00.000","lastModified":"2026-06-16T21:48:28.487","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The ICQ Webserver allows remote attackers to use .. to access arbitrary files outside of the user's personal directory."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mirabilis:icq:99a_2.13build1700:*:*:*:*:*:*:*","matchCriteriaId":"CAB01C3F-E8A0-4A0E-A020-228E22A7BD43"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0474","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0474","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0475","sourceIdentifier":"cve@mitre.org","published":"1999-04-05T04:00:00.000","lastModified":"2026-06-16T21:48:28.627","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A race condition in how procmail handles .procmailrc files allows a local user to read arbitrary files available to the user who is running procmail."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:P/I:N/A:N","baseScore":1.2,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":1.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:procmail:procmail:*:*:*:*:*:*:*:*","matchCriteriaId":"49F40393-4833-4D41-9D16-99DFEDABCE17"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0475","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0475","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1245","sourceIdentifier":"cve@mitre.org","published":"1999-04-06T04:00:00.000","lastModified":"2026-06-16T21:50:01.670","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"vacm ucd-snmp SNMP server, version 3.52, does not properly disable access to the public community string, which could allow remote attackers to obtain sensitive information."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ucd-snmp:ucd-snmp:3.52:*:*:*:*:*:*:*","matchCriteriaId":"3D376CDE-B6B8-4F7B-A1D7-71DAB61CEA45"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2086","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2086","source":"af854a3a-2127-422b-91ae-364da2661108"}],"evaluatorSolution":"This vulnerability was fixed in version 3.6 of ucd-snmpd."}},{"cve":{"id":"CVE-1999-0472","sourceIdentifier":"cve@mitre.org","published":"1999-04-07T04:00:00.000","lastModified":"2026-06-16T21:48:28.237","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The SNMP default community name \"public\" is not properly removed in NetApps C630 Netcache, even if the administrator tries to disable it."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:snmp:snmp:*:*:*:*:*:*:*:*","matchCriteriaId":"9249561D-5224-41C5-A5B4-29F2F63ED163"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:network_appliance:netcache:*:*:*:*:*:*:*:*","matchCriteriaId":"EFDF1B67-E853-41EC-8BA8-5FD4D47F61CD"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0472","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0472","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://www.broadcom.com/support/fibre-channel-networking/security-advisories/brocade-security-advisory-2017-240","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://www.broadcom.com/support/fibre-channel-networking/security-advisories/brocade-security-advisory-2017-240/","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0473","sourceIdentifier":"cve@mitre.org","published":"1999-04-07T04:00:00.000","lastModified":"2026-06-16T21:48:28.367","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The rsync command before rsync 2.3.1 may inadvertently change the permissions of the client's working directory to the permissions of the directory being transferred."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:andrew_tridgell:rsync:*:*:*:*:*:*:*:*","versionEndIncluding":"2.3.1","matchCriteriaId":"E2804E6B-9C98-4B0D-BC5C-3B92BF347B53"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/145","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/145","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1196","sourceIdentifier":"cve@mitre.org","published":"1999-04-07T04:00:00.000","lastModified":"2026-06-16T21:49:55.377","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Hummingbird Exceed X version 5 allows remote attackers to cause a denial of service via malformed data to port 6000."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:hummingbird:exceed:5.0:*:*:*:*:*:*:*","matchCriteriaId":"CFE7E6AB-7DA4-47EA-A197-D20E37ED19B7"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/13451","source":"cve@mitre.org","tags":["Exploit"]},{"url":"http://www.securityfocus.com/bid/158","source":"cve@mitre.org","tags":["Exploit"]},{"url":"http://www.securityfocus.com/archive/1/13451","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]},{"url":"http://www.securityfocus.com/bid/158","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]}],"evaluatorSolution":"Upgrade to a non-vulnerable version of Exceed (Hummingbird Exceed 6.0.1 Hummingbird Exceed 6.0.2 Hummingbird Exceed 6.1)"}},{"cve":{"id":"CVE-1999-0287","sourceIdentifier":"cve@mitre.org","published":"1999-04-09T04:00:00.000","lastModified":"2026-06-16T21:48:04.593","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in the Wguest CGI program."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:webcom:cgi_guestbook:*:*:*:*:*:*:*:*","matchCriteriaId":"A1E39DAD-2870-4BB8-A146-061F95AC2D0B"}]}]}],"references":[{"url":"https://marc.info/?l=ntbugtraq&m=92368828704896&w=2","source":"cve@mitre.org"},{"url":"https://marc.info/?l=ntbugtraq&m=92368828704896&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0468","sourceIdentifier":"cve@mitre.org","published":"1999-04-09T04:00:00.000","lastModified":"2026-06-16T21:48:27.557","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internet Explorer 5.0 allows a remote server to read arbitrary files on the client's file system using the Microsoft Scriptlet Component."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N","baseScore":8.2,"baseSeverity":"HIGH","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"LOW","availabilityImpact":"NONE"},"exploitabilityScore":3.9,"impactScore":4.2}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:N/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}],"ssvcV203":[{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","ssvcData":{"timestamp":"2025-08-25T18:47:58.178455Z","id":"CVE-1999-0468","options":[{"exploitation":"none"},{"automatable":"no"},{"technicalImpact":"partial"}],"role":"CISA Coordinator","version":"2.0.3"}}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]},{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","type":"Secondary","description":[{"lang":"en","value":"CWE-200"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"}]}]}],"references":[{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-012","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-012","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0470","sourceIdentifier":"cve@mitre.org","published":"1999-04-09T04:00:00.000","lastModified":"2026-06-16T21:48:27.980","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A weak encryption algorithm is used for passwords in Novell Remote.NLM, allowing them to be easily decrypted."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:novell:netware:4.0:*:*:*:*:*:*:*","matchCriteriaId":"98DA9E1F-E489-4D63-9CCA-6C011E6B08C6"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/482","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/482","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0471","sourceIdentifier":"cve@mitre.org","published":"1999-04-09T04:00:00.000","lastModified":"2026-06-16T21:48:28.113","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The remote proxy server in Winroute allows a remote attacker to reconfigure the proxy without authentication through the \"cancel\" button."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:winroute:winroute:*:*:*:*:*:*:*:*","matchCriteriaId":"29A623FC-3A71-4B79-921F-2F19CBB31E37"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0471","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0471","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0801","sourceIdentifier":"cve@mitre.org","published":"1999-04-09T04:00:00.000","lastModified":"2026-06-16T21:49:05.163","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"BMC Patrol allows remote attackers to gain access to an agent by spoofing frames."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:bmc:patrol_agent:3.2.3:*:*:*:*:*:*:*","matchCriteriaId":"6C07DD3D-C806-4218-BBC8-B859940D9330"}]}]}],"references":[{"url":"http://www.iss.net/security_center/static/2075.php","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/13204","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/2075.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/13204","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1323","sourceIdentifier":"cve@mitre.org","published":"1999-04-09T04:00:00.000","lastModified":"2026-06-16T21:50:11.737","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Norton AntiVirus for Internet Email Gateways (NAVIEG) 1.0.1.7 and earlier, and Norton AntiVirus for MS Exchange (NAVMSE) 1.5 and earlier, store the administrator password in cleartext in (1) the navieg.ini file for NAVIEG, and (2) the ModifyPassword registry key in NAVMSE."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:symantec:norton_antivirus:*:*:internet_email_gateways:*:*:*:*:*","versionEndIncluding":"1.0.1.7","matchCriteriaId":"0653E1AA-4FE6-42A2-B221-52DF556544C9"},{"vulnerable":true,"criteria":"cpe:2.3:a:symantec:norton_antivirus:*:*:exchange:*:*:*:*:*","versionEndIncluding":"1.5","matchCriteriaId":"478F8894-81D8-43F3-8C2D-098419BFD96D"}]}]}],"references":[{"url":"http://marc.info/?l=ntbugtraq&m=92370067416739&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=92370067416739&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0444","sourceIdentifier":"cve@mitre.org","published":"1999-04-12T04:00:00.000","lastModified":"2026-06-16T21:48:24.593","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Remote attackers can perform a denial of service in Windows machines using malicious ARP packets, forcing a message box display for each packet or filling up log files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_95:*:*:*:*:*:*:*:*","matchCriteriaId":"82F7322B-8022-4D0B-ADB3-D0F5B6F20309"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98:*:gold:*:*:*:*:*:*","matchCriteriaId":"2D3B703C-79B2-4FA2-9E12-713AB977A880"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:*:*:*:*:*:*:*:*","matchCriteriaId":"ED27882B-A02A-4D5F-9117-A47976C676E0"}]}]}],"references":[{"url":"https://marc.info/?l=bugtraq&m=92394891221029&w=2","source":"cve@mitre.org"},{"url":"https://marc.info/?l=bugtraq&m=92394891221029&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0446","sourceIdentifier":"cve@mitre.org","published":"1999-04-12T04:00:00.000","lastModified":"2026-06-16T21:48:24.840","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Local users can perform a denial of service in NetBSD 1.3.3 and earlier versions by creating an unusual symbolic link with the ln command, triggering a bug in VFS."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.3.1:*:*:*:*:*:*:*","matchCriteriaId":"B8C8CAB1-2D8C-4875-A795-41178D48410F"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.3.2:*:*:*:*:*:*:*","matchCriteriaId":"2D3C937A-E9D8-474A-ABEB-A927EF7CC5B0"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.3.3:*:*:*:*:*:*:*","matchCriteriaId":"2A8F8DE7-7A84-4350-A6D8-FCCB561D63B2"}]}]}],"references":[{"url":"http://www.osvdb.org/7051","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/7051","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1369","sourceIdentifier":"cve@mitre.org","published":"1999-04-14T04:00:00.000","lastModified":"2026-06-16T21:50:17.603","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Real Media RealServer (rmserver) 6.0.3.353 stores a password in plaintext in the world-readable rmserver.cfg file, which allows local users to gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:realnetworks:realserver:6.0.3.353:*:*:*:*:*:*:*","matchCriteriaId":"A0E48281-E72C-437C-8329-DC4E9F9AD04D"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=92411181619110&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92411181619110&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1244","sourceIdentifier":"cve@mitre.org","published":"1999-04-15T04:00:00.000","lastModified":"2026-06-16T21:50:01.540","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IPFilter 3.2.3 through 3.2.10 allows local users to modify arbitrary files via a symlink attack on the saved output file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:darren_reed:ipfilter:3.2.3:*:*:*:*:*:*:*","matchCriteriaId":"B0B3CD7E-742F-43DD-9179-348D345EBCA4"},{"vulnerable":true,"criteria":"cpe:2.3:a:darren_reed:ipfilter:3.2.4:*:*:*:*:*:*:*","matchCriteriaId":"B304AA52-CA2E-4BB6-8083-DA23F5E3666B"},{"vulnerable":true,"criteria":"cpe:2.3:a:darren_reed:ipfilter:3.2.5:*:*:*:*:*:*:*","matchCriteriaId":"8651AFB6-AE6B-476E-9040-686E8D3B3E2D"},{"vulnerable":true,"criteria":"cpe:2.3:a:darren_reed:ipfilter:3.2.6:*:*:*:*:*:*:*","matchCriteriaId":"9D06BB0F-7C38-4D0F-8F1D-DDEA5BA72FA5"},{"vulnerable":true,"criteria":"cpe:2.3:a:darren_reed:ipfilter:3.2.7:*:*:*:*:*:*:*","matchCriteriaId":"DE1C3525-3BA8-4198-9932-394E77290863"},{"vulnerable":true,"criteria":"cpe:2.3:a:darren_reed:ipfilter:3.2.8:*:*:*:*:*:*:*","matchCriteriaId":"802826A3-6CF8-4821-A186-6BE979CE536D"},{"vulnerable":true,"criteria":"cpe:2.3:a:darren_reed:ipfilter:3.2.9:*:*:*:*:*:*:*","matchCriteriaId":"ADEB76BF-F6DA-47DF-8212-85700E147D33"},{"vulnerable":true,"criteria":"cpe:2.3:a:darren_reed:ipfilter:3.2.10:*:*:*:*:*:*:*","matchCriteriaId":"FA4E6702-F0F0-42CA-A135-839C09C061E6"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/13303","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2087","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/13303","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2087","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0684","sourceIdentifier":"cve@mitre.org","published":"1999-04-19T04:00:00.000","lastModified":"2026-06-16T21:48:50.533","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in Sendmail 8.8.6 in HPUX."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:hp:sendmail:8.8.6:*:*:*:*:*:*:*","matchCriteriaId":"EF24069D-A149-4452-9D61-51FCE6C827C0"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0684","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0684","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0491","sourceIdentifier":"cve@mitre.org","published":"1999-04-20T04:00:00.000","lastModified":"2026-06-16T21:48:30.617","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The prompt parsing in bash allows a local user to execute commands as another user by creating a directory with the name of the command to execute."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-94"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:bash:*:*:*:*:*:*:*:*","versionEndIncluding":"2.04","matchCriteriaId":"D642E874-A9B5-4199-8C9D-9CCA1B90C40D"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:bash:1.14.0:*:*:*:*:*:*:*","matchCriteriaId":"FCAC75DF-FFF7-4721-9D47-6E29A5CCB7C8"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:bash:1.14.1:*:*:*:*:*:*:*","matchCriteriaId":"FCF4B4BB-C5A0-4283-9657-FC61BC95C014"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:bash:1.14.2:*:*:*:*:*:*:*","matchCriteriaId":"9B04CBBD-E855-48D7-A5C9-AEC2B38FF1F4"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:bash:1.14.3:*:*:*:*:*:*:*","matchCriteriaId":"972BDA0A-25C8-4C02-8624-07D2462C214C"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:bash:1.14.4:*:*:*:*:*:*:*","matchCriteriaId":"5B9EDE56-A8C4-40A8-9D14-F6E86F464BD7"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:bash:1.14.5:*:*:*:*:*:*:*","matchCriteriaId":"DAB4B8E1-E013-4DB5-AF65-70CC2AEC3B20"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:bash:1.14.6:*:*:*:*:*:*:*","matchCriteriaId":"B5428D5A-7443-4BDD-9690-E44DBDBCAC9E"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:bash:1.14.7:*:*:*:*:*:*:*","matchCriteriaId":"18A6E8C3-334D-443B-8AD6-F8A131490F4C"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:bash:2.0:*:*:*:*:*:*:*","matchCriteriaId":"5C74DAE6-8A77-47BF-B3ED-D76CD5AD75BB"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:bash:2.01:*:*:*:*:*:*:*","matchCriteriaId":"8B631B7E-C59D-444F-80CE-DC2345A56E97"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:bash:2.01.1:*:*:*:*:*:*:*","matchCriteriaId":"91C8E637-AD10-4854-AD60-A908D017DDA8"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:bash:2.02:*:*:*:*:*:*:*","matchCriteriaId":"75AB7456-89E4-4F40-82D0-EED52CAEE670"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:bash:2.02.1:*:*:*:*:*:*:*","matchCriteriaId":"C7E516F7-B6C6-4A0B-90F4-BC0F382E62E4"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:bash:2.03:*:*:*:*:*:*:*","matchCriteriaId":"2E37A5D0-79EB-442D-B4B8-49F5137A3FA9"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:bash:2.05:*:*:*:*:*:*:*","matchCriteriaId":"0F027515-A126-4899-B78E-121C8312002F"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:bash:2.05:a:*:*:*:*:*:*","matchCriteriaId":"AC05A483-FAFD-4C40-85BC-D2EE907B2B54"}]}]}],"references":[{"url":"ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-1999-008.0.txt","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/119","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.10.9904202114070.6623-100000%40smooth.Operator.org","source":"cve@mitre.org"},{"url":"ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-1999-008.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/119","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.10.9904202114070.6623-100000%40smooth.Operator.org","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0604","sourceIdentifier":"cve@mitre.org","published":"1999-04-20T04:00:00.000","lastModified":"2026-06-16T21:48:43.217","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"An incorrect configuration of the WebStore 1.0 shopping cart CGI program \"web_store.cgi\" could disclose private information."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:selena_sol:selena_sol_webstore:1.0:*:*:*:*:*:*:*","matchCriteriaId":"54C62EA6-5F28-45B2-9A83-2CF0677FE727"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=92462991805485&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92462991805485&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0607","sourceIdentifier":"cve@mitre.org","published":"1999-04-20T04:00:00.000","lastModified":"2026-06-16T21:48:43.570","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"quikstore.cgi in QuikStore shopping cart stores quikstore.cfg under the web document root with insufficient access control, which allows remote attackers to obtain the cleartext administrator password and gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:i-soft:quikstore:*:*:*:*:*:*:*:*","matchCriteriaId":"97464CB1-6822-4CAF-A155-9CC35A19594E"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=92462991805485&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92462991805485&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0466","sourceIdentifier":"cve@mitre.org","published":"1999-04-21T04:00:00.000","lastModified":"2026-06-16T21:48:27.303","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The SVR4 /dev/wabi special device file in NetBSD 1.3.3 and earlier allows a local user to read or write arbitrary files on the disk associated with that device."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.3:*:*:*:*:*:*:*","matchCriteriaId":"7CBA1B13-B378-4F13-BD13-EC58F15F5C81"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.3.1:*:*:*:*:*:*:*","matchCriteriaId":"B8C8CAB1-2D8C-4875-A795-41178D48410F"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.3.2:*:*:*:*:*:*:*","matchCriteriaId":"2D3C937A-E9D8-474A-ABEB-A927EF7CC5B0"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.3.3:*:*:*:*:*:*:*","matchCriteriaId":"2A8F8DE7-7A84-4350-A6D8-FCCB561D63B2"}]}]}],"references":[{"url":"http://www.osvdb.org/905","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/905","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0488","sourceIdentifier":"cve@mitre.org","published":"1999-04-21T04:00:00.000","lastModified":"2026-06-16T21:48:30.247","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internet Explorer 4.0 and 5.0 allows a remote attacker to execute security scripts in a different security context using malicious URLs, a variant of the \"cross frame\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0:*:*:*:*:*:*:*","matchCriteriaId":"A5B815D9-BC21-4A17-AF00-B8AD181027D7"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0.1:*:*:*:*:*:*:*","matchCriteriaId":"42502347-DD40-4F8C-9861-C0A88A3F8608"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0.1:sp1:*:*:*:*:*:*","matchCriteriaId":"0AF9C64F-9A67-4BA9-A653-75507935E6EA"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"}]}]}],"references":[{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-012","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-012","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0490","sourceIdentifier":"cve@mitre.org","published":"1999-04-21T04:00:00.000","lastModified":"2026-06-16T21:48:30.493","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"MSHTML.DLL in Internet Explorer 5.0 allows a remote attacker to learn information about a local user's files via an IMG SRC tag."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0:*:*:*:*:*:*:*","matchCriteriaId":"A5B815D9-BC21-4A17-AF00-B8AD181027D7"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"}]}]}],"references":[{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-012","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-012","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0492","sourceIdentifier":"cve@mitre.org","published":"1999-04-23T04:00:00.000","lastModified":"2026-06-16T21:48:30.767","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The ffingerd 1.19 allows remote attackers to identify users on the target system based on its responses."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0492","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0492","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0712","sourceIdentifier":"cve@mitre.org","published":"1999-04-27T04:00:00.000","lastModified":"2026-06-16T21:48:53.950","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A vulnerability in Caldera Open Administration System (COAS) allows the /etc/shadow password file to be made world-readable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:caldera:coas:1.0.5:*:*:*:*:*:*:*","matchCriteriaId":"2768B34B-979E-480C-ABEB-6D599305BFFA"},{"vulnerable":true,"criteria":"cpe:2.3:a:caldera:coas:1.0.6:*:*:*:*:*:*:*","matchCriteriaId":"F0A2FA5B-8B20-4324-9AA2-D6D689D9B08F"},{"vulnerable":true,"criteria":"cpe:2.3:a:caldera:coas:1.0.7:*:*:*:*:*:*:*","matchCriteriaId":"FB6C4E55-A3DA-48C2-A4F9-3D93759FAE54"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux:2.2:*:*:*:*:*:*:*","matchCriteriaId":"86288A2E-B1BD-4DA9-BCCC-35AC44EEDD52"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0712","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0712","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0711","sourceIdentifier":"cve@mitre.org","published":"1999-04-29T04:00:00.000","lastModified":"2026-06-16T21:48:53.820","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The oratclsh interpreter in Oracle 8.x Intelligent Agent for Unix allows local users to execute Tcl commands as root."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:oracle8i:8.0.3:*:*:*:*:*:*:*","matchCriteriaId":"44F4BD05-8A36-4C17-AA00-01CE12A66137"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:oracle8i:8.0.4:*:*:*:*:*:*:*","matchCriteriaId":"BF68DBCB-377C-476A-9373-5A85AA20916C"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:oracle8i:8.0.5:*:*:*:*:*:*:*","matchCriteriaId":"0F492716-428E-41DF-AC50-1C8A84DBA2DF"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:oracle8i:8.0.5.1:*:*:*:*:*:*:*","matchCriteriaId":"AE91CC68-D396-4437-886C-370D30A771CD"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:oracle8i:8.1.5:*:*:*:*:*:*:*","matchCriteriaId":"42AF8B37-C5AA-4B92-A565-214A677C3486"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=92609807906778&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?t=92550157100002&w=2&r=1","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92609807906778&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?t=92550157100002&w=2&r=1","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0194","sourceIdentifier":"cve@mitre.org","published":"1999-05-01T04:00:00.000","lastModified":"2026-06-16T21:47:53.103","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in in.comsat allows attackers to generate messages."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"references":[{"url":"https://www.cve.org/CVERecord?id=CVE-1999-0194","source":"cve@mitre.org"},{"url":"https://www.cve.org/CVERecord?id=CVE-1999-0194","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0487","sourceIdentifier":"cve@mitre.org","published":"1999-05-01T04:00:00.000","lastModified":"2026-06-16T21:48:30.130","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The DHTML Edit ActiveX control in Internet Explorer allows remote attackers to read arbitrary files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:N/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0:*:*:*:*:*:*:*","matchCriteriaId":"A5B815D9-BC21-4A17-AF00-B8AD181027D7"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"}]}]}],"references":[{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-011","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-011","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0763","sourceIdentifier":"cve@mitre.org","published":"1999-05-01T04:00:00.000","lastModified":"2026-06-16T21:49:00.467","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"NetBSD on a multi-homed host allows ARP packets on one network to modify ARP entries on another connected network."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:P","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.3:*:*:*:*:*:*:*","matchCriteriaId":"7CBA1B13-B378-4F13-BD13-EC58F15F5C81"}]}]}],"references":[{"url":"http://www.osvdb.org/6540","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/6540","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0764","sourceIdentifier":"cve@mitre.org","published":"1999-05-01T04:00:00.000","lastModified":"2026-06-16T21:49:00.597","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"NetBSD allows ARP packets to overwrite static ARP entries."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:P","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.3:*:*:*:*:*:*:*","matchCriteriaId":"7CBA1B13-B378-4F13-BD13-EC58F15F5C81"}]}]}],"references":[{"url":"http://www.osvdb.org/6539","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/6539","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0807","sourceIdentifier":"cve@mitre.org","published":"1999-05-01T04:00:00.000","lastModified":"2026-06-16T21:49:05.883","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Netscape Directory Server installation procedure leaves sensitive information in a file that is accessible to local users."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:directory_server:*:*:*:*:*:*:*:*","matchCriteriaId":"33D8DAD0-34B8-4D97-B026-4305D6C73B12"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0807","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0807","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1418","sourceIdentifier":"cve@mitre.org","published":"1999-05-01T04:00:00.000","lastModified":"2026-06-16T21:50:23.923","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ICQ99 ICQ web server build 1701 with \"Active Homepage\" enabled generates allows remote attackers to determine the existence of files on the server by comparing server responses when a file exists (\"404 Forbidden\") versus when a file does not exist (\"404 not found\")."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mirabilis:icq_web_front:*:*:*:*:*:*:*:*","matchCriteriaId":"5BAA7C32-B6AE-4033-A91E-29962CCB0190"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/13508","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/246","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/13508","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/246","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1553","sourceIdentifier":"cve@mitre.org","published":"1999-05-01T04:00:00.000","lastModified":"2026-06-16T21:50:42.237","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in XCmail 0.99.6 with autoquote enabled allows remote attackers to execute arbitrary commands via a long subject line."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:xcmail:xcmail:0.99.6:*:*:*:*:*:*:*","matchCriteriaId":"F648C777-04FD-4F93-BE0F-B1A214BA63DF"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/12730","source":"cve@mitre.org","tags":["Exploit"]},{"url":"http://www.securityfocus.com/bid/311","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1859","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/12730","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]},{"url":"http://www.securityfocus.com/bid/311","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1859","source":"af854a3a-2127-422b-91ae-364da2661108"}],"evaluatorSolution":"The authors were notified of this problem and it was fixed in devel-release 0.99.7."}},{"cve":{"id":"CVE-2000-0412","sourceIdentifier":"cve@mitre.org","published":"1999-05-01T04:00:00.000","lastModified":"2026-06-16T21:51:39.690","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The gnapster and knapster clients for Napster do not properly restrict access only to MP3 files, which allows remote attackers to read arbitrary files from the client by specifying the full pathname for the file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:napster:knapster:napster:*:*:*:*:*:*:*","matchCriteriaId":"D374899D-763B-49F9-96D8-831D7573BD0E"}]}]}],"references":[{"url":"ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:18-gnapster.adv","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0124.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0127.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1186","source":"cve@mitre.org"},{"url":"ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:18-gnapster.adv","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0124.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0127.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1186","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1012","sourceIdentifier":"cve@mitre.org","published":"1999-05-04T04:00:00.000","lastModified":"2026-06-16T21:49:31.237","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"SMTP component of Lotus Domino 4.6.1 on AS/400, and possibly other operating systems, allows a remote attacker to crash the mail server via a long string."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:lotus:domino:4.6.1:*:as_400:*:*:*:*:*","matchCriteriaId":"DCEF37BA-4294-4F11-BCA9-CBA04370921A"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/13527","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/173","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/13527","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/173","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1097","sourceIdentifier":"cve@mitre.org","published":"1999-05-04T04:00:00.000","lastModified":"2026-06-16T21:49:42.933","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft NetMeeting 2.1 allows one client to read the contents of another client's clipboard via a CTRL-C in the chat box when the box is empty."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:N","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:netmeeting:*:*:*:*:*:*:*:*","versionEndIncluding":"2.1","matchCriteriaId":"15B0FC30-A23E-435C-8B15-9C544CFB99F8"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=92586457816446&w=2","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2187","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92586457816446&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2187","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1195","sourceIdentifier":"cve@mitre.org","published":"1999-05-05T04:00:00.000","lastModified":"2026-06-16T21:49:55.253","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"NAI VirusScan NT 4.0.2 does not properly modify the scan.dat virus definition file during an update via FTP, but it reports that the update was successful, which could cause a system administrator to believe that the definitions have been updated correctly."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:network_associates:virusscan:4.0.2:*:*:*:*:*:*:*","matchCriteriaId":"DBB7848B-0E1D-4EEA-8C1B-38C8EB3B6C09"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=92588169005196&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=92587579032534&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/169","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92588169005196&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=92587579032534&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/169","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1079","sourceIdentifier":"cve@mitre.org","published":"1999-05-06T04:00:00.000","lastModified":"2026-06-16T21:49:40.653","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in ptrace in AIX 4.3 allows local users to gain privileges by attaching to a setgid program."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:3.2.5:*:*:*:*:*:*:*","matchCriteriaId":"D3C00FC9-AD97-4226-A0EA-7DB14AA592DE"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1:*:*:*:*:*:*:*","matchCriteriaId":"FBF25306-E7C2-4F9A-A809-4779A6C0A079"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1.1:*:*:*:*:*:*:*","matchCriteriaId":"B3BA7775-30F2-4CA0-BA6E-70ED12A48D90"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1.2:*:*:*:*:*:*:*","matchCriteriaId":"FB038A89-1CA6-4313-B7CE-56C894945FFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1.3:*:*:*:*:*:*:*","matchCriteriaId":"2B3BC86F-5718-4232-BFFF-6244A7C09B8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1.4:*:*:*:*:*:*:*","matchCriteriaId":"E6118CC1-6E51-4E1B-8F58-43B337515222"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1.5:*:*:*:*:*:*:*","matchCriteriaId":"F3D3B348-270F-4209-B31A-2B40F5E4A601"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.2:*:*:*:*:*:*:*","matchCriteriaId":"05F20EC2-ADE6-4F96-A2E7-1DCCA819D657"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.2.1:*:*:*:*:*:*:*","matchCriteriaId":"91D7C561-4D23-430B-A7D8-137E52B08FF5"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3:*:*:*:*:*:*:*","matchCriteriaId":"11ACD012-F05F-45CD-A170-96CBAA42FFE4"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.2:*:*:*:*:*:*:*","matchCriteriaId":"45F3C5D8-8BC3-44EB-917A-D0BA051D3D9D"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=92601792420088&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93587956513233&w=2","source":"cve@mitre.org"},{"url":"http://www-1.ibm.com/servlet/support/manager?rs=0&rt=0&org=apars&doc=08E0B1A1B85472A1852567C90031BB36","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/439","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=92601792420088&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=93587956513233&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www-1.ibm.com/servlet/support/manager?rs=0&rt=0&org=apars&doc=08E0B1A1B85472A1852567C90031BB36","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/439","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1241","sourceIdentifier":"cve@mitre.org","published":"1999-05-06T04:00:00.000","lastModified":"2026-06-16T21:50:01.150","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internet Explorer, with a security setting below Medium, allows remote attackers to execute arbitrary commands via a malicious web page that uses the FileSystemObject ActiveX object."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:6.0.2900:*:*:*:*:*:*:*","matchCriteriaId":"7B90EA4B-DA10-44B7-BD3D-6AE1197212D5"}]}]}],"references":[{"url":"http://oliver.efri.hr/~crv/security/bugs/NT/activex4.html","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2173","source":"cve@mitre.org"},{"url":"http://oliver.efri.hr/~crv/security/bugs/NT/activex4.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2173","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1367","sourceIdentifier":"cve@mitre.org","published":"1999-05-06T04:00:00.000","lastModified":"2026-06-16T21:50:17.353","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internet Explorer 5.0 does not properly reset the username/password cache for Web sites that do not use standard cache controls, which could allow users on the same system to access restricted web sites that were visited by other users."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"}]}]}],"references":[{"url":"http://www.pcworld.com/news/article/0%2Caid%2C10842%2C00.asp","source":"cve@mitre.org"},{"url":"http://www.pcworld.com/news/article/0%2Caid%2C10842%2C00.asp","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0686","sourceIdentifier":"cve@mitre.org","published":"1999-05-07T04:00:00.000","lastModified":"2026-06-16T21:48:50.783","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in Netscape Enterprise Server (NES) in HP Virtual Vault (VVOS) via a long URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:enterprise_server:*:*:*:*:*:*:*:*","matchCriteriaId":"EF437206-7696-4583-A6DC-A622F02001EF"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.24:*:*:*:*:*:*:*","matchCriteriaId":"4259A901-A1CF-44EE-80C4-2031D3FCADC3"}]}]}],"references":[{"url":"http://www.ciac.org/ciac/bulletins/j-046.shtml","source":"cve@mitre.org"},{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9906-098","source":"cve@mitre.org"},{"url":"http://www.ciac.org/ciac/bulletins/j-046.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9906-098","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0717","sourceIdentifier":"cve@mitre.org","published":"1999-05-07T04:00:00.000","lastModified":"2026-06-16T21:48:54.573","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A remote attacker can disable the virus warning mechanism in Microsoft Excel 97."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:N/I:P/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:excel:*:*:*:*:*:*:*:*","matchCriteriaId":"7973AE7A-FE9F-4AB8-BBA8-98F3AF25487C"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_95:*:*:*:*:*:*:*:*","matchCriteriaId":"82F7322B-8022-4D0B-ADB3-D0F5B6F20309"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98:*:gold:*:*:*:*:*:*","matchCriteriaId":"2D3B703C-79B2-4FA2-9E12-713AB977A880"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:*:*:*:*:*:*:*:*","matchCriteriaId":"ED27882B-A02A-4D5F-9117-A47976C676E0"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ231304","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-014","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ231304","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-014","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0736","sourceIdentifier":"cve@mitre.org","published":"1999-05-07T04:00:00.000","lastModified":"2026-06-16T21:48:57.020","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The showcode.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"}]}]}],"references":[{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-013","source":"cve@mitre.org"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A932","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-013","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A932","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0737","sourceIdentifier":"cve@mitre.org","published":"1999-05-07T04:00:00.000","lastModified":"2026-06-16T21:48:57.140","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The viewcode.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"}]}]}],"references":[{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-013","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-013","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0738","sourceIdentifier":"cve@mitre.org","published":"1999-05-07T04:00:00.000","lastModified":"2026-06-16T21:48:57.270","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The code.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"}]}]}],"references":[{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-013","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-013","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0739","sourceIdentifier":"cve@mitre.org","published":"1999-05-07T04:00:00.000","lastModified":"2026-06-16T21:48:57.393","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The codebrws.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"}]}]}],"references":[{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-013","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-013","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1566","sourceIdentifier":"cve@mitre.org","published":"1999-05-08T04:00:00.000","lastModified":"2026-06-16T21:50:43.843","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in iParty server 1.2 and earlier allows remote attackers to cause a denial of service (crash) by connecting to default port 6004 and sending repeated extended characters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:intel:iparty:*:*:*:*:*:*:*:*","versionEndIncluding":"1.2","matchCriteriaId":"4B7BB77B-6442-4763-97D9-AAC73BD5C097"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/13600","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/13600","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-0806","sourceIdentifier":"cve@mitre.org","published":"1999-05-10T04:00:00.000","lastModified":"2026-06-16T21:49:05.767","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Solaris dtprintinfo program."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.0:*:*:*:*:*:*:*","matchCriteriaId":"C1370216-93EB-400F-9AA6-CB2DC316DAA7"}]}]}],"references":[{"url":"http://www.osvdb.org/6552","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/6552","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0754","sourceIdentifier":"cve@mitre.org","published":"1999-05-11T04:00:00.000","lastModified":"2026-06-16T21:48:59.240","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The INN inndstart program allows local users to gain privileges by specifying an alternate configuration file using the INNCONF environmental variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:isc:inn:*:*:*:*:*:*:*:*","matchCriteriaId":"2CFFB533-89C9-493A-851E-393D502C8A9E"}]}]}],"references":[{"url":"ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-1999-011.0.txt","source":"cve@mitre.org"},{"url":"http://www.redhat.com/corp/support/errata/inn99_05_22.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/255","source":"cve@mitre.org"},{"url":"ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-1999-011.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/corp/support/errata/inn99_05_22.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/255","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0773","sourceIdentifier":"cve@mitre.org","published":"1999-05-11T04:00:00.000","lastModified":"2026-06-16T21:49:01.700","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Solaris lpset program allows local users to gain root access."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.6:*:*:*:*:*:*:*","matchCriteriaId":"34EBF074-78C8-41AF-88F1-DA6726E56F8B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:7.0:*:x86:*:*:*:*:*","matchCriteriaId":"8F1F312C-413F-4DB4-ABF4-48E33F6FECF2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:-:*:*:*:*:*:*:*","matchCriteriaId":"369207B4-96FA-4324-9445-98FAE8ECF5DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"http://www.netspace.org/cgi-bin/wa?A2=ind9905B&L=bugtraq&P=R2017","source":"cve@mitre.org"},{"url":"http://www.netspace.org/cgi-bin/wa?A2=ind9905B&L=bugtraq&P=R2017","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0785","sourceIdentifier":"cve@mitre.org","published":"1999-05-11T04:00:00.000","lastModified":"2026-06-16T21:49:03.197","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The INN inndstart program allows local users to gain root privileges via the \"pathrun\" parameter in the inn.conf file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:isc:inn:2.0:*:*:*:*:*:*:*","matchCriteriaId":"A2480B45-A626-49F5-A48B-BA6DFAA4411B"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:inn:2.1:*:*:*:*:*:*:*","matchCriteriaId":"21969A37-9F10-4D70-AC73-F3DB4D169AEB"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:inn:2.2:*:*:*:*:*:*:*","matchCriteriaId":"94FD2948-EF52-464B-A605-DA3806037762"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/254","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/254","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1033","sourceIdentifier":"cve@mitre.org","published":"1999-05-11T04:00:00.000","lastModified":"2026-06-16T21:49:33.953","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Outlook Express before 4.72.3612.1700 allows a malicious user to send a message that contains a .., which can inadvertently cause Outlook to re-enter POP3 command mode and cause the POP3 session to hang."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook_express:*:*:*:*:*:*:*:*","versionEndIncluding":"4.72.3612.1700","matchCriteriaId":"00B9B00C-F15C-4876-BE02-5FD6DBBBB488"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook_express:4.27.3110.1:*:*:*:*:*:*:*","matchCriteriaId":"6BAE90D0-1637-49F4-8453-5E9959B55002"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook_express:4.72.3120.0:*:*:*:*:*:*:*","matchCriteriaId":"7769EE2E-A740-4AE8-B1B1-A5256C12601D"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=92647407427342&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92663402004275&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/252","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=92647407427342&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=92663402004275&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/252","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1520","sourceIdentifier":"cve@mitre.org","published":"1999-05-11T04:00:00.000","lastModified":"2026-06-16T21:50:36.980","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A configuration problem in the Ad Server Sample directory (AdSamples) in Microsoft Site Server 3.0 allows an attacker to obtain the SITE.CSC file, which exposes sensitive SQL database information."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:site_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"4A503018-356B-46D9-965F-60750B5B7484"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=92647407227303&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/256","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2270","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92647407227303&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/256","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2270","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0229","sourceIdentifier":"cve@mitre.org","published":"1999-05-12T04:00:00.000","lastModified":"2026-06-16T21:47:57.530","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in Windows NT IIS server using ..\\.."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:*:*:*:*:*:*:*:*","matchCriteriaId":"CE9D333C-76E2-4BD9-B98B-5CB96363AB89"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0229","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0229","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0776","sourceIdentifier":"cve@mitre.org","published":"1999-05-12T04:00:00.000","lastModified":"2026-06-16T21:49:02.090","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Alibaba HTTP server allows remote attackers to read files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:computer_software_manufaktur:alibaba:2.0:*:*:*:*:*:*:*","matchCriteriaId":"8DD3CBF4-B593-4C4A-8B9C-D005846B4090"}]}]}],"references":[{"url":"http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind9905&L=NTBUGTRAQ&P=R1533","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind9905&L=NTBUGTRAQ&P=R1533","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1368","sourceIdentifier":"cve@mitre.org","published":"1999-05-12T04:00:00.000","lastModified":"2026-06-16T21:50:17.480","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"AV Option for MS Exchange Server option for InoculateIT 4.53, and possibly other versions, only scans the Inbox folder tree of a Microsoft Exchange server, which could allow viruses to escape detection if a user's rules cause the message to be moved to a different mailbox."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:broadcom:inoculateit:4.53:*:*:*:*:*:*:*","matchCriteriaId":"040E3DEF-F707-48EC-926F-B2CE00C8B90A"}]}]}],"references":[{"url":"http://marc.info/?l=ntbugtraq&m=92652152723629&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=97439568517355&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=92652152723629&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=97439568517355&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1029","sourceIdentifier":"cve@mitre.org","published":"1999-05-13T04:00:00.000","lastModified":"2026-06-16T21:49:33.427","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"SSH server (sshd2) before 2.0.12 does not properly record login attempts if the connection is closed before the maximum number of tries, allowing a remote attacker to guess the password without showing up in the audit logs."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0:*:*:*:*:*:*:*","matchCriteriaId":"4A7DB2FA-58A8-45B9-AE2E-AE20A872BF90"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.1:*:*:*:*:*:*:*","matchCriteriaId":"2DD92EA8-8C01-4E4E-9AFE-2B1242AB10CE"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.2:*:*:*:*:*:*:*","matchCriteriaId":"6FB31028-59BA-4833-BF14-3CB1CA18DAAC"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.3:*:*:*:*:*:*:*","matchCriteriaId":"8A3E89B6-872D-4541-A413-88A956FDAE81"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.4:*:*:*:*:*:*:*","matchCriteriaId":"98CC86ED-CA78-4E2A-8A12-4F766DB79733"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.5:*:*:*:*:*:*:*","matchCriteriaId":"BD500A33-4D0E-44B5-9BBE-A30AA999F662"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.6:*:*:*:*:*:*:*","matchCriteriaId":"EBB8D72F-51E7-47DF-96A4-4EBB517A79D7"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.7:*:*:*:*:*:*:*","matchCriteriaId":"EC2379BA-621E-4986-AAC5-AF359FD57381"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.8:*:*:*:*:*:*:*","matchCriteriaId":"9972B3A4-369E-40B5-9415-F92B7394604A"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.9:*:*:*:*:*:*:*","matchCriteriaId":"1B6E719F-010B-4B8A-B508-0491BD15C465"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.10:*:*:*:*:*:*:*","matchCriteriaId":"E44D2AE3-DD8B-46D0-B6AB-9F0E6B4DCC4C"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.11:*:*:*:*:*:*:*","matchCriteriaId":"B7735CDD-8BFC-4E30-9C88-27C8943637CA"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=92663402004280&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/277","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2193","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92663402004280&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/277","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2193","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1366","sourceIdentifier":"cve@mitre.org","published":"1999-05-15T04:00:00.000","lastModified":"2026-06-16T21:50:17.223","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Pegasus e-mail client 3.0 and earlier uses weak encryption to store POP3 passwords in the pmail.ini file, which allows local users to easily decrypt the passwords and read e-mail."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:N","baseScore":3.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:david_harris:pegasus_mail:*:*:*:*:*:*:*:*","versionEndIncluding":"3.0","matchCriteriaId":"BA789358-19BB-4F92-A11E-0622E48B355D"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=92714118829880&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92714118829880&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0489","sourceIdentifier":"cve@mitre.org","published":"1999-05-17T04:00:00.000","lastModified":"2026-06-16T21:48:30.367","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"MSHTML.DLL in Internet Explorer 5.0 allows a remote attacker to paste a file name into the file upload intrinsic control, a variant of \"untrusted scripted paste\" as described in MS:MS98-013."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-015","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-015","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0716","sourceIdentifier":"cve@mitre.org","published":"1999-05-17T04:00:00.000","lastModified":"2026-06-16T21:48:54.460","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Windows NT 4.0 help file utility via a malformed help file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:*:*:*:*:*:*:*:*","matchCriteriaId":"ED27882B-A02A-4D5F-9117-A47976C676E0"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ231605","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-015","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ231605","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-015","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1156","sourceIdentifier":"cve@mitre.org","published":"1999-05-17T04:00:00.000","lastModified":"2026-06-16T21:49:50.407","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"BisonWare FTP Server 4.1 and earlier allows remote attackers to cause a denial of service via a malformed PORT command that contains a non-numeric character and a large number of carriage returns."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:bisonware:bisonware_ftp_server:*:*:*:*:*:*:*:*","versionEndIncluding":"4.1","matchCriteriaId":"D856B65A-48E8-4175-B10F-EFE6EE788AE4"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2254","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2254","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1510","sourceIdentifier":"cve@mitre.org","published":"1999-05-17T04:00:00.000","lastModified":"2026-06-16T21:50:35.723","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflows in Bisonware FTP server prior to 4.1 allow remote attackers to cause a denial of service, and possibly execute arbitrary commands, via long (1) USER, (2) LIST, or (3) CWD commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:bisonware:bisonware_ftp_server:*:*:*:*:*:*:*:*","versionEndIncluding":"4.1","matchCriteriaId":"D856B65A-48E8-4175-B10F-EFE6EE788AE4"}]}]}],"references":[{"url":"http://marc.info/?l=ntbugtraq&m=92697301706956&w=2","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3234","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=92697301706956&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3234","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0765","sourceIdentifier":"cve@mitre.org","published":"1999-05-19T04:00:00.000","lastModified":"2026-06-16T21:49:00.710","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"SGI IRIX midikeys program allows local users to modify arbitrary files via a text editor."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.0:*:*:*:*:*:*:*","matchCriteriaId":"26309EFA-0991-46B6-9818-F0FBB902D5F5"}]}]}],"references":[{"url":"ftp://patches.sgi.com/support/free/security/advisories/19990501-01-A","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/262","source":"cve@mitre.org"},{"url":"ftp://patches.sgi.com/support/free/security/advisories/19990501-01-A","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/262","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1030","sourceIdentifier":"cve@mitre.org","published":"1999-05-19T04:00:00.000","lastModified":"2026-06-16T21:49:33.570","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"counter.exe 2.70 allows a remote attacker to cause a denial of service (hang) via an HTTP request that ends in %0A (newline), which causes a malformed entry in the counter log that produces an access violation."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:behold_software:web_page_counter:2.7:*:*:*:*:*:*:*","matchCriteriaId":"88D22226-F7FB-49F0-A5F8-BB80D14A3073"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=92713790426690&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=92707671717292&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/267","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=92713790426690&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=92707671717292&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/267","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1031","sourceIdentifier":"cve@mitre.org","published":"1999-05-19T04:00:00.000","lastModified":"2026-06-16T21:49:33.700","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"counter.exe 2.70 allows a remote attacker to cause a denial of service (hang) via a long argument."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:behold_software:web_page_counter:2.7:*:*:*:*:*:*:*","matchCriteriaId":"88D22226-F7FB-49F0-A5F8-BB80D14A3073"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=92713790426690&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=92707671717292&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/267","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92713790426690&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=92707671717292&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/267","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0715","sourceIdentifier":"cve@mitre.org","published":"1999-05-20T04:00:00.000","lastModified":"2026-06-16T21:48:54.323","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Remote Access Service (RAS) client allows an attacker to execute commands or cause a denial of service via a malformed phonebook entry."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:*:*:*:*:*:*:*:*","matchCriteriaId":"ED27882B-A02A-4D5F-9117-A47976C676E0"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ230677","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-016","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ230677","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-016","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1393","sourceIdentifier":"cve@mitre.org","published":"1999-05-21T04:00:00.000","lastModified":"2026-06-16T21:50:20.637","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Control Panel \"Password Security\" option for Apple Powerbooks allows attackers with physical access to the machine to bypass the security by booting it with an emergency startup disk and using a disk editor to modify the on/off toggle or password in the aaaaaaaAPWD file, which is normally inaccessible."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:apple:macos:8.5:*:*:*:*:*:*:*","matchCriteriaId":"B228B2A1-8897-4028-9744-B30021CC6ECB"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:macos:8.6:*:*:*:*:*:*:*","matchCriteriaId":"5CD596AD-EBF4-4A02-88E2-54952FD19E09"}]}]}],"references":[{"url":"http://freaky.staticusers.net/macsec/data/powerbooksecurity-data.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/532","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://freaky.staticusers.net/macsec/data/powerbooksecurity-data.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/532","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-0928","sourceIdentifier":"cve@mitre.org","published":"1999-05-23T04:00:00.000","lastModified":"2026-06-16T21:49:20.837","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in SmartDesk WebSuite allows remote attackers to cause a denial of service via a long URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:smartdesk:websuite:2.1:*:*:*:*:*:*:*","matchCriteriaId":"4AE1044E-7091-4624-9F4F-AE051BC0C577"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/278","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/278","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0762","sourceIdentifier":"cve@mitre.org","published":"1999-05-24T04:00:00.000","lastModified":"2026-06-16T21:49:00.337","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"When Javascript is embedded within the TITLE tag, Netscape Communicator allows a remote attacker to use the \"about\" protocol to gain access to browser information."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:N/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.6:*:windows_95:*:*:*:*:*","matchCriteriaId":"2120677E-C560-408F-93C0-13A9CEEF0565"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.x:*:*:*:*:*:*:*","matchCriteriaId":"93E61D1F-588C-4B84-B5CA-8AB68AE4DF1B"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:navigator:*:*:*:*:*:*:*:*","matchCriteriaId":"DA2CA2F8-260C-4559-BF24-3E321CEAE93F"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0762","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0762","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0803","sourceIdentifier":"cve@mitre.org","published":"1999-05-25T04:00:00.000","lastModified":"2026-06-16T21:49:05.407","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The fwluser script in AIX eNetwork Firewall allows local users to write to arbitrary files via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:aix_enetwork_firewall:3.2:*:*:*:*:*:*:*","matchCriteriaId":"1D8CDA6A-21A4-4D8A-A0ED-78225D6371CC"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:aix_enetwork_firewall:3.3:*:*:*:*:*:*:*","matchCriteriaId":"D71B256F-C607-4A3A-8918-8049223878EF"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=92765973207648&w=2","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/962","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92765973207648&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/962","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1414","sourceIdentifier":"cve@mitre.org","published":"1999-05-25T04:00:00.000","lastModified":"2026-06-16T21:50:23.410","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IBM Netfinity Remote Control allows local users to gain administrator privileges by starting programs from the process manager, which runs with system level privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:netfinity_remote_control:*:*:*:*:*:*:*:*","matchCriteriaId":"1A12AD28-B563-4F5F-8346-22BC4CE6D725"}]}]}],"references":[{"url":"http://marc.info/?l=ntbugtraq&m=92765856706547&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=92902484317769&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/284","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=92765856706547&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=92902484317769&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/284","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0771","sourceIdentifier":"cve@mitre.org","published":"1999-05-26T04:00:00.000","lastModified":"2026-06-16T21:49:01.453","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The web components of Compaq Management Agents and the Compaq Survey Utility allow a remote attacker to read arbitrary files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:compaq:insight_management_agent:*:*:*:*:*:*:*:*","matchCriteriaId":"3EBD135D-F073-480E-A06E-D3C94B084F34"},{"vulnerable":true,"criteria":"cpe:2.3:a:compaq:power_management:2.0:*:*:*:*:*:*:*","matchCriteriaId":"84946D23-B332-4E59-A601-BEEF0DDB2CAB"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0771","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0771","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0920","sourceIdentifier":"cve@mitre.org","published":"1999-05-26T04:00:00.000","lastModified":"2026-06-16T21:49:19.893","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the pop-2d POP daemon in the IMAP package allows remote attackers to gain privileges via the FOLD command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:university_of_washington:imap:4.4:*:*:*:*:*:*:*","matchCriteriaId":"131E16E8-69F2-4299-B8DB-F87F7AF3E969"},{"vulnerable":true,"criteria":"cpe:2.3:a:university_of_washington:pop2d:*:*:*:*:*:*:*:*","matchCriteriaId":"9EE7A1E4-401F-4063-A3C5-94175ACD5E10"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/283","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/283","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0927","sourceIdentifier":"cve@mitre.org","published":"1999-05-26T04:00:00.000","lastModified":"2026-06-16T21:49:20.713","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"NTMail allows remote attackers to read arbitrary files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gordano:ntmail:4.20:*:*:*:*:*:*:*","matchCriteriaId":"3A3DCF83-E020-4879-9DDA-1FC1A68C639D"}]}]}],"references":[{"url":"http://www.eeye.com/html/Research/Advisories/AD05261999.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/279","source":"cve@mitre.org"},{"url":"http://www.eeye.com/html/Research/Advisories/AD05261999.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/279","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0755","sourceIdentifier":"cve@mitre.org","published":"1999-05-27T04:00:00.000","lastModified":"2026-06-16T21:48:59.367","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Windows NT RRAS and RAS clients cache a user's password even if the user has not selected the \"Save password\" option."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-255"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:*:*:*:*:*:*:*:*","matchCriteriaId":"ED27882B-A02A-4D5F-9117-A47976C676E0"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp1:*:*:*:*:*:*","matchCriteriaId":"5BDCBCB8-DAA3-465F-ADDE-9143B8251989"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp2:*:*:*:*:*:*","matchCriteriaId":"B86E0671-ED68-4549-B3AC-FD8BD79B0860"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp3:*:*:*:*:*:*","matchCriteriaId":"BB76E7EC-C396-4537-9065-4E815DA7097C"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp4:*:*:*:*:*:*","matchCriteriaId":"4CD026E2-B073-40A6-AD4A-8C76B9169B01"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp5:*:*:*:*:*:*","matchCriteriaId":"DBFB3E49-3FB5-4947-856D-727CBFFBA543"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ230681","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-017","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ230681","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-017","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0802","sourceIdentifier":"cve@mitre.org","published":"1999-05-27T04:00:00.000","lastModified":"2026-06-16T21:49:05.283","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Internet Explorer 5 allows remote attackers to execute commands via a malformed Favorites icon."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:C/I:C/A:C","baseScore":7.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":4.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-119"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ231450","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-018","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ231450","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-018","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0917","sourceIdentifier":"cve@mitre.org","published":"1999-05-27T04:00:00.000","lastModified":"2026-06-16T21:49:19.540","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Preloader ActiveX control used by Internet Explorer allows remote attackers to read arbitrary files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0:*:*:*:*:*:*:*","matchCriteriaId":"A5B815D9-BC21-4A17-AF00-B8AD181027D7"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ231452","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-018","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ231452","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-018","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1028","sourceIdentifier":"cve@mitre.org","published":"1999-05-28T04:00:00.000","lastModified":"2026-06-16T21:49:33.297","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Symantec pcAnywhere 8.0 allows remote attackers to cause a denial of service (CPU utilization) via a large amount of data to port 5631."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:symantec:pcanywhere:8.0:*:*:*:*:*:*:*","matchCriteriaId":"447EE4D0-ED48-490E-BC1C-831A165CFF29"}]}]}],"references":[{"url":"http://marc.info/?l=ntbugtraq&m=92807524225090&w=2","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/2256.php","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/288","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=ntbugtraq&m=92807524225090&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.iss.net/security_center/static/2256.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/288","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1485","sourceIdentifier":"cve@mitre.org","published":"1999-05-31T04:00:00.000","lastModified":"2026-06-16T21:50:32.550","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"nsd in IRIX 6.5 through 6.5.2 exports a virtual filesystem on a UDP port, which allows remote attackers to view files and cause a possible denial of service by mounting the nsd virtual file system."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:P","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5:*:*:*:*:*:*:*","matchCriteriaId":"C30D6962-3DBB-4DF8-A04F-8E47AFEDCF99"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.1:*:*:*:*:*:*:*","matchCriteriaId":"36B60E50-4F5A-4404-BEA3-C94F7D27B156"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.2:*:*:*:*:*:*:*","matchCriteriaId":"6ECB750B-9F53-4DB6-8B26-71BCCA446FF7"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=92818552106912&w=2","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/8564","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/412","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2246","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2247","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92818552106912&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/8564","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/412","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2246","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2247","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0333","sourceIdentifier":"cve@mitre.org","published":"1999-05-31T04:00:00.000","lastModified":"2026-06-16T21:51:29.867","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"tcpdump, Ethereal, and other sniffer packages allow remote attackers to cause a denial of service via malformed DNS packets in which a jump offset refers to itself, which causes tcpdump to enter an infinite loop while decompressing the packet."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ethereal_group:ethereal:0.8.4:*:*:*:*:*:*:*","matchCriteriaId":"4814B853-3553-43CC-8415-5C3DCE1EB376"},{"vulnerable":true,"criteria":"cpe:2.3:a:ethereal_group:ethereal:0.8.5:*:*:*:*:*:*:*","matchCriteriaId":"FE62DEB3-8DF4-424C-AE9C-0573432692B3"},{"vulnerable":true,"criteria":"cpe:2.3:a:ethereal_group:ethereal:0.8.6:*:*:*:*:*:*:*","matchCriteriaId":"C1890B0A-82D7-4445-A90B-971A084425BA"},{"vulnerable":true,"criteria":"cpe:2.3:a:lbl:tcpdump:3.4:*:*:*:*:*:*:*","matchCriteriaId":"B9B50919-7C67-416D-BA2F-50747CDBE08F"},{"vulnerable":true,"criteria":"cpe:2.3:a:lbl:tcpdump:3.5a:*:*:*:*:*:*:*","matchCriteriaId":"D4C4E8A8-67BD-4DD9-AB04-53962AE17103"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1165","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.SOL.4.10.10005021942380.2077-100000%40paranoia.pgci.ca","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1165","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.SOL.4.10.10005021942380.2077-100000%40paranoia.pgci.ca","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0772","sourceIdentifier":"cve@mitre.org","published":"1999-06-01T04:00:00.000","lastModified":"2026-06-16T21:49:01.590","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in Compaq Management Agents and the Compaq Survey Utility via a long string sent to port 2301."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:P","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:compaq:insight_management_agent:*:*:*:*:*:*:*:*","matchCriteriaId":"3EBD135D-F073-480E-A06E-D3C94B084F34"},{"vulnerable":true,"criteria":"cpe:2.3:a:compaq:power_management:2.0:*:*:*:*:*:*:*","matchCriteriaId":"84946D23-B332-4E59-A601-BEEF0DDB2CAB"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0772","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0772","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0804","sourceIdentifier":"cve@mitre.org","published":"1999-06-01T04:00:00.000","lastModified":"2026-06-16T21:49:05.527","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in Linux 2.2.x kernels via malformed ICMP packets containing unusual types, codes, and IP header lengths."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.1:*:*:*:*:*:*:*","matchCriteriaId":"3C67BDA1-9451-4026-AC6D-E912C882A757"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.2.0:*:*:*:*:*:*:*","matchCriteriaId":"146F7A77-A950-4CAD-BDA9-C239696F569D"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:i386:*:*:*:*:*","matchCriteriaId":"89F65C9D-BD68-4A86-BFDC-E7CE76F13948"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"124E1802-7984-45ED-8A92-393FC20662FD"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/302","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/302","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1063","sourceIdentifier":"cve@mitre.org","published":"1999-06-01T04:00:00.000","lastModified":"2026-06-16T21:49:37.747","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"CDomain whois_raw.cgi whois CGI script allows remote attackers to execute arbitrary commands via shell metacharacters in the fqdn parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cdomain:cdomainfree:1.0:*:*:*:*:*:*:*","matchCriteriaId":"A5161B34-3898-4585-B9C9-B10F3B5A5F3E"},{"vulnerable":true,"criteria":"cpe:2.3:a:cdomain:cdomainfree:2.0:*:*:*:*:*:*:*","matchCriteriaId":"F47E6F32-C2CC-494F-8576-09FE99A71FD2"},{"vulnerable":true,"criteria":"cpe:2.3:a:cdomain:cdomainfree:2.1:*:*:*:*:*:*:*","matchCriteriaId":"49E3C4E5-3702-485F-802A-B72700F748F6"},{"vulnerable":true,"criteria":"cpe:2.3:a:cdomain:cdomainfree:2.2:*:*:*:*:*:*:*","matchCriteriaId":"73A6DB69-8D0F-4C4D-82BA-1908FB071F05"},{"vulnerable":true,"criteria":"cpe:2.3:a:cdomain:cdomainfree:2.3:*:*:*:*:*:*:*","matchCriteriaId":"79A142F9-2A67-45F5-9CE0-9B561D3BC867"},{"vulnerable":true,"criteria":"cpe:2.3:a:cdomain:cdomainfree:2.4:*:*:*:*:*:*:*","matchCriteriaId":"D1B83A16-25FE-4F19-8E8F-870924F2522C"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/14019","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/304","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2251","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/14019","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/304","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2251","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0364","sourceIdentifier":"cve@mitre.org","published":"1999-06-01T04:00:00.000","lastModified":"2026-06-16T21:51:33.790","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"screen and rxvt in Red Hat Linux 6.0 do not properly set the modes of tty devices, which allows local users to write to other ttys."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"2DFA94D5-0139-490C-8257-0751FE9FBAE4"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=92877527701347&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92886009012161&w=2","source":"cve@mitre.org"},{"url":"http://www.redhat.com/corp/support/errata/RHSA1999014_01.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/309","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92877527701347&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=92886009012161&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/corp/support/errata/RHSA1999014_01.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/309","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0365","sourceIdentifier":"cve@mitre.org","published":"1999-06-01T04:00:00.000","lastModified":"2026-06-16T21:51:33.913","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Red Hat Linux 6.0 installs the /dev/pts file system with insecure modes, which allows local users to write to other tty devices."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"2DFA94D5-0139-490C-8257-0751FE9FBAE4"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=92877527701347&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92886009012161&w=2","source":"cve@mitre.org"},{"url":"http://www.redhat.com/corp/support/errata/RHSA1999014_01.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/308","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92877527701347&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=92886009012161&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/corp/support/errata/RHSA1999014_01.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/308","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0373","sourceIdentifier":"cve@mitre.org","published":"1999-06-01T04:00:00.000","lastModified":"2026-06-16T21:51:34.897","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerabilities in the KDE kvt terminal program allow local users to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:kde:kvt:*:*:*:*:*:*:*:*","matchCriteriaId":"5B226842-28F7-49F6-954B-135D9BA131F3"}]}]}],"references":[{"url":"ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-1999-015.0.txt","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA1999015_01.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2266","source":"cve@mitre.org"},{"url":"ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-1999-015.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA1999015_01.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2266","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0481","sourceIdentifier":"cve@mitre.org","published":"1999-06-01T04:00:00.000","lastModified":"2026-06-16T21:51:49.610","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in KDE Kmail allows a remote attacker to cause a denial of service via an attachment with a long file name."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:kde:k-mail:1.0.23:*:*:*:*:*:*:*","matchCriteriaId":"F2732150-E1F0-4262-AD4E-DE2707DDCF4B"},{"vulnerable":true,"criteria":"cpe:2.3:a:kde:k-mail:1.0.24:*:*:*:*:*:*:*","matchCriteriaId":"CBBEB8D7-42D5-4F89-AD58-6F3701095015"},{"vulnerable":true,"criteria":"cpe:2.3:a:kde:k-mail:1.0.25:*:*:*:*:*:*:*","matchCriteriaId":"196AB8FD-6529-4240-83DB-E38D455D75CE"},{"vulnerable":true,"criteria":"cpe:2.3:a:kde:k-mail:1.0.26:*:*:*:*:*:*:*","matchCriteriaId":"4BF9F1B4-D853-46F7-BD4D-18F267732DCC"},{"vulnerable":true,"criteria":"cpe:2.3:a:kde:k-mail:1.0.27:*:*:*:*:*:*:*","matchCriteriaId":"E5A388BC-D200-4615-90C2-EA81244BD4D8"},{"vulnerable":true,"criteria":"cpe:2.3:a:kde:k-mail:1.0.28:*:*:*:*:*:*:*","matchCriteriaId":"BD8ECC96-FAA9-4609-A7D0-9C73F2539CAA"},{"vulnerable":true,"criteria":"cpe:2.3:a:kde:k-mail:1.0.29:*:*:*:*:*:*:*","matchCriteriaId":"0CB8D423-404A-4922-9D50-44AB6C191A42"},{"vulnerable":true,"criteria":"cpe:2.3:a:kde:k-mail:1.0.29.1:*:*:*:*:*:*:*","matchCriteriaId":"481A4325-4E84-47D7-BE40-CC559EE58F02"}]}]}],"references":[{"url":"http://securityfocus.com/templates/archive.pike?list=82&date=2000-06-22&msg=00060200422401.01667%40lez","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1380","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4993","source":"cve@mitre.org"},{"url":"http://securityfocus.com/templates/archive.pike?list=82&date=2000-06-22&msg=00060200422401.01667%40lez","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1380","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4993","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1400","sourceIdentifier":"cve@mitre.org","published":"1999-06-03T04:00:00.000","lastModified":"2026-06-16T21:50:21.577","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Economist screen saver 1999 with the \"Password Protected\" option enabled allows users with physical access to the machine to bypass the screen saver and read files by running Internet Explorer while the screen is still locked."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:the_economist:the_economist_1999_screen_saver:*:*:*:*:*:*:*:*","matchCriteriaId":"AAF2C673-257E-4BC1-B936-51F75C3F1BCC"}]}]}],"references":[{"url":"http://archives.indenial.com/hypermail/ntbugtraq/1999/June1999/0007.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.indenial.com/hypermail/ntbugtraq/1999/June1999/0009.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://marc.info/?l=ntbugtraq&m=92851653600852&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/466","source":"cve@mitre.org"},{"url":"http://archives.indenial.com/hypermail/ntbugtraq/1999/June1999/0007.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://archives.indenial.com/hypermail/ntbugtraq/1999/June1999/0009.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://marc.info/?l=ntbugtraq&m=92851653600852&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/466","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1412","sourceIdentifier":"cve@mitre.org","published":"1999-06-03T04:00:00.000","lastModified":"2026-06-16T21:50:23.160","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A possible interaction between Apple MacOS X release 1.0 and Apache HTTP server allows remote attackers to cause a denial of service (crash) via a flood of HTTP GET requests to CGI programs, which generates a large number of processes."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-noinfo"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:-:*:*:*:*:*:*:*","matchCriteriaId":"D623D8C0-65D2-4269-A1D4-5CB3899F44C8"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:macos:1.0:*:*:*:*:*:*:*","matchCriteriaId":"51575CB1-A800-410A-BE8C-028FFD938245"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/14215","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://www.securityfocus.com/bid/306","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://www.securityfocus.com/archive/1/14215","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://www.securityfocus.com/bid/306","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]}]}},{"cve":{"id":"CVE-1999-0970","sourceIdentifier":"cve@mitre.org","published":"1999-06-05T04:00:00.000","lastModified":"2026-06-16T21:49:25.977","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The OmniHTTPD visadmin.exe program allows a remote attacker to conduct a denial of service via a malformed URL which causes a large number of temporary files to be created."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:omnicron:omnihttpd:*:*:*:*:*:*:*:*","matchCriteriaId":"29AF27ED-3F69-4678-AF21-724923183401"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/14311","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1808","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2271","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/14311","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1808","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2271","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1237","sourceIdentifier":"cve@mitre.org","published":"1999-06-06T04:00:00.000","lastModified":"2026-06-16T21:50:00.657","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Multiple buffer overflows in smbvalid/smbval SMB authentication library, as used in Apache::AuthenSmb and possibly other modules, allows remote attackers to execute arbitrary commands via (1) a long username, (2) a long password, and (3) other unspecified methods."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-120"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:-:*:*:*:*:*:*:*","matchCriteriaId":"D623D8C0-65D2-4269-A1D4-5CB3899F44C8"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/14384","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2272","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://www.securityfocus.com/archive/1/14384","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2272","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]}]}},{"cve":{"id":"CVE-1999-0493","sourceIdentifier":"cve@mitre.org","published":"1999-06-07T04:00:00.000","lastModified":"2026-06-16T21:48:30.887","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"rpc.statd allows remote attackers to forward RPC calls to the local operating system via the SM_MON and SM_NOTIFY commands, which in turn could be used to remotely exploit other bugs such as in automountd."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.4:*:x86:*:*:*:*:*","matchCriteriaId":"1F881110-7B54-49DA-B23A-710273430C44"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5:*:x86:*:*:*:*:*","matchCriteriaId":"200D8CB2-0D52-40A8-9CD9-6E4513605201"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5.1:*:x86:*:*:*:*:*","matchCriteriaId":"F66BAF35-A8B9-4E95-B270-444206FDD35B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.6:*:*:*:*:*:*:*","matchCriteriaId":"34EBF074-78C8-41AF-88F1-DA6726E56F8B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:-:*:*:*:*:*:*:*","matchCriteriaId":"369207B4-96FA-4324-9445-98FAE8ECF5DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.3:*:*:*:*:*:*:*","matchCriteriaId":"C7A22D21-E0A9-4B56-86C7-805AD1A610D6"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.4:*:*:*:*:*:*:*","matchCriteriaId":"7AAC8954-74A8-4FE3-ABE7-57DA041D9D8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5.1:*:*:*:*:*:*:*","matchCriteriaId":"39F847DB-65A9-47DA-BCFA-A179E5E2301A"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=91547759121289&w=2","source":"cve@mitre.org"},{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/186&type=0&nav=sec.sba","source":"cve@mitre.org"},{"url":"http://www.cert.org/advisories/CA-99-05-statd-automountd.html","source":"cve@mitre.org","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.ciac.org/ciac/bulletins/j-045.shtml","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/450","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=91547759121289&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/186&type=0&nav=sec.sba","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.cert.org/advisories/CA-99-05-statd-automountd.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.ciac.org/ciac/bulletins/j-045.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/450","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1496","sourceIdentifier":"cve@mitre.org","published":"1999-06-08T04:00:00.000","lastModified":"2026-06-16T21:50:33.947","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Sudo 1.5 in Debian Linux 2.1 and Red Hat 6.0 allows local users to determine the existence of arbitrary files by attempting to execute the target filename as a program, which generates a different error message when the file does not exist."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:todd_miller:sudo:1.5:*:*:*:*:*:*:*","matchCriteriaId":"9D796959-61D2-42D5-BF93-1A93AE1392BC"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.1:*:*:*:*:*:*:*","matchCriteriaId":"3C67BDA1-9451-4026-AC6D-E912C882A757"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"2DFA94D5-0139-490C-8257-0751FE9FBAE4"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/14665","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/321","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2277","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/14665","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/321","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2277","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1231","sourceIdentifier":"cve@mitre.org","published":"1999-06-09T04:00:00.000","lastModified":"2026-06-16T21:49:59.880","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ssh 2.0.12, and possibly other versions, allows valid user names to attempt to enter the correct password multiple times, but only prompts an invalid user name for a password once, which allows remote attackers to determine user account names on the server."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0:*:*:*:*:*:*:*","matchCriteriaId":"4A7DB2FA-58A8-45B9-AE2E-AE20A872BF90"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.1:*:*:*:*:*:*:*","matchCriteriaId":"2DD92EA8-8C01-4E4E-9AFE-2B1242AB10CE"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.2:*:*:*:*:*:*:*","matchCriteriaId":"6FB31028-59BA-4833-BF14-3CB1CA18DAAC"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.3:*:*:*:*:*:*:*","matchCriteriaId":"8A3E89B6-872D-4541-A413-88A956FDAE81"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.4:*:*:*:*:*:*:*","matchCriteriaId":"98CC86ED-CA78-4E2A-8A12-4F766DB79733"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.5:*:*:*:*:*:*:*","matchCriteriaId":"BD500A33-4D0E-44B5-9BBE-A30AA999F662"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.6:*:*:*:*:*:*:*","matchCriteriaId":"EBB8D72F-51E7-47DF-96A4-4EBB517A79D7"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.7:*:*:*:*:*:*:*","matchCriteriaId":"EC2379BA-621E-4986-AAC5-AF359FD57381"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.8:*:*:*:*:*:*:*","matchCriteriaId":"9972B3A4-369E-40B5-9415-F92B7394604A"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.9:*:*:*:*:*:*:*","matchCriteriaId":"1B6E719F-010B-4B8A-B508-0491BD15C465"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.10:*:*:*:*:*:*:*","matchCriteriaId":"E44D2AE3-DD8B-46D0-B6AB-9F0E6B4DCC4C"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.11:*:*:*:*:*:*:*","matchCriteriaId":"B7735CDD-8BFC-4E30-9C88-27C8943637CA"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.12:*:*:*:*:*:*:*","matchCriteriaId":"A1582187-F4BA-44D6-97F0-E78D814A9E9E"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/14758","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2276","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/14758","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2276","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0118","sourceIdentifier":"cve@mitre.org","published":"1999-06-09T04:00:00.000","lastModified":"2026-06-16T21:51:02.260","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Red Hat Linux su program does not log failed password guesses if the su process is killed before it times out, which allows local attackers to conduct brute force password guessing."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:2.0:*:*:*:*:*:*:*","matchCriteriaId":"5302613E-F0DD-4B46-884C-49A977FD4147"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:2.1:*:*:*:*:*:*:*","matchCriteriaId":"674066BB-2576-4AAE-B97F-A4470815F1AC"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:3.0.3:*:*:*:*:*:*:*","matchCriteriaId":"445EECD3-2DB9-43D1-B26F-0979A3C02D45"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:4.0:*:*:*:*:*:*:*","matchCriteriaId":"C9092D88-585D-4A0C-B181-E8D93563C74B"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:4.1:*:*:*:*:*:*:*","matchCriteriaId":"D8211154-6685-4FF0-B3ED-43A5E5763A10"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:4.2:*:*:*:*:*:*:*","matchCriteriaId":"F299301C-6BFC-436C-9CFD-2E291D3702AE"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.0:*:*:*:*:*:*:*","matchCriteriaId":"4BF54738-3C44-4FD4-AA9C-CAB2E86B1DC1"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.1:*:*:*:*:*:*:*","matchCriteriaId":"4EF44364-0F57-4B74-81B0-501EA6B58501"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:alpha:*:*:*:*:*","matchCriteriaId":"07396B95-E434-46C9-A345-27C9EA9BEA26"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:i386:*:*:*:*:*","matchCriteriaId":"363AB7DB-A8BA-4D58-97C4-1DF1F0F43E07"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:sparc:*:*:*:*:*","matchCriteriaId":"0775CE08-C5AD-4FF7-AEA9-537B1EAE3BDE"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:alpha:*:*:*:*:*","matchCriteriaId":"6931FB54-A163-4CE3-BBD9-D345AA0977A6"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:i386:*:*:*:*:*","matchCriteriaId":"89F65C9D-BD68-4A86-BFDC-E7CE76F13948"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:sparc:*:*:*:*:*","matchCriteriaId":"5ABD1331-277C-4C31-8186-978243C62255"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:alpha:*:*:*:*:*","matchCriteriaId":"C89454B9-4F45-4A42-A06D-ED42D893C544"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:i386:*:*:*:*:*","matchCriteriaId":"B72D6205-DFA4-41D9-B3B6-0B7DA756CD8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:sparc:*:*:*:*:*","matchCriteriaId":"1E64093E-7D53-4238-95C3-48ED5A0FFD97"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:*:*:x86:*:*:*:*:*","matchCriteriaId":"FEEC0C5A-4A6E-403C-B929-D1EC8B0FE2A8"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:1.1.3:u1:*:*:*:*:*:*","matchCriteriaId":"D3373737-C6FC-4D19-845C-B0382AE1DC48"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:1.1.4:*:jl:*:*:*:*:*","matchCriteriaId":"10EC0267-500D-496F-9D88-7F93F7D4A88B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.4:*:x86:*:*:*:*:*","matchCriteriaId":"1F881110-7B54-49DA-B23A-710273430C44"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:-:*:*:*:*:*:*:*","matchCriteriaId":"369207B4-96FA-4324-9445-98FAE8ECF5DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:4.1.3:*:*:*:*:*:*:*","matchCriteriaId":"615FA6E4-4DE0-422A-9220-F747D95192C9"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:4.1.4:*:*:*:*:*:*:*","matchCriteriaId":"1070749A-65E9-439A-A7CC-3CE529A5D5E7"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.0:*:*:*:*:*:*:*","matchCriteriaId":"C1370216-93EB-400F-9AA6-CB2DC316DAA7"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.1:*:*:*:*:*:*:*","matchCriteriaId":"5FF2C7C4-6F8D-40DB-9FBC-E7E4D76A2B23"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.2:*:*:*:*:*:*:*","matchCriteriaId":"84523B48-218B-45F4-9C04-2C103612DCB2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.3:*:*:*:*:*:*:*","matchCriteriaId":"C7A22D21-E0A9-4B56-86C7-805AD1A610D6"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.4:*:*:*:*:*:*:*","matchCriteriaId":"7AAC8954-74A8-4FE3-ABE7-57DA041D9D8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5:*:*:*:*:*:*:*","matchCriteriaId":"5B72953B-E873-4E44-A3CF-12D770A0D416"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94935300520617&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94935300520617&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0775","sourceIdentifier":"cve@mitre.org","published":"1999-06-10T04:00:00.000","lastModified":"2026-06-16T21:49:01.957","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Cisco Gigabit Switch routers running IOS allow remote attackers to forward unauthorized packets due to improper handling of the \"established\" keyword in an access list."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.2\\(14\\)gs2:*:*:*:*:*:*:*","matchCriteriaId":"0023E04A-6244-4221-AE19-616265074BDD"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.2\\(15\\)g:*:*:*:*:*:*:*","matchCriteriaId":"52C4A8A9-A17E-48A1-99EC-A9F87CE17318"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0775","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0775","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1023","sourceIdentifier":"cve@mitre.org","published":"1999-06-10T04:00:00.000","lastModified":"2026-06-16T21:49:32.613","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"useradd in Solaris 7.0 does not properly interpret certain date formats as specified in the \"-e\" (expiration date) argument, which could allow users to login after their accounts have expired."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=92904175406756&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/426","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=92904175406756&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/426","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-0713","sourceIdentifier":"cve@mitre.org","published":"1999-06-11T04:00:00.000","lastModified":"2026-06-16T21:48:54.077","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The dtlogin program in Compaq Tru64 UNIX allows local users to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cde:cde:*:*:*:*:*:*:*:*","matchCriteriaId":"B327A913-CD9E-48F8-B6AE-625AD7D8793A"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:-:*:*:*:*:*:*:*","matchCriteriaId":"589D7E39-A243-49F9-8F67-4B9E92AE87DF"},{"vulnerable":true,"criteria":"cpe:2.3:a:transarc:afs:*:*:*:*:*:*:*:*","matchCriteriaId":"DBE38322-4EA7-4E45-A704-5F552E2D5DAA"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:digital:unix:*:*:*:*:*:*:*:*","matchCriteriaId":"2FE14F36-1B9B-447F-BA87-D7780F33C975"}]}]}],"references":[{"url":"http://www.ciac.org/ciac/bulletins/j-044.shtml","source":"cve@mitre.org"},{"url":"http://www.ciac.org/ciac/bulletins/j-044.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0730","sourceIdentifier":"cve@mitre.org","published":"1999-06-12T04:00:00.000","lastModified":"2026-06-16T21:48:56.240","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The zsoelim program in the Debian man-db package allows local users to overwrite files via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:4.0:*:*:*:*:*:*:*","matchCriteriaId":"0F92AB32-E7DE-43F4-B877-1F41FA162EC7"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0730","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0730","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0874","sourceIdentifier":"cve@mitre.org","published":"1999-06-16T04:00:00.000","lastModified":"2026-06-16T21:49:14.250","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in IIS 4.0 allows remote attackers to cause a denial of service via a malformed request for files with .HTR, .IDC, or .STM extensions."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-119"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:*:*:*:*:*:*:*:*","matchCriteriaId":"ED27882B-A02A-4D5F-9117-A47976C676E0"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ234905","source":"cve@mitre.org"},{"url":"http://www.ciac.org/ciac/bulletins/j-048.shtml","source":"cve@mitre.org"},{"url":"http://www.eeye.com/html/Research/Advisories/AD06081999.html","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-019","source":"cve@mitre.org"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A915","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ234905","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.ciac.org/ciac/bulletins/j-048.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.eeye.com/html/Research/Advisories/AD06081999.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-019","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A915","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0929","sourceIdentifier":"cve@mitre.org","published":"1999-06-16T04:00:00.000","lastModified":"2026-06-16T21:49:20.967","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Novell NetWare with Novell-HTTP-Server or YAWN web servers allows remote attackers to conduct a denial of service via a large number of HTTP GET requests."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:novell:http_server:2.51r1:*:*:*:*:*:*:*","matchCriteriaId":"7E8A518B-7753-4E25-9336-460A70E52541"},{"vulnerable":true,"criteria":"cpe:2.3:a:novell:http_server:3.1r1:*:*:*:*:*:*:*","matchCriteriaId":"041D1F45-8E68-4C00-955E-4A374B4B4A37"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:novell:netware:4.1:*:*:*:*:*:*:*","matchCriteriaId":"01439E99-85F3-47B6-802A-909B737071D2"},{"vulnerable":true,"criteria":"cpe:2.3:o:novell:netware:4.11:*:*:*:*:*:*:*","matchCriteriaId":"771CB488-4109-453E-9C76-590A7805A6A0"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0929","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0929","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0742","sourceIdentifier":"cve@mitre.org","published":"1999-06-22T04:00:00.000","lastModified":"2026-06-16T21:48:57.757","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Debian mailman package uses weak authentication, which allows attackers to gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.1:*:*:*:*:*:*:*","matchCriteriaId":"3C67BDA1-9451-4026-AC6D-E912C882A757"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/480","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/480","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0723","sourceIdentifier":"cve@mitre.org","published":"1999-06-23T04:00:00.000","lastModified":"2026-06-16T21:48:55.320","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Windows NT Client Server Runtime Subsystem (CSRSS) can be subjected to a denial of service when all worker threads are waiting for user input."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:N/I:N/A:C","baseScore":7.1,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":8.6,"impactScore":6.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:*:*:*:*:*:*:*:*","matchCriteriaId":"ED27882B-A02A-4D5F-9117-A47976C676E0"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp5:*:*:*:*:*:*","matchCriteriaId":"DBFB3E49-3FB5-4947-856D-727CBFFBA543"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ233323","source":"cve@mitre.org"},{"url":"http://www.ciac.org/ciac/bulletins/j-049.shtml","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/478","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-021","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ233323","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.ciac.org/ciac/bulletins/j-049.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/478","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-021","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0731","sourceIdentifier":"cve@mitre.org","published":"1999-06-23T04:00:00.000","lastModified":"2026-06-16T21:48:56.367","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The KDE klock program allows local users to unlock a session using malformed input."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux:1.3:*:*:*:*:*:*:*","matchCriteriaId":"EED21F27-4ADA-42AC-B28E-F849F47D4043"},{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux:2.2:*:*:*:*:*:*:*","matchCriteriaId":"86288A2E-B1BD-4DA9-BCCC-35AC44EEDD52"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/489","source":"cve@mitre.org"},{"url":"https://github.com/KDE/kde1-kdebase/commit/04906bd5de2f220bf100b605dad37b4a1d9a91a6","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/489","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://github.com/KDE/kde1-kdebase/commit/04906bd5de2f220bf100b605dad37b4a1d9a91a6","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1019","sourceIdentifier":"cve@mitre.org","published":"1999-06-23T04:00:00.000","lastModified":"2026-06-16T21:49:32.087","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"SpectroSERVER in Cabletron Spectrum Enterprise Manager 5.0 installs a directory tree with insecure permissions, which allows local users to replace a privileged executable (processd) with a Trojan horse, facilitating a root or Administrator compromise."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cabletron:spectrum_enterprise_manager:5.0:*:*:*:*:*:*:*","matchCriteriaId":"7F2FA5E1-2E37-457D-9E29-D1E77AEACA43"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93024398513475&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93024398713491&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/495","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=93024398513475&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=93024398713491&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/495","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-0748","sourceIdentifier":"cve@mitre.org","published":"1999-06-24T04:00:00.000","lastModified":"2026-06-16T21:48:58.483","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflows in Red Hat net-tools package."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"2DFA94D5-0139-490C-8257-0751FE9FBAE4"}]}]}],"references":[{"url":"http://www.redhat.com/support/errata/RHSA1999017_01.html","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA1999017_01.html","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1470","sourceIdentifier":"cve@mitre.org","published":"1999-06-24T04:00:00.000","lastModified":"2026-06-16T21:50:30.620","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Eastman Work Management 3.21 stores passwords in cleartext in the COMMON and LOCATOR registry keys, which could allow local users to gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:eastman_software:work_management:3.2.1:*:*:*:*:*:*:*","matchCriteriaId":"5BAD853C-7BBA-4B70-B0E4-54B61344C180"}]}]}],"references":[{"url":"http://marc.info/?l=ntbugtraq&m=93034788412494&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/485","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2303","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=93034788412494&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/485","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2303","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0778","sourceIdentifier":"cve@mitre.org","published":"1999-06-25T04:00:00.000","lastModified":"2026-06-16T21:49:02.353","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Xi Graphics Accelerated-X server allows local users to gain root access via a long display or query parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:xi_graphics:accelerated-x_server:4:*:*:*:*:*:*:*","matchCriteriaId":"F16E6A33-2908-4123-8F8D-F541610B2391"},{"vulnerable":true,"criteria":"cpe:2.3:a:xi_graphics:accelerated-x_server:5:*:*:*:*:*:*:*","matchCriteriaId":"31EF6F5D-1254-48E2-A6FA-ABA64C2AAC92"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/488","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/488","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1164","sourceIdentifier":"cve@mitre.org","published":"1999-06-25T04:00:00.000","lastModified":"2026-06-16T21:49:51.417","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Outlook client allows remote attackers to cause a denial of service by sending multiple email messages with the same X-UIDL headers, which causes Outlook to hang."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook:97:*:*:*:*:*:*:*","matchCriteriaId":"D1D5CC3A-E880-4727-AEBE-1E4FE5A43AF8"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook:98:*:*:*:*:*:*:*","matchCriteriaId":"52970A43-173E-477B-80BF-6FDBB6B0EECD"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook:2000:*:*:*:*:*:*:*","matchCriteriaId":"D52F17AB-2C87-4C1A-91B5-267ABBCF5844"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook_express:*:*:*:*:*:*:*:*","matchCriteriaId":"1FD2BCA5-9DA0-472C-B0DF-A4A8BC54B4DE"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93041631215856&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93041631215856&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0733","sourceIdentifier":"cve@mitre.org","published":"1999-06-26T04:00:00.000","lastModified":"2026-06-16T21:48:56.623","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in VMWare 1.0.1 for Linux via a long HOME environmental variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:vmware:workstation:1.0.1:*:*:*:*:*:*:*","matchCriteriaId":"AFBF029A-103D-4BB6-B037-25EC2224DF34"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/490","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/490","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0938","sourceIdentifier":"cve@mitre.org","published":"1999-06-28T04:00:00.000","lastModified":"2026-06-16T21:49:22.043","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"MBone SDR Package allows remote attackers to execute commands via shell metacharacters in Session Initiation Protocol (SIP) messages."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:university_college_london:sdr:*:*:*:*:*:*:*:*","versionEndIncluding":"2.6.2","matchCriteriaId":"8A051C27-0A80-427D-870C-B1D2AF0470EC"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0938","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0938","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1365","sourceIdentifier":"cve@mitre.org","published":"1999-06-28T04:00:00.000","lastModified":"2026-06-16T21:50:17.093","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Windows NT searches a user's home directory (%systemroot% by default) before other directories to find critical programs such as NDDEAGNT.EXE, EXPLORER.EXE, USERINIT.EXE or TASKMGR.EXE, which could allow local users to bypass access restrictions or gain privileges by placing a Trojan horse program into the root directory, which is writable by default."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:*:*:*:*:*:*:*:*","matchCriteriaId":"ED27882B-A02A-4D5F-9117-A47976C676E0"}]}]}],"references":[{"url":"http://marc.info/?l=ntbugtraq&m=93069418400856&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=93127894731200&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/515","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2336","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=93069418400856&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=93127894731200&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/515","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2336","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0353","sourceIdentifier":"cve@mitre.org","published":"1999-06-28T04:00:00.000","lastModified":"2026-06-16T21:51:32.433","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Pine 4.x allows a remote attacker to execute arbitrary commands via an index.html file which executes lynx and obtains a uudecoded file from a malicious web server, which is then executed by Pine."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:university_of_washington:pine:3.98:*:*:*:*:*:*:*","matchCriteriaId":"49E9FC97-FE8B-46E9-BFB5-AC24524CCB97"},{"vulnerable":true,"criteria":"cpe:2.3:a:university_of_washington:pine:4.0:*:*:*:*:*:*:*","matchCriteriaId":"9EAAAD98-14F0-4015-ACD4-B4D21EC86DC2"},{"vulnerable":true,"criteria":"cpe:2.3:a:university_of_washington:pine:4.2:*:*:*:*:*:*:*","matchCriteriaId":"17158210-1EEF-4910-B9CB-3E81328B8374"},{"vulnerable":true,"criteria":"cpe:2.3:a:university_of_washington:pine:4.10:*:*:*:*:*:*:*","matchCriteriaId":"358A71B0-79F2-4728-AC1E-5872BC64B2C3"}]}]}],"references":[{"url":"http://www.novell.com/linux/security/advisories/pine_update_announcement.html","source":"cve@mitre.org"},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_6.html","source":"cve@mitre.org"},{"url":"http://www.securiteam.com/unixfocus/HHP-Pine_remote_exploit.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1247","source":"cve@mitre.org"},{"url":"http://www.novell.com/linux/security/advisories/pine_update_announcement.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_6.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securiteam.com/unixfocus/HHP-Pine_remote_exploit.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1247","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0916","sourceIdentifier":"cve@mitre.org","published":"1999-06-29T04:00:00.000","lastModified":"2026-06-16T21:49:19.420","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WebTrends software stores account names and passwords in a file which does not have restricted access permissions."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:webtrends:webtrends_enterprise_suite:v3.5:*:*:*:*:*:*:*","matchCriteriaId":"348E16C7-B584-40CF-A55D-AB6B0EB3BFA9"},{"vulnerable":true,"criteria":"cpe:2.3:a:webtrends:webtrends_for_firewalls:v1.2:*:*:*:*:*:*:*","matchCriteriaId":"7D58A5DF-2F5E-47F9-8395-BED1D23EBB89"},{"vulnerable":true,"criteria":"cpe:2.3:a:webtrends:webtrends_log_analyzer:v4.51:*:*:*:*:*:*:*","matchCriteriaId":"39A0B2A1-B52F-477E-918B-FF2E41583F60"},{"vulnerable":true,"criteria":"cpe:2.3:a:webtrends:webtrends_professional_suite:v3.01:*:*:*:*:*:*:*","matchCriteriaId":"3C5BECF2-9C47-4C1F-BA1E-317FB5FC569A"},{"vulnerable":true,"criteria":"cpe:2.3:a:webtrends:webtrends_security_analyzer:v2.0:*:*:*:*:*:*:*","matchCriteriaId":"426FF7E2-C6AD-4638-BC6B-928D73F217F7"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0916","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0916","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0140","sourceIdentifier":"cve@mitre.org","published":"1999-06-30T04:00:00.000","lastModified":"2026-06-16T21:47:40.957","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in RAS/PPTP on NT systems."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:*:*:*:*:*:*:*:*","matchCriteriaId":"ED27882B-A02A-4D5F-9117-A47976C676E0"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0140","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0140","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0726","sourceIdentifier":"cve@mitre.org","published":"1999-06-30T04:00:00.000","lastModified":"2026-06-16T21:48:55.700","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"An attacker can conduct a denial of service in Windows NT by executing a program with a malformed file image header."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:C","baseScore":7.8,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-20"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:*:*:*:*:*:*:*:*","matchCriteriaId":"ED27882B-A02A-4D5F-9117-A47976C676E0"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:terminal_server:*:*:*:*:*","matchCriteriaId":"6E7E6AD3-5418-4FEA-84B5-833059CA880D"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp4:*:*:*:*:*:*","matchCriteriaId":"4CD026E2-B073-40A6-AD4A-8C76B9169B01"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ234557","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/499","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-023","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ234557","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/499","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-023","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1348","sourceIdentifier":"cve@mitre.org","published":"1999-06-30T04:00:00.000","lastModified":"2026-06-16T21:50:14.943","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Linuxconf on Red Hat Linux 6.0 and earlier does not properly disable PAM-based access to the shutdown command, which could allow local users to cause a denial of service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:*:*:*:*:*:*:*:*","versionEndIncluding":"6.0","matchCriteriaId":"CA8CD46B-C22E-4576-9EA9-909B64D9EAC5"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93220073515880&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93220073515880&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0688","sourceIdentifier":"cve@mitre.org","published":"1999-07-01T04:00:00.000","lastModified":"2026-06-16T21:48:51.047","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflows in HP Software Distributor (SD) for HPUX 10.x and 11.x."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.24:*:*:*:*:*:*:*","matchCriteriaId":"4259A901-A1CF-44EE-80C4-2031D3FCADC3"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:11.00:*:*:*:*:*:*:*","matchCriteriaId":"771931F7-9180-4EBD-8627-E1CF17D24647"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/545","source":"cve@mitre.org"},{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9907-101","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/545","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9907-101","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0690","sourceIdentifier":"cve@mitre.org","published":"1999-07-01T04:00:00.000","lastModified":"2026-06-16T21:48:51.300","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"HP CDE program includes the current directory in root's PATH variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cde:cde:*:*:*:*:*:*:*:*","matchCriteriaId":"B327A913-CD9E-48F8-B6AE-625AD7D8793A"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10:*:*:*:*:*:*:*","matchCriteriaId":"CC96D014-7CE2-4F61-BBAF-507829C542EA"}]}]}],"references":[{"url":"http://www.ciac.org/ciac/bulletins/j-053.shtml","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9907-100","source":"cve@mitre.org"},{"url":"http://www.ciac.org/ciac/bulletins/j-053.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9907-100","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0696","sourceIdentifier":"cve@mitre.org","published":"1999-07-01T04:00:00.000","lastModified":"2026-06-16T21:48:52.067","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in CDE Calendar Manager Service Daemon (rpc.cmsd)."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.24:*:*:*:*:*:*:*","matchCriteriaId":"4259A901-A1CF-44EE-80C4-2031D3FCADC3"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:11.00:*:*:*:*:*:*:*","matchCriteriaId":"771931F7-9180-4EBD-8627-E1CF17D24647"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5:*:x86:*:*:*:*:*","matchCriteriaId":"200D8CB2-0D52-40A8-9CD9-6E4513605201"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.6:*:*:*:*:*:*:*","matchCriteriaId":"34EBF074-78C8-41AF-88F1-DA6726E56F8B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:4.1.3:*:*:*:*:*:*:*","matchCriteriaId":"615FA6E4-4DE0-422A-9220-F747D95192C9"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.3:*:*:*:*:*:*:*","matchCriteriaId":"C7A22D21-E0A9-4B56-86C7-805AD1A610D6"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.4:*:*:*:*:*:*:*","matchCriteriaId":"7AAC8954-74A8-4FE3-ABE7-57DA041D9D8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5:*:*:*:*:*:*:*","matchCriteriaId":"5B72953B-E873-4E44-A3CF-12D770A0D416"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5.1:*:*:*:*:*:*:*","matchCriteriaId":"39F847DB-65A9-47DA-BCFA-A179E5E2301A"}]}]}],"references":[{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/188","source":"cve@mitre.org"},{"url":"http://www.ciac.org/ciac/bulletins/j-051.shtml","source":"cve@mitre.org"},{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9908-102","source":"cve@mitre.org"},{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/188","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.ciac.org/ciac/bulletins/j-051.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9908-102","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0707","sourceIdentifier":"cve@mitre.org","published":"1999-07-01T04:00:00.000","lastModified":"2026-06-16T21:48:53.430","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default FTP configuration in HP Visualize Conference allows conference users to send a file to other participants without authorization."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:hp:visualize_conference_ftp:*:*:*:*:*:*:*:*","matchCriteriaId":"23B9851E-8E7C-4966-A756-36DE3BD3D3CD"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.20:*:*:*:*:*:*:*","matchCriteriaId":"EDE44C49-172C-4899-8CC8-29AA99A7CD2F"}]}]}],"references":[{"url":"http://www.ciac.org/ciac/bulletins/j-050.shtml","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/493","source":"cve@mitre.org"},{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9906-099","source":"cve@mitre.org"},{"url":"http://www.ciac.org/ciac/bulletins/j-050.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/493","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9906-099","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0889","sourceIdentifier":"cve@mitre.org","published":"1999-07-01T04:00:00.000","lastModified":"2026-06-16T21:49:16.070","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Cisco 675 routers running CBOS allow remote attackers to establish telnet sessions if an exec or superuser password has not been set."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:675_router:*:*:*:*:*:*:*:*","matchCriteriaId":"79C42E18-4D5A-432C-B5C5-D57F7D40D414"}]}]}],"references":[{"url":"http://www.osvdb.org/39","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/39","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1394","sourceIdentifier":"cve@mitre.org","published":"1999-07-02T04:00:00.000","lastModified":"2026-06-16T21:50:20.763","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"BSD 4.4 based operating systems, when running at security level 1, allow the root user to clear the immutable and append-only flags for files by unmounting the file system and using a file system editor such as fsdb to directly modify the file through a device."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:bsd:bsd:4.4:*:*:*:*:*:*:*","matchCriteriaId":"3C37EB61-50BE-451A-916B-B05BAC79962B"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93094058620450&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/510","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93094058620450&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/510","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0918","sourceIdentifier":"cve@mitre.org","published":"1999-07-03T04:00:00.000","lastModified":"2026-06-16T21:49:19.657","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in various Windows systems via malformed, fragmented IGMP packets."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:C","baseScore":7.8,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-20"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_95:*:*:*:*:*:*:*:*","matchCriteriaId":"82F7322B-8022-4D0B-ADB3-D0F5B6F20309"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98:*:gold:*:*:*:*:*:*","matchCriteriaId":"2D3B703C-79B2-4FA2-9E12-713AB977A880"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp1:*:*:*:*:*:*","matchCriteriaId":"5BDCBCB8-DAA3-465F-ADDE-9143B8251989"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp2:*:*:*:*:*:*","matchCriteriaId":"B86E0671-ED68-4549-B3AC-FD8BD79B0860"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp3:*:*:*:*:*:*","matchCriteriaId":"BB76E7EC-C396-4537-9065-4E815DA7097C"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp4:*:*:*:*:*:*","matchCriteriaId":"4CD026E2-B073-40A6-AD4A-8C76B9169B01"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp5:*:*:*:*:*:*","matchCriteriaId":"DBFB3E49-3FB5-4947-856D-727CBFFBA543"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ238329","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/514","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-034","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ238329","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/514","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-034","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0728","sourceIdentifier":"cve@mitre.org","published":"1999-07-06T04:00:00.000","lastModified":"2026-06-16T21:48:55.960","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A Windows NT user can disable the keyboard or mouse by directly calling the IOCTLs which control them."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:C","baseScore":7.8,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-264"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:server:*:*:*:*:*","matchCriteriaId":"7C5FCE82-1E2F-49B9-B504-8C03F2BCF296"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:terminal_server:*:*:*:*:*","matchCriteriaId":"6E7E6AD3-5418-4FEA-84B5-833059CA880D"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp1:enterprise:*:*:*:*:*","matchCriteriaId":"BBD9C514-5AF7-4849-A535-F0F3C9339051"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ236359","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-024","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ236359","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-024","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0752","sourceIdentifier":"cve@mitre.org","published":"1999-07-06T04:00:00.000","lastModified":"2026-06-16T21:48:58.993","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in Netscape Enterprise Server via a buffer overflow in the SSL handshake."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:enterprise_server:*:*:*:*:*:*:*:*","matchCriteriaId":"EF437206-7696-4583-A6DC-A622F02001EF"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0752","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0752","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1478","sourceIdentifier":"cve@mitre.org","published":"1999-07-06T04:00:00.000","lastModified":"2026-06-16T21:50:31.667","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Sun HotSpot Performance Engine VM allows a remote attacker to cause a denial of service on any server running HotSpot via a URL that includes the [ character."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"547AB6E2-4E9F-4783-8BB4-0AE297A38C9C"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"}]}]}],"references":[{"url":"http://marc.info/?l=ntbugtraq&m=93138827429589&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=93240220324183&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/522","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2348","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=93138827429589&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=93240220324183&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/522","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2348","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1537","sourceIdentifier":"cve@mitre.org","published":"1999-07-07T04:00:00.000","lastModified":"2026-06-16T21:50:39.457","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IIS 3.x and 4.x does not distinguish between pages requiring encryption and those that do not, which allows remote attackers to cause a denial of service (resource exhaustion) via SSL requests to the HTTPS port for normally unencrypted files, which will cause IIS to perform extra work to send the files over SSL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"547AB6E2-4E9F-4783-8BB4-0AE297A38C9C"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"}]}]}],"references":[{"url":"http://marc.info/?l=ntbugtraq&m=93138827329577&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/521","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2352","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=93138827329577&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/521","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2352","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0809","sourceIdentifier":"cve@mitre.org","published":"1999-07-09T04:00:00.000","lastModified":"2026-06-16T21:49:06.117","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Netscape Communicator 4.x with Javascript enabled does not warn a user of cookie settings, even if they have selected the option to \"Only accept cookies originating from the same server as the page being viewed\"."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.0:*:*:*:*:*:*:*","matchCriteriaId":"209C7BB1-EFDF-43AB-9FB6-DF67465DEAEF"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0809","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0809","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1543","sourceIdentifier":"cve@mitre.org","published":"1999-07-10T04:00:00.000","lastModified":"2026-06-16T21:50:40.950","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"MacOS uses weak encryption for passwords that are stored in the Users & Groups Data File."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:apple:macos:7.5.3:*:*:*:*:*:*:*","matchCriteriaId":"B88C10C5-65BC-4628-A430-CB1B8234CDAB"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:macos:7.6:*:*:*:*:*:*:*","matchCriteriaId":"B15533E4-98EF-42BD-AA46-C11A287C8461"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:macos:7.6.1:*:*:*:*:*:*:*","matchCriteriaId":"46A397DB-8821-4195-AB2A-9F8BE40A183D"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:macos:8.0:*:*:*:*:*:*:*","matchCriteriaId":"4F1F1D05-4A72-47DA-BEFA-C5643DC03890"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:macos:8.1:*:*:*:*:*:*:*","matchCriteriaId":"CE76DE58-C0BD-4048-AE9F-5297A17099ED"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:macos:8.5:*:*:*:*:*:*:*","matchCriteriaId":"B228B2A1-8897-4028-9744-B30021CC6ECB"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:macos:8.6:*:*:*:*:*:*:*","matchCriteriaId":"5CD596AD-EBF4-4A02-88E2-54952FD19E09"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93188174906513&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93736667813924&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/519","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=93188174906513&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=93736667813924&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/519","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1166","sourceIdentifier":"cve@mitre.org","published":"1999-07-11T04:00:00.000","lastModified":"2026-06-16T21:49:51.663","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Linux 2.0.37 does not properly encode the Custom segment limit, which allows local users to gain root privileges by accessing and modifying kernel memory."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.0.37:*:*:*:*:*:*:*","matchCriteriaId":"1E55F8A8-1ABD-4760-9074-353BBAEE005B"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/18156","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/523","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/18156","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/523","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1460","sourceIdentifier":"cve@mitre.org","published":"1999-07-13T04:00:00.000","lastModified":"2026-06-16T21:50:29.277","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"BMC PATROL SNMP Agent before 3.2.07 allows local users to create arbitrary world-writeable files as root by specifying the target file as the second argument to the snmpmagt program."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:bmc:patrol_agent:*:*:*:*:*:*:*:*","versionEndIncluding":"3.2.7","matchCriteriaId":"5C00C28F-86B7-4DD0-94D0-835344ACAB3B"},{"vulnerable":true,"criteria":"cpe:2.3:a:bmc:patrol_agent:3.2:*:*:*:*:*:*:*","matchCriteriaId":"DD670201-A070-4E0D-BE58-2329116681AF"},{"vulnerable":true,"criteria":"cpe:2.3:a:bmc:patrol_agent:3.2.3:*:*:*:*:*:*:*","matchCriteriaId":"6C07DD3D-C806-4218-BBC8-B859940D9330"},{"vulnerable":true,"criteria":"cpe:2.3:a:bmc:patrol_agent:3.2.5:*:*:*:*:*:*:*","matchCriteriaId":"7B1CDFC2-10EC-4955-B254-5A22F910EFE8"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93198293132463&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93372579004129&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/525","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=93198293132463&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=93372579004129&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/525","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1545","sourceIdentifier":"cve@mitre.org","published":"1999-07-14T04:00:00.000","lastModified":"2026-06-16T21:50:41.200","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Joe's Own Editor (joe) 2.8 sets the world-readable permission on its crash-save file, DEADJOE, which could allow local users to read files that were being edited by other users."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:joes_own_editor:joe:2.8:*:*:*:*:*:*:*","matchCriteriaId":"856FF937-2F8D-4B09-9B51-8F17FEB03DBF"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93216103027827&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93226771401036&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93216103027827&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=93226771401036&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1086","sourceIdentifier":"cve@mitre.org","published":"1999-07-15T04:00:00.000","lastModified":"2026-06-16T21:49:41.520","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Novell 5 and earlier, when running over IPX with a packet signature level less than 3, allows remote attackers to gain administrator privileges by spoofing the MAC address in IPC fragmented packets that make NetWare Core Protocol (NCP) calls."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:novell:netware:*:*:*:*:*:*:*:*","versionEndIncluding":"5.0","matchCriteriaId":"55D70745-2A40-4A7A-A33F-B68443ACC303"},{"vulnerable":true,"criteria":"cpe:2.3:o:novell:netware:4.1:*:*:*:*:*:*:*","matchCriteriaId":"01439E99-85F3-47B6-802A-909B737071D2"},{"vulnerable":true,"criteria":"cpe:2.3:o:novell:netware:4.11:sp5b:*:*:*:*:*:*","matchCriteriaId":"063118A6-F4AA-4D3C-865C-DCD0F3623EF2"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93214475111651&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/528","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=93214475111651&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/528","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1518","sourceIdentifier":"cve@mitre.org","published":"1999-07-15T04:00:00.000","lastModified":"2026-06-16T21:50:36.717","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Operating systems with shared memory implementations based on BSD 4.4 code allow a user to conduct a denial of service and bypass memory limits (e.g., as specified with rlimits) using mmap or shmget to allocate memory and cause page faults."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:1.1.5.1:*:*:*:*:*:*:*","matchCriteriaId":"C496B665-70DA-4B98-A5D1-E2935C0CE840"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.0:*:*:*:*:*:*:*","matchCriteriaId":"F1F098C1-D09E-49B4-9B51-E84B6C4EA6CD"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.0.5:*:*:*:*:*:*:*","matchCriteriaId":"34797660-41F5-4358-B70F-2A40DE48F182"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.1.0:*:*:*:*:*:*:*","matchCriteriaId":"27C9E23D-AB82-4AE1-873E-C5493BB96AA1"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.1.5:*:*:*:*:*:*:*","matchCriteriaId":"4054D69F-596F-4EB4-BE9A-E2478343F55A"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.1.6:*:*:*:*:*:*:*","matchCriteriaId":"CA26ABBE-9973-45FA-9E9B-82170B751219"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.1.7.1:*:*:*:*:*:*:*","matchCriteriaId":"BF8F9B2F-E898-4F87-A245-32A41748587B"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2.2:*:*:*:*:*:*:*","matchCriteriaId":"EBDDEC3F-52EB-4E1E-84C4-B472600059EC"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2.3:*:*:*:*:*:*:*","matchCriteriaId":"B58E02AE-38B4-466E-BF73-2F0B80AF7BA5"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2.4:*:*:*:*:*:*:*","matchCriteriaId":"3928D5CF-6FC0-434C-8A80-ABDBF346C2C9"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2.5:*:*:*:*:*:*:*","matchCriteriaId":"314BA420-4C74-4060-8ACE-D7A7C041CF2B"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2.6:*:*:*:*:*:*:*","matchCriteriaId":"2EAD7613-A5B3-4621-B981-290C7C6B8BA0"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2.8:*:*:*:*:*:*:*","matchCriteriaId":"D1CA3337-9BEE-49C5-9EDE-8CDBE5580537"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.0:*:*:*:*:*:*:*","matchCriteriaId":"EE38C50A-81FE-412E-9717-3672FAE6A6F4"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.1:*:*:*:*:*:*:*","matchCriteriaId":"263F3734-7076-4EA8-B4C0-F37CFC4E979E"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.2:*:*:*:*:*:*:*","matchCriteriaId":"0419DD66-FF66-48BC-AD3B-F6AFD0551E36"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.3.1:*:*:*:*:*:*:*","matchCriteriaId":"B8C8CAB1-2D8C-4875-A795-41178D48410F"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.3.2:*:*:*:*:*:*:*","matchCriteriaId":"2D3C937A-E9D8-474A-ABEB-A927EF7CC5B0"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.3.3:*:*:*:*:*:*:*","matchCriteriaId":"2A8F8DE7-7A84-4350-A6D8-FCCB561D63B2"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4:*:x86:*:*:*:*:*","matchCriteriaId":"4319B741-4376-4EA2-9FEB-236C148D1514"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93207728118694&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/526","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2351","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93207728118694&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/526","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2351","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0692","sourceIdentifier":"cve@mitre.org","published":"1999-07-19T04:00:00.000","lastModified":"2026-06-16T21:48:51.550","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default configuration of the Array Services daemon (arrayd) disables authentication, allowing remote users to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.2:*:*:*:*:*:*:*","matchCriteriaId":"0ECE564D-B4BB-4C05-88CC-CDC3F8E4E366"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.3:*:*:*:*:*:*:*","matchCriteriaId":"B2D59247-56FA-46B4-BB51-2DAE71AFC145"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.4:*:*:*:*:*:*:*","matchCriteriaId":"15BE08F8-5F3F-45DB-BFE0-1F6F2F57A4D4"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5:*:*:*:*:*:*:*","matchCriteriaId":"C30D6962-3DBB-4DF8-A04F-8E47AFEDCF99"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.1:*:*:*:*:*:*:*","matchCriteriaId":"36B60E50-4F5A-4404-BEA3-C94F7D27B156"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.2:*:*:*:*:*:*:*","matchCriteriaId":"6ECB750B-9F53-4DB6-8B26-71BCCA446FF7"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.3:*:*:*:*:*:*:*","matchCriteriaId":"E6B2E6D1-8C2D-4E15-A6BB-E4FE878ED1E7"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.4:*:*:*:*:*:*:*","matchCriteriaId":"440B7208-34DB-4898-8461-4E703F7EDFB7"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cray:unicos:*:*:*:*:*:*:*:*","matchCriteriaId":"B7B7EE1D-BD38-49D6-B58E-34A53EB150C1"}]}]}],"references":[{"url":"ftp://patches.sgi.com/support/free/security/advisories/19990701-01-P","source":"cve@mitre.org"},{"url":"http://www.ciac.org/ciac/bulletins/j-052.shtml","source":"cve@mitre.org"},{"url":"ftp://patches.sgi.com/support/free/security/advisories/19990701-01-P","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.ciac.org/ciac/bulletins/j-052.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1011","sourceIdentifier":"cve@mitre.org","published":"1999-07-19T04:00:00.000","lastModified":"2026-06-16T21:49:31.110","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Remote Data Service (RDS) DataFactory component of Microsoft Data Access Components (MDAC) in IIS 3.x and 4.x exposes unsafe methods, which allows remote attackers to execute arbitrary commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-264"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:data_access_components:1.5:*:*:*:*:*:*:*","matchCriteriaId":"1B1985AB-FCAB-4ABC-BF03-9E11CD015596"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:data_access_components:2.0:*:*:*:*:*:*:*","matchCriteriaId":"0D331DB4-AA55-4E1B-8B73-14EE2F13E09E"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:data_access_components:2.1:*:*:*:*:*:*:*","matchCriteriaId":"A3BFD086-7F94-4482-AC27-E4FAD418B767"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:index_server:2.0:*:*:*:*:*:*:*","matchCriteriaId":"D56759FD-DE03-4E90-8688-B6A49AA24F25"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"547AB6E2-4E9F-4783-8BB4-0AE297A38C9C"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:site_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"4A503018-356B-46D9-965F-60750B5B7484"}]}]}],"references":[{"url":"http://www.ciac.org/ciac/bulletins/j-054.shtml","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/272","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1998/ms98-004","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-025","source":"cve@mitre.org"},{"url":"https://www.securityfocus.com/bid/529","source":"cve@mitre.org"},{"url":"http://www.ciac.org/ciac/bulletins/j-054.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/272","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1998/ms98-004","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-025","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://www.securityfocus.com/bid/529","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1378","sourceIdentifier":"cve@mitre.org","published":"1999-07-19T04:00:00.000","lastModified":"2026-06-16T21:50:18.727","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"dbmlparser.exe CGI guestbook program does not perform a chroot operation properly, which allows remote attackers to read arbitrary files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:dbmlparser.exe:dbmlparser.exe:*:*:*:*:*:*:*:*","matchCriteriaId":"55325DB2-3870-4835-B2D9-C3B3B26344FD"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93250710625956&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93250710625956&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0721","sourceIdentifier":"cve@mitre.org","published":"1999-07-20T04:00:00.000","lastModified":"2026-06-16T21:48:55.073","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in Windows NT Local Security Authority (LSA) through a malformed LSA request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:C","baseScore":7.8,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-20"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:*:*:*:*:*:*:*:*","matchCriteriaId":"ED27882B-A02A-4D5F-9117-A47976C676E0"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp4:*:*:*:*:*:*","matchCriteriaId":"4CD026E2-B073-40A6-AD4A-8C76B9169B01"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp5:*:*:*:*:*:*","matchCriteriaId":"DBFB3E49-3FB5-4947-856D-727CBFFBA543"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ231457","source":"cve@mitre.org"},{"url":"http://www.ciac.org/ciac/bulletins/j-049.shtml","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-020","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ231457","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.ciac.org/ciac/bulletins/j-049.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-020","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1535","sourceIdentifier":"cve@mitre.org","published":"1999-07-20T04:00:00.000","lastModified":"2026-06-16T21:50:39.057","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in AspUpload.dll in Persits Software AspUpload before 1.4.0.2 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long argument in the HTTP request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:persits:aspupload:*:*:*:*:*:*:*:*","versionEndIncluding":"1.4.0.2","matchCriteriaId":"CA4E5553-6629-4AC9-B20E-AA640EDD3512"}]}]}],"references":[{"url":"http://marc.info/?l=ntbugtraq&m=93256878011447&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=93501427820328&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/592","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3291","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=93256878011447&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=93501427820328&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/592","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3291","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1560","sourceIdentifier":"cve@mitre.org","published":"1999-07-20T04:00:00.000","lastModified":"2026-06-16T21:50:43.110","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in a script in Texas A&M University (TAMU) Tiger allows local users to execute arbitrary commands as the Tiger user, usually root."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:tamu:tiger:*:*:*:*:*:*:*:*","matchCriteriaId":"E7122C69-8C6A-452F-BAAF-B6DE2695F14C"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93252050203589&w=2","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2369","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93252050203589&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2369","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0810","sourceIdentifier":"cve@mitre.org","published":"1999-07-21T04:00:00.000","lastModified":"2026-06-16T21:49:06.230","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in Samba NETBIOS name service daemon (nmbd)."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:samba:samba:2.0.5:*:*:*:*:*:*:*","matchCriteriaId":"93AF43FA-9947-4F26-96E8-1D77BF909AA0"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0810","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0810","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0811","sourceIdentifier":"cve@mitre.org","published":"1999-07-21T04:00:00.000","lastModified":"2026-06-16T21:49:06.360","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Samba smbd program via a malformed message command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:samba:samba:2.0.4:*:*:*:*:*:*:*","matchCriteriaId":"D8F15704-2F2B-4536-A2A0-510B5CE91D09"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/536","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/536","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1165","sourceIdentifier":"cve@mitre.org","published":"1999-07-21T04:00:00.000","lastModified":"2026-06-16T21:49:51.533","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"GNU fingerd 1.37 does not properly drop privileges before accessing user information, which could allow local users to (1) gain root privileges via a malicious program in the .fingerrc file, or (2) read arbitrary files via symbolic links from .plan, .forward, or .project files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:fingerd:1.37:*:*:*:*:*:*:*","matchCriteriaId":"7DD364F0-40E7-47D9-ADDF-8BA089FE8796"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93268249021561&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/2478","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/535","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=93268249021561&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/2478","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/535","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1338","sourceIdentifier":"cve@mitre.org","published":"1999-07-21T04:00:00.000","lastModified":"2026-06-16T21:50:13.700","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Delegate proxy 5.9.3 and earlier creates files and directories in the DGROOT with world-writable permissions."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:delegate:delegate:*:*:*:*:*:*:*:*","versionEndIncluding":"5.9.3","matchCriteriaId":"B52E9623-AFCD-4AA6-A47B-DC3596897042"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93259112204664&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93259112204664&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0224","sourceIdentifier":"cve@mitre.org","published":"1999-07-23T04:00:00.000","lastModified":"2026-06-16T21:47:56.923","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in Windows NT messenger service through a long username."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp1:*:*:*:*:*:*","matchCriteriaId":"5BDCBCB8-DAA3-465F-ADDE-9143B8251989"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp2:*:*:*:*:*:*","matchCriteriaId":"B86E0671-ED68-4549-B3AC-FD8BD79B0860"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp3:*:*:*:*:*:*","matchCriteriaId":"BB76E7EC-C396-4537-9065-4E815DA7097C"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp4:*:*:*:*:*:*","matchCriteriaId":"4CD026E2-B073-40A6-AD4A-8C76B9169B01"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp5:*:*:*:*:*:*","matchCriteriaId":"DBFB3E49-3FB5-4947-856D-727CBFFBA543"}]}]}],"references":[{"url":"https://www.cve.org/CVERecord?id=CVE-1999-0224","source":"cve@mitre.org"},{"url":"https://www.cve.org/CVERecord?id=CVE-1999-0224","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0710","sourceIdentifier":"cve@mitre.org","published":"1999-07-25T04:00:00.000","lastModified":"2026-06-16T21:48:53.680","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Squid package in Red Hat Linux 5.2 and 6.0, and other distributions, installs cachemgr.cgi in a public web directory, which allows remote attackers to use it as an intermediary to connect to other systems."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:*:*:*:*:*:*","matchCriteriaId":"A8EED385-8C39-4A40-A507-2EFE7652FB35"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"2DFA94D5-0139-490C-8257-0751FE9FBAE4"}]}]}],"references":[{"url":"http://fedoranews.org/updates/FEDORA--.shtml","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/2004/dsa-576","source":"cve@mitre.org"},{"url":"http://www.redhat.com/archives/fedora-announce-list/2005-May/msg00025.html","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-1999-025.html","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2005-489.html","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/archives/rh52-errata-general.html#squid","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2059","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2385","source":"cve@mitre.org"},{"url":"http://fedoranews.org/updates/FEDORA--.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.debian.org/security/2004/dsa-576","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/archives/fedora-announce-list/2005-May/msg00025.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-1999-025.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2005-489.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/archives/rh52-errata-general.html#squid","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2059","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2385","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1018","sourceIdentifier":"cve@mitre.org","published":"1999-07-27T04:00:00.000","lastModified":"2026-06-16T21:49:31.960","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IPChains in Linux kernels 2.2.10 and earlier does not reassemble IP fragments before checking the header information, which allows a remote attacker to bypass the filtering rules using several fragments with 0 offsets."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionEndIncluding":"2.2.10","matchCriteriaId":"45204613-D254-43D9-9261-EFC4DDD8576E"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.2.0:*:*:*:*:*:*:*","matchCriteriaId":"146F7A77-A950-4CAD-BDA9-C239696F569D"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93312523904591&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/543","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=93312523904591&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/543","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1017","sourceIdentifier":"cve@mitre.org","published":"1999-07-28T04:00:00.000","lastModified":"2026-06-16T21:49:31.843","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Seattle Labs Emurl 2.0, and possibly earlier versions, stores e-mail attachments in a specific directory with scripting enabled, which allows a malicious ASP file attachment to execute when the recipient opens the message."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:seattle_lab_software:emurl:*:*:*:*:*:*:*:*","versionEndIncluding":"2.0","matchCriteriaId":"EFB97341-3A0E-4B6C-AA51-9E3922B42598"}]}]}],"references":[{"url":"http://marc.info/?l=ntbugtraq&m=93316253431588&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/544","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=ntbugtraq&m=93316253431588&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/544","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0323","sourceIdentifier":"cve@mitre.org","published":"1999-07-28T04:00:00.000","lastModified":"2026-06-16T21:51:28.597","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Microsoft Jet database engine allows an attacker to modify text files via a database query, aka the \"Text I-ISAM\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:C/I:C/A:C","baseScore":7.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":4.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:jet:3.5:*:*:*:*:*:*:*","matchCriteriaId":"DFDB61BB-F95E-4312-9A26-5F883C951141"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:jet:3.51:*:*:*:*:*:*:*","matchCriteriaId":"2FF37F40-A14C-4653-8E7F-360F9ABB45AF"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:jet:4.0:*:*:*:*:*:*:*","matchCriteriaId":"7D19C4A6-8BDB-4397-9C51-8C9AC2B5D4FE"}]}]}],"references":[{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=1999-08-22&msg=19990729195531.25108.qmail%40underground.org","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-030","source":"cve@mitre.org"},{"url":"https://web.archive.org/web/20000819203059/http://xforce.iss.net:80/alerts/vol-4_num-7.php#jet-text-isam","source":"cve@mitre.org"},{"url":"https://www.securityfocus.com/bid/595","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=1999-08-22&msg=19990729195531.25108.qmail%40underground.org","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-030","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://web.archive.org/web/20000819203059/http://xforce.iss.net:80/alerts/vol-4_num-7.php#jet-text-isam","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://www.securityfocus.com/bid/595","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0700","sourceIdentifier":"cve@mitre.org","published":"1999-07-29T04:00:00.000","lastModified":"2026-06-16T21:48:52.550","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Microsoft Phone Dialer (dialer.exe), via a malformed dialer entry in the dialer.ini file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:C/I:C/A:C","baseScore":6.2,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"MEDIUM","exploitabilityScore":1.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-119"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:*:*:*:*:*:*:*:*","matchCriteriaId":"ED27882B-A02A-4D5F-9117-A47976C676E0"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:terminal_server:*:*:*:*:*","matchCriteriaId":"6E7E6AD3-5418-4FEA-84B5-833059CA880D"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp1:*:*:*:*:*:*","matchCriteriaId":"5BDCBCB8-DAA3-465F-ADDE-9143B8251989"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp2:*:*:*:*:*:*","matchCriteriaId":"B86E0671-ED68-4549-B3AC-FD8BD79B0860"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp3:*:*:*:*:*:*","matchCriteriaId":"BB76E7EC-C396-4537-9065-4E815DA7097C"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp4:*:*:*:*:*:*","matchCriteriaId":"4CD026E2-B073-40A6-AD4A-8C76B9169B01"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ237185","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-026","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ237185","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-026","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0770","sourceIdentifier":"cve@mitre.org","published":"1999-07-29T04:00:00.000","lastModified":"2026-06-16T21:49:01.327","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Firewall-1 sets a long timeout for connections that begin with ACK or other packets except SYN, allowing an attacker to conduct a denial of service via a large number of connection attempts to unresponsive systems."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:3.0:*:*:*:*:*:*:*","matchCriteriaId":"A550C18E-F07A-4A05-87F0-B1D52FDC401C"},{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:4.0:*:*:*:*:*:*:*","matchCriteriaId":"0F543272-8C7E-4326-BA97-142FBEA641E5"}]}]}],"references":[{"url":"http://www.osvdb.org/1027","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/549","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1027","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/549","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1078","sourceIdentifier":"cve@mitre.org","published":"1999-07-29T04:00:00.000","lastModified":"2026-06-16T21:49:40.527","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WS_FTP Pro 6.0 uses weak encryption for passwords in its initialization files, which allows remote attackers to easily decrypt the passwords and gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:ws_ftp_pro:6.0:*:*:*:*:*:*:*","matchCriteriaId":"69C53D89-E5B6-4734-8CDC-D81C1975640B"}]}]}],"references":[{"url":"http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind9907&L=ntbugtraq&D=0&P=10370&F=P","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/547","source":"cve@mitre.org"},{"url":"http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind9907&L=ntbugtraq&D=0&P=10370&F=P","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/547","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0683","sourceIdentifier":"cve@mitre.org","published":"1999-07-30T04:00:00.000","lastModified":"2026-06-16T21:48:50.410","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in Gauntlet Firewall via a malformed ICMP packet."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:network_associates:gauntlet_firewall:5.0:*:*:*:*:*:*:*","matchCriteriaId":"7A91D5DB-D09F-4CF6-99B2-B444FAD91A4B"}]}]}],"references":[{"url":"http://www.osvdb.org/1029","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/556","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1029","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/556","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1130","sourceIdentifier":"cve@mitre.org","published":"1999-07-30T04:00:00.000","lastModified":"2026-06-16T21:49:47.070","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Default configuration of the search engine in Netscape Enterprise Server 3.5.1, and possibly other versions, allows remote attackers to read the source of JHTML files by specifying a search command using the HTML-tocrec-demo1.pat pattern file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:enterprise_server:*:*:*:*:*:*:*:*","versionEndIncluding":"3.5.1","matchCriteriaId":"AAF865EE-D927-41E3-AB70-2E90D2C84685"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93346448121208&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=93337389603117&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/559","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93346448121208&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=93337389603117&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/559","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1227","sourceIdentifier":"cve@mitre.org","published":"1999-07-30T04:00:00.000","lastModified":"2026-06-16T21:49:59.377","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Ethereal allows local users to overwrite arbitrary files via a symlink attack on the packet capture file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ethereal_group:ethereal:*:*:*:*:*:*:*:*","matchCriteriaId":"4D7AF472-DA34-4E6F-801E-C06C135779B6"}]}]}],"references":[{"url":"http://www.ethereal.com/lists/ethereal-dev/199907/msg00126.html","source":"cve@mitre.org","tags":["Vendor Advisory","URL Repurposed"]},{"url":"http://www.ethereal.com/lists/ethereal-dev/199907/msg00130.html","source":"cve@mitre.org","tags":["Vendor Advisory","URL Repurposed"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3334","source":"cve@mitre.org"},{"url":"http://www.ethereal.com/lists/ethereal-dev/199907/msg00126.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory","URL Repurposed"]},{"url":"http://www.ethereal.com/lists/ethereal-dev/199907/msg00130.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory","URL Repurposed"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3334","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1536","sourceIdentifier":"cve@mitre.org","published":"1999-07-30T04:00:00.000","lastModified":"2026-06-16T21:50:39.213","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":".sbstart startup script in AcuShop Salesbuilder is world writable, which allows local users to gain privileges by appending commands to the file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:acushop:salesbuilder:2.6:*:*:*:*:*:*:*","matchCriteriaId":"6435C1BD-6301-4A3B-8E32-C2CCC82194CB"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93347785827287&w=2","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/13557","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/560","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=93347785827287&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/13557","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/560","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-0672","sourceIdentifier":"cve@mitre.org","published":"1999-08-01T04:00:00.000","lastModified":"2026-06-16T21:48:48.990","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Fujitsu Chocoa IRC client via IRC channel topics."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:fujitsu:chocoa:1.0beta7r:*:*:*:*:*:*:*","matchCriteriaId":"3018EE13-C0B0-4353-8D37-A1FAA419ADE4"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/573","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/573","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1337","sourceIdentifier":"cve@mitre.org","published":"1999-08-01T04:00:00.000","lastModified":"2026-06-16T21:50:13.573","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"FTP client in Midnight Commander (mc) before 4.5.11 stores usernames and passwords for visited sites in plaintext in the world-readable history file, which allows other local users to gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:midnight_commander:midnight_commander:*:*:*:*:*:*:*:*","versionEndIncluding":"4.5.11","matchCriteriaId":"24D76D39-F002-44B5-857D-3E6B158AD541"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93370073207984&w=2","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/9873.php","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/5921","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93370073207984&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.iss.net/security_center/static/9873.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/5921","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0671","sourceIdentifier":"cve@mitre.org","published":"1999-08-03T04:00:00.000","lastModified":"2026-06-16T21:48:48.857","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in ToxSoft NextFTP client through CWD command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:toxsoft:nextftp:1.82:*:*:*:*:*:*:*","matchCriteriaId":"1BAC287F-F1C6-4C8B-947C-B56C2199D656"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/572","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/572","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0677","sourceIdentifier":"cve@mitre.org","published":"1999-08-03T04:00:00.000","lastModified":"2026-06-16T21:48:49.640","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The WebRamp web administration utility has a default password."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:ramp_networks:webramp_200i:1.0:*:*:*:*:*:*:*","matchCriteriaId":"DC097E3D-FB10-469C-A303-D72D5E009FFE"},{"vulnerable":true,"criteria":"cpe:2.3:h:ramp_networks:webramp_m3:1.0:*:*:*:*:*:*:*","matchCriteriaId":"697F9986-CDD4-479F-A375-53FF40C2C419"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/577","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/577","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0703","sourceIdentifier":"cve@mitre.org","published":"1999-08-03T04:00:00.000","lastModified":"2026-06-16T21:48:52.917","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"OpenBSD, BSDI, and other Unix operating systems allow users to set chflags and fchflags on character and block devices."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:P","baseScore":3.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:bsdi:bsd_os:3.2:*:*:*:*:*:*:*","matchCriteriaId":"F185FD65-A2A8-4170-8419-E939450055B8"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.2:*:*:*:*:*:*:*","matchCriteriaId":"0419DD66-FF66-48BC-AD3B-F6AFD0551E36"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.5:*:*:*:*:*:*:*","matchCriteriaId":"ACE7FDFB-C6A6-4B58-B0B4-236E4EA76EF6"}]}]}],"references":[{"url":"http://www.ciac.org/ciac/bulletins/j-066.shtml","source":"cve@mitre.org"},{"url":"http://www.ciac.org/ciac/bulletins/j-066.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0719","sourceIdentifier":"cve@mitre.org","published":"1999-08-05T04:00:00.000","lastModified":"2026-06-16T21:48:54.830","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Guile plugin for the Gnumeric spreadsheet package allows attackers to execute arbitrary code."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:gnumeric:0.27:*:*:*:*:*:*:*","matchCriteriaId":"A2F12181-754A-46B3-B4DD-3DE91448F80A"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/563","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/563","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0913","sourceIdentifier":"cve@mitre.org","published":"1999-08-05T04:00:00.000","lastModified":"2026-06-16T21:49:19.050","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"dfire.cgi script in Dragon-Fire IDS allows remote users to execute commands via shell metacharacters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:network_security_wizards:dragon-fire_ids:1.0:*:*:*:*:*:*:*","matchCriteriaId":"1CCCA766-49E6-464D-BCC4-1B49A83BA060"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93383593909438&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/564","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93383593909438&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/564","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0682","sourceIdentifier":"cve@mitre.org","published":"1999-08-06T04:00:00.000","lastModified":"2026-06-16T21:48:50.280","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Exchange 5.5 allows a remote attacker to relay email (i.e. spam) using encapsulated SMTP addresses, even if the anti-relaying features are enabled."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-noinfo"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:exchange_server:5.5:-:*:*:*:*:*:*","matchCriteriaId":"B4F9C143-4734-4E5D-9281-F51513C5CAAF"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:exchange_server:5.5:sp1:*:*:*:*:*:*","matchCriteriaId":"AD3E2F18-A369-4767-ACEF-38DB40EEC6D4"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:exchange_server:5.5:sp2:*:*:*:*:*:*","matchCriteriaId":"EC01670D-4550-4034-86A5-7879B6334241"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ237927","source":"cve@mitre.org"},{"url":"http://www.ciac.org/ciac/bulletins/j-056.shtml","source":"cve@mitre.org","tags":["Broken Link"]},{"url":"http://www.securityfocus.com/bid/567","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-027","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ237927","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.ciac.org/ciac/bulletins/j-056.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"]},{"url":"http://www.securityfocus.com/bid/567","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-027","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-0727","sourceIdentifier":"cve@mitre.org","published":"1999-08-06T04:00:00.000","lastModified":"2026-06-16T21:48:55.840","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A kernel leak in the OpenBSD kernel allows IPsec packets to be sent unencrypted."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.5:*:*:*:*:*:*:*","matchCriteriaId":"ACE7FDFB-C6A6-4B58-B0B4-236E4EA76EF6"}]}]}],"references":[{"url":"http://www.osvdb.org/6127","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/6127","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1524","sourceIdentifier":"cve@mitre.org","published":"1999-08-07T04:00:00.000","lastModified":"2026-06-16T21:50:37.530","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"FlowPoint DSL router firmware versions prior to 3.0.8 allows a remote attacker to exploit a password recovery feature from the network and conduct brute force password guessing, instead of limiting the feature to the serial console port."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:flowpoint:flowpoint_dsl_router:*:*:*:*:*:*:*:*","versionEndIncluding":"3.0.8","matchCriteriaId":"DAC4A180-0247-410A-8E6C-158BD81B0893"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93424680430460&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93424680430460&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0673","sourceIdentifier":"cve@mitre.org","published":"1999-08-08T04:00:00.000","lastModified":"2026-06-16T21:48:49.103","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in ALMail32 POP3 client via From: or To: headers."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:crear:almail32:1.10:*:*:*:*:*:*:*","matchCriteriaId":"7192F380-2129-4E3A-B1CE-092FCF14D0AF"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/574","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/574","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0722","sourceIdentifier":"cve@mitre.org","published":"1999-08-08T04:00:00.000","lastModified":"2026-06-16T21:48:55.193","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default configuration of Cobalt RaQ2 servers allows remote users to install arbitrary software packages."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:sun:cobalt_raq_2:*:*:*:*:*:*:*:*","matchCriteriaId":"0F6DDD9F-5C58-4092-BF3D-332E2E566182"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/558","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/558","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0674","sourceIdentifier":"cve@mitre.org","published":"1999-08-09T04:00:00.000","lastModified":"2026-06-16T21:48:49.237","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The BSD profil system call allows a local user to modify the internal data space of a program via profiling and execve."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.0:*:*:*:*:*:*:*","matchCriteriaId":"9DF613C9-DC4A-45F0-BEE1-8450762B0089"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.1:*:*:*:*:*:*:*","matchCriteriaId":"441CEF2E-9687-4930-8536-B8B83018BD28"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.2:*:*:*:*:*:*:*","matchCriteriaId":"55DD3C82-0B7D-4B25-B603-AD6C6D59239A"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.2.1:*:*:*:*:*:*:*","matchCriteriaId":"FC7A39CD-C4B2-4FD9-A450-E5C7A5480174"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.3:*:*:*:*:*:*:*","matchCriteriaId":"7CBA1B13-B378-4F13-BD13-EC58F15F5C81"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.3.1:*:*:*:*:*:*:*","matchCriteriaId":"B8C8CAB1-2D8C-4875-A795-41178D48410F"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.3.2:*:*:*:*:*:*:*","matchCriteriaId":"2D3C937A-E9D8-474A-ABEB-A927EF7CC5B0"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.3.3:*:*:*:*:*:*:*","matchCriteriaId":"2A8F8DE7-7A84-4350-A6D8-FCCB561D63B2"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4:*:*:*:*:*:*:*","matchCriteriaId":"C422E343-ADF2-427D-865D-B5C35431EFD1"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.0:*:*:*:*:*:*:*","matchCriteriaId":"36DF0D51-FCFA-46A3-B834-E80DFA91DFDC"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.1:*:*:*:*:*:*:*","matchCriteriaId":"5CB726CF-ADA2-4CDA-9786-1E84AC53740A"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.2:*:*:*:*:*:*:*","matchCriteriaId":"1FC373FC-88AC-4B6D-A289-51881ACD57F7"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.3:*:*:*:*:*:*:*","matchCriteriaId":"1D2DA7F0-E3C0-447A-A2B0-ECC928389D84"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.4:*:*:*:*:*:*:*","matchCriteriaId":"FEBE290B-5EC6-4BBA-B645-294C150E417A"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.5:*:*:*:*:*:*:*","matchCriteriaId":"ACE7FDFB-C6A6-4B58-B0B4-236E4EA76EF6"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.4:*:x86:*:*:*:*:*","matchCriteriaId":"1F881110-7B54-49DA-B23A-710273430C44"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5:*:x86:*:*:*:*:*","matchCriteriaId":"200D8CB2-0D52-40A8-9CD9-6E4513605201"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.6:*:*:*:*:*:*:*","matchCriteriaId":"34EBF074-78C8-41AF-88F1-DA6726E56F8B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:7.0:*:x86:*:*:*:*:*","matchCriteriaId":"8F1F312C-413F-4DB4-ABF4-48E33F6FECF2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:-:*:*:*:*:*:*:*","matchCriteriaId":"369207B4-96FA-4324-9445-98FAE8ECF5DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.1:*:*:*:*:*:*:*","matchCriteriaId":"5FF2C7C4-6F8D-40DB-9FBC-E7E4D76A2B23"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.2:*:*:*:*:*:*:*","matchCriteriaId":"84523B48-218B-45F4-9C04-2C103612DCB2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.3:*:*:*:*:*:*:*","matchCriteriaId":"C7A22D21-E0A9-4B56-86C7-805AD1A610D6"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.4:*:*:*:*:*:*:*","matchCriteriaId":"7AAC8954-74A8-4FE3-ABE7-57DA041D9D8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5:*:*:*:*:*:*:*","matchCriteriaId":"5B72953B-E873-4E44-A3CF-12D770A0D416"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5.1:*:*:*:*:*:*:*","matchCriteriaId":"39F847DB-65A9-47DA-BCFA-A179E5E2301A"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"http://www.ciac.org/ciac/bulletins/j-067.shtml","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/570","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.ciac.org/ciac/bulletins/j-067.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/570","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-0675","sourceIdentifier":"cve@mitre.org","published":"1999-08-09T04:00:00.000","lastModified":"2026-06-16T21:48:49.377","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Check Point FireWall-1 can be subjected to a denial of service via UDP packets that are sent through VPN-1 to port 0 of a host."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:3.0:*:*:*:*:*:*:*","matchCriteriaId":"A550C18E-F07A-4A05-87F0-B1D52FDC401C"},{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:4.0:*:*:*:*:*:*:*","matchCriteriaId":"0F543272-8C7E-4326-BA97-142FBEA641E5"}]}]}],"references":[{"url":"http://www.osvdb.org/1038","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/23615","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/576","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1038","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/23615","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/576","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0676","sourceIdentifier":"cve@mitre.org","published":"1999-08-09T04:00:00.000","lastModified":"2026-06-16T21:48:49.510","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"sdtcm_convert in Solaris 2.6 allows a local user to overwrite sensitive files via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5:*:x86:*:*:*:*:*","matchCriteriaId":"200D8CB2-0D52-40A8-9CD9-6E4513605201"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5.1:*:x86:*:*:*:*:*","matchCriteriaId":"F66BAF35-A8B9-4E95-B270-444206FDD35B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.6:*:*:*:*:*:*:*","matchCriteriaId":"34EBF074-78C8-41AF-88F1-DA6726E56F8B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:-:*:*:*:*:*:*:*","matchCriteriaId":"369207B4-96FA-4324-9445-98FAE8ECF5DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5:*:*:*:*:*:*:*","matchCriteriaId":"5B72953B-E873-4E44-A3CF-12D770A0D416"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5.1:*:*:*:*:*:*:*","matchCriteriaId":"39F847DB-65A9-47DA-BCFA-A179E5E2301A"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/575","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=19990809134220.A1191%40hades.chaoz.org","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/575","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=19990809134220.A1191%40hades.chaoz.org","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0680","sourceIdentifier":"cve@mitre.org","published":"1999-08-09T04:00:00.000","lastModified":"2026-06-16T21:48:50.027","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Windows NT Terminal Server performs extra work when a client opens a new connection but before it is authenticated, allowing for a denial of service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-287"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:terminal_server:*:*:*:*:*:*:*:*","matchCriteriaId":"40242161-D5AD-4314-AB95-E61292C49DF2"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ238600","source":"cve@mitre.org"},{"url":"http://www.ciac.org/ciac/bulletins/j-057.shtml","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/571","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-028","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ238600","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.ciac.org/ciac/bulletins/j-057.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/571","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-028","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0813","sourceIdentifier":"cve@mitre.org","published":"1999-08-10T04:00:00.000","lastModified":"2026-06-16T21:49:06.607","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Cfingerd with ALLOW_EXECUTION enabled does not properly drop privileges when it executes a program on behalf of the user, allowing local users to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:infodrom:cfingerd:*:*:*:*:*:*:*:*","versionEndIncluding":"1.4.0","matchCriteriaId":"78C34792-E014-4D8D-9D82-8E9D555664D8"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0813","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0813","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0694","sourceIdentifier":"cve@mitre.org","published":"1999-08-11T04:00:00.000","lastModified":"2026-06-16T21:48:51.820","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in AIX ptrace system call allows local users to crash the system."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.2:*:*:*:*:*:*:*","matchCriteriaId":"05F20EC2-ADE6-4F96-A2E7-1DCCA819D657"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3:*:*:*:*:*:*:*","matchCriteriaId":"11ACD012-F05F-45CD-A170-96CBAA42FFE4"}]}]}],"references":[{"url":"http://www.ciac.org/ciac/bulletins/j-055.shtml","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.ciac.org/ciac/bulletins/j-055.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-0814","sourceIdentifier":"cve@mitre.org","published":"1999-08-11T04:00:00.000","lastModified":"2026-06-16T21:49:06.780","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Red Hat pump DHCP client allows remote attackers to gain root access in some configurations."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"2DFA94D5-0139-490C-8257-0751FE9FBAE4"}]}]}],"references":[{"url":"http://www.redhat.com/support/errata/RHSA-1999-027.html","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-1999-027.html","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0861","sourceIdentifier":"cve@mitre.org","published":"1999-08-11T04:00:00.000","lastModified":"2026-06-16T21:49:12.627","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Race condition in the SSL ISAPI filter in IIS and other servers may leak information in plaintext."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:N/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-362"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:commercial_internet_system:2.0:*:*:*:*:*:*:*","matchCriteriaId":"81514AB5-388D-4D13-B63A-C237A502B86A"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:commercial_internet_system:2.5:*:*:*:*:*:*:*","matchCriteriaId":"879AFDCC-B9D8-41EF-85DD-70CC1BD5227C"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:site_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"4A503018-356B-46D9-965F-60750B5B7484"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:site_server_commerce:3.0:*:*:*:*:*:*:*","matchCriteriaId":"DD78B678-82A4-4485-BC4A-809A5FB105E9"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ244613","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-053","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ244613","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-053","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0867","sourceIdentifier":"cve@mitre.org","published":"1999-08-11T04:00:00.000","lastModified":"2026-06-16T21:49:13.347","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in IIS 4.0 via a flood of HTTP requests with malformed headers."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-20"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:commercial_internet_system:2.0:*:*:*:*:*:*:*","matchCriteriaId":"81514AB5-388D-4D13-B63A-C237A502B86A"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:commercial_internet_system:2.5:*:*:*:*:*:*:*","matchCriteriaId":"879AFDCC-B9D8-41EF-85DD-70CC1BD5227C"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:site_server:3.0:unknown:commerce:*:*:*:*:*","matchCriteriaId":"E143A482-984A-4CDC-848F-A82FA5BCFA46"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ238349","source":"cve@mitre.org"},{"url":"http://www.ciac.org/ciac/bulletins/j-058.shtml","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/579","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-029","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ238349","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.ciac.org/ciac/bulletins/j-058.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/579","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-029","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0875","sourceIdentifier":"cve@mitre.org","published":"1999-08-11T04:00:00.000","lastModified":"2026-06-16T21:49:14.373","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"DHCP clients with ICMP Router Discovery Protocol (IRDP) enabled allow remote attackers to modify their default routes."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-16"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_95:0a:*:*:*:*:*:*:*","matchCriteriaId":"8429C080-F550-4D03-A87A-4546273712AE"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_95:0b:*:*:*:*:*:*:*","matchCriteriaId":"5D153766-0C57-46F4-8865-6F1ED597B53C"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98se:*:*:*:*:*:*:*:*","matchCriteriaId":"AA733AD2-D948-46A0-A063-D29081A56F1F"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.6:*:*:*:*:*:*:*","matchCriteriaId":"34EBF074-78C8-41AF-88F1-DA6726E56F8B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:-:*:*:*:*:*:*:*","matchCriteriaId":"369207B4-96FA-4324-9445-98FAE8ECF5DB"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ216141","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/578","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ216141","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/578","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0724","sourceIdentifier":"cve@mitre.org","published":"1999-08-12T04:00:00.000","lastModified":"2026-06-16T21:48:55.450","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in OpenBSD procfs and fdescfs file systems via uio_offset in the readdir() function."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.5:*:*:*:*:*:*:*","matchCriteriaId":"ACE7FDFB-C6A6-4B58-B0B4-236E4EA76EF6"}]}]}],"references":[{"url":"http://www.osvdb.org/6128","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/6128","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1336","sourceIdentifier":"cve@mitre.org","published":"1999-08-12T04:00:00.000","lastModified":"2026-06-16T21:50:13.440","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"3Com HiPer Access Router Card (HiperARC) 4.0 through 4.2.29 allows remote attackers to cause a denial of service (reboot) via a flood of IAC packets to the telnet port."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:3com:hiperarc:*:*:*:*:*:*:*:*","versionEndIncluding":"4.2.29","matchCriteriaId":"C841828F-3170-40F5-9D53-C8D2D8EE2294"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93458364903256&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93492615408725&w=2","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/6057","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93458364903256&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=93492615408725&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/6057","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0679","sourceIdentifier":"cve@mitre.org","published":"1999-08-13T04:00:00.000","lastModified":"2026-06-16T21:48:49.900","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in hybrid-6 IRC server commonly used on EFnet allows remote attackers to execute commands via m_invite invite option."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:hybrid_network:hybrid_ircd:*:*:*:*:*:*:*:*","versionEndIncluding":"6.0beta58","matchCriteriaId":"CD262AC8-FF6A-429B-9D61-007EBD66E16F"},{"vulnerable":true,"criteria":"cpe:2.3:a:hybrid_network:hybrid_ircd:5.03p7:*:*:*:*:*:*:*","matchCriteriaId":"C8A0F93F-1958-4A00-99BF-6ACC2B81E54E"}]}]}],"references":[{"url":"http://www.efnet.org/archive/servers/hybrid/ChangeLog","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/581","source":"cve@mitre.org"},{"url":"http://www.efnet.org/archive/servers/hybrid/ChangeLog","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/581","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0746","sourceIdentifier":"cve@mitre.org","published":"1999-08-16T04:00:00.000","lastModified":"2026-06-16T21:48:58.247","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A default configuration of in.identd in SuSE Linux waits 120 seconds between requests, allowing a remote attacker to conduct a denial of service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:slackware:slackware_linux:3.2:*:*:*:*:*:*:*","matchCriteriaId":"852B55FE-8180-4357-B717-399C16954C6F"},{"vulnerable":true,"criteria":"cpe:2.3:o:slackware:slackware_linux:3.6:*:*:*:*:*:*:*","matchCriteriaId":"CE0BBA4F-C61A-4A8E-A7E2-CE0DF76DF592"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:4.4:*:*:*:*:*:*:*","matchCriteriaId":"CB4C8426-CAF2-4366-94C0-1BA1C544FB6F"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:4.4.1:*:*:*:*:*:*:*","matchCriteriaId":"5CC7D746-B98B-4FAF-B816-57222759A344"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:5.0:*:*:*:*:*:*:*","matchCriteriaId":"830D48B8-D21D-4D31-99A1-20C231804DBE"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:5.1:*:*:*:*:*:*:*","matchCriteriaId":"5C0BBDD2-9FF9-4CB7-BCAF-D4AF15DC2C7C"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:5.2:*:*:*:*:*:*:*","matchCriteriaId":"D1C826AA-6E2F-4DAC-A7A2-9F47729B5DA5"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:5.3:*:*:*:*:*:*:*","matchCriteriaId":"BCC94EF9-5872-402F-B2FC-06331A924BB2"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"F163E145-09F7-4BE2-9B46-5B6713070BAB"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"124E1802-7984-45ED-8A92-393FC20662FD"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.2:*:*:*:*:*:*:*","matchCriteriaId":"1B67020A-6942-4478-B501-764147C4970D"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/587","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/587","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0749","sourceIdentifier":"cve@mitre.org","published":"1999-08-16T04:00:00.000","lastModified":"2026-06-16T21:48:58.607","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Microsoft Telnet client in Windows 95 and Windows 98 via a malformed Telnet argument."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:N/I:P/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_95:*:*:*:*:*:*:*:*","matchCriteriaId":"82F7322B-8022-4D0B-ADB3-D0F5B6F20309"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98:*:gold:*:*:*:*:*:*","matchCriteriaId":"2D3B703C-79B2-4FA2-9E12-713AB977A880"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/586","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-033","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/586","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-033","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0888","sourceIdentifier":"cve@mitre.org","published":"1999-08-16T04:00:00.000","lastModified":"2026-06-16T21:49:15.940","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"dbsnmp in Oracle Intelligent Agent allows local users to gain privileges by setting the ORACLE_HOME environmental variable, which dbsnmp uses to find the nmiconf.tcl script."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:database_server:7.3.3:*:*:*:*:*:*:*","matchCriteriaId":"8FE5CF5D-4649-4E3A-9328-47224065384F"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:database_server:7.3.4:*:*:*:*:*:*:*","matchCriteriaId":"AE07BAF7-3A9A-426B-9536-72EAB8984A4F"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:oracle8i:8.0.3:*:*:*:*:*:*:*","matchCriteriaId":"44F4BD05-8A36-4C17-AA00-01CE12A66137"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:oracle8i:8.0.4:*:*:*:*:*:*:*","matchCriteriaId":"BF68DBCB-377C-476A-9373-5A85AA20916C"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:oracle8i:8.0.5:*:*:*:*:*:*:*","matchCriteriaId":"0F492716-428E-41DF-AC50-1C8A84DBA2DF"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:oracle8i:8.0.5.1:*:*:*:*:*:*:*","matchCriteriaId":"AE91CC68-D396-4437-886C-370D30A771CD"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:oracle8i:8.1.5:*:*:*:*:*:*:*","matchCriteriaId":"42AF8B37-C5AA-4B92-A565-214A677C3486"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/585","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/585","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0753","sourceIdentifier":"cve@mitre.org","published":"1999-08-17T04:00:00.000","lastModified":"2026-06-16T21:48:59.113","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The w3-msql CGI script provided with Mini SQL allows remote attackers to view restricted directories."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:hughes:msql:2.0:*:*:*:*:*:*:*","matchCriteriaId":"CB8AE3D7-012D-48EE-B7F4-C70ADFA07B56"},{"vulnerable":true,"criteria":"cpe:2.3:a:hughes:msql:2.0.10:*:*:*:*:*:*:*","matchCriteriaId":"89EE371A-65B2-438B-9788-E4513E0D3461"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/591","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/591","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0745","sourceIdentifier":"cve@mitre.org","published":"1999-08-18T04:00:00.000","lastModified":"2026-06-16T21:48:58.130","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Source Code Browser Program Database Name Server Daemon (pdnsd) for the IBM AIX C Set ++ compiler."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:2.2.1:*:*:*:*:*:*:*","matchCriteriaId":"28B1C99E-D05A-4778-8650-39B63CC8B2F4"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:3.1:*:*:*:*:*:*:*","matchCriteriaId":"CE321D29-3312-4F22-B930-1B119DA4BD27"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:3.2:*:*:*:*:*:*:*","matchCriteriaId":"DD5E0678-45C7-492A-963C-897494D6878F"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:3.2.4:*:*:*:*:*:*:*","matchCriteriaId":"E55C28A7-CD21-47CD-AA50-E8B2D89A18E8"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:3.2.5:*:*:*:*:*:*:*","matchCriteriaId":"D3C00FC9-AD97-4226-A0EA-7DB14AA592DE"}]}]}],"references":[{"url":"http://www.ciac.org/ciac/bulletins/j-059.shtml","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/590","source":"cve@mitre.org"},{"url":"http://www.ciac.org/ciac/bulletins/j-059.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/590","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0747","sourceIdentifier":"cve@mitre.org","published":"1999-08-18T04:00:00.000","lastModified":"2026-06-16T21:48:58.370","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in BSDi Symmetric Multiprocessing (SMP) when an fstat call is made when the system has a high CPU load."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:bsdi:bsd_os:4.0.1:*:*:*:*:*:*:*","matchCriteriaId":"A37687D5-1239-474B-994C-C638AB9B105B"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/589","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.BSI.4.10.9908170253560.19291-100000%40saturn.psn.net","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/589","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.BSI.4.10.9908170253560.19291-100000%40saturn.psn.net","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0725","sourceIdentifier":"cve@mitre.org","published":"1999-08-19T04:00:00.000","lastModified":"2026-06-16T21:48:55.577","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"When IIS is run with a default language of Chinese, Korean, or Japanese, it allows a remote attacker to view the source code of certain files, a.k.a. \"Double Byte Code Page\"."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:C/I:N/A:N","baseScore":7.1,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"HIGH","exploitabilityScore":8.6,"impactScore":6.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-16"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:3.0:*:*:ja:*:*:*:*","matchCriteriaId":"9CB6F641-D384-46DA-90D2-312819E3F940"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:3.0:*:*:ko:*:*:*:*","matchCriteriaId":"AC759766-C7F3-4DF0-9128-F0302A85334C"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:3.0:*:*:zh:*:*:*:*","matchCriteriaId":"ECB23C7E-9F93-47E0-A6BF-CD9A4655DDA5"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:ja:*:*:*:*","matchCriteriaId":"451584D5-32CE-4773-A4CA-1E6E8AD79FE5"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:ko:*:*:*:*","matchCriteriaId":"CD4AF45A-68A2-4266-84D6-7FBACBEE3908"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:zh:*:*:*:*","matchCriteriaId":"521795BA-D919-4AD1-91D9-743E6FA64A8A"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ233335","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/477","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-022","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2302","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ233335","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/477","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-022","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2302","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]}]}},{"cve":{"id":"CVE-1999-0732","sourceIdentifier":"cve@mitre.org","published":"1999-08-19T04:00:00.000","lastModified":"2026-06-16T21:48:56.500","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The logging facility of the Debian smtp-refuser package allows local users to delete arbitrary files using symbolic links."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:4.0:*:*:*:*:*:*:*","matchCriteriaId":"0F92AB32-E7DE-43F4-B877-1F41FA162EC7"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0732","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0732","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0734","sourceIdentifier":"cve@mitre.org","published":"1999-08-19T04:00:00.000","lastModified":"2026-06-16T21:48:56.753","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A default configuration of CiscoSecure Access Control Server (ACS) allows remote users to modify the server database without authentication."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:ciscosecure:*:*:*:*:*:*:*:*","matchCriteriaId":"8AF5945A-02FD-42F8-8478-E1CBFD783741"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3133","source":"cve@mitre.org"},{"url":"https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-19990819-dbaccess","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3133","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-19990819-dbaccess","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0740","sourceIdentifier":"cve@mitre.org","published":"1999-08-19T04:00:00.000","lastModified":"2026-06-16T21:48:57.517","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Remote attackers can cause a denial of service on Linux in.telnetd telnet daemon through a malformed TERM environmental variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:P","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:4.2:*:*:*:*:*:*:*","matchCriteriaId":"F299301C-6BFC-436C-9CFD-2E291D3702AE"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:*:*:*:*:*:*","matchCriteriaId":"A8EED385-8C39-4A40-A507-2EFE7652FB35"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"2DFA94D5-0139-490C-8257-0751FE9FBAE4"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/594","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/594","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0741","sourceIdentifier":"cve@mitre.org","published":"1999-08-19T04:00:00.000","lastModified":"2026-06-16T21:48:57.630","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"QMS CrownNet Unix Utilities for 2060 allows root to log on without a password."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:qms:crownnet_unix_utilities:2060:*:*:*:*:*:*:*","matchCriteriaId":"B068C7B4-F415-413B-BB33-31A1E8F7A2E0"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/593","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/593","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0743","sourceIdentifier":"cve@mitre.org","published":"1999-08-20T04:00:00.000","lastModified":"2026-06-16T21:48:57.870","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Trn allows local users to overwrite other users' files via symlinks."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:4.0:*:*:*:*:*:*:*","matchCriteriaId":"0F92AB32-E7DE-43F4-B877-1F41FA162EC7"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3144","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3144","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1561","sourceIdentifier":"cve@mitre.org","published":"1999-08-20T04:00:00.000","lastModified":"2026-06-16T21:50:43.237","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Nullsoft SHOUTcast server stores the administrative password in plaintext in a configuration file (sc_serv.conf), which could allow a local user to gain administrative privileges on the server."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:nullsoft:shoutcast_server:1.9.7:*:win32:*:*:*:*:*","matchCriteriaId":"BBF1B598-875A-4DF0-B1B7-059CE37DC05D"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/24852","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/24852","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1565","sourceIdentifier":"cve@mitre.org","published":"1999-08-20T04:00:00.000","lastModified":"2026-06-16T21:50:43.720","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Man2html 2.1 and earlier allows local users to overwrite arbitrary files via a symlink attack on a temporary file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:earl_hood:man2html:*:*:*:*:*:*:*:*","versionEndIncluding":"2.1","matchCriteriaId":"346E204C-CD6D-4CE1-97FF-699C45A08378"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:4.0:*:*:*:*:*:*:*","matchCriteriaId":"0F92AB32-E7DE-43F4-B877-1F41FA162EC7"}]}]}],"references":[{"url":"http://www.osvdb.org/6291","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/24784","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/6291","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/24784","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0325","sourceIdentifier":"cve@mitre.org","published":"1999-08-20T04:00:00.000","lastModified":"2026-06-16T21:51:28.873","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Microsoft Jet database engine allows an attacker to execute commands via a database query, aka the \"VBA Shell\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:jet:3.5:*:*:*:*:*:*:*","matchCriteriaId":"DFDB61BB-F95E-4312-9A26-5F883C951141"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:jet:3.5.1:*:*:*:*:*:*:*","matchCriteriaId":"ABF9FAA0-CCC3-4836-AC45-519E517176FD"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/548","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-030","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3155","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/548","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-030","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3155","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1206","sourceIdentifier":"cve@mitre.org","published":"1999-08-20T04:00:00.000","lastModified":"2026-06-16T21:53:22.813","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in Apache httpd before 1.3.11, when configured for mass virtual hosting using mod_rewrite, or mod_vhost_alias in Apache 1.3.9, allows remote attackers to retrieve arbitrary files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.3.9:*:*:*:*:*:*:*","matchCriteriaId":"19C8989C-D8A6-4AE9-99B6-F2DAE5999EB6"},{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.3.10:*:*:*:*:*:*:*","matchCriteriaId":"F715F8CB-A473-4374-8CF1-E9D74EBA5E8F"}]}]}],"references":[{"url":"http://www.apacheweek.com/issues/00-01-07#status","source":"cve@mitre.org"},{"url":"https://lists.apache.org/thread.html/r5419c9ba0951ef73a655362403d12bb8d10fab38274deb3f005816f5%40%3Ccvs.httpd.apache.org%3E","source":"cve@mitre.org"},{"url":"https://lists.apache.org/thread.html/r5f9c22f9c28adbd9f00556059edc7b03a5d5bb71d4bb80257c0d34e4%40%3Ccvs.httpd.apache.org%3E","source":"cve@mitre.org"},{"url":"https://lists.apache.org/thread.html/r9f93cf6dde308d42a9c807784e8102600d0397f5f834890708bf6920%40%3Ccvs.httpd.apache.org%3E","source":"cve@mitre.org"},{"url":"https://lists.apache.org/thread.html/rb9c9f42dafa25d2f669dac2a536a03f2575bc5ec1be6f480618aee10%40%3Ccvs.httpd.apache.org%3E","source":"cve@mitre.org"},{"url":"https://lists.apache.org/thread.html/rf2f0f3611f937cf6cfb3b4fe4a67f69885855126110e1e3f2fb2728e%40%3Ccvs.httpd.apache.org%3E","source":"cve@mitre.org"},{"url":"https://lists.apache.org/thread.html/rf6449464fd8b7437704c55f88361b66f12d5b5f90bcce66af4be4ba9%40%3Ccvs.httpd.apache.org%3E","source":"cve@mitre.org"},{"url":"http://www.apacheweek.com/issues/00-01-07#status","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://lists.apache.org/thread.html/r5419c9ba0951ef73a655362403d12bb8d10fab38274deb3f005816f5%40%3Ccvs.httpd.apache.org%3E","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://lists.apache.org/thread.html/r5f9c22f9c28adbd9f00556059edc7b03a5d5bb71d4bb80257c0d34e4%40%3Ccvs.httpd.apache.org%3E","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://lists.apache.org/thread.html/r9f93cf6dde308d42a9c807784e8102600d0397f5f834890708bf6920%40%3Ccvs.httpd.apache.org%3E","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://lists.apache.org/thread.html/rb9c9f42dafa25d2f669dac2a536a03f2575bc5ec1be6f480618aee10%40%3Ccvs.httpd.apache.org%3E","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://lists.apache.org/thread.html/rf2f0f3611f937cf6cfb3b4fe4a67f69885855126110e1e3f2fb2728e%40%3Ccvs.httpd.apache.org%3E","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://lists.apache.org/thread.html/rf6449464fd8b7437704c55f88361b66f12d5b5f90bcce66af4be4ba9%40%3Ccvs.httpd.apache.org%3E","source":"af854a3a-2127-422b-91ae-364da2661108"}],"vendorComments":[{"organization":"Apache","comment":"Fixed in Apache HTTP Server 1.3.11:\nhttp://httpd.apache.org/security/vulnerabilities_13.html","lastModified":"2008-07-02T00:00:00"}]}},{"cve":{"id":"CVE-1999-0668","sourceIdentifier":"cve@mitre.org","published":"1999-08-21T04:00:00.000","lastModified":"2026-06-16T21:48:48.493","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The scriptlet.typelib ActiveX control is marked as \"safe for scripting\" for Internet Explorer, which allows a remote attacker to execute arbitrary commands as demonstrated by Bubbleboy."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0:*:*:*:*:*:*:*","matchCriteriaId":"A5B815D9-BC21-4A17-AF00-B8AD181027D7"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"}]}]}],"references":[{"url":"http://ciac.llnl.gov/ciac/bulletins/j-064.shtml","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ240308","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/598","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-032","source":"cve@mitre.org"},{"url":"http://ciac.llnl.gov/ciac/bulletins/j-064.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ240308","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/598","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-032","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0355","sourceIdentifier":"cve@mitre.org","published":"1999-08-21T04:00:00.000","lastModified":"2026-06-16T21:51:32.690","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"pg and pb in SuSE pbpg 1.x package allows an attacker to read arbitrary files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:bent_bagger:pbpg:1.1:*:*:*:*:*:*:*","matchCriteriaId":"09E95EB9-AFE3-4362-BE10-7D85C5B34365"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"2DFA94D5-0139-490C-8257-0751FE9FBAE4"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.2:*:*:*:*:*:*:*","matchCriteriaId":"1B67020A-6942-4478-B501-764147C4970D"}]}]}],"references":[{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_21.html","source":"cve@mitre.org"},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_21.html","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0878","sourceIdentifier":"cve@mitre.org","published":"1999-08-22T04:00:00.000","lastModified":"2026-06-16T21:49:14.740","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in WU-FTPD and related FTP servers allows remote attackers to gain root privileges via MAPPING_CHDIR."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:beroftpd:beroftpd:1.3.2:*:*:*:*:*:*:*","matchCriteriaId":"602F3F84-3DA1-4ABE-8E47-F7B54169922E"},{"vulnerable":true,"criteria":"cpe:2.3:a:beroftpd:beroftpd:1.3.3:*:*:*:*:*:*:*","matchCriteriaId":"514C8A8E-E4B0-4135-B240-379D25148AFA"},{"vulnerable":true,"criteria":"cpe:2.3:a:beroftpd:beroftpd:1.3.4:*:*:*:*:*:*:*","matchCriteriaId":"7810EC3A-70AD-4ECB-A7EF-2CC5F527D696"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.4.2_beta18_vr4:*:*:*:*:*:*:*","matchCriteriaId":"B39D46C4-B153-4301-AE9C-57FB6BA64CD9"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.4.2_beta18_vr5:*:*:*:*:*:*:*","matchCriteriaId":"E55582DD-DEF7-4BF8-950C-E7E58BD29DE5"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.4.2_beta18_vr6:*:*:*:*:*:*:*","matchCriteriaId":"FF9B9132-19A1-4242-A129-E5A49F466EA2"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.4.2_beta18_vr8:*:*:*:*:*:*:*","matchCriteriaId":"0A096214-84AD-44F5-BBEF-F9F17B9B0C43"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.4.2_beta18_vr9:*:*:*:*:*:*:*","matchCriteriaId":"4989799F-143A-45E5-A30C-9E3203649770"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.4.2_beta18_vr10:*:*:*:*:*:*:*","matchCriteriaId":"1E3D0CC6-D1A0-4784-BE93-319C7EE59134"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.4.2_beta18_vr11:*:*:*:*:*:*:*","matchCriteriaId":"4FA32489-F098-43D2-80B7-89CFE0BE9A3A"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.4.2_beta18_vr12:*:*:*:*:*:*:*","matchCriteriaId":"91C6388E-464B-4562-BC7B-7B4A66387B30"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.4.2_beta18_vr13:*:*:*:*:*:*:*","matchCriteriaId":"923B5711-853D-4A77-8FB3-D5C3D449518D"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.4.2_beta18_vr14:*:*:*:*:*:*:*","matchCriteriaId":"9BB1B136-F90E-426B-8010-F2D059E89DBE"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.4.2_beta18_vr15:*:*:*:*:*:*:*","matchCriteriaId":"CD9EFCD7-2A13-420E-B6A0-C1248B2E6E2F"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.4.2_vr16:*:*:*:*:*:*:*","matchCriteriaId":"573486C8-0349-4BC9-AD7D-3FBF93DDB6AF"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.4.2_vr17:*:*:*:*:*:*:*","matchCriteriaId":"CAD81A30-9C35-4EEA-B6FE-A4AC76893AC6"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.5:*:*:*:*:*:*:*","matchCriteriaId":"6AFFA39F-9072-4F19-A695-F383EA61D55D"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/599","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/599","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1064","sourceIdentifier":"cve@mitre.org","published":"1999-08-22T04:00:00.000","lastModified":"2026-06-16T21:49:37.880","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Multiple buffer overflows in WindowMaker 0.52 through 0.60.0 allow attackers to cause a denial of service and possibly execute arbitrary commands by executing WindowMaker with a long program name (argv[0])."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:windowmaker:windowmaker:*:*:*:*:*:*:*:*","versionEndIncluding":"0.60.0","matchCriteriaId":"0CEC6182-2201-4DFC-89A4-E20CF819AB0F"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93555317429630&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93582070508957&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/596","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93555317429630&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=93582070508957&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/596","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0374","sourceIdentifier":"cve@mitre.org","published":"1999-08-22T04:00:00.000","lastModified":"2026-06-16T21:51:35.020","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default configuration of kdm in Caldera and Mandrake Linux, and possibly other distributions, allows XDMCP connections from any host, which allows remote attackers to obtain sensitive information or bypass additional access restrictions."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux:2.2:*:*:*:*:*:*:*","matchCriteriaId":"86288A2E-B1BD-4DA9-BCCC-35AC44EEDD52"},{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux:2.3:*:*:*:*:*:*:*","matchCriteriaId":"23B38FCC-2C86-4E84-860B-EBAE0FA123B6"}]}]}],"references":[{"url":"ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-1999-021.0.txt","source":"cve@mitre.org"},{"url":"http://frontal2.mandriva.com/security/advisories?name=MDKSA-2002:025","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1446","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4856","source":"cve@mitre.org"},{"url":"ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-1999-021.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://frontal2.mandriva.com/security/advisories?name=MDKSA-2002:025","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1446","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4856","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0720","sourceIdentifier":"cve@mitre.org","published":"1999-08-23T04:00:00.000","lastModified":"2026-06-16T21:48:54.947","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The pt_chown command in Linux allows local users to modify TTY terminal devices that belong to other users."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.6.20.1:*:*:*:*:*:*:*","matchCriteriaId":"1E3313D5-52E8-49B3-B145-170D9A26DA43"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/597","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=lcamtuf.4.05.9907041223290.355-300000%40nimue.ids.pl","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/597","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=lcamtuf.4.05.9907041223290.355-300000%40nimue.ids.pl","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1052","sourceIdentifier":"cve@mitre.org","published":"1999-08-24T04:00:00.000","lastModified":"2026-06-16T21:49:36.350","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft FrontPage stores form results in a default location in /_private/form_results.txt, which is world-readable and accessible in the document root, which allows remote attackers to read possibly sensitive information submitted by other users."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:frontpage:*:*:*:*:*:*:*:*","matchCriteriaId":"0951E183-2BFE-4B19-9F06-107B5E22DBC5"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93582550911564&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93582550911564&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0328","sourceIdentifier":"cve@mitre.org","published":"1999-08-24T04:00:00.000","lastModified":"2026-06-16T21:51:29.250","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Windows NT 4.0 generates predictable random TCP initial sequence numbers (ISN), which allows remote attackers to perform spoofing and session hijacking."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp1:*:*:*:*:*:*","matchCriteriaId":"5BDCBCB8-DAA3-465F-ADDE-9143B8251989"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp2:*:*:*:*:*:*","matchCriteriaId":"B86E0671-ED68-4549-B3AC-FD8BD79B0860"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp3:*:*:*:*:*:*","matchCriteriaId":"BB76E7EC-C396-4537-9065-4E815DA7097C"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp4:*:*:*:*:*:*","matchCriteriaId":"4CD026E2-B073-40A6-AD4A-8C76B9169B01"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp5:*:*:*:*:*:*","matchCriteriaId":"DBFB3E49-3FB5-4947-856D-727CBFFBA543"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/604","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=4.1.19990824165629.00abcb40%40192.168.124.1","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-046","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/604","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=4.1.19990824165629.00abcb40%40192.168.124.1","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-046","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0768","sourceIdentifier":"cve@mitre.org","published":"1999-08-25T04:00:00.000","lastModified":"2026-06-16T21:49:01.067","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Vixie Cron on Red Hat systems via the MAILTO environmental variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:4.2:*:*:*:*:*:*:*","matchCriteriaId":"F299301C-6BFC-436C-9CFD-2E291D3702AE"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:i386:*:*:*:*:*","matchCriteriaId":"363AB7DB-A8BA-4D58-97C4-1DF1F0F43E07"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:i386:*:*:*:*:*","matchCriteriaId":"89F65C9D-BD68-4A86-BFDC-E7CE76F13948"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"F163E145-09F7-4BE2-9B46-5B6713070BAB"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"124E1802-7984-45ED-8A92-393FC20662FD"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/602","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/602","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0769","sourceIdentifier":"cve@mitre.org","published":"1999-08-25T04:00:00.000","lastModified":"2026-06-16T21:49:01.193","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vixie Cron on Linux systems allows local users to set parameters of sendmail commands via the MAILTO environmental variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:paul_vixie:vixie_cron:3.0_pl1:*:*:*:*:*:*:*","matchCriteriaId":"D8F45BCD-EBC1-4707-8C53-A25F373026A5"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux:2.2:*:*:*:*:*:*:*","matchCriteriaId":"86288A2E-B1BD-4DA9-BCCC-35AC44EEDD52"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.1:*:*:*:*:*:*:*","matchCriteriaId":"3C67BDA1-9451-4026-AC6D-E912C882A757"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.2:*:*:*:*:*:*:*","matchCriteriaId":"58B90124-0543-4226-BFF4-13CCCBCCB243"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:4.0:*:*:*:*:*:*:*","matchCriteriaId":"C9092D88-585D-4A0C-B181-E8D93563C74B"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:4.1:*:*:*:*:*:*:*","matchCriteriaId":"D8211154-6685-4FF0-B3ED-43A5E5763A10"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:4.2:*:*:*:*:*:*:*","matchCriteriaId":"F299301C-6BFC-436C-9CFD-2E291D3702AE"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.0:*:*:*:*:*:*:*","matchCriteriaId":"4BF54738-3C44-4FD4-AA9C-CAB2E86B1DC1"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.1:*:*:*:*:*:*:*","matchCriteriaId":"4EF44364-0F57-4B74-81B0-501EA6B58501"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:i386:*:*:*:*:*","matchCriteriaId":"363AB7DB-A8BA-4D58-97C4-1DF1F0F43E07"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:i386:*:*:*:*:*","matchCriteriaId":"89F65C9D-BD68-4A86-BFDC-E7CE76F13948"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/611","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/611","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0872","sourceIdentifier":"cve@mitre.org","published":"1999-08-25T04:00:00.000","lastModified":"2026-06-16T21:49:13.990","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Vixie cron allows local users to gain root access via a long MAILTO environment variable in a crontab file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:paul_vixie:vixie_cron:3.0_pl1:*:*:*:*:*:*:*","matchCriteriaId":"D8F45BCD-EBC1-4707-8C53-A25F373026A5"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux:2.2:*:*:*:*:*:*:*","matchCriteriaId":"86288A2E-B1BD-4DA9-BCCC-35AC44EEDD52"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.1:*:*:*:*:*:*:*","matchCriteriaId":"3C67BDA1-9451-4026-AC6D-E912C882A757"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.2:*:*:*:*:*:*:*","matchCriteriaId":"58B90124-0543-4226-BFF4-13CCCBCCB243"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:4.0:*:*:*:*:*:*:*","matchCriteriaId":"C9092D88-585D-4A0C-B181-E8D93563C74B"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:4.1:*:*:*:*:*:*:*","matchCriteriaId":"D8211154-6685-4FF0-B3ED-43A5E5763A10"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:4.2:*:*:*:*:*:*:*","matchCriteriaId":"F299301C-6BFC-436C-9CFD-2E291D3702AE"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.0:*:*:*:*:*:*:*","matchCriteriaId":"4BF54738-3C44-4FD4-AA9C-CAB2E86B1DC1"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.1:*:*:*:*:*:*:*","matchCriteriaId":"4EF44364-0F57-4B74-81B0-501EA6B58501"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:i386:*:*:*:*:*","matchCriteriaId":"363AB7DB-A8BA-4D58-97C4-1DF1F0F43E07"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:i386:*:*:*:*:*","matchCriteriaId":"89F65C9D-BD68-4A86-BFDC-E7CE76F13948"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/611","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/759","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/611","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/759","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1235","sourceIdentifier":"cve@mitre.org","published":"1999-08-25T04:00:00.000","lastModified":"2026-06-16T21:50:00.410","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internet Explorer 5.0 records the username and password for FTP servers in the URL history, which could allow (1) local users to read the information from another user's index.dat, or (2) people who are physically observing (\"shoulder surfing\") another user to read the information from the status bar when the user moves the mouse over a link."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"}]}]}],"references":[{"url":"http://ntbugtraq.ntadvice.com/default.asp?pid=36&sid=1&A2=ind9904&L=NTBUGTRAQ&P=R179","source":"cve@mitre.org"},{"url":"http://packetderm.cotse.com/mailing-lists/ntbugtraq/1999/0364.html","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3289","source":"cve@mitre.org"},{"url":"http://ntbugtraq.ntadvice.com/default.asp?pid=36&sid=1&A2=ind9904&L=NTBUGTRAQ&P=R179","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://packetderm.cotse.com/mailing-lists/ntbugtraq/1999/0364.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3289","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0939","sourceIdentifier":"cve@mitre.org","published":"1999-08-26T04:00:00.000","lastModified":"2026-06-16T21:49:22.163","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in Debian IRC Epic/epic4 client via a long string."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.1:*:*:*:*:*:*:*","matchCriteriaId":"3C67BDA1-9451-4026-AC6D-E912C882A757"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.2:*:pre_potato:*:*:*:*:*","matchCriteriaId":"2B19ABCB-70F0-450E-9A71-2EE8F2BFB2EE"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/605","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/605","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0911","sourceIdentifier":"cve@mitre.org","published":"1999-08-27T04:00:00.000","lastModified":"2026-06-16T21:49:18.797","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in ProFTPD, wu-ftpd, and beroftpd allows remote attackers to gain root access via a series of MKD and CWD commands that create nested directories."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:proftpd_project:proftpd:1.2_pre1:*:*:*:*:*:*:*","matchCriteriaId":"CE1015CB-9A33-48D5-861A-A1FC0D8D0FA6"},{"vulnerable":true,"criteria":"cpe:2.3:a:proftpd_project:proftpd:1.2_pre2:*:*:*:*:*:*:*","matchCriteriaId":"66C825FE-91EC-43A2-9EEA-65A31DF46570"},{"vulnerable":true,"criteria":"cpe:2.3:a:proftpd_project:proftpd:1.2_pre3:*:*:*:*:*:*:*","matchCriteriaId":"1C563389-39DB-45BA-9C84-DD6837900440"},{"vulnerable":true,"criteria":"cpe:2.3:a:proftpd_project:proftpd:1.2_pre4:*:*:*:*:*:*:*","matchCriteriaId":"E2ABE74B-3D17-45D9-A87A-CE562DDB4454"},{"vulnerable":true,"criteria":"cpe:2.3:a:proftpd_project:proftpd:1.2_pre5:*:*:*:*:*:*:*","matchCriteriaId":"9166C42C-340D-4E7E-915C-BC2E4A373ACE"}]}]}],"references":[{"url":"http://www.debian.org/security/1999/19990210","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/612","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/1999/19990210","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/612","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1016","sourceIdentifier":"cve@mitre.org","published":"1999-08-27T04:00:00.000","lastModified":"2026-06-16T21:49:31.717","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft HTML control as used in (1) Internet Explorer 5.0, (2) FrontPage Express, (3) Outlook Express 5, and (4) Eudora, and possibly others, allows remote malicious web site or HTML emails to cause a denial of service (100% CPU consumption) via large HTML form fields such as text inputs in a table cell."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:frontpage:*:*:express:*:*:*:*:*","matchCriteriaId":"39EC4E10-AE31-4F20-B04E-35A14F326EB1"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook_express:5.0:*:*:*:*:*:*:*","matchCriteriaId":"1F71D6D7-6CB2-4BE9-839A-A5714144029C"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:eudora:*:*:*:*:*:*:*:*","matchCriteriaId":"4E9BCC03-1C5A-4674-BE84-235B9225C074"}]}]}],"references":[{"url":"http://marc.info/?l=ntbugtraq&m=93578772920970&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/606","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://marc.info/?l=ntbugtraq&m=93578772920970&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/606","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1354","sourceIdentifier":"cve@mitre.org","published":"1999-08-30T04:00:00.000","lastModified":"2026-06-16T21:50:15.720","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"E-mail client in Softarc FirstClass Internet Server 5.506 and earlier stores usernames and passwords in cleartext in the files (1) home.fc for version 5.506, (2) network.fc for version 3.5, or (3) FCCLIENT.LOG when logging is enabled."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:softarc:firstclass_internet_server:*:*:*:*:*:*:*:*","versionEndIncluding":"5.506","matchCriteriaId":"5C1B3787-4488-45B2-A2F0-1A2E055CABDE"}]}]}],"references":[{"url":"http://marc.info/?l=ntbugtraq&m=93637687305327&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=93698283309513&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=93637687305327&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=93698283309513&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1513","sourceIdentifier":"cve@mitre.org","published":"1999-08-30T04:00:00.000","lastModified":"2026-06-16T21:50:36.093","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Management information base (MIB) for a 3Com SuperStack II hub running software version 2.10 contains an object identifier (.1.3.6.1.4.1.43.10.4.2) that is accessible by a read-only community string, but lists the entire table of community strings, which could allow attackers to conduct unauthorized activities."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:3com:superstack_ii_hub:2.10:*:*:*:*:*:*:*","matchCriteriaId":"41314EFC-157C-47BF-9F97-D86E9896A0B1"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93616983223090&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93616983223090&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0774","sourceIdentifier":"cve@mitre.org","published":"1999-08-31T04:00:00.000","lastModified":"2026-06-16T21:49:01.833","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflows in Mars NetWare Emulation (NWE, mars_nwe) package via long directory names."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:martin_stover:mars_nwe:0.99:*:*:*:*:*:*:*","matchCriteriaId":"BD31E40E-AB93-48CF-8BD1-73796ADA8815"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/617","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/617","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1515","sourceIdentifier":"cve@mitre.org","published":"1999-08-31T04:00:00.000","lastModified":"2026-06-16T21:50:36.357","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A non-default configuration in TenFour TFS Gateway 4.0 allows an attacker to cause a denial of service via messages with incorrect sender and recipient addresses, which causes the gateway to continuously try to return the message every 10 seconds."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:tenfour:tfs_gateway:4.0:*:*:*:*:*:*:*","matchCriteriaId":"02292862-B566-407B-BEAF-CC2E0CC779B2"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/613","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3290","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/613","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3290","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0669","sourceIdentifier":"cve@mitre.org","published":"1999-09-01T04:00:00.000","lastModified":"2026-06-16T21:48:48.617","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Eyedog ActiveX control is marked as \"safe for scripting\" for Internet Explorer, which allows a remote attacker to execute arbitrary commands as demonstrated by Bubbleboy."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:N","baseScore":4.0,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0:*:*:*:*:*:*:*","matchCriteriaId":"A5B815D9-BC21-4A17-AF00-B8AD181027D7"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"}]}]}],"references":[{"url":"http://ciac.llnl.gov/ciac/bulletins/j-064.shtml","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://ciac.llnl.gov/ciac/bulletins/j-064.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-0670","sourceIdentifier":"cve@mitre.org","published":"1999-09-01T04:00:00.000","lastModified":"2026-06-16T21:48:48.737","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the Eyedog ActiveX control allows a remote attacker to execute arbitrary commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:N","baseScore":4.0,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0:*:*:*:*:*:*:*","matchCriteriaId":"A5B815D9-BC21-4A17-AF00-B8AD181027D7"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"}]}]}],"references":[{"url":"http://ciac.llnl.gov/ciac/bulletins/j-064.shtml","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-032","source":"cve@mitre.org"},{"url":"http://ciac.llnl.gov/ciac/bulletins/j-064.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-032","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0705","sourceIdentifier":"cve@mitre.org","published":"1999-09-01T04:00:00.000","lastModified":"2026-06-16T21:48:53.177","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in INN inews program."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:isc:inn:*:*:*:*:*:*:*:*","matchCriteriaId":"2CFFB533-89C9-493A-851E-393D502C8A9E"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"2DFA94D5-0139-490C-8257-0751FE9FBAE4"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/616","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/616","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0891","sourceIdentifier":"cve@mitre.org","published":"1999-09-01T04:00:00.000","lastModified":"2026-06-16T21:49:16.310","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The \"download behavior\" in Internet Explorer 5 allows remote attackers to read arbitrary files via a server-side redirect."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-94"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ242542","source":"cve@mitre.org"},{"url":"http://www.ciac.org/ciac/bulletins/k-002.shtml","source":"cve@mitre.org"},{"url":"http://www.kb.cert.org/vuls/id/37828","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://www.osvdb.org/11274","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/674","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-040","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ242542","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.ciac.org/ciac/bulletins/k-002.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.kb.cert.org/vuls/id/37828","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"http://www.osvdb.org/11274","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/674","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-040","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1129","sourceIdentifier":"cve@mitre.org","published":"1999-09-01T04:00:00.000","lastModified":"2026-06-16T21:49:46.940","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Cisco Catalyst 2900 Virtual LAN (VLAN) switches allow remote attackers to inject 802.1q frames into another VLAN by forging the VLAN identifier in the trunking tag."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.2\\(8\\)sa5:*:*:*:*:*:*:*","matchCriteriaId":"754F06BF-EB7D-4DAD-BF5D-7DF2619A7499"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:catalyst_2900_vlan:*:*:*:*:*:*:*:*","matchCriteriaId":"643219DD-5795-48F9-899D-19A27A614F90"}]}]}],"references":[{"url":"http://www.cisco.com/univercd/cc/td/doc/product/lan/28201900/1928v8x/eescg8x/aleakyv.htm","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/26008","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/615","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3294","source":"cve@mitre.org"},{"url":"http://www.cisco.com/univercd/cc/td/doc/product/lan/28201900/1928v8x/eescg8x/aleakyv.htm","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/26008","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/615","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3294","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0685","sourceIdentifier":"cve@mitre.org","published":"1999-09-02T04:00:00.000","lastModified":"2026-06-16T21:48:50.657","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Netscape Communicator via EMBED tags in the pluginspage option."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.5:*:*:*:*:*:*:*","matchCriteriaId":"4E9A5461-B0F2-49DB-A69C-3D2D27709647"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.06:*:*:*:*:*:*:*","matchCriteriaId":"34F6328B-44A8-4E45-918E-C54285040BFE"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.6:*:*:*:*:*:*:*","matchCriteriaId":"529E3F71-6016-461D-A162-0DBDD5505389"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.51:*:*:*:*:*:*:*","matchCriteriaId":"918BE44C-8D64-4040-BC74-802AA3FA4E10"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.61:*:*:*:*:*:*:*","matchCriteriaId":"6AA534C4-9411-44EC-AA34-2287C79AD235"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/618","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/618","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1356","sourceIdentifier":"cve@mitre.org","published":"1999-09-02T04:00:00.000","lastModified":"2026-06-16T21:50:15.973","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Compaq Integration Maintenance Utility as used in Compaq Insight Manager agent before SmartStart 4.50 modifies the legal notice caption (LegalNoticeCaption) and text (LegalNoticeText) in Windows NT, which could produce a legal notice that is in violation of the security policy."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:compaq:smartstart:*:*:*:*:*:*:*:*","versionEndIncluding":"4.50","matchCriteriaId":"ED239855-5A0A-4C76-806A-DEDEC9819A74"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93646669500991&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=93637792706047&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=93759822830815&w=2","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/7763.php","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93646669500991&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=93637792706047&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=93759822830815&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.iss.net/security_center/static/7763.php","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1516","sourceIdentifier":"cve@mitre.org","published":"1999-09-02T04:00:00.000","lastModified":"2026-06-16T21:50:36.473","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A buffer overflow in TenFour TFS Gateway SMTP mail server 3.2 allows an attacker to crash the mail server and possibly execute arbitrary code by offering more than 128 bytes in a MAIL FROM string."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:tenfour:tfs_gateway_smtp:3.2:*:*:*:*:*:*:*","matchCriteriaId":"F38A1780-FA97-4729-9FFA-DD730B639D10"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93677241318492&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93677241318492&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1564","sourceIdentifier":"cve@mitre.org","published":"1999-09-02T04:00:00.000","lastModified":"2026-06-16T21:50:43.607","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"FreeBSD 3.2 and possibly other versions allows a local user to cause a denial of service (panic) with a large number accesses of an NFS v3 mounted directory from a large number of processes."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.2:*:*:*:*:*:*:*","matchCriteriaId":"0419DD66-FF66-48BC-AD3B-F6AFD0551E36"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/26166","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/26166","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-0925","sourceIdentifier":"cve@mitre.org","published":"1999-09-03T04:00:00.000","lastModified":"2026-06-16T21:49:20.490","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"UnityMail allows remote attackers to conduct a denial of service via a large number of MIME headers."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:messagemedia:unitymail:*:*:*:*:*:*:*:*","versionEndIncluding":"2.0","matchCriteriaId":"472E58A9-A2A1-4F09-B6F3-5BCBB63AB40E"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=90486243124867&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=90486243124867&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0926","sourceIdentifier":"cve@mitre.org","published":"1999-09-03T04:00:00.000","lastModified":"2026-06-16T21:49:20.597","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Apache allows remote attackers to conduct a denial of service via a large number of MIME headers."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.2.5:*:*:*:*:*:*:*","matchCriteriaId":"AB26F3B0-04F8-43C1-9136-B85932F1C2F1"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/1998_3/0742.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/1998_3/0742.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1562","sourceIdentifier":"cve@mitre.org","published":"1999-09-05T04:00:00.000","lastModified":"2026-06-16T21:50:43.360","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"gFTP FTP client 1.13, and other versions before 2.0.0, records a password in plaintext in (1) the log window, or (2) in a log file."},{"lang":"es","value":"El cliente de FTP gFTP versión 1.13, y otras versiones anteriores a 2.0.0 almacenan contraseñas en texto plano en (1) la ventana de registro(log) o (2) en un fichero de registro."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gftp:ftp_client:*:*:*:*:*:*:*:*","versionEndIncluding":"2.0.0","matchCriteriaId":"CA11E0CC-8164-4D79-9F4D-BC49C2BC6611"},{"vulnerable":true,"criteria":"cpe:2.3:a:gftp:ftp_client:1.13:*:*:*:*:*:*:*","matchCriteriaId":"FF5F91F2-4399-422C-BE61-36B9D9FA6045"}]}]}],"references":[{"url":"http://www.debian.org/security/2001/dsa-084","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/26915","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/3446","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/2001/dsa-084","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/26915","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/3446","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0489","sourceIdentifier":"cve@mitre.org","published":"1999-09-05T04:00:00.000","lastModified":"2026-06-16T21:51:50.637","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"FreeBSD, NetBSD, and OpenBSD allow an attacker to cause a denial of service by creating a large number of socket pairs using the socketpair function, setting a large buffer size via setsockopt, then writing large buffers."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.0:*:*:*:*:*:*:*","matchCriteriaId":"EE38C50A-81FE-412E-9717-3672FAE6A6F4"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.1:*:*:*:*:*:*:*","matchCriteriaId":"263F3734-7076-4EA8-B4C0-F37CFC4E979E"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.2:*:*:*:*:*:*:*","matchCriteriaId":"0419DD66-FF66-48BC-AD3B-F6AFD0551E36"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.3:*:*:*:*:*:*:*","matchCriteriaId":"C3518628-08E5-4AD7-AAF6-A4E38F1CDE2C"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.4:*:*:*:*:*:*:*","matchCriteriaId":"B982342C-1981-4C55-8044-AFE4D87623DF"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.5:*:*:*:*:*:*:*","matchCriteriaId":"47E02BE6-4800-4940-B269-385B66AC5077"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.0:*:*:*:*:*:*:*","matchCriteriaId":"D0A585A1-FF82-418F-90F8-072458DB7816"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:5.0:alpha:*:*:*:*:*:*","matchCriteriaId":"3B13D898-C1B6-44B9-8432-7DDB8A380E9E"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4:*:x86:*:*:*:*:*","matchCriteriaId":"4319B741-4376-4EA2-9FEB-236C148D1514"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.1:*:alpha:*:*:*:*:*","matchCriteriaId":"247ABD95-74CA-45B8-8729-3C35C9E11186"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.1:*:arm32:*:*:*:*:*","matchCriteriaId":"1D4C44E8-075A-4B48-88DA-2CAC25CDF159"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.1:*:sparc:*:*:*:*:*","matchCriteriaId":"19D1E7AC-79B6-4136-ADB2-06BEE9773795"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.1:*:x86:*:*:*:*:*","matchCriteriaId":"E2EE8A19-8AB1-4283-95EA-9EE3C7E5DED7"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.2:*:alpha:*:*:*:*:*","matchCriteriaId":"6FA1C84C-6624-4032-8D0E-5EBB054F5224"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.2:*:arm32:*:*:*:*:*","matchCriteriaId":"06B9ADAD-ADDC-47AC-9924-B31B17DDF163"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.2:*:sparc:*:*:*:*:*","matchCriteriaId":"6DC0D30E-DBF1-4FDB-80C0-80DB50D9E77A"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.2:*:x86:*:*:*:*:*","matchCriteriaId":"537FD523-1D44-4D85-AED1-C092E0155CF2"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.5:*:*:*:*:*:*:*","matchCriteriaId":"ACE7FDFB-C6A6-4B58-B0B4-236E4EA76EF6"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.6:*:*:*:*:*:*:*","matchCriteriaId":"0DF053A1-C252-427E-9EEF-27240F422976"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.7:*:*:*:*:*:*:*","matchCriteriaId":"48A9C344-45AA-47B9-B35A-1A62E220D9C6"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/622","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=NCBBKFKDOLAGKIAPMILPCEJLCEAA.labs%40ussrback.com","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.10.9908270039010.16315-100000%40thetis.deor.org","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3298","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/622","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=NCBBKFKDOLAGKIAPMILPCEJLCEAA.labs%40ussrback.com","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.10.9908270039010.16315-100000%40thetis.deor.org","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3298","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1353","sourceIdentifier":"cve@mitre.org","published":"1999-09-07T04:00:00.000","lastModified":"2026-06-16T21:50:15.590","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Nosque MsgCore 2.14 stores passwords in cleartext: (1) the administrator password in the AdmPasswd registry key, and (2) user passwords in the Userbase.dbf data file, which could allow local users to gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:nosque:msgcore:2.14:*:*:*:*:*:*:*","matchCriteriaId":"743DF18E-E2BD-4AC5-B7AA-D585F66ABB58"}]}]}],"references":[{"url":"http://marc.info/?l=ntbugtraq&m=93698162708211&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=93698162708211&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0767","sourceIdentifier":"cve@mitre.org","published":"1999-09-08T04:00:00.000","lastModified":"2026-06-16T21:49:00.953","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Solaris libc, ufsrestore, and rcp via LC_MESSAGES environmental variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.6:*:*:*:*:*:*:*","matchCriteriaId":"34EBF074-78C8-41AF-88F1-DA6726E56F8B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:7.0:*:x86:*:*:*:*:*","matchCriteriaId":"8F1F312C-413F-4DB4-ABF4-48E33F6FECF2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:-:*:*:*:*:*:*:*","matchCriteriaId":"369207B4-96FA-4324-9445-98FAE8ECF5DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"https://marc.info/?l=bugtraq&m=87602167420557&w=2","source":"cve@mitre.org"},{"url":"https://marc.info/?l=bugtraq&m=87602167420557&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0697","sourceIdentifier":"cve@mitre.org","published":"1999-09-09T04:00:00.000","lastModified":"2026-06-16T21:48:52.187","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"SCO Doctor allows local users to gain root privileges through a Tools option."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sco:openserver:5.0.4:*:*:*:*:*:*:*","matchCriteriaId":"035FBF8B-EB91-4211-9979-8A9E913A54A1"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:openserver:5.0.5:*:*:*:*:*:*:*","matchCriteriaId":"B8BA72B4-C4AF-41C6-92ED-30B286E00EF5"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/621","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/621","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1377","sourceIdentifier":"cve@mitre.org","published":"1999-09-09T04:00:00.000","lastModified":"2026-06-16T21:50:18.610","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Matt Wright's download.cgi 1.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the f parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:matt_wright:download.cgi:1.0:*:*:*:*:*:*:*","matchCriteriaId":"0E235ED6-D87A-4770-8F1D-DBAE076E3170"}]}]}],"references":[{"url":"http://pulhas.org/phrack/55/P55-07.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://pulhas.org/phrack/55/P55-07.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-0702","sourceIdentifier":"cve@mitre.org","published":"1999-09-10T04:00:00.000","lastModified":"2026-06-16T21:48:52.797","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internet Explorer 5.0 and 5.01 allows remote attackers to modify or execute files via the Import/Export Favorites feature, aka the \"ImportExportFavorites\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-94"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0.1:*:*:*:*:*:*:*","matchCriteriaId":"42502347-DD40-4F8C-9861-C0A88A3F8608"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ241361","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/627","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-037","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ241361","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/627","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-037","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0910","sourceIdentifier":"cve@mitre.org","published":"1999-09-10T04:00:00.000","lastModified":"2026-06-16T21:49:18.670","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Site Server and Commercial Internet System (MCIS) do not set an expiration for a cookie, which could then be cached by a proxy and inadvertently used by a different user."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:commercial_internet_system:2.0:*:*:*:*:*:*:*","matchCriteriaId":"81514AB5-388D-4D13-B63A-C237A502B86A"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:commercial_internet_system:2.5:*:*:*:*:*:*:*","matchCriteriaId":"879AFDCC-B9D8-41EF-85DD-70CC1BD5227C"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:site_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"4A503018-356B-46D9-965F-60750B5B7484"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:site_server_commerce:3.0:alpha:*:*:*:*:*:*","matchCriteriaId":"35EBE0A3-F521-4B04-95B7-3C57D3090A20"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/625","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-035","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/625","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-035","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1575","sourceIdentifier":"cve@mitre.org","published":"1999-09-10T04:00:00.000","lastModified":"2026-06-16T21:50:45.250","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Kodak/Wang (1) Image Edit (imgedit.ocx), (2) Image Annotation (imgedit.ocx), (3) Image Scan (imgscan.ocx), (4) Thumbnail Image (imgthumb.ocx), (5) Image Admin (imgadmin.ocx), (6) HHOpen (hhopen.ocx), (7) Registration Wizard (regwizc.dll), and (8) IE Active Setup (setupctl.dll) ActiveX controls for Internet Explorer (IE) 4.01 and 5.0 are marked as \"Safe for Scripting,\" which allows remote attackers to create and modify files and execute arbitrary commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0.1:*:*:*:*:*:*:*","matchCriteriaId":"42502347-DD40-4F8C-9861-C0A88A3F8608"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"}]}]}],"references":[{"url":"http://www.kb.cert.org/vuls/id/23412","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://www.kb.cert.org/vuls/id/24839","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://www.kb.cert.org/vuls/id/26924","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://www.kb.cert.org/vuls/id/41408","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://www.kb.cert.org/vuls/id/9162","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://www.securityfocus.com/archive/1/28719","source":"cve@mitre.org","tags":["Exploit"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-037","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7097","source":"cve@mitre.org"},{"url":"http://www.kb.cert.org/vuls/id/23412","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"http://www.kb.cert.org/vuls/id/24839","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"http://www.kb.cert.org/vuls/id/26924","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"http://www.kb.cert.org/vuls/id/41408","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"http://www.kb.cert.org/vuls/id/9162","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"http://www.securityfocus.com/archive/1/28719","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-037","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7097","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1521","sourceIdentifier":"cve@mitre.org","published":"1999-09-12T04:00:00.000","lastModified":"2026-06-16T21:50:37.103","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Computalynx CMail 2.4 and CMail 2.3 SP2 SMTP servers are vulnerable to a buffer overflow attack in the MAIL FROM command that may allow a remote attacker to execute arbitrary code on the server."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:computalynx:cmail:2.3sp2:*:*:*:*:*:*:*","matchCriteriaId":"60A01A6F-35E8-408C-B772-4DF4C6A3043C"},{"vulnerable":true,"criteria":"cpe:2.3:a:computalynx:cmail:2.4:*:*:*:*:*:*:*","matchCriteriaId":"D0A15E1A-0099-4F25-A0FF-0AE55CB627D6"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93720402717560&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94121824921783&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/633","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2240","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93720402717560&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=94121824921783&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/633","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2240","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0687","sourceIdentifier":"cve@mitre.org","published":"1999-09-13T04:00:00.000","lastModified":"2026-06-16T21:48:50.907","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The ToolTalk ttsession daemon uses weak RPC authentication, which allows a remote attacker to execute commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cde:cde:1.0.1:*:*:*:*:*:*:*","matchCriteriaId":"D6527C0F-8052-438F-888D-44D67A9E0E6F"},{"vulnerable":true,"criteria":"cpe:2.3:a:cde:cde:1.0.2:*:*:*:*:*:*:*","matchCriteriaId":"500C3B15-B0E5-4DEE-80EC-A1A0418365A8"},{"vulnerable":true,"criteria":"cpe:2.3:a:cde:cde:1.1:*:*:*:*:*:*:*","matchCriteriaId":"2B9A4891-EB12-490E-9BA0-4A14A551708E"},{"vulnerable":true,"criteria":"cpe:2.3:a:cde:cde:1.2:*:*:*:*:*:*:*","matchCriteriaId":"0409D8C4-A512-492A-9093-CE1E78E1426E"},{"vulnerable":true,"criteria":"cpe:2.3:a:cde:cde:2.0:*:*:*:*:*:*:*","matchCriteriaId":"E01901D5-F582-443B-82A3-366EB5E29C61"},{"vulnerable":true,"criteria":"cpe:2.3:a:cde:cde:2.1:*:*:*:*:*:*:*","matchCriteriaId":"E4846EA2-0B0E-4EA1-A1B0-C998DD8F7635"},{"vulnerable":true,"criteria":"cpe:2.3:a:cde:cde:2.120:*:*:*:*:*:*:*","matchCriteriaId":"D1B9337E-3AF1-4E76-BAC8-2B05A484C77D"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:digital:unix:4.0d:*:*:*:*:*:*:*","matchCriteriaId":"8C250283-4343-4569-A6EA-988FB7319AA7"},{"vulnerable":true,"criteria":"cpe:2.3:o:digital:unix:4.0f:*:*:*:*:*:*:*","matchCriteriaId":"8237F390-43DB-4B07-9CD7-C3F804710497"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1:*:*:*:*:*:*:*","matchCriteriaId":"FBF25306-E7C2-4F9A-A809-4779A6C0A079"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1.1:*:*:*:*:*:*:*","matchCriteriaId":"B3BA7775-30F2-4CA0-BA6E-70ED12A48D90"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1.2:*:*:*:*:*:*:*","matchCriteriaId":"FB038A89-1CA6-4313-B7CE-56C894945FFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1.3:*:*:*:*:*:*:*","matchCriteriaId":"2B3BC86F-5718-4232-BFFF-6244A7C09B8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1.4:*:*:*:*:*:*:*","matchCriteriaId":"E6118CC1-6E51-4E1B-8F58-43B337515222"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1.5:*:*:*:*:*:*:*","matchCriteriaId":"F3D3B348-270F-4209-B31A-2B40F5E4A601"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.2:*:*:*:*:*:*:*","matchCriteriaId":"05F20EC2-ADE6-4F96-A2E7-1DCCA819D657"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.2.1:*:*:*:*:*:*:*","matchCriteriaId":"91D7C561-4D23-430B-A7D8-137E52B08FF5"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3:*:*:*:*:*:*:*","matchCriteriaId":"11ACD012-F05F-45CD-A170-96CBAA42FFE4"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.1:*:*:*:*:*:*:*","matchCriteriaId":"55919E74-09E7-44BA-9941-D1B69BB1692F"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.2:*:*:*:*:*:*:*","matchCriteriaId":"45F3C5D8-8BC3-44EB-917A-D0BA051D3D9D"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.4:*:x86:*:*:*:*:*","matchCriteriaId":"1F881110-7B54-49DA-B23A-710273430C44"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5:*:x86:*:*:*:*:*","matchCriteriaId":"200D8CB2-0D52-40A8-9CD9-6E4513605201"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5.1:*:x86:*:*:*:*:*","matchCriteriaId":"F66BAF35-A8B9-4E95-B270-444206FDD35B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.6:*:*:*:*:*:*:*","matchCriteriaId":"34EBF074-78C8-41AF-88F1-DA6726E56F8B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:7.0:*:x86:*:*:*:*:*","matchCriteriaId":"8F1F312C-413F-4DB4-ABF4-48E33F6FECF2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:-:*:*:*:*:*:*:*","matchCriteriaId":"369207B4-96FA-4324-9445-98FAE8ECF5DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:4.1.3u1:*:*:*:*:*:*:*","matchCriteriaId":"FD1BA107-F2D3-4F13-82EC-4576C429E3C1"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:4.1.4:*:*:*:*:*:*:*","matchCriteriaId":"1070749A-65E9-439A-A7CC-3CE529A5D5E7"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.3:*:*:*:*:*:*:*","matchCriteriaId":"C7A22D21-E0A9-4B56-86C7-805AD1A610D6"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.4:*:*:*:*:*:*:*","matchCriteriaId":"7AAC8954-74A8-4FE3-ABE7-57DA041D9D8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5:*:*:*:*:*:*:*","matchCriteriaId":"5B72953B-E873-4E44-A3CF-12D770A0D416"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5.1:*:*:*:*:*:*:*","matchCriteriaId":"39F847DB-65A9-47DA-BCFA-A179E5E2301A"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/192","source":"cve@mitre.org"},{"url":"http://www.ciac.org/ciac/bulletins/k-001.shtml","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/637","source":"cve@mitre.org"},{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9909-103","source":"cve@mitre.org"},{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/192","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.ciac.org/ciac/bulletins/k-001.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/637","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9909-103","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0689","sourceIdentifier":"cve@mitre.org","published":"1999-09-13T04:00:00.000","lastModified":"2026-06-16T21:48:51.173","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The CDE dtspcd daemon allows local users to execute arbitrary commands via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cde:cde:1.0.1:*:*:*:*:*:*:*","matchCriteriaId":"D6527C0F-8052-438F-888D-44D67A9E0E6F"},{"vulnerable":true,"criteria":"cpe:2.3:a:cde:cde:1.0.2:*:*:*:*:*:*:*","matchCriteriaId":"500C3B15-B0E5-4DEE-80EC-A1A0418365A8"},{"vulnerable":true,"criteria":"cpe:2.3:a:cde:cde:1.1:*:*:*:*:*:*:*","matchCriteriaId":"2B9A4891-EB12-490E-9BA0-4A14A551708E"},{"vulnerable":true,"criteria":"cpe:2.3:a:cde:cde:1.2:*:*:*:*:*:*:*","matchCriteriaId":"0409D8C4-A512-492A-9093-CE1E78E1426E"},{"vulnerable":true,"criteria":"cpe:2.3:a:cde:cde:2.0:*:*:*:*:*:*:*","matchCriteriaId":"E01901D5-F582-443B-82A3-366EB5E29C61"},{"vulnerable":true,"criteria":"cpe:2.3:a:cde:cde:2.1:*:*:*:*:*:*:*","matchCriteriaId":"E4846EA2-0B0E-4EA1-A1B0-C998DD8F7635"},{"vulnerable":true,"criteria":"cpe:2.3:a:cde:cde:2.120:*:*:*:*:*:*:*","matchCriteriaId":"D1B9337E-3AF1-4E76-BAC8-2B05A484C77D"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5:*:x86:*:*:*:*:*","matchCriteriaId":"200D8CB2-0D52-40A8-9CD9-6E4513605201"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5.1:*:x86:*:*:*:*:*","matchCriteriaId":"F66BAF35-A8B9-4E95-B270-444206FDD35B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.6:*:*:*:*:*:*:*","matchCriteriaId":"34EBF074-78C8-41AF-88F1-DA6726E56F8B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:7.0:*:x86:*:*:*:*:*","matchCriteriaId":"8F1F312C-413F-4DB4-ABF4-48E33F6FECF2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:-:*:*:*:*:*:*:*","matchCriteriaId":"369207B4-96FA-4324-9445-98FAE8ECF5DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5:*:*:*:*:*:*:*","matchCriteriaId":"5B72953B-E873-4E44-A3CF-12D770A0D416"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5.1:*:*:*:*:*:*:*","matchCriteriaId":"39F847DB-65A9-47DA-BCFA-A179E5E2301A"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/192","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/636","source":"cve@mitre.org"},{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9909-103","source":"cve@mitre.org"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1880","source":"cve@mitre.org"},{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/192","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/636","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9909-103","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1880","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0691","sourceIdentifier":"cve@mitre.org","published":"1999-09-13T04:00:00.000","lastModified":"2026-06-16T21:48:51.420","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the AddSuLog function of the CDE dtaction utility allows local users to gain root privileges via a long user name."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cde:cde:1.0.1:*:*:*:*:*:*:*","matchCriteriaId":"D6527C0F-8052-438F-888D-44D67A9E0E6F"},{"vulnerable":true,"criteria":"cpe:2.3:a:cde:cde:1.0.2:*:*:*:*:*:*:*","matchCriteriaId":"500C3B15-B0E5-4DEE-80EC-A1A0418365A8"},{"vulnerable":true,"criteria":"cpe:2.3:a:cde:cde:1.1:*:*:*:*:*:*:*","matchCriteriaId":"2B9A4891-EB12-490E-9BA0-4A14A551708E"},{"vulnerable":true,"criteria":"cpe:2.3:a:cde:cde:1.2:*:*:*:*:*:*:*","matchCriteriaId":"0409D8C4-A512-492A-9093-CE1E78E1426E"},{"vulnerable":true,"criteria":"cpe:2.3:a:cde:cde:2.0:*:*:*:*:*:*:*","matchCriteriaId":"E01901D5-F582-443B-82A3-366EB5E29C61"},{"vulnerable":true,"criteria":"cpe:2.3:a:cde:cde:2.1:*:*:*:*:*:*:*","matchCriteriaId":"E4846EA2-0B0E-4EA1-A1B0-C998DD8F7635"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:digital:unix:4.0d:*:*:*:*:*:*:*","matchCriteriaId":"8C250283-4343-4569-A6EA-988FB7319AA7"},{"vulnerable":true,"criteria":"cpe:2.3:o:digital:unix:4.0e:*:*:*:*:*:*:*","matchCriteriaId":"32AE5D68-92A0-4950-A6FF-ECD5F56FDD90"},{"vulnerable":true,"criteria":"cpe:2.3:o:digital:unix:4.0f:*:*:*:*:*:*:*","matchCriteriaId":"8237F390-43DB-4B07-9CD7-C3F804710497"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1:*:*:*:*:*:*:*","matchCriteriaId":"FBF25306-E7C2-4F9A-A809-4779A6C0A079"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1.1:*:*:*:*:*:*:*","matchCriteriaId":"B3BA7775-30F2-4CA0-BA6E-70ED12A48D90"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1.2:*:*:*:*:*:*:*","matchCriteriaId":"FB038A89-1CA6-4313-B7CE-56C894945FFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1.3:*:*:*:*:*:*:*","matchCriteriaId":"2B3BC86F-5718-4232-BFFF-6244A7C09B8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1.4:*:*:*:*:*:*:*","matchCriteriaId":"E6118CC1-6E51-4E1B-8F58-43B337515222"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1.5:*:*:*:*:*:*:*","matchCriteriaId":"F3D3B348-270F-4209-B31A-2B40F5E4A601"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.2:*:*:*:*:*:*:*","matchCriteriaId":"05F20EC2-ADE6-4F96-A2E7-1DCCA819D657"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.2.1:*:*:*:*:*:*:*","matchCriteriaId":"91D7C561-4D23-430B-A7D8-137E52B08FF5"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3:*:*:*:*:*:*:*","matchCriteriaId":"11ACD012-F05F-45CD-A170-96CBAA42FFE4"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.1:*:*:*:*:*:*:*","matchCriteriaId":"55919E74-09E7-44BA-9941-D1B69BB1692F"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.2:*:*:*:*:*:*:*","matchCriteriaId":"45F3C5D8-8BC3-44EB-917A-D0BA051D3D9D"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.4:*:x86:*:*:*:*:*","matchCriteriaId":"1F881110-7B54-49DA-B23A-710273430C44"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5.1:*:x86:*:*:*:*:*","matchCriteriaId":"F66BAF35-A8B9-4E95-B270-444206FDD35B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.6:*:*:*:*:*:*:*","matchCriteriaId":"34EBF074-78C8-41AF-88F1-DA6726E56F8B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:7.0:*:x86:*:*:*:*:*","matchCriteriaId":"8F1F312C-413F-4DB4-ABF4-48E33F6FECF2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.4:*:*:*:*:*:*:*","matchCriteriaId":"7AAC8954-74A8-4FE3-ABE7-57DA041D9D8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5:*:*:*:*:*:*:*","matchCriteriaId":"5B72953B-E873-4E44-A3CF-12D770A0D416"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5.1:*:*:*:*:*:*:*","matchCriteriaId":"39F847DB-65A9-47DA-BCFA-A179E5E2301A"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/192","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/635","source":"cve@mitre.org"},{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9909-103","source":"cve@mitre.org"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A3078","source":"cve@mitre.org"},{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/192","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/635","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9909-103","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A3078","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0750","sourceIdentifier":"cve@mitre.org","published":"1999-09-13T04:00:00.000","lastModified":"2026-06-16T21:48:58.727","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Hotmail allows Javascript to be executed via the HTML STYLE tag, allowing remote attackers to execute commands on the user's Hotmail account."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:hotmail:*:*:*:*:*:*:*:*","matchCriteriaId":"4E5C1DBF-21AF-4A3E-8A4A-42CCD6DD40C3"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/630","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/630","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0751","sourceIdentifier":"cve@mitre.org","published":"1999-09-13T04:00:00.000","lastModified":"2026-06-16T21:48:58.857","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Accept command in Netscape Enterprise Server 3.6 with the SSL Handshake Patch."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:enterprise_server:3.5.1:*:*:*:*:*:*:*","matchCriteriaId":"4147A43C-DA7B-4D08-90E9-72DE57B1D61D"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:enterprise_server:3.6:sp2:*:*:*:*:*:*","matchCriteriaId":"4EB62E6F-87E2-4A98-B4BD-3E0036CE7640"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/631","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3256","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/631","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3256","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0759","sourceIdentifier":"cve@mitre.org","published":"1999-09-13T04:00:00.000","lastModified":"2026-06-16T21:48:59.867","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in FuseMAIL POP service via long USER and PASS commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:fuseware:fusemail:2.7:*:*:*:*:*:*:*","matchCriteriaId":"3E76CAF3-6B56-49F2-B774-D1FB3147540F"}]}]}],"references":[{"url":"http://www.crosswinds.net/~fuseware/faq.html#8","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/634","source":"cve@mitre.org"},{"url":"http://www.crosswinds.net/~fuseware/faq.html#8","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/634","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1014","sourceIdentifier":"cve@mitre.org","published":"1999-09-13T04:00:00.000","lastModified":"2026-06-16T21:49:31.477","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in mail command in Solaris 2.7 and 2.7 allows local users to gain privileges via a long -m argument."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:7.0:*:x86:*:*:*:*:*","matchCriteriaId":"8F1F312C-413F-4DB4-ABF4-48E33F6FECF2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93727925026476&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93846422810162&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/672","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3297","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93727925026476&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=93846422810162&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/672","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3297","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1053","sourceIdentifier":"cve@mitre.org","published":"1999-09-13T04:00:00.000","lastModified":"2026-06-16T21:49:36.507","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"guestbook.pl cleanses user-inserted SSI commands by removing text between \"<!--\" and \"-->\" separators, which allows remote attackers to execute arbitrary commands when guestbook.pl is run on Apache 1.3.9 and possibly other versions, since Apache allows other closing sequences besides \"-->\"."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.3.9:*:*:*:*:*:*:*","matchCriteriaId":"19C8989C-D8A6-4AE9-99B6-F2DAE5999EB6"},{"vulnerable":true,"criteria":"cpe:2.3:a:matt_wright:matt_wright_guestbook:2.3:*:*:*:*:*:*:*","matchCriteriaId":"68093AEC-1493-486F-BD00-3E90A505E035"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/33674","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/82/27296","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/82/27560","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/776","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/33674","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/82/27296","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/82/27560","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/776","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-0817","sourceIdentifier":"cve@mitre.org","published":"1999-09-15T04:00:00.000","lastModified":"2026-06-16T21:49:07.183","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Lynx WWW client allows a remote attacker to specify command-line parameters which Lynx uses when calling external programs to handle certain protocols, e.g. telnet."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:university_of_kansas:lynx:*:*:*:*:*:*:*:*","matchCriteriaId":"6ED57818-7105-4465-92BB-9039C929C02A"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0817","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0817","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0704","sourceIdentifier":"cve@mitre.org","published":"1999-09-16T04:00:00.000","lastModified":"2026-06-16T21:48:53.043","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Berkeley automounter daemon (amd) logging facility provided in the Linux am-utils package and others."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:C/I:C/A:C","baseScore":9.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":8.6,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:bsdi:bsd_os:3.1:*:*:*:*:*:*:*","matchCriteriaId":"950CE88E-E396-4D32-AC9D-B76EB2B537C6"},{"vulnerable":true,"criteria":"cpe:2.3:o:bsdi:bsd_os:4.0.1:*:*:*:*:*:*:*","matchCriteriaId":"A37687D5-1239-474B-994C-C638AB9B105B"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.0:*:*:*:*:*:*:*","matchCriteriaId":"EE38C50A-81FE-412E-9717-3672FAE6A6F4"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.1:*:*:*:*:*:*:*","matchCriteriaId":"263F3734-7076-4EA8-B4C0-F37CFC4E979E"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.2:*:*:*:*:*:*:*","matchCriteriaId":"0419DD66-FF66-48BC-AD3B-F6AFD0551E36"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:4.2:*:*:*:*:*:*:*","matchCriteriaId":"F299301C-6BFC-436C-9CFD-2E291D3702AE"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.0:*:*:*:*:*:*:*","matchCriteriaId":"4BF54738-3C44-4FD4-AA9C-CAB2E86B1DC1"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.1:*:*:*:*:*:*:*","matchCriteriaId":"4EF44364-0F57-4B74-81B0-501EA6B58501"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:i386:*:*:*:*:*","matchCriteriaId":"363AB7DB-A8BA-4D58-97C4-1DF1F0F43E07"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:i386:*:*:*:*:*","matchCriteriaId":"89F65C9D-BD68-4A86-BFDC-E7CE76F13948"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/614","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/614","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0890","sourceIdentifier":"cve@mitre.org","published":"1999-09-16T04:00:00.000","lastModified":"2026-06-16T21:49:16.180","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"iHTML Merchant allows remote attackers to obtain sensitive information or execute commands via a code parsing error."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ihtml_merchant:ihtml_merchant:*:*:*:*:*:*:*:*","matchCriteriaId":"B0A084FF-96DE-4EDD-9C41-DCBA54ACFC8C"}]}]}],"references":[{"url":"http://www.ihtmlmerchant.com/support_patches_feedback.htm","source":"cve@mitre.org","tags":["Patch"]},{"url":"http://www.securityfocus.com/bid/694","source":"cve@mitre.org"},{"url":"http://www.ihtmlmerchant.com/support_patches_feedback.htm","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"http://www.securityfocus.com/bid/694","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0907","sourceIdentifier":"cve@mitre.org","published":"1999-09-16T04:00:00.000","lastModified":"2026-06-16T21:49:18.287","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"sccw allows local users to read arbitrary files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:steven_j._merrifield:soundcard_cw:1.1:*:linux:*:*:*:*:*","matchCriteriaId":"A99542E6-89F0-4459-A5FA-F04C14DFB10B"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0907","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0907","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0953","sourceIdentifier":"cve@mitre.org","published":"1999-09-16T04:00:00.000","lastModified":"2026-06-16T21:49:23.863","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WWWBoard stores encrypted passwords in a password file that is under the web root and thus accessible by remote attackers."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:matt_wright:wwwboard:2.0_alpha_2.1:*:*:*:*:*:*:*","matchCriteriaId":"C90C4757-D39C-4C19-B183-61C244F4EAA7"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0953","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0953","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0954","sourceIdentifier":"cve@mitre.org","published":"1999-09-16T04:00:00.000","lastModified":"2026-06-16T21:49:23.980","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WWWBoard has a default username and default password."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:matt_wright:wwwboard:2.0_alpha_2:*:*:*:*:*:*:*","matchCriteriaId":"5525A19D-52D5-445A-83DE-1B8D440340C7"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/649","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/649","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0787","sourceIdentifier":"cve@mitre.org","published":"1999-09-17T04:00:00.000","lastModified":"2026-06-16T21:49:03.440","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The SSH authentication agent follows symlinks via a UNIX domain socket."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.27:*:*:*:*:*:*:*","matchCriteriaId":"338EDA76-05D6-48C0-952E-6244A5F206F3"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93760201002154&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93832856804415&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/660","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93760201002154&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=93832856804415&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/660","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0886","sourceIdentifier":"cve@mitre.org","published":"1999-09-17T04:00:00.000","lastModified":"2026-06-16T21:49:15.700","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The security descriptor for RASMAN allows users to point to an alternate location via the Windows NT Service Control Manager."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:S/C:C/I:C/A:C","baseScore":9.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"SINGLE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":8.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-16"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp1:*:*:*:*:*:*","matchCriteriaId":"5BDCBCB8-DAA3-465F-ADDE-9143B8251989"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp2:*:*:*:*:*:*","matchCriteriaId":"B86E0671-ED68-4549-B3AC-FD8BD79B0860"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp3:*:*:*:*:*:*","matchCriteriaId":"BB76E7EC-C396-4537-9065-4E815DA7097C"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp4:*:*:*:*:*:*","matchCriteriaId":"4CD026E2-B073-40A6-AD4A-8C76B9169B01"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp5:*:*:*:*:*:*","matchCriteriaId":"DBFB3E49-3FB5-4947-856D-727CBFFBA543"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ242294","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/645","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-041","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ242294","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/645","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-041","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0909","sourceIdentifier":"cve@mitre.org","published":"1999-09-20T04:00:00.000","lastModified":"2026-06-16T21:49:18.537","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Multihomed Windows systems allow a remote attacker to bypass IP source routing restrictions via a malformed packet with IP options, aka the \"Spoofed Route Pointer\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-264"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:terminal_server:*:*:*:*:*:*:*:*","matchCriteriaId":"40242161-D5AD-4314-AB95-E61292C49DF2"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_95:0a:*:*:*:*:*:*:*","matchCriteriaId":"8429C080-F550-4D03-A87A-4546273712AE"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_95:0b:*:*:*:*:*:*:*","matchCriteriaId":"5D153766-0C57-46F4-8865-6F1ED597B53C"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98se:*:*:*:*:*:*:*:*","matchCriteriaId":"AA733AD2-D948-46A0-A063-D29081A56F1F"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp1:*:*:*:*:*:*","matchCriteriaId":"5BDCBCB8-DAA3-465F-ADDE-9143B8251989"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp2:*:*:*:*:*:*","matchCriteriaId":"B86E0671-ED68-4549-B3AC-FD8BD79B0860"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp3:*:*:*:*:*:*","matchCriteriaId":"BB76E7EC-C396-4537-9065-4E815DA7097C"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp4:*:*:*:*:*:*","matchCriteriaId":"4CD026E2-B073-40A6-AD4A-8C76B9169B01"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp5:*:*:*:*:*:*","matchCriteriaId":"DBFB3E49-3FB5-4947-856D-727CBFFBA543"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ238453","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/646","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-038","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ238453","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/646","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-038","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0708","sourceIdentifier":"cve@mitre.org","published":"1999-09-21T04:00:00.000","lastModified":"2026-06-16T21:48:53.557","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in cfingerd allows local users to gain root privileges via a long GECOS field."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:infodrom:cfingerd:1.4.2:*:*:*:*:*:*:*","matchCriteriaId":"3C6DB288-F853-4014-A3E7-751EBE34536E"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/651","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/651","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0786","sourceIdentifier":"cve@mitre.org","published":"1999-09-22T04:00:00.000","lastModified":"2026-06-16T21:49:03.317","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The dynamic linker in Solaris allows a local user to create arbitrary files via the LD_PROFILE environmental variable and a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.4:*:x86:*:*:*:*:*","matchCriteriaId":"1F881110-7B54-49DA-B23A-710273430C44"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5:*:x86:*:*:*:*:*","matchCriteriaId":"200D8CB2-0D52-40A8-9CD9-6E4513605201"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5.1:*:x86:*:*:*:*:*","matchCriteriaId":"F66BAF35-A8B9-4E95-B270-444206FDD35B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.6:*:*:*:*:*:*:*","matchCriteriaId":"34EBF074-78C8-41AF-88F1-DA6726E56F8B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:-:*:*:*:*:*:*:*","matchCriteriaId":"369207B4-96FA-4324-9445-98FAE8ECF5DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.4:*:*:*:*:*:*:*","matchCriteriaId":"7AAC8954-74A8-4FE3-ABE7-57DA041D9D8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5:*:*:*:*:*:*:*","matchCriteriaId":"5B72953B-E873-4E44-A3CF-12D770A0D416"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5.1:*:*:*:*:*:*:*","matchCriteriaId":"39F847DB-65A9-47DA-BCFA-A179E5E2301A"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/659","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/659","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0912","sourceIdentifier":"cve@mitre.org","published":"1999-09-22T04:00:00.000","lastModified":"2026-06-16T21:49:18.920","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"FreeBSD VFS cache (vfs_cache) allows local users to cause a denial of service by opening a large number of files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.0:*:*:*:*:*:*:*","matchCriteriaId":"EE38C50A-81FE-412E-9717-3672FAE6A6F4"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.1:*:*:*:*:*:*:*","matchCriteriaId":"263F3734-7076-4EA8-B4C0-F37CFC4E979E"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.2:*:*:*:*:*:*:*","matchCriteriaId":"0419DD66-FF66-48BC-AD3B-F6AFD0551E36"}]}]}],"references":[{"url":"http://www.osvdb.org/1079","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/653","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1079","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/653","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0777","sourceIdentifier":"cve@mitre.org","published":"1999-09-23T04:00:00.000","lastModified":"2026-06-16T21:49:02.220","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IIS FTP servers may allow a remote attacker to read or delete files on the server, even if they have \"No Access\" permissions."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-264"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:commercial_internet_system:2.5:*:*:*:*:*:*:*","matchCriteriaId":"879AFDCC-B9D8-41EF-85DD-70CC1BD5227C"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ241407","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ242559","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/658","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-039","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ241407","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ242559","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/658","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-039","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0906","sourceIdentifier":"cve@mitre.org","published":"1999-09-23T04:00:00.000","lastModified":"2026-06-16T21:49:18.170","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in sccw allows local users to gain root access via the HOME environmental variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.2:*:*:*:*:*:*:*","matchCriteriaId":"1B67020A-6942-4478-B501-764147C4970D"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/656","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/656","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0908","sourceIdentifier":"cve@mitre.org","published":"1999-09-23T04:00:00.000","lastModified":"2026-06-16T21:49:18.417","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in Solaris TCP streams driver via a malicious connection that causes the server to panic as a result of recursive calls to mutex_enter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5.1:*:x86:*:*:*:*:*","matchCriteriaId":"F66BAF35-A8B9-4E95-B270-444206FDD35B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.6:*:*:*:*:*:*:*","matchCriteriaId":"34EBF074-78C8-41AF-88F1-DA6726E56F8B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:7.0:*:x86:*:*:*:*:*","matchCriteriaId":"8F1F312C-413F-4DB4-ABF4-48E33F6FECF2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:-:*:*:*:*:*:*:*","matchCriteriaId":"369207B4-96FA-4324-9445-98FAE8ECF5DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5.1:*:*:*:*:*:*:*","matchCriteriaId":"39F847DB-65A9-47DA-BCFA-A179E5E2301A"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/655","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/655","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1013","sourceIdentifier":"cve@mitre.org","published":"1999-09-23T04:00:00.000","lastModified":"2026-06-16T21:49:31.357","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"named-xfer in AIX 4.1.5 and 4.2.1 allows members of the system group to overwrite system files to gain root access via the -f parameter and a malformed zone file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1.5:*:*:*:*:*:*:*","matchCriteriaId":"F3D3B348-270F-4209-B31A-2B40F5E4A601"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.2.1:*:*:*:*:*:*:*","matchCriteriaId":"91D7C561-4D23-430B-A7D8-137E52B08FF5"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93837026726954&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/673","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=93837026726954&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/673","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1477","sourceIdentifier":"cve@mitre.org","published":"1999-09-23T04:00:00.000","lastModified":"2026-06-16T21:50:31.527","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in GNOME libraries 1.0.8 allows local user to gain root access via a long --espeaker argument in programs such as nethack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gnome:gnome_libs:1.0.8:*:*:*:*:*:*:*","matchCriteriaId":"F677491A-EB46-4AF3-BD85-00FF56E1F546"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"D323A6B7-2741-4F31-B0D6-5D6FB738A2A1"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/28717","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/663","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3349","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/28717","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/663","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3349","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1534","sourceIdentifier":"cve@mitre.org","published":"1999-09-23T04:00:00.000","lastModified":"2026-06-16T21:50:38.923","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in (1) nlservd and (2) rnavc in Knox Software Arkeia backup product allows local users to obtain root access via a long HOME environmental variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:knox_software:arkeia:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E4C2000A-26CC-4CC6-B2DD-73BD1C57D60C"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93837184228248&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/661","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=93837184228248&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/661","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1351","sourceIdentifier":"cve@mitre.org","published":"1999-09-24T04:00:00.000","lastModified":"2026-06-16T21:50:15.337","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in KVIrc IRC client 0.9.0 with the \"Listen to !nick <soundname> requests\" option enabled allows remote attackers to read arbitrary files via a .. (dot dot) in a DCC GET request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:kvirc:irc_client:0.9.0:*:*:*:*:*:*:*","matchCriteriaId":"F1022B58-B1B1-4935-B0DB-01B8C5575051"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93845560631314&w=2","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/7761.php","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93845560631314&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.iss.net/security_center/static/7761.php","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1484","sourceIdentifier":"cve@mitre.org","published":"1999-09-24T04:00:00.000","lastModified":"2026-06-16T21:50:32.423","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in MSN Setup BBS 4.71.0.10 ActiveX control (setupbbs.ocx) allows a remote attacker to execute arbitrary commands via the methods (1) vAddNewsServer or (2) bIsNewsServerConfigured."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:msn_setup_bulletin_board_services:4.71.0.10:*:*:*:*:*:*:*","matchCriteriaId":"E7A77FB8-F051-4B7B-ADB4-7B484765A7B2"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/28719","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/668","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3310","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/28719","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/668","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3310","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1578","sourceIdentifier":"cve@mitre.org","published":"1999-09-24T04:00:00.000","lastModified":"2026-06-16T21:50:45.670","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Registration Wizard ActiveX control (regwizc.dll, InvokeRegWizard) 3.0.0.0 for Internet Explorer 4.01 and 5 allows remote attackers to execute arbitrary commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0.1:*:*:*:*:*:*:*","matchCriteriaId":"42502347-DD40-4F8C-9861-C0A88A3F8608"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"}]}]}],"references":[{"url":"http://www.kb.cert.org/vuls/id/37556","source":"cve@mitre.org","tags":["Exploit","Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.securityfocus.com/archive/1/28719","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/671","source":"cve@mitre.org","tags":["Exploit","Patch"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3311","source":"cve@mitre.org"},{"url":"http://www.kb.cert.org/vuls/id/37556","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.securityfocus.com/archive/1/28719","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/671","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3311","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0788","sourceIdentifier":"cve@mitre.org","published":"1999-09-26T04:00:00.000","lastModified":"2026-06-16T21:49:03.567","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Arkiea nlservd allows remote attackers to conduct a denial of service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:knox_software:arkeia:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E4C2000A-26CC-4CC6-B2DD-73BD1C57D60C"},{"vulnerable":true,"criteria":"cpe:2.3:a:knox_software:arkeia:4.1:*:*:*:*:*:*:*","matchCriteriaId":"89C0FD29-7836-4566-AB30-1EB455F2DB54"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93837184228248&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/662","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93837184228248&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/662","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0940","sourceIdentifier":"cve@mitre.org","published":"1999-09-27T04:00:00.000","lastModified":"2026-06-16T21:49:22.293","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in mutt mail client allows remote attackers to execute commands via malformed MIME messages."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mutt:mutt_mail_client:*:*:*:*:*:*:*:*","matchCriteriaId":"2A691003-779A-46E5-9625-678D90C10AB0"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0940","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0940","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1576","sourceIdentifier":"cve@mitre.org","published":"1999-09-27T04:00:00.000","lastModified":"2026-06-16T21:50:45.407","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Adobe Acrobat ActiveX control (pdf.ocx, PDF.PdfCtrl.1) 1.3.188 for Acrobat Reader 4.0 allows remote attackers to execute arbitrary code via the pdf.setview method."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:adobe:acrobat_reader:4.0:*:*:*:*:*:*:*","matchCriteriaId":"F509566A-6D4A-40C0-8A16-F8765C5DCAAF"}]}]}],"references":[{"url":"http://www.kb.cert.org/vuls/id/25919","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://www.securityfocus.com/archive/1/28719","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/666","source":"cve@mitre.org","tags":["Exploit","Patch"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3318","source":"cve@mitre.org"},{"url":"http://www.kb.cert.org/vuls/id/25919","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"http://www.securityfocus.com/archive/1/28719","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/666","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3318","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0789","sourceIdentifier":"cve@mitre.org","published":"1999-09-28T04:00:00.000","lastModified":"2026-06-16T21:49:03.690","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in AIX ftpd in the libc library."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3:*:*:*:*:*:*:*","matchCriteriaId":"11ACD012-F05F-45CD-A170-96CBAA42FFE4"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.1:*:*:*:*:*:*:*","matchCriteriaId":"55919E74-09E7-44BA-9941-D1B69BB1692F"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.2:*:*:*:*:*:*:*","matchCriteriaId":"45F3C5D8-8BC3-44EB-917A-D0BA051D3D9D"}]}]}],"references":[{"url":"http://www.ciac.org/ciac/bulletins/j-072.shtml","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/679","source":"cve@mitre.org"},{"url":"http://www.ciac.org/ciac/bulletins/j-072.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/679","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1352","sourceIdentifier":"cve@mitre.org","published":"1999-09-28T04:00:00.000","lastModified":"2026-06-16T21:50:15.463","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"mknod in Linux 2.2 follows symbolic links, which could allow local users to overwrite files or gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.2.0:*:*:*:*:*:*:*","matchCriteriaId":"146F7A77-A950-4CAD-BDA9-C239696F569D"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93855134409747&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93855134409747&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1350","sourceIdentifier":"cve@mitre.org","published":"1999-09-29T04:00:00.000","lastModified":"2026-06-16T21:50:15.203","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ARCAD Systemhaus 0.078-5 installs critical programs and files with world-writeable permissions, which could allow local users to gain privileges by replacing a program with a Trojan horse."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:arcad_systemhaus:arcad:0.078_5:*:*:*:*:*:*:*","matchCriteriaId":"B05113AB-8A94-4AE0-B012-FFEE2EC300C9"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93871933521519&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93871933521519&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0931","sourceIdentifier":"cve@mitre.org","published":"1999-09-30T04:00:00.000","lastModified":"2026-06-16T21:49:21.207","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Mediahouse Statistics Server allows remote attackers to execute commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mediahouse_software:statistics_server:4.28:*:*:*:*:*:*:*","matchCriteriaId":"23874677-B5B3-4485-BD19-168E2693A048"},{"vulnerable":true,"criteria":"cpe:2.3:a:mediahouse_software:statistics_server:5.0:*:*:*:*:*:*:*","matchCriteriaId":"F4D3F01D-6EBC-436E-9E56-5CE14081D132"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/734","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/734","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0932","sourceIdentifier":"cve@mitre.org","published":"1999-09-30T04:00:00.000","lastModified":"2026-06-16T21:49:21.317","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Mediahouse Statistics Server allows remote attackers to read the administrator password, which is stored in cleartext in the ss.cfg file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mediahouse_software:statistics_server:4.28:*:*:*:*:*:*:*","matchCriteriaId":"23874677-B5B3-4485-BD19-168E2693A048"},{"vulnerable":true,"criteria":"cpe:2.3:a:mediahouse_software:statistics_server:5.1:*:*:*:*:*:*:*","matchCriteriaId":"6250AF10-CCBB-4FD9-8C13-1C6EE9725C6A"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/735","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/735","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1469","sourceIdentifier":"cve@mitre.org","published":"1999-09-30T04:00:00.000","lastModified":"2026-06-16T21:50:30.497","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in w3-auth CGI program in miniSQL package allows remote attackers to execute arbitrary commands via an HTTP request with (1) a long URL, or (2) a long User-Agent MIME header."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:hughes_technologies:w3-auth:*:*:*:*:*:*:*:*","matchCriteriaId":"A7E02158-098A-4D46-AF4E-FCD46BDF722B"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93871926821410&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93871926821410&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1583","sourceIdentifier":"cve@mitre.org","published":"1999-09-30T04:00:00.000","lastModified":"2026-06-16T21:50:46.297","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in nslookup for AIX 4.3 allows local users to execute arbitrary code via a long hostname command line argument."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3:*:*:*:*:*:*:*","matchCriteriaId":"11ACD012-F05F-45CD-A170-96CBAA42FFE4"}]}]}],"references":[{"url":"http://www-1.ibm.com/support/search.wss?rs=0&q=IY02120&apar=only","source":"cve@mitre.org","tags":["Exploit","Patch"]},{"url":"http://www.kb.cert.org/vuls/id/872443","source":"cve@mitre.org","tags":["Patch","US Government Resource"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/8031","source":"cve@mitre.org"},{"url":"http://www-1.ibm.com/support/search.wss?rs=0&q=IY02120&apar=only","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch"]},{"url":"http://www.kb.cert.org/vuls/id/872443","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","US Government Resource"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/8031","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0794","sourceIdentifier":"cve@mitre.org","published":"1999-10-01T04:00:00.000","lastModified":"2026-06-16T21:49:04.297","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Excel does not warn a user when a macro is present in a Symbolic Link (SYLK) format file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-59"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:excel:*:*:*:*:*:*:*:*","matchCriteriaId":"7973AE7A-FE9F-4AB8-BBA8-98F3AF25487C"},{"vulnerable":false,"criteria":"cpe:2.3:a:microsoft:office:*:*:*:*:*:*:*:*","matchCriteriaId":"49AD45BF-8A91-4C87-AF15-D38D8468A4C5"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ241900","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ241901","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ241902","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-044","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ241900","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ241901","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ241902","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-044","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0877","sourceIdentifier":"cve@mitre.org","published":"1999-10-01T04:00:00.000","lastModified":"2026-06-16T21:49:14.617","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internet Explorer 5 allows remote attackers to read files via an ExecCommand method called on an IFRAME."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:P/I:N/A:N","baseScore":4.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":8.6,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-200"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.01:*:*:*:*:*:*:*","matchCriteriaId":"B9D82B89-456D-41CB-A894-B6A22FB4415D"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.01:sp1:*:*:*:*:*:*","matchCriteriaId":"2E21CE6E-2B33-4225-B1DC-C19F1D578040"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ243638","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-042","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ243638","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-042","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0879","sourceIdentifier":"cve@mitre.org","published":"1999-10-01T04:00:00.000","lastModified":"2026-06-16T21:49:14.873","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in WU-FTPD and related FTP servers allows remote attackers to gain root privileges via macro variables in a message file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:bsdi:bsd_os:2.1:*:*:*:*:*:*:*","matchCriteriaId":"766851E2-134A-4A89-931B-6F1753525684"},{"vulnerable":true,"criteria":"cpe:2.3:o:bsdi:bsd_os:3.0:*:*:*:*:*:*:*","matchCriteriaId":"99235B00-0050-42BF-99EF-FCDD72D8627D"},{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux:1.0:*:*:*:*:*:*:*","matchCriteriaId":"ABC52A20-B706-432D-9A15-45F48EB1B08B"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0879","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0879","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0880","sourceIdentifier":"cve@mitre.org","published":"1999-10-01T04:00:00.000","lastModified":"2026-06-16T21:49:14.987","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in WU-FTPD via the SITE NEWER command, which does not free memory properly."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:bsdi:bsd_os:2.1:*:*:*:*:*:*:*","matchCriteriaId":"766851E2-134A-4A89-931B-6F1753525684"},{"vulnerable":true,"criteria":"cpe:2.3:o:bsdi:bsd_os:3.0:*:*:*:*:*:*:*","matchCriteriaId":"99235B00-0050-42BF-99EF-FCDD72D8627D"},{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux:1.0:*:*:*:*:*:*:*","matchCriteriaId":"ABC52A20-B706-432D-9A15-45F48EB1B08B"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0880","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0880","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0933","sourceIdentifier":"cve@mitre.org","published":"1999-10-01T04:00:00.000","lastModified":"2026-06-16T21:49:21.440","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"TeamTrack web server allows remote attackers to read arbitrary files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:teamshare:teamtrack:3.0:*:*:*:*:*:*:*","matchCriteriaId":"4D408A75-F191-4470-844B-E5CCA0219737"}]}]}],"references":[{"url":"http://www.osvdb.org/1096","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/689","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1096","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/689","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1236","sourceIdentifier":"cve@mitre.org","published":"1999-10-01T04:00:00.000","lastModified":"2026-06-16T21:50:00.530","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internet Anywhere Mail Server 2.3.1 stores passwords in plaintext in the msgboxes.dbf file, which could allow local users to gain privileges by extracting the passwords from msgboxes.dbf."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:true_north:internet_anywhere_mail_server:2.3.1:*:*:*:*:*:*:*","matchCriteriaId":"E35F96E1-E254-4CBA-856A-8772BC31F374"},{"vulnerable":true,"criteria":"cpe:2.3:a:true_north:internet_anywhere_mail_server:3.1:*:*:*:*:*:*:*","matchCriteriaId":"B09BD4FD-C2A8-4272-8E48-051E5416FEBA"}]}]}],"references":[{"url":"http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind9910&L=ntbugtraq&F=&S=&P=662","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/731","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3285","source":"cve@mitre.org"},{"url":"http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind9910&L=ntbugtraq&F=&S=&P=662","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/731","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3285","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1500","sourceIdentifier":"cve@mitre.org","published":"1999-10-01T04:00:00.000","lastModified":"2026-06-16T21:50:34.463","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internet Anywhere POP3 Mail Server 2.3.1 allows remote attackers to cause a denial of service (crash) via (1) LIST, (2) TOP, or (3) UIDL commands using letters as arguments."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:true_north:internet_anywhere_mail_server:2.3:*:*:*:*:*:*:*","matchCriteriaId":"BCA7F1F4-1C43-4196-93E8-D38DCB8624B7"}]}]}],"references":[{"url":"http://marc.info/?l=ntbugtraq&m=93880357530599&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/733","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=ntbugtraq&m=93880357530599&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/733","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0016","sourceIdentifier":"cve@mitre.org","published":"1999-10-01T04:00:00.000","lastModified":"2026-06-16T21:50:49.750","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Internet Anywhere POP3 Mail Server allows remote attackers to cause a denial of service or execute commands via a long username."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:true_north:internet_anywhere_mail_server:2.3:*:*:*:*:*:*:*","matchCriteriaId":"BCA7F1F4-1C43-4196-93E8-D38DCB8624B7"},{"vulnerable":true,"criteria":"cpe:2.3:a:true_north:internet_anywhere_mail_server:2.3.1:*:*:*:*:*:*:*","matchCriteriaId":"E35F96E1-E254-4CBA-856A-8772BC31F374"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/730","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/730","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0047","sourceIdentifier":"cve@mitre.org","published":"1999-10-01T04:00:00.000","lastModified":"2026-06-16T21:50:53.510","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Yahoo Pager/Messenger client allows remote attackers to cause a denial of service via a long URL within a message."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:yahoo:pager:733:*:*:*:*:*:*:*","matchCriteriaId":"694E838D-5513-43D1-9A1B-659E4224B948"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0047","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0047","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0942","sourceIdentifier":"cve@mitre.org","published":"1999-10-04T04:00:00.000","lastModified":"2026-06-16T21:49:22.543","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"UnixWare dos7utils allows a local user to gain root privileges by using the STATICMERGE environmental variable to find a script which it executes."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.1:*:*:*:*:*:*:*","matchCriteriaId":"B200C05F-0E89-4172-B500-47C2573D4461"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0942","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0942","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1454","sourceIdentifier":"cve@mitre.org","published":"1999-10-04T04:00:00.000","lastModified":"2026-06-16T21:50:28.500","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Macromedia \"The Matrix\" screen saver on Windows 95 with the \"Password protected\" option enabled allows attackers with physical access to the machine to bypass the password prompt by pressing the ESC (Escape) key."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:macromedia:matrix_screen_saver:*:*:*:*:*:*:*:*","matchCriteriaId":"A5DEDA15-AA6C-4699-95FB-DE4E45198AD9"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93915027622690&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93915027622690&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1523","sourceIdentifier":"cve@mitre.org","published":"1999-10-04T04:00:00.000","lastModified":"2026-06-16T21:50:37.367","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Sambar Web Server 4.2.1 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long HTTP GET request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sambar:sambar_server:*:*:*:*:*:*:*:*","matchCriteriaId":"83D8ABA8-038A-48E2-B2E4-796BDF2E2BAC"},{"vulnerable":true,"criteria":"cpe:2.3:a:sambar:sambar_server:4.2.1:*:*:*:*:*:*:*","matchCriteriaId":"D9F5F4F3-A2EC-4F9E-BB96-16F43666F792"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93901161727373&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93941351229256&w=2","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1672","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93901161727373&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=93941351229256&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1672","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1540","sourceIdentifier":"cve@mitre.org","published":"1999-10-04T04:00:00.000","lastModified":"2026-06-16T21:50:40.570","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"shell-lock in Cactus Software Shell Lock uses weak encryption (trivial encoding) which allows attackers to easily decrypt and obtain the source code."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cactus_software:shell-lock:*:*:*:*:*:*:*:*","matchCriteriaId":"931780A6-580D-41AA-A0CB-4ADDA1448F26"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93916168802365&w=2","source":"cve@mitre.org"},{"url":"http://www.atstake.com/research/advisories/1999/shell-lock.txt","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3356","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93916168802365&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.atstake.com/research/advisories/1999/shell-lock.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3356","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1541","sourceIdentifier":"cve@mitre.org","published":"1999-10-04T04:00:00.000","lastModified":"2026-06-16T21:50:40.697","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"shell-lock in Cactus Software Shell Lock allows local users to read or modify decoded shell files before they are executed, via a symlink attack on a temporary file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cactus_software:shell-lock:*:*:*:*:*:*:*:*","matchCriteriaId":"931780A6-580D-41AA-A0CB-4ADDA1448F26"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93916168802365&w=2","source":"cve@mitre.org"},{"url":"http://www.atstake.com/research/advisories/1999/shell-lock.txt","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3358","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93916168802365&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.atstake.com/research/advisories/1999/shell-lock.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3358","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1542","sourceIdentifier":"cve@mitre.org","published":"1999-10-04T04:00:00.000","lastModified":"2026-06-16T21:50:40.817","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"RPMMail before 1.4 allows remote attackers to execute commands via an e-mail message with shell metacharacters in the \"MAIL FROM\" command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"2DFA94D5-0139-490C-8257-0751FE9FBAE4"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93915641729415&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93923853105687&w=2","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3353","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93915641729415&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=93923853105687&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3353","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1344","sourceIdentifier":"cve@mitre.org","published":"1999-10-05T04:00:00.000","lastModified":"2026-06-16T21:50:14.443","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Auto_FTP.pl script in Auto_FTP 0.2 stores usernames and passwords in plaintext in the auto_ftp.conf configuration file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:auto_ftp:auto_ftp:0.2:*:*:*:*:*:*:*","matchCriteriaId":"368229D8-CDF9-4665-9378-088E4DC0E28D"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93923873006014&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93923873006014&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1345","sourceIdentifier":"cve@mitre.org","published":"1999-10-05T04:00:00.000","lastModified":"2026-06-16T21:50:14.563","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Auto_FTP.pl script in Auto_FTP 0.2 uses the /tmp/ftp_tmp as a shared directory with insecure permissions, which allows local users to (1) send arbitrary files to the remote server by placing them in the directory, and (2) view files that are being transferred."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:auto_ftp:auto_ftp:0.2:*:*:*:*:*:*:*","matchCriteriaId":"368229D8-CDF9-4665-9378-088E4DC0E28D"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93923873006014&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93923873006014&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1357","sourceIdentifier":"cve@mitre.org","published":"1999-10-05T04:00:00.000","lastModified":"2026-06-16T21:50:16.097","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Netscape Communicator 4.04 through 4.7 (and possibly other versions) in various UNIX operating systems converts the 0x8b character to a \"<\" sign, and the 0x9b character to a \">\" sign, which could allow remote attackers to attack other clients via cross-site scripting (CSS) in CGI programs that do not filter these characters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:*:*:*:*:*:*:*:*","versionEndIncluding":"4.7","matchCriteriaId":"5921E5E6-3D97-4075-B557-968340FB6E7B"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.04:*:*:*:*:*:*:*","matchCriteriaId":"94F9EFE4-7853-4809-8D94-03B3EFD739E5"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.51:*:*:*:*:*:*:*","matchCriteriaId":"918BE44C-8D64-4040-BC74-802AA3FA4E10"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93915331626185&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93915331626185&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0791","sourceIdentifier":"cve@mitre.org","published":"1999-10-06T04:00:00.000","lastModified":"2026-06-16T21:49:03.927","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Hybrid Network cable modems do not include an authentication mechanism for administration, allowing remote attackers to compromise the system through the HSMP protocol."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:hybrid_network:hsmp:*:*:*:*:*:*:*:*","matchCriteriaId":"7C3C4C43-D51B-41A5-8403-6054CB88DE4F"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:hybrid_network:cable_modem:*:*:*:*:*:*:*:*","matchCriteriaId":"C4E7CAB1-E796-46AE-90E7-AB88C6126C71"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/695","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/695","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1349","sourceIdentifier":"cve@mitre.org","published":"1999-10-06T04:00:00.000","lastModified":"2026-06-16T21:50:15.080","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"NFS daemon (nfsd.exe) for Omni-NFS/X 6.1 allows remote attackers to cause a denial of service (resource exhaustion) via certain packets, possibly with the Urgent (URG) flag set, to port 111."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:xlink_technology:omni-nfs_x_enterprise:6.1:*:*:*:*:*:*:*","matchCriteriaId":"B07E1D03-763D-40B1-9514-172781BDAC86"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93923679004325&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93923679004325&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1346","sourceIdentifier":"cve@mitre.org","published":"1999-10-07T04:00:00.000","lastModified":"2026-06-16T21:50:14.690","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"PAM configuration file for rlogin in Red Hat Linux 6.1 and earlier includes a less restrictive rule before a more restrictive one, which allows users to access the host via rlogin even if rlogin has been explicitly disabled using the /etc/nologin file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:*:*:*:*:*:*:*:*","versionEndIncluding":"6.1","matchCriteriaId":"143809B4-A40E-426D-9800-C268AECBCA88"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93942774609925&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93942774609925&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1347","sourceIdentifier":"cve@mitre.org","published":"1999-10-07T04:00:00.000","lastModified":"2026-06-16T21:50:14.813","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Xsession in Red Hat Linux 6.1 and earlier can allow local users with restricted accounts to bypass execution of the .xsession file by starting kde, gnome or anotherlevel from kdm."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:*:*:*:*:*:*:*:*","versionEndIncluding":"6.1","matchCriteriaId":"143809B4-A40E-426D-9800-C268AECBCA88"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93942774609925&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93942774609925&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1522","sourceIdentifier":"cve@mitre.org","published":"1999-10-07T04:00:00.000","lastModified":"2026-06-16T21:50:37.233","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in htmlparse.pike in Roxen Web Server 1.3.11 and earlier, possibly related to recursive parsing and referer tags in RXML."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:roxen:roxen_web_server:*:*:*:*:*:*:*:*","versionEndIncluding":"1.3.11","matchCriteriaId":"37737BF2-0E4D-4D2F-B5E9-A355FC9C6426"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93942579008408&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93942579008408&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1082","sourceIdentifier":"cve@mitre.org","published":"1999-10-08T04:00:00.000","lastModified":"2026-06-16T21:49:41.017","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in Jana proxy web server 1.40 allows remote attackers to ready arbitrary files via a \"......\" (modified dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:t._hauck:jana_web_server:1.0:*:*:*:*:*:*:*","matchCriteriaId":"09026053-0568-4D8F-AEB0-F7850C655635"},{"vulnerable":true,"criteria":"cpe:2.3:a:t._hauck:jana_web_server:1.40:*:*:*:*:*:*:*","matchCriteriaId":"35AE9E3D-2E36-47E3-9B24-746DA7252029"},{"vulnerable":true,"criteria":"cpe:2.3:a:t._hauck:jana_web_server:1.45:*:*:*:*:*:*:*","matchCriteriaId":"5C0BC837-4993-4780-B4B0-88D4C1A42BD5"},{"vulnerable":true,"criteria":"cpe:2.3:a:t._hauck:jana_web_server:1.46:*:*:*:*:*:*:*","matchCriteriaId":"D4505B16-611E-422F-995D-748281466621"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93941794201059&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/699","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=93941794201059&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/699","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1083","sourceIdentifier":"cve@mitre.org","published":"1999-10-08T04:00:00.000","lastModified":"2026-06-16T21:49:41.140","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in Jana proxy web server 1.45 allows remote attackers to ready arbitrary files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:t._hauck:jana_web_server:1.0:*:*:*:*:*:*:*","matchCriteriaId":"09026053-0568-4D8F-AEB0-F7850C655635"},{"vulnerable":true,"criteria":"cpe:2.3:a:t._hauck:jana_web_server:1.45:*:*:*:*:*:*:*","matchCriteriaId":"5C0BC837-4993-4780-B4B0-88D4C1A42BD5"},{"vulnerable":true,"criteria":"cpe:2.3:a:t._hauck:jana_web_server:1.46:*:*:*:*:*:*:*","matchCriteriaId":"D4505B16-611E-422F-995D-748281466621"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=95730430727064&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/699","source":"cve@mitre.org","tags":["Exploit"]},{"url":"http://marc.info/?l=bugtraq&m=95730430727064&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/699","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]}]}},{"cve":{"id":"CVE-2000-0369","sourceIdentifier":"cve@mitre.org","published":"1999-10-08T04:00:00.000","lastModified":"2026-06-16T21:51:34.400","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The IDENT server in Caldera Linux 2.3 creates multiple threads for each IDENT request, which allows remote attackers to cause a denial of service."},{"lang":"es","value":"El servidor IDENT de Caldera Linux 2.3 crea múltiples hilos para cada petición IDENT, lo que permite a atacantes remotos causar una denegación de servicio."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux:2.3:*:*:*:*:*:*:*","matchCriteriaId":"23B38FCC-2C86-4E84-860B-EBAE0FA123B6"}]}]}],"references":[{"url":"ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-1999-029.1.txt","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1266","source":"cve@mitre.org"},{"url":"ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-1999-029.1.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1266","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0893","sourceIdentifier":"cve@mitre.org","published":"1999-10-11T04:00:00.000","lastModified":"2026-06-16T21:49:16.557","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"userOsa in SCO OpenServer allows local users to corrupt files via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sco:openserver:5.0:*:*:*:*:*:*:*","matchCriteriaId":"2C19F7B3-9043-4E53-90DE-92A4387858A7"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0893","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0893","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1343","sourceIdentifier":"cve@mitre.org","published":"1999-10-13T04:00:00.000","lastModified":"2026-06-16T21:50:14.327","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"HTTP server for Xerox DocuColor 4 LP allows remote attackers to cause a denial of service (hang) via a long URL that contains a large number of . characters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:xerox:docucolor_4lp:*:*:*:*:*:*:*:*","matchCriteriaId":"21AEC119-CE59-47AC-843E-DE1694A3B818"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93986405412867&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93986405412867&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0356","sourceIdentifier":"cve@mitre.org","published":"1999-10-13T04:00:00.000","lastModified":"2026-06-16T21:51:32.820","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Pluggable Authentication Modules (PAM) in Red Hat Linux 6.1 does not properly lock access to disabled NIS accounts."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:i386:*:*:*:*:*","matchCriteriaId":"B72D6205-DFA4-41D9-B3B6-0B7DA756CD8F"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/697","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/advisory.html?id=1789","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/697","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/advisory.html?id=1789","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0943","sourceIdentifier":"cve@mitre.org","published":"1999-10-15T04:00:00.000","lastModified":"2026-06-16T21:49:22.660","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in OpenLink 3.2 allows remote attackers to gain privileges via a long GET request to the web configurator."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:openlink:openlink:a:*:*:*:*:*:*:*","matchCriteriaId":"7E794EB7-79BB-4359-B642-75AE9E554F16"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/720","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/720","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1342","sourceIdentifier":"cve@mitre.org","published":"1999-10-17T04:00:00.000","lastModified":"2026-06-16T21:50:14.200","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ICQ ActiveList Server allows remote attackers to cause a denial of service (crash) via malformed packets to the server's UDP port."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:icq:activelist_server:*:*:*:*:*:*:*:*","matchCriteriaId":"6844DD0E-8AE8-48A9-9355-ABBC59BC1FEA"}]}]}],"references":[{"url":"http://marc.info/?l=ntbugtraq&m=94042342010662&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=94042342010662&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1047","sourceIdentifier":"cve@mitre.org","published":"1999-10-18T04:00:00.000","lastModified":"2026-06-16T21:49:35.700","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"When BSDI patches for Gauntlet 5.0 BSDI are installed in a particular order, Gauntlet allows remote attackers to bypass firewall access restrictions, and does not log the activities."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:bsdi:gauntlet:5.0:*:*:*:*:*:*:*","matchCriteriaId":"8FB453C2-51F4-4CEB-91BD-E913CCE1F5B9"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94026690521279&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94036662326185&w=2","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/3397.php","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94026690521279&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=94036662326185&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.iss.net/security_center/static/3397.php","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0895","sourceIdentifier":"cve@mitre.org","published":"1999-10-20T04:00:00.000","lastModified":"2026-06-16T21:49:16.810","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Firewall-1 does not properly restrict access to LDAP attributes."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:4.0:*:*:*:*:*:*:*","matchCriteriaId":"0F543272-8C7E-4326-BA97-142FBEA641E5"}]}]}],"references":[{"url":"http://www.osvdb.org/1117","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/725","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=19991020150002.21047.qmail%40tarjan.mediaways.net","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1117","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/725","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=19991020150002.21047.qmail%40tarjan.mediaways.net","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0766","sourceIdentifier":"cve@mitre.org","published":"1999-10-21T04:00:00.000","lastModified":"2026-06-16T21:49:00.830","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Microsoft Java Virtual Machine allows a malicious Java applet to execute arbitrary commands outside of the sandbox environment."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:C/I:C/A:C","baseScore":9.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":8.6,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-16"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:a:microsoft:internet_explorer:6.0.2900:*:*:*:*:*:*:*","matchCriteriaId":"7B90EA4B-DA10-44B7-BD3D-6AE1197212D5"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:java_virtual_machine:*:*:*:*:*:*:*:*","matchCriteriaId":"AED74665-46EF-4373-A429-C201EAE1E4C2"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ240346","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/600","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-031","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ240346","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/600","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-031","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0905","sourceIdentifier":"cve@mitre.org","published":"1999-10-21T04:00:00.000","lastModified":"2026-06-16T21:49:18.040","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in Axent Raptor firewall via malformed zero-length IP options."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:axent:raptor_firewall:*:*:*:*:*:*:*:*","matchCriteriaId":"AC858FDD-D2A4-49DF-B36B-8641F4410130"}]}]}],"references":[{"url":"http://www.osvdb.org/1121","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/736","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1121","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/736","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0327","sourceIdentifier":"cve@mitre.org","published":"1999-10-21T04:00:00.000","lastModified":"2026-06-16T21:51:29.123","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Virtual Machine (VM) allows remote attackers to escape the Java sandbox and execute commands via an applet containing an illegal cast operation, aka the \"Virtual Machine Verifier\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:C/I:C/A:C","baseScore":7.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":4.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:virtual_machine:2000:*:*:*:*:*:*:*","matchCriteriaId":"A299BA2B-FD34-4FD5-8A4B-EA99DA9BA3EE"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:virtual_machine:3000:*:*:*:*:*:*:*","matchCriteriaId":"DC2655D3-B360-4F82-B9CE-EECC95E0FAEE"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93993545118416&w=2","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-045","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93993545118416&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-045","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0951","sourceIdentifier":"cve@mitre.org","published":"1999-10-22T04:00:00.000","lastModified":"2026-06-16T21:49:23.620","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in OmniHTTPd CGI program imagemap.exe allows remote attackers to execute commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:omnicron:omnihttpd:1.1:*:*:*:*:*:*:*","matchCriteriaId":"0908E70E-2609-46F7-B09B-862F85B1B5C4"},{"vulnerable":true,"criteria":"cpe:2.3:a:omnicron:omnihttpd:2.4pro:*:*:*:*:*:*:*","matchCriteriaId":"6B7B96C7-EB32-45AC-BCD2-F5DE009E104A"}]}]}],"references":[{"url":"http://www.osvdb.org/3380","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/739","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/3380","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/739","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1341","sourceIdentifier":"cve@mitre.org","published":"1999-10-22T04:00:00.000","lastModified":"2026-06-16T21:50:14.073","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Linux kernel before 2.3.18 or 2.2.13pre15, with SLIP and PPP options, allows local unprivileged users to forge IP packets via the TIOCSETD option on tty devices."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"2.2.0","versionEndIncluding":"2.2.13","matchCriteriaId":"145E3348-78A6-46D6-BC2C-21F5AB5DE4FD"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"2.3.0","versionEndExcluding":"2.3.18","matchCriteriaId":"05E1CCDA-7C67-46C5-B6F0-324A5DCE0E47"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94061108411308&w=2","source":"cve@mitre.org","tags":["Mailing List","Third Party Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7858","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://marc.info/?l=bugtraq&m=94061108411308&w=2","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Third Party Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7858","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]}]}},{"cve":{"id":"CVE-2000-0362","sourceIdentifier":"cve@mitre.org","published":"1999-10-22T04:00:00.000","lastModified":"2026-06-16T21:51:33.543","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflows in Linux cdwtools 093 and earlier allows local users to gain root privileges."},{"lang":"es","value":"Desbordamiento de buffer en cdwtools de Linux, versión 093 y  anteriores, que permite a usuarios locales conseguir privilegios de root."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"124E1802-7984-45ED-8A92-393FC20662FD"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.2:*:*:*:*:*:*:*","matchCriteriaId":"1B67020A-6942-4478-B501-764147C4970D"}]}]}],"references":[{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_25.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/738","source":"cve@mitre.org"},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_25.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/738","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0363","sourceIdentifier":"cve@mitre.org","published":"1999-10-22T04:00:00.000","lastModified":"2026-06-16T21:51:33.670","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Linux cdwtools 093 and earlier allows local users to gain root privileges via the /tmp directory."},{"lang":"es","value":"cdwtools 093 y anteriores de Linux permite a usuarios locales obtener privilegios de root a través del directorio /tmp."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:C/I:C/A:C","baseScore":6.2,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"MEDIUM","exploitabilityScore":1.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"124E1802-7984-45ED-8A92-393FC20662FD"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.2:*:*:*:*:*:*:*","matchCriteriaId":"1B67020A-6942-4478-B501-764147C4970D"}]}]}],"references":[{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_25.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/738","source":"cve@mitre.org"},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_25.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/738","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0900","sourceIdentifier":"cve@mitre.org","published":"1999-10-23T04:00:00.000","lastModified":"2026-06-16T21:49:17.437","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in rpc.yppasswdd allows a local user to gain privileges via MD5 hash generation."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:linux-nis:rpc.yppasswdd:*:*:*:*:*:*:*:*","matchCriteriaId":"FAAC790B-89D2-411A-BC0C-D0A5F85D49C3"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0900","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0900","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0901","sourceIdentifier":"cve@mitre.org","published":"1999-10-23T04:00:00.000","lastModified":"2026-06-16T21:49:17.567","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ypserv allows a local user to modify the GECOS and login shells of other users."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:linux-nis:ypserv:*:*:*:*:*:*:*:*","matchCriteriaId":"4BA59589-2AD0-48F3-9879-7BB2F47E9884"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0901","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0901","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0902","sourceIdentifier":"cve@mitre.org","published":"1999-10-23T04:00:00.000","lastModified":"2026-06-16T21:49:17.677","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ypserv allows local administrators to modify password tables."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:linux-nis:ypserv:*:*:*:*:*:*:*:*","matchCriteriaId":"4BA59589-2AD0-48F3-9879-7BB2F47E9884"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0902","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0902","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0944","sourceIdentifier":"cve@mitre.org","published":"1999-10-24T04:00:00.000","lastModified":"2026-06-16T21:49:22.783","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IBM WebSphere ikeyman tool uses weak encryption to store a password for a key database that is used for SSL connections."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0944","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0944","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0883","sourceIdentifier":"cve@mitre.org","published":"1999-10-25T04:00:00.000","lastModified":"2026-06-16T21:49:15.327","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Zeus web server allows remote attackers to read arbitrary files by specifying the file name in an option to the search engine."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:zeus_technologies:zeus_web_server:3.3.1:*:*:*:*:*:*:*","matchCriteriaId":"1D7BD6BD-8945-45FC-909B-853BBD328618"},{"vulnerable":true,"criteria":"cpe:2.3:a:zeus_technologies:zeus_web_server:3.3.2:*:*:*:*:*:*:*","matchCriteriaId":"C9DBE4CC-5AAA-415E-9C2D-5B559377643B"}]}]}],"references":[{"url":"http://www.osvdb.org/1126","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/742","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3380","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1126","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/742","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3380","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0884","sourceIdentifier":"cve@mitre.org","published":"1999-10-25T04:00:00.000","lastModified":"2026-06-16T21:49:15.453","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Zeus web server administrative interface uses weak encryption for its passwords."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:zeus_technologies:zeus_web_server:3.3.1:*:*:*:*:*:*:*","matchCriteriaId":"1D7BD6BD-8945-45FC-909B-853BBD328618"},{"vulnerable":true,"criteria":"cpe:2.3:a:zeus_technologies:zeus_web_server:3.3.2:*:*:*:*:*:*:*","matchCriteriaId":"C9DBE4CC-5AAA-415E-9C2D-5B559377643B"}]}]}],"references":[{"url":"http://www.osvdb.org/8186","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/742","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3833","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/8186","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/742","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3833","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0881","sourceIdentifier":"cve@mitre.org","published":"1999-10-26T04:00:00.000","lastModified":"2026-06-16T21:49:15.097","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Falcon web server allows remote attackers to read arbitrary files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:blueface:falcon_web_server:1.0:*:*:*:*:*:*:*","matchCriteriaId":"6404568E-CD7E-4F7A-B630-598DE2852FBA"}]}]}],"references":[{"url":"http://www.osvdb.org/1127","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/743","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1127","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/743","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0903","sourceIdentifier":"cve@mitre.org","published":"1999-10-26T04:00:00.000","lastModified":"2026-06-16T21:49:17.797","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"genfilt in the AIX Packet Filtering Module does not properly filter traffic to destination ports greater than 32767."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.2:*:*:*:*:*:*:*","matchCriteriaId":"45F3C5D8-8BC3-44EB-917A-D0BA051D3D9D"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0903","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0903","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1076","sourceIdentifier":"cve@mitre.org","published":"1999-10-26T04:00:00.000","lastModified":"2026-06-16T21:49:40.277","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Idle locking function in MacOS 9 allows local users to bypass the password protection of idled sessions by selecting the \"Log Out\" option and selecting a \"Cancel\" option in the dialog box for an application that attempts to verify that the user wants to log out, which returns the attacker into the locked session."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:apple:macos:9:*:*:*:*:*:*:*","matchCriteriaId":"9D22617D-622E-442B-A2C7-C2571978DC42"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94096348604173&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/745","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=94096348604173&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/745","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1234","sourceIdentifier":"cve@mitre.org","published":"1999-10-26T04:00:00.000","lastModified":"2026-06-16T21:50:00.263","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"LSA (LSASS.EXE) in Windows NT 4.0 allows remote attackers to cause a denial of service via a NULL policy handle in a call to (1) SamrOpenDomain, (2) SamrEnumDomainUsers, and (3) SamrQueryDomainInfo."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"http://marc.info/?l=ntbugtraq&m=94096671308565&w=2","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3293","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=94096671308565&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3293","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0882","sourceIdentifier":"cve@mitre.org","published":"1999-10-28T04:00:00.000","lastModified":"2026-06-16T21:49:15.210","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Falcon web server allows remote attackers to determine the absolute path of the web root via long file names."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:falcon:falcon_web_server:1.0.0.1006:*:*:*:*:*:*:*","matchCriteriaId":"1662BFDE-D3B9-40E5-A128-916C7DB958A2"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0882","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0882","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0915","sourceIdentifier":"cve@mitre.org","published":"1999-10-28T04:00:00.000","lastModified":"2026-06-16T21:49:19.300","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"URL Live! web server allows remote attackers to read arbitrary files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:pacific_software:url_live:1.0:*:*:*:*:*:*:*","matchCriteriaId":"76EAB542-B436-4DA9-853F-46B3C2E09A35"}]}]}],"references":[{"url":"http://www.osvdb.org/1129","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/746","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1129","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/746","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0950","sourceIdentifier":"cve@mitre.org","published":"1999-10-28T04:00:00.000","lastModified":"2026-06-16T21:49:23.500","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in WFTPD FTP server allows remote attackers to gain root access via\ta series of MKD and CWD commands that create nested directories."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd:2.34:*:*:*:*:*:*:*","matchCriteriaId":"2955B341-3B28-4474-96DD-AA11CD14E1A3"},{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd:2.40:*:*:*:*:*:*:*","matchCriteriaId":"B9B1592D-0D0E-4B03-9414-82AAD16B680E"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/747","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/747","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1226","sourceIdentifier":"cve@mitre.org","published":"1999-10-28T04:00:00.000","lastModified":"2026-06-16T21:49:59.260","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Netscape Communicator 4.7 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long certificate key."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:N/I:N/A:P","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:*:*:*:*:*:*:*:*","versionEndIncluding":"4.7","matchCriteriaId":"5921E5E6-3D97-4075-B557-968340FB6E7B"}]}]}],"references":[{"url":"http://www.securiteam.com/exploits/Netscape_4_7_and_earlier_vulnerable_to__Huge_Key__DoS.html","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3436","source":"cve@mitre.org"},{"url":"http://www.securiteam.com/exploits/Netscape_4_7_and_earlier_vulnerable_to__Huge_Key__DoS.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3436","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1532","sourceIdentifier":"cve@mitre.org","published":"1999-10-29T04:00:00.000","lastModified":"2026-06-16T21:50:38.627","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Netscape Messaging Server 3.54, 3.55, and 3.6 allows a remote attacker to cause a denial of service (memory exhaustion) via a series of long RCPT TO commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:messaging_server:3.6:*:*:*:*:*:*:*","matchCriteriaId":"B3EE4492-651C-4B65-B905-31D7E8E30E91"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:messaging_server:3.54:*:*:*:*:*:*:*","matchCriteriaId":"11AA27C0-D579-49E6-8479-D5DFFAC96D4F"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:messaging_server:3.55:*:*:*:*:*:*:*","matchCriteriaId":"26CE0F92-0E43-454D-B996-428FD8A72E11"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94117465014255&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/748","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=94117465014255&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/748","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-0873","sourceIdentifier":"cve@mitre.org","published":"1999-10-30T04:00:00.000","lastModified":"2026-06-16T21:49:14.123","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Skyfull mail server via MAIL FROM command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sky_communications:skyfull:1.1.4:*:*:*:*:*:*:*","matchCriteriaId":"411F86A9-93B5-4197-B2F9-72E6E0EFBC0B"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/759","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/759","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1577","sourceIdentifier":"cve@mitre.org","published":"1999-10-31T04:00:00.000","lastModified":"2026-06-16T21:50:45.543","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in HHOpen ActiveX control (hhopen.ocx) 1.0.0.1 for Internet Explorer 4.01 and 5 allows remote attackers to execute arbitrary commands via long arguments to the OpenHelp method."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0.1:*:*:*:*:*:*:*","matchCriteriaId":"42502347-DD40-4F8C-9861-C0A88A3F8608"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"}]}]}],"references":[{"url":"http://www.kb.cert.org/vuls/id/29795","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://www.securityfocus.com/archive/1/28719","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/669","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3314","source":"cve@mitre.org"},{"url":"http://www.kb.cert.org/vuls/id/29795","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"http://www.securityfocus.com/archive/1/28719","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/669","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3314","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0354","sourceIdentifier":"cve@mitre.org","published":"1999-11-01T05:00:00.000","lastModified":"2026-06-16T21:48:12.977","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internet Explorer 4.x or 5.x with Word 97 allows arbitrary execution of Visual Basic programs to the IE client through the Word 97 template, which doesn't warn the user that the template contains executable content.  Also applies to Outlook when the client views a malicious email message."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0:*:*:*:*:*:*:*","matchCriteriaId":"A5B815D9-BC21-4A17-AF00-B8AD181027D7"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:word:97:*:*:*:*:*:*:*","matchCriteriaId":"645B78F8-9AD7-4707-9CAD-5DC79475D971"}]}]}],"references":[{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-002","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-002","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0827","sourceIdentifier":"cve@mitre.org","published":"1999-11-01T05:00:00.000","lastModified":"2026-06-16T21:49:08.450","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"By default, Internet Explorer 5.0 and other versions enables the \"Navigate sub-frames across different domains\" option, which allows frame spoofing."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:N/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:4.0:a_mac_os:*:*:*:*:*:*","matchCriteriaId":"35AA9DC0-0694-48FC-8652-831DFAB29226"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:3.0:*:*:*:*:*:*:*","matchCriteriaId":"1BBF9241-A175-438C-A793-3D245BE2AE35"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:3.0.2:*:*:*:*:*:*:*","matchCriteriaId":"943D5C5C-FC49-4EDE-AE75-A79CFF42208E"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:3.1:*:*:*:*:*:*:*","matchCriteriaId":"59EB6841-0427-479B-8771-06DF62EE3C87"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:3.2:*:*:*:*:*:*:*","matchCriteriaId":"8873A08F-D4C7-46FC-8FE5-972644F85ADA"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0:*:*:*:*:*:*:*","matchCriteriaId":"A5B815D9-BC21-4A17-AF00-B8AD181027D7"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0.1:sp2:*:*:*:*:*:*","matchCriteriaId":"C375A9AA-505B-444C-A45F-2BAAD0B2CD0D"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.1:*:*:*:*:*:*:*","matchCriteriaId":"44FF4E47-AD75-42C7-BB84-42BBA46A58B2"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.5:*:*:*:*:*:*:*","matchCriteriaId":"1B26CE22-E730-4247-853E-5E640DB3ECB5"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:navigator:*:*:*:*:*:*:*:*","versionEndIncluding":"4.5","matchCriteriaId":"1D09FC21-1170-4399-8378-1D8353689C76"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0827","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0827","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0829","sourceIdentifier":"cve@mitre.org","published":"1999-11-01T05:00:00.000","lastModified":"2026-06-16T21:49:08.690","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"HP Secure Web Console uses weak encryption."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:hp:secure_web_console:*:*:*:*:*:*:*:*","matchCriteriaId":"BF216916-7C21-44B8-9895-CF8628E3627E"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0829","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0829","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0830","sourceIdentifier":"cve@mitre.org","published":"1999-11-01T05:00:00.000","lastModified":"2026-06-16T21:49:08.813","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in SCO UnixWare Xsco command via a long argument."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.0:*:*:*:*:*:*:*","matchCriteriaId":"17439B5B-0B66-490B-9B53-2C9D576C879F"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0830","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0830","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0854","sourceIdentifier":"cve@mitre.org","published":"1999-11-01T05:00:00.000","lastModified":"2026-06-16T21:49:11.770","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Ultimate Bulletin Board stores data files in the cgi-bin directory, allowing remote attackers to view the data if an error occurs when the HTTP server attempts to execute the file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:infopop:ultimate_bulletin_board:5.07:*:*:*:*:*:*:*","matchCriteriaId":"0C52CA83-3B52-4C87-92B1-E45424A2556B"}]}]}],"references":[{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-02-22&msg=NDBBLKOPOLNKELHPDEFKIEPGCAAA.renzo.toma%40veronica.nl","source":"cve@mitre.org"},{"url":"http://www.ultimatebb.com/home/versions.shtml","source":"cve@mitre.org","tags":["URL Repurposed"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-02-22&msg=NDBBLKOPOLNKELHPDEFKIEPGCAAA.renzo.toma%40veronica.nl","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.ultimatebb.com/home/versions.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["URL Repurposed"]}]}},{"cve":{"id":"CVE-1999-1077","sourceIdentifier":"cve@mitre.org","published":"1999-11-01T05:00:00.000","lastModified":"2026-06-16T21:49:40.407","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Idle locking function in MacOS 9 allows local attackers to bypass the password protection of idled sessions via the programmer's switch or CMD-PWR keyboard sequence, which brings up a debugger that the attacker can use to disable the lock."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:apple:macos:9:*:*:*:*:*:*:*","matchCriteriaId":"9D22617D-622E-442B-A2C7-C2571978DC42"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94149318124548&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/756","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=94149318124548&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/756","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1517","sourceIdentifier":"cve@mitre.org","published":"1999-11-01T05:00:00.000","lastModified":"2026-06-16T21:50:36.593","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"runtar in the Amanda backup system used in various UNIX operating systems executes tar with root privileges, which allows a user to overwrite or read arbitrary files by providing the target files to runtar."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.3:*:*:*:*:*:*:*","matchCriteriaId":"C3518628-08E5-4AD7-AAF6-A4E38F1CDE2C"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94148942818975&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/750","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=94148942818975&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/750","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-0946","sourceIdentifier":"cve@mitre.org","published":"1999-11-02T05:00:00.000","lastModified":"2026-06-16T21:49:23.023","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Yamaha MidiPlug via a Text variable in an EMBED tag."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:yamaha:midiplug:1.1bj:*:*:*:*:*:*:*","matchCriteriaId":"50DEFAD6-56E1-4AD6-A0C6-2D38AA420B6E"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94157187815629&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/760","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94157187815629&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/760","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0947","sourceIdentifier":"cve@mitre.org","published":"1999-11-02T05:00:00.000","lastModified":"2026-06-16T21:49:23.150","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"AN-HTTPd provides example CGI scripts test.bat, input.bat, input2.bat, and envout.bat, which allow remote attackers to execute commands via shell metacharacters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:an:an-httpd:1.2b:*:*:*:*:*:*:*","matchCriteriaId":"CAD1527A-4BE5-47BA-9FA9-C19DE1718E28"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94157187815629&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/762","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94157187815629&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/762","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0948","sourceIdentifier":"cve@mitre.org","published":"1999-11-02T05:00:00.000","lastModified":"2026-06-16T21:49:23.260","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in uum program for Canna input system allows local users to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:5.3:*:*:*:*:*:*:*","matchCriteriaId":"26144F94-63FD-4907-B548-09B68C2FC9B3"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.2:*:*:*:*:*:*:*","matchCriteriaId":"0ECE564D-B4BB-4C05-88CC-CDC3F8E4E366"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.3:*:*:*:*:*:*:*","matchCriteriaId":"B2D59247-56FA-46B4-BB51-2DAE71AFC145"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.4:*:*:*:*:*:*:*","matchCriteriaId":"15BE08F8-5F3F-45DB-BFE0-1F6F2F57A4D4"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5:*:*:*:*:*:*:*","matchCriteriaId":"C30D6962-3DBB-4DF8-A04F-8E47AFEDCF99"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.6:*:*:*:*:*:*:*","matchCriteriaId":"34EBF074-78C8-41AF-88F1-DA6726E56F8B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:7.0:*:x86:*:*:*:*:*","matchCriteriaId":"8F1F312C-413F-4DB4-ABF4-48E33F6FECF2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:-:*:*:*:*:*:*:*","matchCriteriaId":"369207B4-96FA-4324-9445-98FAE8ECF5DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"},{"vulnerable":true,"criteria":"cpe:2.3:o:turbolinux:turbolinux:4.2:*:*:*:*:*:*:*","matchCriteriaId":"5D15A193-3E01-467C-AEAD-497F4600DB06"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/757","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/757","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0949","sourceIdentifier":"cve@mitre.org","published":"1999-11-02T05:00:00.000","lastModified":"2026-06-16T21:49:23.380","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in canuum program for Canna input system allows local users to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:5.3:*:*:*:*:*:*:*","matchCriteriaId":"26144F94-63FD-4907-B548-09B68C2FC9B3"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.2:*:*:*:*:*:*:*","matchCriteriaId":"0ECE564D-B4BB-4C05-88CC-CDC3F8E4E366"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.3:*:*:*:*:*:*:*","matchCriteriaId":"B2D59247-56FA-46B4-BB51-2DAE71AFC145"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.4:*:*:*:*:*:*:*","matchCriteriaId":"15BE08F8-5F3F-45DB-BFE0-1F6F2F57A4D4"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5:*:*:*:*:*:*:*","matchCriteriaId":"C30D6962-3DBB-4DF8-A04F-8E47AFEDCF99"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.6:*:*:*:*:*:*:*","matchCriteriaId":"34EBF074-78C8-41AF-88F1-DA6726E56F8B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:7.0:*:x86:*:*:*:*:*","matchCriteriaId":"8F1F312C-413F-4DB4-ABF4-48E33F6FECF2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:-:*:*:*:*:*:*:*","matchCriteriaId":"369207B4-96FA-4324-9445-98FAE8ECF5DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"},{"vulnerable":true,"criteria":"cpe:2.3:o:turbolinux:turbolinux:4.2:*:*:*:*:*:*:*","matchCriteriaId":"5D15A193-3E01-467C-AEAD-497F4600DB06"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/757","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/757","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1531","sourceIdentifier":"cve@mitre.org","published":"1999-11-02T05:00:00.000","lastModified":"2026-06-16T21:50:38.487","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in IBM HomePagePrint 1.0.7 for Windows98J allows a malicious Web site to execute arbitrary code on a viewer's system via a long IMG_SRC HTML tag."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:homepageprint:1.0.7:*:*:*:*:*:*:*","matchCriteriaId":"65454C25-8A06-4991-A1E7-843A69EE1591"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94157187815629&w=2","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/7767.php","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/763","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=94157187815629&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.iss.net/security_center/static/7767.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/763","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-0885","sourceIdentifier":"cve@mitre.org","published":"1999-11-03T05:00:00.000","lastModified":"2026-06-16T21:49:15.570","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Alibaba web server allows remote attackers to execute commands via a pipe character in a malformed URL."},{"lang":"es","value":"El servidor web Alibaba permite a un atacante remoto ejecutar comandos mediante un caráctar de tubería (barra vertical) en una URL malformada."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:N","baseScore":3.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:computer_software_manufaktur:alibaba:2.0:*:*:*:*:*:*:*","matchCriteriaId":"8DD3CBF4-B593-4C4A-8B9C-D005846B4090"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/770","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=1999-11-01&msg=01BF261F.928821E0.kerb%40fnusa.com","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/770","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=1999-11-01&msg=01BF261F.928821E0.kerb%40fnusa.com","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0904","sourceIdentifier":"cve@mitre.org","published":"1999-11-03T05:00:00.000","lastModified":"2026-06-16T21:49:17.913","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in BFTelnet allows remote attackers to cause a denial of service via a long username."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:byte_fusion:bftelnet:1.1:*:*:*:*:*:*:*","matchCriteriaId":"3C251D7F-09C0-4553-8266-1E989B1F28D0"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/771","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/771","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0843","sourceIdentifier":"cve@mitre.org","published":"1999-11-04T05:00:00.000","lastModified":"2026-06-16T21:49:10.433","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in Cisco routers running NAT via a PORT command from an FTP client to a Telnet port."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:router:*:*:*:*:*:*:*:*","matchCriteriaId":"EF6E96F8-E95E-4F3A-8CAF-936327BA3E54"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0843","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0843","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0887","sourceIdentifier":"cve@mitre.org","published":"1999-11-04T05:00:00.000","lastModified":"2026-06-16T21:49:15.820","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"FTGate web interface server allows remote attackers to read files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:floosietek:ftgate:2.1:*:*:*:*:*:*:*","matchCriteriaId":"5410FC34-6F34-40D2-8CB7-8271C7BC593D"}]}]}],"references":[{"url":"http://www.eeye.com/html/Research/Advisories/AD05261999.html","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1137","source":"cve@mitre.org"},{"url":"http://www.eeye.com/html/Research/Advisories/AD05261999.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1137","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0896","sourceIdentifier":"cve@mitre.org","published":"1999-11-04T05:00:00.000","lastModified":"2026-06-16T21:49:16.937","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in RealNetworks RealServer administration utility allows remote attackers to execute arbitrary commands via a long username and password."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:realnetworks:realserver_g2:1.0:*:*:*:*:*:*:*","matchCriteriaId":"C3F22E7F-F4D8-4052-A8DF-BA717EDD94B4"}]}]}],"references":[{"url":"http://service.real.com/help/faq/servg260.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/767","source":"cve@mitre.org"},{"url":"http://service.real.com/help/faq/servg260.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/767","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0898","sourceIdentifier":"cve@mitre.org","published":"1999-11-04T05:00:00.000","lastModified":"2026-06-16T21:49:17.180","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflows in Windows NT 4.0 print spooler allow remote attackers to gain privileges or cause a denial of service via a malformed spooler request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-119"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp1:*:*:*:*:*:*","matchCriteriaId":"5BDCBCB8-DAA3-465F-ADDE-9143B8251989"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp2:*:*:*:*:*:*","matchCriteriaId":"B86E0671-ED68-4549-B3AC-FD8BD79B0860"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp3:*:*:*:*:*:*","matchCriteriaId":"BB76E7EC-C396-4537-9065-4E815DA7097C"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp4:*:*:*:*:*:*","matchCriteriaId":"4CD026E2-B073-40A6-AD4A-8C76B9169B01"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp5:*:*:*:*:*:*","matchCriteriaId":"DBFB3E49-3FB5-4947-856D-727CBFFBA543"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp6:*:*:*:*:*:*","matchCriteriaId":"B9236480-6450-42E1-B1FF-F336488A683A"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ243649","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/768","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-047","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ243649","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/768","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-047","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0899","sourceIdentifier":"cve@mitre.org","published":"1999-11-04T05:00:00.000","lastModified":"2026-06-16T21:49:17.310","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Windows NT 4.0 print spooler allows a local user to execute arbitrary commands due to inappropriate permissions that allow the user to specify an alternate print provider."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-264"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp1:*:*:*:*:*:*","matchCriteriaId":"5BDCBCB8-DAA3-465F-ADDE-9143B8251989"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp2:*:*:*:*:*:*","matchCriteriaId":"B86E0671-ED68-4549-B3AC-FD8BD79B0860"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp3:*:*:*:*:*:*","matchCriteriaId":"BB76E7EC-C396-4537-9065-4E815DA7097C"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp4:*:*:*:*:*:*","matchCriteriaId":"4CD026E2-B073-40A6-AD4A-8C76B9169B01"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp5:*:*:*:*:*:*","matchCriteriaId":"DBFB3E49-3FB5-4947-856D-727CBFFBA543"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp6:*:*:*:*:*:*","matchCriteriaId":"B9236480-6450-42E1-B1FF-F336488A683A"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ243649","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/769","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-047","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ243649","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/769","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-047","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1065","sourceIdentifier":"cve@mitre.org","published":"1999-11-04T05:00:00.000","lastModified":"2026-06-16T21:49:38.017","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Palm Pilot HotSync Manager 3.0.4 in Windows 98 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long string to port 14238 while the manager is in network mode."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:palm_pilot:hotsync_manager:3.0.4:*:*:*:*:*:*:*","matchCriteriaId":"BDCD0288-1793-484B-9F45-98C2361BC897"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94175465525422&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94175465525422&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1340","sourceIdentifier":"cve@mitre.org","published":"1999-11-04T05:00:00.000","lastModified":"2026-06-16T21:50:13.947","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in faxalter in hylafax 4.0.2 allows local users to gain privileges via a long -m command line argument."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:hylafax:hylafax:4.0.2:*:*:*:*:*:*:*","matchCriteriaId":"CC80A56E-941A-440F-9141-DDAFCB76462B"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94173799532589&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/765","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=94173799532589&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/765","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1509","sourceIdentifier":"cve@mitre.org","published":"1999-11-04T05:00:00.000","lastModified":"2026-06-16T21:50:35.603","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in Etype Eserv 2.50 web server allows a remote attacker to read any file in the file system via a .. (dot dot) in a URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:etype:eserv:2.50:*:*:*:*:*:*:*","matchCriteriaId":"641A86B4-0348-4B14-B79F-E16A98459CA4"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94183041514522&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=94177470915423&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/773","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=94183041514522&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=94177470915423&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/773","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1571","sourceIdentifier":"cve@mitre.org","published":"1999-11-04T05:00:00.000","lastModified":"2026-06-16T21:50:44.623","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in sar for SCO OpenServer 5.0.0 through 5.0.5 may allow local users to gain root privileges via a long -f parameter, a different vulnerability than CVE-1999-1570."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sco:openserver:5.0.0:*:*:*:*:*:*:*","matchCriteriaId":"B3D78B5D-DE20-431B-859D-81E5751EA633"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:openserver:5.0.5:*:*:*:*:*:*:*","matchCriteriaId":"B8BA72B4-C4AF-41C6-92ED-30B286E00EF5"}]}]}],"references":[{"url":"ftp://stage.caldera.com/pub/security/sse/security_bulletins/SB-99.17c","source":"cve@mitre.org"},{"url":"ftp://stage.caldera.com/pub/security/sse/sse037c/sse037c.ltr","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93762097815861&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94053017801639&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94183363719024&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=vuln-dev&m=102098949103708&w=2","source":"cve@mitre.org"},{"url":"http://online.securityfocus.com/advisories/1843","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://online.securityfocus.com/archive/1/27074","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/8989.php","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/643","source":"cve@mitre.org"},{"url":"ftp://stage.caldera.com/pub/security/sse/security_bulletins/SB-99.17c","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"ftp://stage.caldera.com/pub/security/sse/sse037c/sse037c.ltr","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=93762097815861&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=94053017801639&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=94183363719024&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=vuln-dev&m=102098949103708&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://online.securityfocus.com/advisories/1843","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://online.securityfocus.com/archive/1/27074","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.iss.net/security_center/static/8989.php","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/643","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1529","sourceIdentifier":"cve@mitre.org","published":"1999-11-07T05:00:00.000","lastModified":"2026-06-16T21:50:38.173","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A buffer overflow exists in the HELO command in Trend Micro Interscan VirusWall SMTP gateway 3.23/3.3 for NT, which may allow an attacker to execute arbitrary code."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:trend_micro:interscan_viruswall:3.3:*:*:*:*:*:*:*","matchCriteriaId":"7A9D4E2E-889B-4233-8887-9CF00A5023A7"},{"vulnerable":true,"criteria":"cpe:2.3:a:trend_micro:interscan_viruswall:3.23:*:*:*:*:*:*:*","matchCriteriaId":"CEB4744D-EE43-4C45-AFA1-31AF57F4DEDC"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94201512111092&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94204166130782&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94210427406568&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=94199707625818&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=94208143007829&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/55551","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/787","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3465","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94201512111092&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=94204166130782&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=94210427406568&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=94199707625818&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=94208143007829&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/55551","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/787","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3465","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1533","sourceIdentifier":"cve@mitre.org","published":"1999-11-07T05:00:00.000","lastModified":"2026-06-16T21:50:38.767","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Eicon Technology Diva LAN ISDN modem allows a remote attacker to cause a denial of service (hang) via a long password argument to the login.htm file in its HTTP service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:trend_micro:interscan_viruswall:3.2.3:*:*:*:*:*:*:*","matchCriteriaId":"D948171A-3B54-462A-8B2E-2C0266A37E94"},{"vulnerable":true,"criteria":"cpe:2.3:a:trend_micro:interscan_viruswall:3.3:*:*:*:*:*:*:*","matchCriteriaId":"7A9D4E2E-889B-4233-8887-9CF00A5023A7"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93846522511387&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/665","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3317","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93846522511387&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/665","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3317","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0821","sourceIdentifier":"cve@mitre.org","published":"1999-11-08T05:00:00.000","lastModified":"2026-06-16T21:49:07.710","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"FreeBSD seyon allows local users to gain privileges by providing a malicious program in the -emulator argument."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.3:*:*:*:*:*:*:*","matchCriteriaId":"C3518628-08E5-4AD7-AAF6-A4E38F1CDE2C"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/838","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/838","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0863","sourceIdentifier":"cve@mitre.org","published":"1999-11-08T05:00:00.000","lastModified":"2026-06-16T21:49:12.860","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in FreeBSD seyon via HOME environmental variable, -emulator argument, -modems argument, or the GUI."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.3:*:*:*:*:*:*:*","matchCriteriaId":"C3518628-08E5-4AD7-AAF6-A4E38F1CDE2C"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0863","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0863","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1530","sourceIdentifier":"cve@mitre.org","published":"1999-11-08T05:00:00.000","lastModified":"2026-06-16T21:50:38.337","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"cgiwrap as used on Cobalt RaQ 2.0 and RaQ 3i does not properly identify the user for running certain scripts, which allows a malicious site administrator to view or modify data located at another virtual site on the same system."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:N","baseScore":3.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:sun:cobalt_raq_2:*:*:*:*:*:*:*:*","matchCriteriaId":"0F6DDD9F-5C58-4092-BF3D-332E2E566182"},{"vulnerable":true,"criteria":"cpe:2.3:h:sun:cobalt_raq_3i:*:*:*:*:*:*:*:*","matchCriteriaId":"0C1E1872-D16C-4848-800C-32B80DD59494"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94209954200450&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94225629200045&w=2","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/7764.php","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/35","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/777","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=94209954200450&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=94225629200045&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.iss.net/security_center/static/7764.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/35","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/777","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1550","sourceIdentifier":"cve@mitre.org","published":"1999-11-08T05:00:00.000","lastModified":"2026-06-16T21:50:41.830","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"bigconf.conf in F5 BIG/ip 2.1.2 and earlier allows remote attackers to read arbitrary files by specifying the target file in the \"file\" parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:f5:tmos:2.0:*:*:*:*:*:*:*","matchCriteriaId":"119C2CB6-23C5-40B2-805C-E48B4A7FDBF1"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94217006208374&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94217879020184&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94225879703021&w=2","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/7771.php","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/778","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=94217006208374&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=94217879020184&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=94225879703021&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.iss.net/security_center/static/7771.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/778","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2001-0679","sourceIdentifier":"cve@mitre.org","published":"1999-11-08T05:00:00.000","lastModified":"2026-06-16T21:54:45.400","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A buffer overflow in InterScan VirusWall 3.23 and 3.3 allows a remote attacker to execute arbitrary code by sending a long HELO command to the server."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:trend_micro:interscan_viruswall:3.3:*:*:*:*:*:*:*","matchCriteriaId":"7A9D4E2E-889B-4233-8887-9CF00A5023A7"},{"vulnerable":true,"criteria":"cpe:2.3:a:trend_micro:interscan_viruswall:3.23:*:*:*:*:*:*:*","matchCriteriaId":"CEB4744D-EE43-4C45-AFA1-31AF57F4DEDC"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94204166130782&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=94208143007829&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=94216491202063&w=2","source":"cve@mitre.org"},{"url":"http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind9911&L=NTBUGTRAQ&P=R2331","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3465","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94204166130782&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=94208143007829&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=94216491202063&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind9911&L=NTBUGTRAQ&P=R2331","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3465","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0832","sourceIdentifier":"cve@mitre.org","published":"1999-11-09T05:00:00.000","lastModified":"2026-06-16T21:49:09.053","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in NFS server on Linux allows attackers to execute commands via a long pathname."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.1:*:*:*:*:*:*:*","matchCriteriaId":"3C67BDA1-9451-4026-AC6D-E912C882A757"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:i386:*:*:*:*:*","matchCriteriaId":"363AB7DB-A8BA-4D58-97C4-1DF1F0F43E07"}]}]}],"references":[{"url":"ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-1999-033.0.txt","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/1999/19991111","source":"cve@mitre.org"},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_29.html","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/rh42-errata-general.html#NFS","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/782","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.20.9911091058140.12964-100000%40mail.zigzag.pl","source":"cve@mitre.org"},{"url":"ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-1999-033.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.debian.org/security/1999/19991111","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_29.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/rh42-errata-general.html#NFS","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/782","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.20.9911091058140.12964-100000%40mail.zigzag.pl","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0983","sourceIdentifier":"cve@mitre.org","published":"1999-11-09T05:00:00.000","lastModified":"2026-06-16T21:49:27.610","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Whois Internic Lookup program whois.cgi allows remote attackers to execute commands via shell metacharacters in the domain entry."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:internic:whois_lookup:1.0:*:*:*:*:*:*:*","matchCriteriaId":"F3A0ABD0-E326-4584-AF8F-FC2157AD0731"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0983","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0983","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0984","sourceIdentifier":"cve@mitre.org","published":"1999-11-09T05:00:00.000","lastModified":"2026-06-16T21:49:27.737","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Matt's Whois program whois.cgi allows remote attackers to execute commands via shell metacharacters in the domain entry."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:matts_whois:matts_whois:1.0:*:*:*:*:*:*:*","matchCriteriaId":"3D692BAA-35DA-463C-8923-B139912EDF3B"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0984","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0984","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0985","sourceIdentifier":"cve@mitre.org","published":"1999-11-09T05:00:00.000","lastModified":"2026-06-16T21:49:27.850","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"CC Whois program whois.cgi allows remote attackers to execute commands via shell metacharacters in the domain entry."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cc:cc_whois:1.0:*:*:*:*:*:*:*","matchCriteriaId":"1A81CD86-8B5B-4BEA-9D1D-786C4BFB7733"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0985","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0985","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1111","sourceIdentifier":"cve@mitre.org","published":"1999-11-09T05:00:00.000","lastModified":"2026-06-16T21:49:44.603","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in StackGuard before 1.21 allows remote attackers to bypass the Random and Terminator Canary security mechanisms by using a non-linear attack which directly modifies a pointer to a return address instead of using a buffer overflow to reach the return address entry itself."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:immunix:stackguard:*:*:*:*:*:*:*:*","versionEndIncluding":"1.21","matchCriteriaId":"CE4FF4A5-0F12-458F-8635-7C93DCCC3870"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94218618329838&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/786","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3524","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94218618329838&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/786","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3524","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1112","sourceIdentifier":"cve@mitre.org","published":"1999-11-09T05:00:00.000","lastModified":"2026-06-16T21:49:44.740","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in IrfanView32 3.07 and earlier allows attackers to execute arbitrary commands via a long string after the \"8BPS\" image type in a Photo Shop image header."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:irfanview:irfanview:*:*:*:*:*:*:*:*","versionEndIncluding":"3.0.7","matchCriteriaId":"3CAEFA7F-A24E-41F6-85F1-6D080D38C781"}]}]}],"references":[{"url":"http://stud4.tuwien.ac.at/~e9227474/main2.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/34066","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/781","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3549","source":"cve@mitre.org"},{"url":"http://stud4.tuwien.ac.at/~e9227474/main2.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/34066","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/781","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3549","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0833","sourceIdentifier":"cve@mitre.org","published":"1999-11-10T05:00:00.000","lastModified":"2026-06-16T21:49:09.190","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in BIND 8.2 via NXT records."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2:*:*:*:*:*:*:*","matchCriteriaId":"52D1DAE0-DB4D-475F-B11B-29AA3A00DB60"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.1:*:*:*:*:*:*:*","matchCriteriaId":"93BB48F5-A635-402E-AE7F-B8AB90ED0C70"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:7.0:*:x86:*:*:*:*:*","matchCriteriaId":"8F1F312C-413F-4DB4-ABF4-48E33F6FECF2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-1999-034.1.txt","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/788","source":"cve@mitre.org"},{"url":"ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-1999-034.1.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/788","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0835","sourceIdentifier":"cve@mitre.org","published":"1999-11-10T05:00:00.000","lastModified":"2026-06-16T21:49:09.437","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in BIND named via malformed SIG records."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3:*:*:*:*:*:*:*","matchCriteriaId":"11ACD012-F05F-45CD-A170-96CBAA42FFE4"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:openserver:5:*:*:*:*:*:*:*","matchCriteriaId":"4EDA6C83-76C9-44F1-94A2-1CBCC7DBBB00"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:2:*:*:*:*:*:*:*","matchCriteriaId":"B8352832-11AE-4BE4-B996-AA90E755066B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7:*:*:*:*:*:*:*","matchCriteriaId":"710007F4-EF8B-4DCC-89E9-54A13DF9B153"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-1999-034.1.txt","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/788","source":"cve@mitre.org"},{"url":"ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-1999-034.1.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/788","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0837","sourceIdentifier":"cve@mitre.org","published":"1999-11-10T05:00:00.000","lastModified":"2026-06-16T21:49:09.680","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in BIND by improperly closing TCP sessions via so_linger."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2:*:*:*:*:*:*:*","matchCriteriaId":"52D1DAE0-DB4D-475F-B11B-29AA3A00DB60"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.1:*:*:*:*:*:*:*","matchCriteriaId":"93BB48F5-A635-402E-AE7F-B8AB90ED0C70"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:7.0:*:x86:*:*:*:*:*","matchCriteriaId":"8F1F312C-413F-4DB4-ABF4-48E33F6FECF2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-1999-034.1.txt","source":"cve@mitre.org"},{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/194","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/788","source":"cve@mitre.org"},{"url":"ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-1999-034.1.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/194","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/788","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0848","sourceIdentifier":"cve@mitre.org","published":"1999-11-10T05:00:00.000","lastModified":"2026-06-16T21:49:11.040","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in BIND named via consuming more than \"fdmax\" file descriptors."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2:*:*:*:*:*:*:*","matchCriteriaId":"52D1DAE0-DB4D-475F-B11B-29AA3A00DB60"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.1:*:*:*:*:*:*:*","matchCriteriaId":"93BB48F5-A635-402E-AE7F-B8AB90ED0C70"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:7.0:*:x86:*:*:*:*:*","matchCriteriaId":"8F1F312C-413F-4DB4-ABF4-48E33F6FECF2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-1999-034.1.txt","source":"cve@mitre.org"},{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/194","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/788","source":"cve@mitre.org"},{"url":"ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-1999-034.1.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/194","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/788","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0849","sourceIdentifier":"cve@mitre.org","published":"1999-11-10T05:00:00.000","lastModified":"2026-06-16T21:49:11.170","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in BIND named via maxdname."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:4.9.5:*:*:*:*:*:*:*","matchCriteriaId":"AB7F1274-7E0E-40C8-8006-ACFDBE757D35"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:4.9.5:p1:*:*:*:*:*:*","matchCriteriaId":"F96CB4CD-5044-4A08-A6BE-1201C4141851"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:4.9.6:*:*:*:*:*:*:*","matchCriteriaId":"8257C916-6F4D-4B7E-8EED-B2789B3B35AC"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:4.9.7:*:*:*:*:*:*:*","matchCriteriaId":"B959A2AB-703C-4354-8E23-809D2D13EC06"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.1:*:*:*:*:*:*:*","matchCriteriaId":"BB79EDA4-9B2C-4C4C-A5DE-CB8C6EB00BDC"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.1.1:*:*:*:*:*:*:*","matchCriteriaId":"4DF8869C-2446-48F3-A1CD-70AE44D74EF3"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2:*:*:*:*:*:*:*","matchCriteriaId":"52D1DAE0-DB4D-475F-B11B-29AA3A00DB60"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2:p1:*:*:*:*:*:*","matchCriteriaId":"CEBD7B33-5B16-4235-8792-69E09CFB0C4B"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.1:*:*:*:*:*:*:*","matchCriteriaId":"93BB48F5-A635-402E-AE7F-B8AB90ED0C70"}]}]}],"references":[{"url":"ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-1999-034.1.txt","source":"cve@mitre.org"},{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/194","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/788","source":"cve@mitre.org"},{"url":"ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-1999-034.1.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/194","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/788","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0851","sourceIdentifier":"cve@mitre.org","published":"1999-11-10T05:00:00.000","lastModified":"2026-06-16T21:49:11.407","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in BIND named via naptr."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3:*:*:*:*:*:*:*","matchCriteriaId":"11ACD012-F05F-45CD-A170-96CBAA42FFE4"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:openserver:5:*:*:*:*:*:*:*","matchCriteriaId":"4EDA6C83-76C9-44F1-94A2-1CBCC7DBBB00"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:2:*:*:*:*:*:*:*","matchCriteriaId":"B8352832-11AE-4BE4-B996-AA90E755066B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7:*:*:*:*:*:*:*","matchCriteriaId":"710007F4-EF8B-4DCC-89E9-54A13DF9B153"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-1999-034.1.txt","source":"cve@mitre.org"},{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/194","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/788","source":"cve@mitre.org"},{"url":"ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-1999-034.1.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/194","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/788","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1511","sourceIdentifier":"cve@mitre.org","published":"1999-11-10T05:00:00.000","lastModified":"2026-06-16T21:50:35.843","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflows in Xtramail 1.11 allow attackers to cause a denial of service (crash) and possibly execute arbitrary commands via (1) a long PASS command in the POP3 service, (2) a long HELO command in the SMTP service, or (3) a long user name in the Control Service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:artisoft:xtramail:1.11:*:*:*:*:*:*:*","matchCriteriaId":"A30E10F1-7C33-4468-8E32-5B88C38EF3E3"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94226003804744&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/791","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3488","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94226003804744&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/791","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3488","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1539","sourceIdentifier":"cve@mitre.org","published":"1999-11-10T05:00:00.000","lastModified":"2026-06-16T21:50:40.440","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in FTP server in QPC Software's QVT/Term Plus versions 4.2d and 4.3 and QVT/Net 4.3 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long (1) user name or (2) password."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:qpc_software:qvt_net:4.3:*:*:*:*:*:*:*","matchCriteriaId":"EB558CF0-B311-43DF-8ADC-86682B9F8277"},{"vulnerable":true,"criteria":"cpe:2.3:a:qpc_software:qvt_term_plus:4.2d:*:*:*:*:*:*:*","matchCriteriaId":"EBA448CF-183F-4D57-AE64-923DBFFE19AC"},{"vulnerable":true,"criteria":"cpe:2.3:a:qpc_software:qvt_term_plus:4.3:*:*:*:*:*:*:*","matchCriteriaId":"F6164706-6261-40C1-884D-1C5193069078"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94225924803704&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=94223972910670&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/796","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3491","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94225924803704&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=94223972910670&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/796","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3491","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0329","sourceIdentifier":"cve@mitre.org","published":"1999-11-11T05:00:00.000","lastModified":"2026-06-16T21:51:29.370","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A Microsoft ActiveX control allows a remote attacker to execute a malicious cabinet file via an attachment and an embedded script in an HTML mail, aka the \"Active Setup Control\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:4.0:*:windows_98:*:*:*:*:*","matchCriteriaId":"D0BDA2A8-EBB9-47AB-9DA0-5C24527F7210"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:4.0:*:windows_nt:*:*:*:*:*","matchCriteriaId":"077B638C-F14D-4048-86C8-B62517C5182F"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:4.0.1:*:windows_95:*:*:*:*:*","matchCriteriaId":"5680FE7F-95EE-46B2-B930-4A3DC27FD1A1"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:4.0.1:*:windows_98:*:*:*:*:*","matchCriteriaId":"ACC3A8B3-4E8C-46BD-965C-4EF655B9018D"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:4.0.1:*:windows_nt:*:*:*:*:*","matchCriteriaId":"F7739338-DAE1-403F-B22C-2CFAC884E09A"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:4.1:*:windows_95:*:*:*:*:*","matchCriteriaId":"D45C47A8-8B5F-4A49-8B36-FCBA09029375"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:4.1:*:windows_98:*:*:*:*:*","matchCriteriaId":"0CFF1B46-BEDD-4D96-90EA-EE4376AFCAF8"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:4.1:*:windows_nt_4.0:*:*:*:*:*","matchCriteriaId":"84730D4D-7887-4A64-8C76-F50C85309FE7"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5:*:windows_nt_4.0:*:*:*:*:*","matchCriteriaId":"7AAA310C-7DED-40B3-B5EF-80C7407BB01A"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5.0:*:windows_2000:*:*:*:*:*","matchCriteriaId":"A7B6FB02-F15F-486D-8E7C-40830ABDB62F"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5.0:*:windows_95:*:*:*:*:*","matchCriteriaId":"0CE25503-0EDA-4AFA-A4B8-36396BB4A4E9"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5.0:*:windows_98:*:*:*:*:*","matchCriteriaId":"376DA3A6-FAB8-4B18-B9D9-C176675C7671"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0:*:*:*:*:*:*:*","matchCriteriaId":"A5B815D9-BC21-4A17-AF00-B8AD181027D7"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook:98:*:*:*:*:*:*:*","matchCriteriaId":"52970A43-173E-477B-80BF-6FDBB6B0EECD"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook:2000:*:*:*:*:*:*:*","matchCriteriaId":"D52F17AB-2C87-4C1A-91B5-267ABBCF5844"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook_express:4.27.3110.1:*:*:*:*:*:*:*","matchCriteriaId":"6BAE90D0-1637-49F4-8453-5E9959B55002"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook_express:4.72.2106.4:*:*:*:*:*:*:*","matchCriteriaId":"D707B4FB-4BB2-4C84-851B-A8926AC26B7A"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook_express:4.72.3120.0:*:*:*:*:*:*:*","matchCriteriaId":"7769EE2E-A740-4AE8-B1B1-A5256C12601D"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook_express:4.72.3612.1700:*:*:*:*:*:*:*","matchCriteriaId":"14B52779-4A43-4507-988F-5B5A81658FF5"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook_express:5.0:*:*:*:*:*:*:*","matchCriteriaId":"1F71D6D7-6CB2-4BE9-839A-A5714144029C"}]}]}],"references":[{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-048","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-048","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1050","sourceIdentifier":"cve@mitre.org","published":"1999-11-12T05:00:00.000","lastModified":"2026-06-16T21:49:36.070","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in Matt Wright FormHandler.cgi script allows remote attackers to read arbitrary files via (1) a .. (dot dot) in the reply_message_attach attachment parameter, or (2) by specifying the filename as a template."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:matt_wright:formhandler.cgi:1.0:*:*:*:*:*:*:*","matchCriteriaId":"4E4B14ED-6423-487E-9185-6000CC906506"},{"vulnerable":true,"criteria":"cpe:2.3:a:matt_wright:formhandler.cgi:2.0:*:*:*:*:*:*:*","matchCriteriaId":"CDA6F66D-C578-46B9-BECB-13971A87F9FB"},{"vulnerable":true,"criteria":"cpe:2.3:a:matt_wright:formhandler.cgi:3.0:*:*:*:*:*:*:*","matchCriteriaId":"4B5C3D76-85DA-45BF-9397-4C7DD6186BF7"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/34600","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/34939","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/798","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/799","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3550","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/34600","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/34939","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/798","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/799","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3550","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0330","sourceIdentifier":"cve@mitre.org","published":"1999-11-12T05:00:00.000","lastModified":"2026-06-16T21:51:29.500","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The networking software in Windows 95 and Windows 98 allows remote attackers to execute commands via a long file name string, aka the \"File Access URL\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:C/I:C/A:C","baseScore":7.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":4.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_95:*:*:*:*:*:*:*:*","matchCriteriaId":"82F7322B-8022-4D0B-ADB3-D0F5B6F20309"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98:*:gold:*:*:*:*:*:*","matchCriteriaId":"2D3B703C-79B2-4FA2-9E12-713AB977A880"}]}]}],"references":[{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-049","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-049","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0165","sourceIdentifier":"cve@mitre.org","published":"1999-11-13T05:00:00.000","lastModified":"2026-06-16T21:51:08.143","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Delegate application proxy has several buffer overflows which allow a remote attacker to execute commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:etl:delegate:5.9:*:*:*:*:*:*:*","matchCriteriaId":"F6584618-DFEC-416F-8335-7106EA25BE94"},{"vulnerable":true,"criteria":"cpe:2.3:a:etl:delegate:6.0:*:*:*:*:*:*:*","matchCriteriaId":"18763780-3419-4EFE-ABC7-0BE51CC90881"}]}]}],"references":[{"url":"http://www.ciac.org/ciac/bulletins/k-023.shtml","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-02-15&msg=Pine.BSF.4.21.0002192249290.10784-100000%40freefall.freebsd.org","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4195","source":"cve@mitre.org"},{"url":"http://www.ciac.org/ciac/bulletins/k-023.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-02-15&msg=Pine.BSF.4.21.0002192249290.10784-100000%40freefall.freebsd.org","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4195","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1110","sourceIdentifier":"cve@mitre.org","published":"1999-11-14T05:00:00.000","lastModified":"2026-06-16T21:49:44.477","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Windows Media Player ActiveX object as used in Internet Explorer 5.0 returns a specific error code when a file does not exist, which allows remote malicious web sites to determine the existence of files on the client."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/34675","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/793","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/34675","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/793","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1528","sourceIdentifier":"cve@mitre.org","published":"1999-11-14T05:00:00.000","lastModified":"2026-06-16T21:50:38.030","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ProSoft Netware Client 5.12 on Macintosh MacOS 9 does not automatically log a user out of the NDS tree when the user logs off the system, which allows other users of the same system access to the unprotected NDS session."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:prosoft_engineering:netware_client:5.12:*:*:*:*:*:*:*","matchCriteriaId":"111AD397-9CF0-4B1E-9805-1C5FA85B6A54"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94261444428430&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/794","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=94261444428430&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/794","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1190","sourceIdentifier":"cve@mitre.org","published":"1999-11-15T05:00:00.000","lastModified":"2026-06-16T21:49:54.630","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in POP3 server of Admiral Systems EmailClub 1.05 allows remote attackers to execute arbitrary commands via a long \"From\" header in an e-mail message."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:admiral_systems:emailclub:1.0.0.5:*:*:*:*:*:*:*","matchCriteriaId":"68D6A7F0-1132-4BEC-9950-4C6BEA8CA4C1"}]}]}],"references":[{"url":"http://www.securiteam.com/exploits/E-MailClub__FROM__remote_buffer_overflow.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/801","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securiteam.com/exploits/E-MailClub__FROM__remote_buffer_overflow.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/801","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1051","sourceIdentifier":"cve@mitre.org","published":"1999-11-16T05:00:00.000","lastModified":"2026-06-16T21:49:36.223","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Default configuration in Matt Wright FormHandler.cgi script allows arbitrary directories to be used for attachments, and only restricts access to the /etc/ directory, which allows remote attackers to read arbitrary files via the reply_message_attach attachment parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:matt_wright:formhandler.cgi:1.0:*:*:*:*:*:*:*","matchCriteriaId":"4E4B14ED-6423-487E-9185-6000CC906506"},{"vulnerable":true,"criteria":"cpe:2.3:a:matt_wright:formhandler.cgi:2.0:*:*:*:*:*:*:*","matchCriteriaId":"CDA6F66D-C578-46B9-BECB-13971A87F9FB"},{"vulnerable":true,"criteria":"cpe:2.3:a:matt_wright:formhandler.cgi:3.0:*:*:*:*:*:*:*","matchCriteriaId":"4B5C3D76-85DA-45BF-9397-4C7DD6186BF7"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/34939","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/34939","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1457","sourceIdentifier":"cve@mitre.org","published":"1999-11-16T05:00:00.000","lastModified":"2026-06-16T21:50:28.903","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in thttpd HTTP server before 2.04-31 allows remote attackers to execute arbitrary commands via a long date string, which is not properly handled by the tdate_parse function."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:thttpd:thttpd_http_server:*:*:*:*:*:*:*:*","versionEndIncluding":"2.04","matchCriteriaId":"60CA9476-1B47-41CA-953C-9119BD6165CD"},{"vulnerable":true,"criteria":"cpe:2.3:a:thttpd:thttpd_http_server:*:*:*:*:*:*:*:*","versionEndIncluding":"2.04.31","matchCriteriaId":"9227A693-2643-4477-93C7-4688E5E6DA4F"},{"vulnerable":true,"criteria":"cpe:2.3:a:thttpd:thttpd_http_server:1.90a:*:*:*:*:*:*:*","matchCriteriaId":"7B360C87-05B2-43E4-B944-EAE5E5185080"}]}]}],"references":[{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_30.html","source":"cve@mitre.org"},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_30.html","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1508","sourceIdentifier":"cve@mitre.org","published":"1999-11-16T05:00:00.000","lastModified":"2026-06-16T21:50:35.480","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Web server in Tektronix PhaserLink Printer 840.0 and earlier allows a remote attacker to gain administrator access by directly calling undocumented URLs such as ncl_items.html and ncl_subjects.html."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:tek:phaser_network_printer_740:*:*:*:*:*:*:*:*","matchCriteriaId":"92CD72BA-2587-4A2E-A093-A8312400B747"},{"vulnerable":true,"criteria":"cpe:2.3:h:tek:phaser_network_printer_750:*:*:*:*:*:*:*:*","matchCriteriaId":"330E2C4E-17A7-425A-ABE0-2B31FA023223"},{"vulnerable":true,"criteria":"cpe:2.3:h:tek:phaser_network_printer_750dp:*:*:*:*:*:*:*:*","matchCriteriaId":"EE99F094-977A-4B57-A04D-7A710D708390"},{"vulnerable":true,"criteria":"cpe:2.3:h:tek:phaser_network_printer_840:*:*:*:*:*:*:*:*","matchCriteriaId":"A1442E6F-2231-4511-B94D-7FFA5B35FADF"},{"vulnerable":true,"criteria":"cpe:2.3:h:tek:phaser_network_printer_930:*:*:*:*:*:*:*:*","matchCriteriaId":"A91B124E-241C-481B-88D7-9ACB8EC0A956"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94286041430870&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/806","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=94286041430870&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/806","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1549","sourceIdentifier":"cve@mitre.org","published":"1999-11-16T05:00:00.000","lastModified":"2026-06-16T21:50:41.687","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Lynx 2.x does not properly distinguish between internal and external HTML, which may allow a local attacker to read a \"secure\" hidden form value from a temporary file and craft a LYNXOPTIONS: URL that causes Lynx to modify the user's configuration file and execute commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","baseScore":7.8,"baseSeverity":"HIGH","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":1.8,"impactScore":5.9}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-346"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:lynx_project:lynx:2.7:*:*:*:*:*:*:*","matchCriteriaId":"5F143511-3727-4D4A-89A3-226AC46394E9"},{"vulnerable":true,"criteria":"cpe:2.3:a:lynx_project:lynx:2.8:*:*:*:*:*:*:*","matchCriteriaId":"D629A2AF-397E-4893-BE86-D396EE88482A"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94286509804526&w=2","source":"cve@mitre.org","tags":["Exploit","Mailing List"]},{"url":"http://www.securityfocus.com/bid/804","source":"cve@mitre.org","tags":["Broken Link","Exploit","Third Party Advisory","VDB Entry","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=94286509804526&w=2","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Mailing List"]},{"url":"http://www.securityfocus.com/bid/804","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Exploit","Third Party Advisory","VDB Entry","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-0793","sourceIdentifier":"cve@mitre.org","published":"1999-11-17T05:00:00.000","lastModified":"2026-06-16T21:49:04.173","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internet Explorer allows remote attackers to read files by redirecting data to a Javascript applet."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:N/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0.1:*:*:*:*:*:*:*","matchCriteriaId":"42502347-DD40-4F8C-9861-C0A88A3F8608"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"}]}]}],"references":[{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-043","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-043","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1092","sourceIdentifier":"cve@mitre.org","published":"1999-11-17T05:00:00.000","lastModified":"2026-06-16T21:49:42.303","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"tin 1.40 creates the .tin directory with insecure permissions, which allows local users to read passwords from the .inputhistory file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:iain_lea:tin:1.40:*:*:*:*:*:*:*","matchCriteriaId":"733B9371-E0B2-4DC3-B216-CC160099F8A2"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94286179032648&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94286179032648&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1519","sourceIdentifier":"cve@mitre.org","published":"1999-11-17T05:00:00.000","lastModified":"2026-06-16T21:50:36.847","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Gene6 G6 FTP Server 2.0 allows a remote attacker to cause a denial of service (resource exhaustion) via a long (1) user name or (2) password."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gene6:g6_ftp_server:2.0:*:*:*:*:*:*:*","matchCriteriaId":"F2A93EE9-255E-499A-ABED-E9E94409AB39"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94286244700573&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/805","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3513","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94286244700573&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/805","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3513","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0073","sourceIdentifier":"cve@mitre.org","published":"1999-11-17T05:00:00.000","lastModified":"2026-06-16T21:50:56.680","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Microsoft Rich Text Format (RTF) reader allows attackers to cause a denial of service via a malformed control word."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98:*:gold:*:*:*:*:*:*","matchCriteriaId":"2D3B703C-79B2-4FA2-9E12-713AB977A880"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ249973","source":"cve@mitre.org"},{"url":"http://xforce.iss.net/search.php3?type=2&pattern=win-malformed-rtf-control-word","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-005","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ249973","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://xforce.iss.net/search.php3?type=2&pattern=win-malformed-rtf-control-word","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-005","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0987","sourceIdentifier":"cve@mitre.org","published":"1999-11-18T05:00:00.000","lastModified":"2026-06-16T21:49:28.090","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Windows NT does not properly download a system policy if the domain user logs into the domain with a space at the end of the domain name."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-287"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:*:*:*:*:*:*:*:*","matchCriteriaId":"ED27882B-A02A-4D5F-9117-A47976C676E0"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ237923","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ237923","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0352","sourceIdentifier":"cve@mitre.org","published":"1999-11-18T05:00:00.000","lastModified":"2026-06-16T21:51:32.313","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Pine before version 4.21 does not properly filter shell metacharacters from URLs, which allows remote attackers to execute arbitrary commands via a malformed URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:university_of_washington:pine:4.20:*:*:*:*:*:*:*","matchCriteriaId":"16766308-A2F2-4155-A4F7-702808CC9450"},{"vulnerable":true,"criteria":"cpe:2.3:a:university_of_washington:pine:4.21:*:*:*:*:*:*:*","matchCriteriaId":"AA9E599F-D922-42B7-9FB5-FB025B095895"}]}]}],"references":[{"url":"ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-1999-036.0.txt","source":"cve@mitre.org"},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_36.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/810","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.10.9911171818220.12375-100000%40ray.compu-aid.com","source":"cve@mitre.org"},{"url":"ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-1999-036.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_36.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/810","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.10.9911171818220.12375-100000%40ray.compu-aid.com","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0831","sourceIdentifier":"cve@mitre.org","published":"1999-11-19T05:00:00.000","lastModified":"2026-06-16T21:49:08.923","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in Linux syslogd via a large number of connections."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cobalt:qube:1.0:*:*:*:*:*:*:*","matchCriteriaId":"23830C81-FC80-4BD5-87D4-B83769D90BB8"},{"vulnerable":true,"criteria":"cpe:2.3:a:cobalt:qube:2.0:*:*:*:*:*:*:*","matchCriteriaId":"AC4E81A9-E7A8-415B-BFDD-6F819D2B5733"},{"vulnerable":true,"criteria":"cpe:2.3:a:sun:cobalt_raq:1.1:*:*:*:*:*:*:*","matchCriteriaId":"4EE83B2E-D502-41EE-B1CC-D7A3FD408D1A"},{"vulnerable":true,"criteria":"cpe:2.3:h:sun:cobalt_raq_2:*:*:*:*:*:*:*:*","matchCriteriaId":"0F6DDD9F-5C58-4092-BF3D-332E2E566182"},{"vulnerable":true,"criteria":"cpe:2.3:h:sun:cobalt_raq_3i:*:*:*:*:*:*:*:*","matchCriteriaId":"0C1E1872-D16C-4848-800C-32B80DD59494"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.2:*:*:*:*:*:*:*","matchCriteriaId":"58B90124-0543-4226-BFF4-13CCCBCCB243"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.2:*:*:*:*:*:*:*","matchCriteriaId":"1B67020A-6942-4478-B501-764147C4970D"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.3:*:*:*:*:*:*:*","matchCriteriaId":"0AD0FF64-05DF-48C2-9BB5-FD993121FB2E"}]}]}],"references":[{"url":"ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-1999-035.0.txt","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/809","source":"cve@mitre.org"},{"url":"ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-1999-035.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/809","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0999","sourceIdentifier":"cve@mitre.org","published":"1999-11-19T05:00:00.000","lastModified":"2026-06-16T21:49:29.610","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft SQL 7.0 server allows a remote attacker to cause a denial of service via a malformed TDS packet."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:N/I:N/A:P","baseScore":4.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":8.6,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-20"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:sql_server:7.0:*:*:*:*:*:*:*","matchCriteriaId":"A2AB95D7-394E-423B-884C-87A9960682EE"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ248749","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/817","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-059","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ248749","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/817","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-059","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1475","sourceIdentifier":"cve@mitre.org","published":"1999-11-19T05:00:00.000","lastModified":"2026-06-16T21:50:31.283","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ProFTPd 1.2 compiled with the mod_sqlpw module records user passwords in the wtmp log file, which allows local users to obtain the passwords and gain privileges by reading wtmp, e.g. via the last command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:proftpd_project:proftpd:1.2:*:*:*:*:*:*:*","matchCriteriaId":"CE2243B4-8E0C-46BC-A003-EF52C30A030E"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/35483","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/812","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/35483","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/812","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-0818","sourceIdentifier":"cve@mitre.org","published":"1999-11-20T05:00:00.000","lastModified":"2026-06-16T21:49:07.333","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Solaris kcms_configure via a long NETPATH environmental variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:7.0:*:x86:*:*:*:*:*","matchCriteriaId":"8F1F312C-413F-4DB4-ABF4-48E33F6FECF2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/831","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=38433B7F5A.53F4SHADOWPENGUIN%40fox.nightland.net","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/831","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=38433B7F5A.53F4SHADOWPENGUIN%40fox.nightland.net","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1058","sourceIdentifier":"cve@mitre.org","published":"1999-11-22T05:00:00.000","lastModified":"2026-06-16T21:49:37.050","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Vermillion FTP Daemon VFTPD 1.23 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via several long CWD commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:arcane_software:vermillion_ftp_daemon:1.23:*:*:*:*:*:*:*","matchCriteriaId":"EEB7F46E-9949-43F3-8B7C-912D17AD7E39"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94329968617085&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=94337185023159&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/818","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3543","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94329968617085&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=94337185023159&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/818","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3543","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1527","sourceIdentifier":"cve@mitre.org","published":"1999-11-23T05:00:00.000","lastModified":"2026-06-16T21:50:37.903","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internal HTTP server in Sun Netbeans Java IDE in Netbeans Developer 3.0 Beta and Forte Community Edition 1.0 Beta does not properly restrict access to IP addresses as specified in its configuration, which allows arbitrary remote attackers to access the server."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sun:forte:community_1.0_beta:*:*:*:*:*:*:*","matchCriteriaId":"B7DF8E6B-3963-48BF-9384-B8F6F34FA4BB"},{"vulnerable":true,"criteria":"cpe:2.3:a:sun:netbeans_developer:3.0_beta:*:*:*:*:*:*:*","matchCriteriaId":"7C512F1D-D51D-4C44-B1BF-66801FCBD5EB"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94338883114254&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/816","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=94338883114254&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/816","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0531","sourceIdentifier":"cve@mitre.org","published":"1999-11-23T05:00:00.000","lastModified":"2026-06-16T21:51:56.170","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Linux gpm program allows local users to cause a denial of service by flooding the /dev/gpmctl device with STREAM sockets."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux:2.3:*:*:*:*:*:*:*","matchCriteriaId":"23B38FCC-2C86-4E84-860B-EBAE0FA123B6"},{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux:2.4:*:*:*:*:*:*:*","matchCriteriaId":"A63714ED-A697-4AC3-AF13-3B028F9A87EF"},{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux_eserver:2.3:*:*:*:*:*:*:*","matchCriteriaId":"3BE526D3-4CD8-423C-81FA-65B92F862A5E"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:i386:*:*:*:*:*","matchCriteriaId":"89F65C9D-BD68-4A86-BFDC-E7CE76F13948"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:i386:*:*:*:*:*","matchCriteriaId":"B72D6205-DFA4-41D9-B3B6-0B7DA756CD8F"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0409.html","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-045.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1377","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.10.10006201453090.1812-200000%40apollo.aci.com.pl","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5010","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0409.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-045.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1377","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.10.10006201453090.1812-200000%40apollo.aci.com.pl","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5010","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0844","sourceIdentifier":"cve@mitre.org","published":"1999-11-24T05:00:00.000","lastModified":"2026-06-16T21:49:10.560","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in MDaemon WorldClient and WebConfig services via a long URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:deerfield:mdaemon:2.8.5:*:*:*:*:*:*:*","matchCriteriaId":"189DC153-488F-496B-A807-7E3F8AC815C4"},{"vulnerable":true,"criteria":"cpe:2.3:a:deerfield:mdaemon:2.8.6:*:*:*:*:*:*:*","matchCriteriaId":"B7E862B7-F01C-44B5-A0F6-FF0C6DDD5C9F"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/820","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/823","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/820","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/823","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1163","sourceIdentifier":"cve@mitre.org","published":"1999-11-24T05:00:00.000","lastModified":"2026-06-16T21:49:51.297","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in HP Series 800 S/X/V Class servers allows remote attackers to gain access to the S/X/V Class console via the Service Support Processor (SSP) Teststation."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:hp:9000:800:*:*:*:*:*:*:*","matchCriteriaId":"487DFFD8-F648-4D8F-8919-FC600A5D828B"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94347039929958&w=2","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/7439.php","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94347039929958&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.iss.net/security_center/static/7439.php","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1189","sourceIdentifier":"cve@mitre.org","published":"1999-11-24T05:00:00.000","lastModified":"2026-06-16T21:49:54.500","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Netscape Navigator/Communicator 4.7 for Windows 95 and Windows 98 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long argument after the ? character in a URL that references an .asp, .cgi, .html, or .pl file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.7:*:*:*:*:*:*:*","matchCriteriaId":"38FD74F5-12ED-4049-B06F-0F22A0254C0F"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:navigator:4.7:*:*:*:*:*:*:*","matchCriteriaId":"F2AE46C7-6538-4DE6-B3EA-81AD7F7C43E2"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/36306","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/36608","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/822","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7884","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/36306","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/36608","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/822","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7884","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1548","sourceIdentifier":"cve@mitre.org","published":"1999-11-24T05:00:00.000","lastModified":"2026-06-16T21:50:41.563","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Cabletron SmartSwitch Router (SSR) 8000 firmware 2.x can only handle 200 ARP requests per second allowing a denial of service attack to succeed with a flood of ARP requests exceeding that limit."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:cabletron:smartswitch_router_8000_firmware:2.0:*:*:*:*:*:*:*","matchCriteriaId":"7E9F9727-4F67-411E-8697-09B572D6EB64"}]}]}],"references":[{"url":"http://razor.bindview.com/publish/advisories/adv_Cabletron.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/821","source":"cve@mitre.org"},{"url":"http://razor.bindview.com/publish/advisories/adv_Cabletron.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/821","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0317","sourceIdentifier":"cve@mitre.org","published":"1999-11-25T05:00:00.000","lastModified":"2026-06-16T21:48:08.383","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Linux su command gives root access to local users."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.6.20.1:*:*:*:*:*:*:*","matchCriteriaId":"1E3313D5-52E8-49B3-B145-170D9A26DA43"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0317","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0317","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0845","sourceIdentifier":"cve@mitre.org","published":"1999-11-25T05:00:00.000","lastModified":"2026-06-16T21:49:10.687","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in SCO su program allows local users to gain root access via a long username."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.0:*:*:*:*:*:*:*","matchCriteriaId":"17439B5B-0B66-490B-9B53-2C9D576C879F"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0845","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0845","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1547","sourceIdentifier":"cve@mitre.org","published":"1999-11-25T05:00:00.000","lastModified":"2026-06-16T21:50:41.440","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Oracle Web Listener 2.1 allows remote attackers to bypass access restrictions by replacing a character in the URL with its HTTP-encoded (hex) equivalent."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-20"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:web_listener:2.1:*:*:*:*:*:*:*","matchCriteriaId":"21A69B8E-6681-40A2-B90C-C74E3E72C0C0"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94359982417686&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=94390053530890&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/841","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=94359982417686&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=94390053530890&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/841","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-0387","sourceIdentifier":"cve@mitre.org","published":"1999-11-29T05:00:00.000","lastModified":"2026-06-16T21:48:17.277","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A legacy credential caching mechanism used in Windows 95 and Windows 98 systems allows attackers to read plaintext network passwords."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:N/A:N","baseScore":7.8,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-255"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_95:*:*:*:*:*:*:*:*","matchCriteriaId":"82F7322B-8022-4D0B-ADB3-D0F5B6F20309"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98:*:gold:*:*:*:*:*:*","matchCriteriaId":"2D3B703C-79B2-4FA2-9E12-713AB977A880"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ168115","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/829","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-052","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ168115","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/829","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-052","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0839","sourceIdentifier":"cve@mitre.org","published":"1999-11-29T05:00:00.000","lastModified":"2026-06-16T21:49:09.937","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Windows NT Task Scheduler installed with Internet Explorer 5 allows a user to gain privileges by modifying the job after it has been scheduled."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-264"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5:*:windows_nt_4.0:*:*:*:*:*","matchCriteriaId":"7AAA310C-7DED-40B3-B5EF-80C7407BB01A"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5.0:*:windows_95:*:*:*:*:*","matchCriteriaId":"0CE25503-0EDA-4AFA-A4B8-36396BB4A4E9"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5.0:*:windows_98:*:*:*:*:*","matchCriteriaId":"376DA3A6-FAB8-4B18-B9D9-C176675C7671"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ246972","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/828","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-051","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ246972","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/828","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-051","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0842","sourceIdentifier":"cve@mitre.org","published":"1999-11-29T05:00:00.000","lastModified":"2026-06-16T21:49:10.313","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Symantec Mail-Gear 1.0 web interface server allows remote users to read arbitrary files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:symantec:mail-gear:1.0:*:*:*:*:*:*:*","matchCriteriaId":"1AE9B457-A2EF-4FA4-977D-895876B252B9"}]}]}],"references":[{"url":"http://www.osvdb.org/1144","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/827","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=NCBBKFKDOLAGKIAPMILPCEAFCBAA.labs%40ussrback.com","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1144","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/827","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=NCBBKFKDOLAGKIAPMILPCEAFCBAA.labs%40ussrback.com","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0847","sourceIdentifier":"cve@mitre.org","published":"1999-11-29T05:00:00.000","lastModified":"2026-06-16T21:49:10.930","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in free internet chess server (FICS) program, xboard."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:freechess.org:fics_program:*:*:*:*:*:*:*:*","matchCriteriaId":"B90FB68E-45CE-4DE6-B093-3E7F2F890F41"}]}]}],"references":[{"url":"https://marc.info/?l=bugtraq&m=94407791819019&w=2","source":"cve@mitre.org"},{"url":"https://marc.info/?l=bugtraq&m=94407791819019&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0822","sourceIdentifier":"cve@mitre.org","published":"1999-11-30T05:00:00.000","lastModified":"2026-06-16T21:49:07.833","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Qpopper (qpop) 3.0 allows remote root access via AUTH command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0:*:*:*:*:*:*:*","matchCriteriaId":"B1208414-D175-41E2-BCBC-9E5EDBC41FFD"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0b20:*:*:*:*:*:*:*","matchCriteriaId":"08E3D83E-2D0C-4E47-8D57-8EC18115BCB6"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/830","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/830","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0824","sourceIdentifier":"cve@mitre.org","published":"1999-11-30T05:00:00.000","lastModified":"2026-06-16T21:49:08.080","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A Windows NT user can use SUBST to map a drive letter to a folder, which is not unmapped after the user logs off, potentially allowing that user to modify the location of folders accessed by later users."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp1:*:*:*:*:*:*","matchCriteriaId":"5BDCBCB8-DAA3-465F-ADDE-9143B8251989"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp2:*:*:*:*:*:*","matchCriteriaId":"B86E0671-ED68-4549-B3AC-FD8BD79B0860"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp3:*:*:*:*:*:*","matchCriteriaId":"BB76E7EC-C396-4537-9065-4E815DA7097C"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp4:*:*:*:*:*:*","matchCriteriaId":"4CD026E2-B073-40A6-AD4A-8C76B9169B01"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp5:*:*:*:*:*:*","matchCriteriaId":"DBFB3E49-3FB5-4947-856D-727CBFFBA543"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp6:*:*:*:*:*:*","matchCriteriaId":"B9236480-6450-42E1-B1FF-F336488A683A"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/833","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/833","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0840","sourceIdentifier":"cve@mitre.org","published":"1999-11-30T05:00:00.000","lastModified":"2026-06-16T21:49:10.067","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in CDE dtmail and dtmailpr programs allows local users to gain privileges via a long -f option."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"http://www.securiteam.com/exploits/3J5QQPPQ0O.html","source":"cve@mitre.org"},{"url":"http://www.security-express.com/archives/bugtraq/1999-q4/0122.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/832","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3579","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3580","source":"cve@mitre.org"},{"url":"http://www.securiteam.com/exploits/3J5QQPPQ0O.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.security-express.com/archives/bugtraq/1999-q4/0122.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/832","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3579","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3580","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0841","sourceIdentifier":"cve@mitre.org","published":"1999-11-30T05:00:00.000","lastModified":"2026-06-16T21:49:10.190","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in CDE mailtool allows local users to gain root privileges via a long MIME Content-Type."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"http://www.securiteam.com/exploits/3J5QQPPQ0O.html","source":"cve@mitre.org"},{"url":"http://www.security-express.com/archives/bugtraq/1999-q4/0122.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/832","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3732","source":"cve@mitre.org"},{"url":"http://www.securiteam.com/exploits/3J5QQPPQ0O.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.security-express.com/archives/bugtraq/1999-q4/0122.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/832","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3732","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0819","sourceIdentifier":"cve@mitre.org","published":"1999-12-01T05:00:00.000","lastModified":"2026-06-16T21:49:07.460","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"NTMail does not disable the VRFY command, even if the administrator has explicitly disabled it."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94398141118586&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94398141118586&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0820","sourceIdentifier":"cve@mitre.org","published":"1999-12-01T05:00:00.000","lastModified":"2026-06-16T21:49:07.583","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"FreeBSD seyon allows users to gain privileges via a modified PATH variable for finding the xterm and seyon-emu commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.3:*:*:*:*:*:*:*","matchCriteriaId":"C3518628-08E5-4AD7-AAF6-A4E38F1CDE2C"}]}]}],"references":[{"url":"http://www.osvdb.org/5996","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/838","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/5996","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/838","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0823","sourceIdentifier":"cve@mitre.org","published":"1999-12-01T05:00:00.000","lastModified":"2026-06-16T21:49:07.957","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in FreeBSD xmindpath allows local users to gain privileges via -f argument."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.3:*:*:*:*:*:*:*","matchCriteriaId":"C3518628-08E5-4AD7-AAF6-A4E38F1CDE2C"}]}]}],"references":[{"url":"http://www.osvdb.org/1150","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/839","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1150","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/839","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0826","sourceIdentifier":"cve@mitre.org","published":"1999-12-01T05:00:00.000","lastModified":"2026-06-16T21:49:08.333","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in FreeBSD angband allows local users to gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.3:*:*:*:*:*:*:*","matchCriteriaId":"C3518628-08E5-4AD7-AAF6-A4E38F1CDE2C"}]}]}],"references":[{"url":"http://www.osvdb.org/1151","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/840","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1151","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/840","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0834","sourceIdentifier":"cve@mitre.org","published":"1999-12-01T05:00:00.000","lastModified":"2026-06-16T21:49:09.317","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in RSAREF2 via the encryption and decryption functions in the RSAREF library."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:rsa:rsaref:2.0:*:*:*:*:*:*:*","matchCriteriaId":"4FFB1571-51FF-44FD-9C6F-369BCAD402D9"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/843","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/843","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0838","sourceIdentifier":"cve@mitre.org","published":"1999-12-01T05:00:00.000","lastModified":"2026-06-16T21:49:09.813","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Serv-U FTP 2.5 allows remote users to conduct a denial of service via the SITE command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:deerfield:serv-u_ftp-server:2.5a:*:*:*:*:*:*:*","matchCriteriaId":"2F8FE4FC-4006-46B5-946F-BC54BA9F8CFA"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/859","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/859","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0846","sourceIdentifier":"cve@mitre.org","published":"1999-12-01T05:00:00.000","lastModified":"2026-06-16T21:49:10.807","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in MDaemon 2.7 via a large number of connection attempts."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:deerfield:mdaemon:2.8.5:*:*:*:*:*:*:*","matchCriteriaId":"189DC153-488F-496B-A807-7E3F8AC815C4"},{"vulnerable":true,"criteria":"cpe:2.3:a:deerfield:mdaemon:2.8.6:*:*:*:*:*:*:*","matchCriteriaId":"B7E862B7-F01C-44B5-A0F6-FF0C6DDD5C9F"}]}]}],"references":[{"url":"https://marc.info/?l=bugtraq&m=94398020817351&w=2","source":"cve@mitre.org"},{"url":"https://marc.info/?l=bugtraq&m=94398020817351&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0853","sourceIdentifier":"cve@mitre.org","published":"1999-12-01T05:00:00.000","lastModified":"2026-06-16T21:49:11.650","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Netscape Enterprise Server and Netscape FastTrack Server allows remote attackers to gain privileges via the HTTP Basic Authentication procedure."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:enterprise_server:3.5.1:*:*:*:*:*:*:*","matchCriteriaId":"4147A43C-DA7B-4D08-90E9-72DE57B1D61D"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:enterprise_server:3.6:*:*:*:*:*:*:*","matchCriteriaId":"3577B789-DBB6-413D-B964-B32FE3E8CD8B"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:enterprise_server:3.6:sp2:*:*:*:*:*:*","matchCriteriaId":"4EB62E6F-87E2-4A98-B4BD-3E0036CE7640"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:fasttrack_server:3.01:*:*:*:*:*:*:*","matchCriteriaId":"63A12C94-E68C-48E2-B88E-571C4FD9099C"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/847","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/847","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0855","sourceIdentifier":"cve@mitre.org","published":"1999-12-01T05:00:00.000","lastModified":"2026-06-16T21:49:11.897","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in FreeBSD gdc program."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.3:*:*:*:*:*:*:*","matchCriteriaId":"C3518628-08E5-4AD7-AAF6-A4E38F1CDE2C"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/834","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/834","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0856","sourceIdentifier":"cve@mitre.org","published":"1999-12-01T05:00:00.000","lastModified":"2026-06-16T21:49:12.007","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"login in Slackware 7.0 allows remote attackers to identify valid users on the system by reporting an encryption error when an account is locked or does not exist."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:slackware:slackware_linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"C2A9C005-4392-4C95-9B92-98EEC73EFE73"}]}]}],"references":[{"url":"https://marc.info/?l=bugtraq&m=94416739411280&w=2","source":"cve@mitre.org"},{"url":"https://marc.info/?l=bugtraq&m=94416739411280&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0857","sourceIdentifier":"cve@mitre.org","published":"1999-12-01T05:00:00.000","lastModified":"2026-06-16T21:49:12.140","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"FreeBSD gdc program allows local users to modify files via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.3:*:*:*:*:*:*:*","matchCriteriaId":"C3518628-08E5-4AD7-AAF6-A4E38F1CDE2C"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/835","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/835","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0859","sourceIdentifier":"cve@mitre.org","published":"1999-12-01T05:00:00.000","lastModified":"2026-06-16T21:49:12.377","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Solaris arp allows local users to read files via the -f parameter, which lists lines in the file that do not parse properly."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5.1:*:ppc:*:*:*:*:*","matchCriteriaId":"54AF87E4-52A4-44CA-B48E-A5BB139E6410"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5.1:*:x86:*:*:*:*:*","matchCriteriaId":"F66BAF35-A8B9-4E95-B270-444206FDD35B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.6:*:*:*:*:*:*:*","matchCriteriaId":"34EBF074-78C8-41AF-88F1-DA6726E56F8B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:7.0:*:x86:*:*:*:*:*","matchCriteriaId":"8F1F312C-413F-4DB4-ABF4-48E33F6FECF2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:-:*:*:*:*:*:*:*","matchCriteriaId":"369207B4-96FA-4324-9445-98FAE8ECF5DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5.1:*:*:*:*:*:*:*","matchCriteriaId":"39F847DB-65A9-47DA-BCFA-A179E5E2301A"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"http://www.osvdb.org/6994","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/837","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/6994","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/837","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0860","sourceIdentifier":"cve@mitre.org","published":"1999-12-01T05:00:00.000","lastModified":"2026-06-16T21:49:12.507","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Solaris chkperm allows local users to read files owned by bin via the VMSYS environmental variable and a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5.1:*:ppc:*:*:*:*:*","matchCriteriaId":"54AF87E4-52A4-44CA-B48E-A5BB139E6410"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5.1:*:x86:*:*:*:*:*","matchCriteriaId":"F66BAF35-A8B9-4E95-B270-444206FDD35B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.6:*:*:*:*:*:*:*","matchCriteriaId":"34EBF074-78C8-41AF-88F1-DA6726E56F8B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:7.0:*:x86:*:*:*:*:*","matchCriteriaId":"8F1F312C-413F-4DB4-ABF4-48E33F6FECF2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:-:*:*:*:*:*:*:*","matchCriteriaId":"369207B4-96FA-4324-9445-98FAE8ECF5DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5.1:*:*:*:*:*:*:*","matchCriteriaId":"39F847DB-65A9-47DA-BCFA-A179E5E2301A"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/837","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/837","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0963","sourceIdentifier":"cve@mitre.org","published":"1999-12-01T05:00:00.000","lastModified":"2026-06-16T21:49:25.107","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"FreeBSD mount_union command allows local users to gain root privileges via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2:*:*:*:*:*:*:*","matchCriteriaId":"183667CA-6DF1-4BFB-AE32-9ABF55B7283A"}]}]}],"references":[{"url":"http://www.osvdb.org/6088","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/6088","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0004","sourceIdentifier":"cve@mitre.org","published":"1999-12-01T05:00:00.000","lastModified":"2026-06-16T21:50:48.240","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ZBServer Pro allows remote attackers to read source code for executable files by inserting a . (dot) into the URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:zbsoft:zbserver:1.5:*:*:*:*:*:*:*","matchCriteriaId":"0A92DFC9-A26E-418B-B1BC-565B27C81795"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94606572912422&w=2","source":"cve@mitre.org"},{"url":"http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind9912&L=NTBUGTRAQ&P=R3556","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94606572912422&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind9912&L=NTBUGTRAQ&P=R3556","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0021","sourceIdentifier":"cve@mitre.org","published":"1999-12-01T05:00:00.000","lastModified":"2026-06-16T21:50:50.360","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Lotus Domino HTTP server allows remote attackers to determine the real path of the server via a request to a non-existent script in /cgi-bin."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:lotus:domino_server:4.6:*:*:*:*:*:*:*","matchCriteriaId":"D3174854-2CC6-42C5-BC53-F64DE247AF77"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/881","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/881","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0828","sourceIdentifier":"cve@mitre.org","published":"1999-12-02T05:00:00.000","lastModified":"2026-06-16T21:49:08.580","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"UnixWare pkg commands such as pkginfo, pkgcat, and pkgparam allow local users to read arbitrary files via the dacread permission."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:N","baseScore":3.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.0:*:*:*:*:*:*:*","matchCriteriaId":"17439B5B-0B66-490B-9B53-2C9D576C879F"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.1:*:*:*:*:*:*:*","matchCriteriaId":"B200C05F-0E89-4172-B500-47C2573D4461"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/853","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/853","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0850","sourceIdentifier":"cve@mitre.org","published":"1999-12-02T05:00:00.000","lastModified":"2026-06-16T21:49:11.300","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default permissions for Endymion MailMan allow local users to read email or modify files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:N","baseScore":3.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:endymion:mailman_webmail:3.0.18:*:*:*:*:*:*:*","matchCriteriaId":"49824940-8621-4B21-B3D4-447D7A9C50D7"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/845","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/845","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0852","sourceIdentifier":"cve@mitre.org","published":"1999-12-02T05:00:00.000","lastModified":"2026-06-16T21:49:11.523","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IBM WebSphere sets permissions that allow a local user to modify a deinstallation script or its data files stored in /usr/bin."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"85D0DA05-D76A-4623-B7EC-07A9D06E6E9F"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/844","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/844","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0858","sourceIdentifier":"cve@mitre.org","published":"1999-12-02T05:00:00.000","lastModified":"2026-06-16T21:49:12.260","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internet Explorer 5 allows a remote attacker to modify the IE client's proxy configuration via a malicious Web Proxy Auto-Discovery (WPAD) server."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-16"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ247333","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/846","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-054","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ247333","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/846","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-054","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0862","sourceIdentifier":"cve@mitre.org","published":"1999-12-02T05:00:00.000","lastModified":"2026-06-16T21:49:12.743","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Insecure directory permissions in RPM distribution for PostgreSQL allows local users to gain privileges by reading a plaintext password file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:postgresql:postgresql:6.3.2:*:*:*:*:*:*:*","matchCriteriaId":"FF7D1F6F-044C-478D-991D-D70281FD7C87"},{"vulnerable":true,"criteria":"cpe:2.3:a:postgresql:postgresql:6.5.3:*:*:*:*:*:*:*","matchCriteriaId":"6EB98484-1234-4BA2-ACB0-28F4BE684D92"},{"vulnerable":true,"criteria":"cpe:2.3:a:postgresql:postgresql:6.5.3.1:*:*:*:*:*:*:*","matchCriteriaId":"31C6D856-9046-4FF1-8A38-848535D57D22"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0862","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0862","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0366","sourceIdentifier":"cve@mitre.org","published":"1999-12-02T05:00:00.000","lastModified":"2026-06-16T21:51:34.033","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"dump in Debian GNU/Linux 2.1 does not properly restore symlinks, which allows a local user to modify the ownership of arbitrary files."},{"lang":"es","value":"volcado en Debian GNU/Linux 2.1 no restarura adecuadamente los vínculos simbólicos (symlinks), lo que permite a un usuario local modificar la propiedad de ficheros arbitrariamente."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.1:*:*:*:*:*:*:*","matchCriteriaId":"3C67BDA1-9451-4026-AC6D-E912C882A757"}]}]}],"references":[{"url":"http://www.debian.org/security/1999/19991202","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1442","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/1999/19991202","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1442","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0825","sourceIdentifier":"cve@mitre.org","published":"1999-12-03T05:00:00.000","lastModified":"2026-06-16T21:49:08.210","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default permissions for UnixWare /var/mail allow local users to read and modify other users' mail."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:N","baseScore":3.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.0:*:*:*:*:*:*:*","matchCriteriaId":"17439B5B-0B66-490B-9B53-2C9D576C879F"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.0.1:*:*:*:*:*:*:*","matchCriteriaId":"EF9FD7BF-97E4-426D-881F-03C9D5B8895D"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.1:*:*:*:*:*:*:*","matchCriteriaId":"B200C05F-0E89-4172-B500-47C2573D4461"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/849","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/849","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0864","sourceIdentifier":"cve@mitre.org","published":"1999-12-03T05:00:00.000","lastModified":"2026-06-16T21:49:12.973","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"UnixWare programs that dump core allow a local user to modify files via a symlink attack on the ./core.pid file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.0:*:*:*:*:*:*:*","matchCriteriaId":"17439B5B-0B66-490B-9B53-2C9D576C879F"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.0.1:*:*:*:*:*:*:*","matchCriteriaId":"EF9FD7BF-97E4-426D-881F-03C9D5B8895D"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.1:*:*:*:*:*:*:*","matchCriteriaId":"B200C05F-0E89-4172-B500-47C2573D4461"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.1.1:*:*:*:*:*:*:*","matchCriteriaId":"71DDB9D9-AD7B-479D-B128-7150286EE563"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94530783815434&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94581379905584&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94606167110764&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/851","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=19991203020720.13115.qmail%40nwcst289.netaddress.usa.net","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94530783815434&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=94581379905584&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=94606167110764&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/851","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=19991203020720.13115.qmail%40nwcst289.netaddress.usa.net","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0865","sourceIdentifier":"cve@mitre.org","published":"1999-12-03T05:00:00.000","lastModified":"2026-06-16T21:49:13.100","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in CommuniGatePro via a long string to the HTTP configuration port."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:stalker:communigate_pro:3.1:*:*:*:*:*:*:*","matchCriteriaId":"B99838A0-D980-4E0F-BFF3-9DEF998F78AB"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94426440413027&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=94454565726775&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/860","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94426440413027&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=94454565726775&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/860","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0866","sourceIdentifier":"cve@mitre.org","published":"1999-12-03T05:00:00.000","lastModified":"2026-06-16T21:49:13.220","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in UnixWare xauto program allows local users to gain root privilege."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.0:*:*:*:*:*:*:*","matchCriteriaId":"17439B5B-0B66-490B-9B53-2C9D576C879F"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.0.1:*:*:*:*:*:*:*","matchCriteriaId":"EF9FD7BF-97E4-426D-881F-03C9D5B8895D"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.1:*:*:*:*:*:*:*","matchCriteriaId":"B200C05F-0E89-4172-B500-47C2573D4461"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.1.1:*:*:*:*:*:*:*","matchCriteriaId":"71DDB9D9-AD7B-479D-B128-7150286EE563"}]}]}],"references":[{"url":"ftp://ftp.sco.com/SSE/security_bulletins/SB-99.24a","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94530783815434&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94581379905584&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94606167110764&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/848","source":"cve@mitre.org"},{"url":"ftp://ftp.sco.com/SSE/security_bulletins/SB-99.24a","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=94530783815434&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=94581379905584&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=94606167110764&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/848","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0139","sourceIdentifier":"cve@mitre.org","published":"1999-12-03T05:00:00.000","lastModified":"2026-06-16T21:51:04.870","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internet Anywhere POP3 Mail Server allows local users to cause a denial of service via a malformed RETR command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:true_north:internet_anywhere_mail_server:3.1.3:*:*:*:*:*:*:*","matchCriteriaId":"346E073E-72EE-44C6-A24F-39474627F857"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=95021326417936&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/982","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=95021326417936&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/982","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0357","sourceIdentifier":"cve@mitre.org","published":"1999-12-03T05:00:00.000","lastModified":"2026-06-16T21:51:32.937","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ORBit and esound in Red Hat Linux 6.1 do not use sufficiently random numbers, which allows local users to guess the authentication keys."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"2EC4D3AB-38FA-4D44-AF5C-2DCD15994E76"}]}]}],"references":[{"url":"http://www.redhat.com/corp/support/errata/RHSA1999058-01.html","source":"cve@mitre.org"},{"url":"http://www.redhat.com/corp/support/errata/RHSA1999058-01.html","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0358","sourceIdentifier":"cve@mitre.org","published":"1999-12-03T05:00:00.000","lastModified":"2026-06-16T21:51:33.060","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ORBit and gnome-session in Red Hat Linux 6.1 allows remote attackers to crash a program."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"2EC4D3AB-38FA-4D44-AF5C-2DCD15994E76"}]}]}],"references":[{"url":"http://www.redhat.com/corp/support/errata/RHSA1999058-01.html","source":"cve@mitre.org"},{"url":"http://www.redhat.com/corp/support/errata/RHSA1999058-01.html","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0988","sourceIdentifier":"cve@mitre.org","published":"1999-12-04T05:00:00.000","lastModified":"2026-06-16T21:49:28.217","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"UnixWare pkgtrans allows local users to read arbitrary files via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:2.0:*:*:*:*:*:*:*","matchCriteriaId":"43D2F319-DF69-4E52-AF29-06DF1E312030"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:2.0.3:*:*:*:*:*:*:*","matchCriteriaId":"B3AC5333-BC57-48EB-BB77-1E258791EFEE"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:2.1:*:*:*:*:*:*:*","matchCriteriaId":"168248AC-E4F6-4C8F-9A21-0E6ABE029DFC"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.0:*:*:*:*:*:*:*","matchCriteriaId":"17439B5B-0B66-490B-9B53-2C9D576C879F"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.0.1:*:*:*:*:*:*:*","matchCriteriaId":"EF9FD7BF-97E4-426D-881F-03C9D5B8895D"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.1:*:*:*:*:*:*:*","matchCriteriaId":"B200C05F-0E89-4172-B500-47C2573D4461"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.1.1:*:*:*:*:*:*:*","matchCriteriaId":"71DDB9D9-AD7B-479D-B128-7150286EE563"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.1.16:*:*:*:*:*:*:*","matchCriteriaId":"EB069CA5-F5F8-447D-997D-481E5158DABB"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0988","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0988","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0982","sourceIdentifier":"cve@mitre.org","published":"1999-12-05T05:00:00.000","lastModified":"2026-06-16T21:49:27.483","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Sun Web-Based Enterprise Management (WBEM) installation script stores a password in plaintext in a world readable file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sun:web-based_enterprise_management:1.0:*:*:*:*:*:*:*","matchCriteriaId":"D1BDFB6D-F48D-4AF0-A634-262D1954D426"},{"vulnerable":true,"criteria":"cpe:2.3:a:sun:web-based_enterprise_management:2.0:*:*:*:*:*:*:*","matchCriteriaId":"D36D45B5-0A8A-4720-BA64-ABCF2C71E77C"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:8.0:beta:*:*:*:*:*:*","matchCriteriaId":"11847B60-D66B-4386-940A-C53B11853E50"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0982","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0982","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0990","sourceIdentifier":"cve@mitre.org","published":"1999-12-05T05:00:00.000","lastModified":"2026-06-16T21:49:28.453","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Error messages generated by gdm with the VerboseAuth setting allows an attacker to identify valid users on a system."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gnome:gdm:2.0_beta4:*:*:*:*:*:*:*","matchCriteriaId":"FA0A11C1-AF35-4006-A5BA-634B814DAC73"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0990","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0990","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0989","sourceIdentifier":"cve@mitre.org","published":"1999-12-06T05:00:00.000","lastModified":"2026-06-16T21:49:28.330","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Internet Explorer 5 directshow filter (MSDXM.OCX) allows remote attackers to execute commands via the vnd.ms.radio protocol."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5:*:windows_nt_4.0:*:*:*:*:*","matchCriteriaId":"7AAA310C-7DED-40B3-B5EF-80C7407BB01A"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5.0:*:windows_95:*:*:*:*:*","matchCriteriaId":"0CE25503-0EDA-4AFA-A4B8-36396BB4A4E9"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5.0:*:windows_98:*:*:*:*:*","matchCriteriaId":"376DA3A6-FAB8-4B18-B9D9-C176675C7671"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/861","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/861","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0991","sourceIdentifier":"cve@mitre.org","published":"1999-12-06T05:00:00.000","lastModified":"2026-06-16T21:49:28.577","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in GoodTech Telnet Server NT allows remote users to cause a denial of service via a long login name."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:goodtech:telnet_server_nt:2.2.1:*:*:*:*:*:*:*","matchCriteriaId":"97138DD7-9D7A-4B93-8D5F-D02BD4F1EB4F"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/862","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/862","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0973","sourceIdentifier":"cve@mitre.org","published":"1999-12-07T05:00:00.000","lastModified":"2026-06-16T21:49:26.347","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Solaris snoop program allows remote attackers to gain root privileges via a long domain name when snoop is running in verbose mode."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.4:*:x86:*:*:*:*:*","matchCriteriaId":"1F881110-7B54-49DA-B23A-710273430C44"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5:*:x86:*:*:*:*:*","matchCriteriaId":"200D8CB2-0D52-40A8-9CD9-6E4513605201"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5.1:*:x86:*:*:*:*:*","matchCriteriaId":"F66BAF35-A8B9-4E95-B270-444206FDD35B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.6:*:*:*:*:*:*:*","matchCriteriaId":"34EBF074-78C8-41AF-88F1-DA6726E56F8B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:7.0:*:x86:*:*:*:*:*","matchCriteriaId":"8F1F312C-413F-4DB4-ABF4-48E33F6FECF2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:-:*:*:*:*:*:*:*","matchCriteriaId":"369207B4-96FA-4324-9445-98FAE8ECF5DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.3:*:*:*:*:*:*:*","matchCriteriaId":"C7A22D21-E0A9-4B56-86C7-805AD1A610D6"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.4:*:*:*:*:*:*:*","matchCriteriaId":"7AAC8954-74A8-4FE3-ABE7-57DA041D9D8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5:*:*:*:*:*:*:*","matchCriteriaId":"5B72953B-E873-4E44-A3CF-12D770A0D416"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5.1:*:*:*:*:*:*:*","matchCriteriaId":"39F847DB-65A9-47DA-BCFA-A179E5E2301A"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/858","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/858","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0976","sourceIdentifier":"cve@mitre.org","published":"1999-12-07T05:00:00.000","lastModified":"2026-06-16T21:49:26.727","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Sendmail allows local users to reinitialize the aliases database via the newaliases command, then cause a denial of service by interrupting Sendmail."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:eric_allman:sendmail:8.9.3:*:*:*:*:*:*:*","matchCriteriaId":"D4273E93-B536-4B2C-8DAD-84A6F5E38890"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/857","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/857","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0981","sourceIdentifier":"cve@mitre.org","published":"1999-12-08T05:00:00.000","lastModified":"2026-06-16T21:49:27.357","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internet Explorer 5.01 and earlier allows a remote attacker to create a reference to a client window and use a server-side redirect to access local files via that window, aka \"Server-side Page Reference Redirect.\""}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-59"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:*:*:*:*:*:*:*:*","versionEndIncluding":"5.01","matchCriteriaId":"E451A785-9BAF-4F62-932A-A9D8ED86D40C"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0.1:*:*:*:*:*:*:*","matchCriteriaId":"42502347-DD40-4F8C-9861-C0A88A3F8608"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ246094","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-050","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ246094","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-050","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0986","sourceIdentifier":"cve@mitre.org","published":"1999-12-08T05:00:00.000","lastModified":"2026-06-16T21:49:27.963","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The ping command in Linux 2.0.3x allows local users to cause a denial of service by sending large packets with the -R (record route) option."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.1:*:*:*:*:*:*:*","matchCriteriaId":"3C67BDA1-9451-4026-AC6D-E912C882A757"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.0:*:*:*:*:*:*:*","matchCriteriaId":"96A6EE7E-C79C-4B25-AFF0-C6638CB3C99A"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.0.34:*:*:*:*:*:*:*","matchCriteriaId":"92555500-16EB-4F76-B2C7-61A00A1AC722"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.0.35:*:*:*:*:*:*:*","matchCriteriaId":"B03D22C9-94C6-4AC5-AAD0-15F06BCC5CA7"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.0.36:*:*:*:*:*:*:*","matchCriteriaId":"541B4ED8-E970-4C67-B5AF-7DE5B7F754D1"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.0.37:*:*:*:*:*:*:*","matchCriteriaId":"1E55F8A8-1ABD-4760-9074-353BBAEE005B"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.0.38:*:*:*:*:*:*:*","matchCriteriaId":"F873503F-C6E2-4AC2-859E-9431FE0FA0A3"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:i386:*:*:*:*:*","matchCriteriaId":"363AB7DB-A8BA-4D58-97C4-1DF1F0F43E07"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/870","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/870","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0972","sourceIdentifier":"cve@mitre.org","published":"1999-12-09T05:00:00.000","lastModified":"2026-06-16T21:49:26.220","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Xshipwars xsw program."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:wolfpack_development:xshipwars:1.0:*:*:*:*:*:*:*","matchCriteriaId":"22B32300-4C56-4ECB-8438-2251FDBDE5B9"},{"vulnerable":true,"criteria":"cpe:2.3:a:wolfpack_development:xshipwars:1.2.4:*:*:*:*:*:*:*","matchCriteriaId":"BC96F3FA-02BE-4A34-B5BD-75CAEF3B7148"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/863","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/863","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0974","sourceIdentifier":"cve@mitre.org","published":"1999-12-09T05:00:00.000","lastModified":"2026-06-16T21:49:26.483","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Solaris snoop allows remote attackers to gain root privileges via GETQUOTA requests to the rpc.rquotad service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.4:*:x86:*:*:*:*:*","matchCriteriaId":"1F881110-7B54-49DA-B23A-710273430C44"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5:*:x86:*:*:*:*:*","matchCriteriaId":"200D8CB2-0D52-40A8-9CD9-6E4513605201"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5.1:*:ppc:*:*:*:*:*","matchCriteriaId":"54AF87E4-52A4-44CA-B48E-A5BB139E6410"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5.1:*:x86:*:*:*:*:*","matchCriteriaId":"F66BAF35-A8B9-4E95-B270-444206FDD35B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.6:*:*:*:*:*:*:*","matchCriteriaId":"34EBF074-78C8-41AF-88F1-DA6726E56F8B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:7.0:*:x86:*:*:*:*:*","matchCriteriaId":"8F1F312C-413F-4DB4-ABF4-48E33F6FECF2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:-:*:*:*:*:*:*:*","matchCriteriaId":"369207B4-96FA-4324-9445-98FAE8ECF5DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.4:*:*:*:*:*:*:*","matchCriteriaId":"7AAC8954-74A8-4FE3-ABE7-57DA041D9D8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5:*:*:*:*:*:*:*","matchCriteriaId":"5B72953B-E873-4E44-A3CF-12D770A0D416"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5.1:*:*:*:*:*:*:*","matchCriteriaId":"39F847DB-65A9-47DA-BCFA-A179E5E2301A"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/190","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/864","source":"cve@mitre.org"},{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/190","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/864","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0978","sourceIdentifier":"cve@mitre.org","published":"1999-12-09T05:00:00.000","lastModified":"2026-06-16T21:49:26.983","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"htdig allows remote attackers to execute commands via filenames with shell metacharacters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.1:*:*:*:*:*:*:*","matchCriteriaId":"3C67BDA1-9451-4026-AC6D-E912C882A757"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/867","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/867","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0975","sourceIdentifier":"cve@mitre.org","published":"1999-12-10T05:00:00.000","lastModified":"2026-06-16T21:49:26.610","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Windows help system can allow a local user to execute commands as another user by editing a table of contents metafile with a .CNT extension and modifying the topic action to include the commands to be executed when the .hlp file is accessed."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_95:*:*:*:*:*:*:*:*","matchCriteriaId":"82F7322B-8022-4D0B-ADB3-D0F5B6F20309"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98:*:gold:*:*:*:*:*:*","matchCriteriaId":"2D3B703C-79B2-4FA2-9E12-713AB977A880"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/868","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/868","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0977","sourceIdentifier":"cve@mitre.org","published":"1999-12-10T05:00:00.000","lastModified":"2026-06-16T21:49:26.857","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Solaris sadmind allows remote attackers to gain root privileges using a NETMGT_PROC_SERVICE request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5:*:x86:*:*:*:*:*","matchCriteriaId":"200D8CB2-0D52-40A8-9CD9-6E4513605201"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5.1:*:ppc:*:*:*:*:*","matchCriteriaId":"54AF87E4-52A4-44CA-B48E-A5BB139E6410"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5.1:*:x86:*:*:*:*:*","matchCriteriaId":"F66BAF35-A8B9-4E95-B270-444206FDD35B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.6:*:*:*:*:*:*:*","matchCriteriaId":"34EBF074-78C8-41AF-88F1-DA6726E56F8B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:7.0:*:x86:*:*:*:*:*","matchCriteriaId":"8F1F312C-413F-4DB4-ABF4-48E33F6FECF2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:-:*:*:*:*:*:*:*","matchCriteriaId":"369207B4-96FA-4324-9445-98FAE8ECF5DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5:*:*:*:*:*:*:*","matchCriteriaId":"5B72953B-E873-4E44-A3CF-12D770A0D416"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5.1:*:*:*:*:*:*:*","matchCriteriaId":"39F847DB-65A9-47DA-BCFA-A179E5E2301A"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/191","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/2558","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2354","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/866","source":"cve@mitre.org"},{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/191","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/2558","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2354","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/866","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0289","sourceIdentifier":"cve@mitre.org","published":"1999-12-12T05:00:00.000","lastModified":"2026-06-16T21:48:04.840","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Apache web server for Win32 may provide access to restricted files when a . (dot) is appended to a requested URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-noinfo"}]}],"configurations":[{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:-:*:*:*:*:*:*:*","matchCriteriaId":"D623D8C0-65D2-4269-A1D4-5CB3899F44C8"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:x86:*","matchCriteriaId":"60366048-32FE-4081-A852-04319FD7A52C"}]}]}],"references":[{"url":"https://www.cve.org/CVERecord?id=CVE-1999-0289","source":"cve@mitre.org"},{"url":"https://www.cve.org/CVERecord?id=CVE-1999-0289","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1009","sourceIdentifier":"cve@mitre.org","published":"1999-12-12T05:00:00.000","lastModified":"2026-06-16T21:49:30.870","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Disney Go Express Search allows remote attackers to access and modify search information for users by connecting to an HTTP server on the user's system."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:N/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:disney:go_express_search:*:*:*:*:*:*:*:*","matchCriteriaId":"2B497A96-CEAF-4CBF-B929-23F0DF97DE54"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-1009","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-1009","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0993","sourceIdentifier":"cve@mitre.org","published":"1999-12-13T05:00:00.000","lastModified":"2026-06-16T21:49:28.833","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Modifications to ACLs (Access Control Lists) in Microsoft Exchange  5.5 do not take effect until the directory store cache is refreshed."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-665"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:exchange_server:5.0:-:*:*:*:*:*:*","matchCriteriaId":"D823C88E-8560-469B-8655-4755E0484F14"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:exchange_server:5.5:-:*:*:*:*:*:*","matchCriteriaId":"B4F9C143-4734-4E5D-9281-F51513C5CAAF"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0993","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0993","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1003","sourceIdentifier":"cve@mitre.org","published":"1999-12-13T05:00:00.000","lastModified":"2026-06-16T21:49:30.130","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"War FTP Daemon 1.70 allows remote attackers to cause a denial of service by flooding it with connections."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:jgaa:warftpd:1.70:*:*:*:*:*:*:*","matchCriteriaId":"979D5A22-E5CD-4195-8FC3-BCEF829549B1"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-1003","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-1003","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1007","sourceIdentifier":"cve@mitre.org","published":"1999-12-13T05:00:00.000","lastModified":"2026-06-16T21:49:30.627","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in VDO Live Player allows remote attackers to execute commands on the VDO client via a malformed .vdo file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:C/I:C/A:C","baseScore":7.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":4.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:vdonet:vdolive_player:3.0.2:*:*:*:*:*:*:*","matchCriteriaId":"7E856AE4-110C-4002-8D8F-34337B99A4FC"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94512259331599&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/872","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94512259331599&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/872","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1010","sourceIdentifier":"cve@mitre.org","published":"1999-12-14T05:00:00.000","lastModified":"2026-06-16T21:49:30.990","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"An SSH 1.2.27 server allows a client to use the \"none\" cipher, even if it is not allowed by the server policy."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:openbsd:openssh:1.2.27:*:*:*:*:*:*:*","matchCriteriaId":"114134F3-BDFD-465D-8317-82F9D6EFA5A7"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94519142415338&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94519142415338&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0068","sourceIdentifier":"cve@mitre.org","published":"1999-12-14T05:00:00.000","lastModified":"2026-06-16T21:50:56.083","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"daynad program in Intel InBusiness E-mail Station does not require authentication, which allows remote attackers to modify its configuration, delete files, or read mail."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:intel:inbusiness_email_station:*:*:*:*:*:*:*:*","versionEndIncluding":"1.04","matchCriteriaId":"C7E17127-358C-45D7-89B3-7A41401BEA07"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94704437920965&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94704437920965&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0361","sourceIdentifier":"cve@mitre.org","published":"1999-12-14T05:00:00.000","lastModified":"2026-06-16T21:51:33.420","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The PPP wvdial.lxdialog script in wvdial 1.4 and earlier creates a .config file with world readable permissions, which allows a local attacker in the dialout group to access login and password information."},{"lang":"es","value":"El script para PPP wvdial.lxdialog en wvdial 1.4 crea un fichero .config legible por todos los usuarios, que permite a un atacante local del grupo de marcado externto acceder a información de usuarios y contraseñas."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:*:*:*:*:*:*:*:*","matchCriteriaId":"67527281-81FA-4068-9E0A-7B19FB6A208A"}]}]}],"references":[{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_35.html","source":"cve@mitre.org"},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_35.html","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0934","sourceIdentifier":"cve@mitre.org","published":"1999-12-15T05:00:00.000","lastModified":"2026-06-16T21:49:21.560","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"classifieds.cgi allows remote attackers to read arbitrary files via shell metacharacters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"references":[{"url":"http://www.securityfocus.com/bid/2020","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3102","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2020","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3102","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0935","sourceIdentifier":"cve@mitre.org","published":"1999-12-15T05:00:00.000","lastModified":"2026-06-16T21:49:21.687","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"classifieds.cgi allows remote attackers to execute arbitrary commands by specifying them in a hidden variable in a CGI form."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0935","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0935","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0996","sourceIdentifier":"cve@mitre.org","published":"1999-12-15T05:00:00.000","lastModified":"2026-06-16T21:49:29.210","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Infoseek Ultraseek search engine allows remote attackers to execute commands via a long GET request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:infoseek:ultraseek_server:3.1:*:*:*:*:*:*:*","matchCriteriaId":"3DD7E397-BD6B-419F-8835-63122B2D32F6"}]}]}],"references":[{"url":"http://www.eeye.com/html/Research/Advisories/AD19991215.html","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/6490","source":"cve@mitre.org"},{"url":"http://www.eeye.com/html/Research/Advisories/AD19991215.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/6490","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0994","sourceIdentifier":"cve@mitre.org","published":"1999-12-16T05:00:00.000","lastModified":"2026-06-16T21:49:28.960","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Windows NT with SYSKEY reuses the keystream that is used for encrypting SAM password hashes, allowing an attacker to crack passwords."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-255"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:server:*:*:*:*:*","matchCriteriaId":"7C5FCE82-1E2F-49B9-B504-8C03F2BCF296"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:terminal_server:*:*:*:*:*","matchCriteriaId":"6E7E6AD3-5418-4FEA-84B5-833059CA880D"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp1:enterprise:*:*:*:*:*","matchCriteriaId":"BBD9C514-5AF7-4849-A535-F0F3C9339051"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ248183","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/873","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-056","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ248183","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/873","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-056","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0995","sourceIdentifier":"cve@mitre.org","published":"1999-12-16T05:00:00.000","lastModified":"2026-06-16T21:49:29.080","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Windows NT Local Security Authority (LSA) allows remote attackers to cause a denial of service via malformed arguments to the LsaLookupSids function which looks up the SID, aka \"Malformed Security Identifier Request.\""}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:C","baseScore":7.8,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-20"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:server:*:*:*:*:*","matchCriteriaId":"7C5FCE82-1E2F-49B9-B504-8C03F2BCF296"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:terminal_server:*:*:*:*:*","matchCriteriaId":"6E7E6AD3-5418-4FEA-84B5-833059CA880D"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp1:enterprise:*:*:*:*:*","matchCriteriaId":"BBD9C514-5AF7-4849-A535-F0F3C9339051"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ248185","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/875","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-057","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ248185","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/875","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-057","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0998","sourceIdentifier":"cve@mitre.org","published":"1999-12-16T05:00:00.000","lastModified":"2026-06-16T21:49:29.483","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Cisco Cache Engine allows an attacker to replace content in the cache."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:cache_engine:2:*:*:*:*:*:*:*","matchCriteriaId":"B7D41695-13E0-45AD-A83F-5414BF1498CF"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0998","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0998","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1000","sourceIdentifier":"cve@mitre.org","published":"1999-12-16T05:00:00.000","lastModified":"2026-06-16T21:49:29.750","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The web administration interface for Cisco Cache Engine allows remote attackers to view performance statistics."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:cache_engine:2:*:*:*:*:*:*:*","matchCriteriaId":"B7D41695-13E0-45AD-A83F-5414BF1498CF"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-1000","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-1000","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1001","sourceIdentifier":"cve@mitre.org","published":"1999-12-16T05:00:00.000","lastModified":"2026-06-16T21:49:29.860","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Cisco Cache Engine allows a remote attacker to gain access via a null username and password."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:N/I:P/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:cache_engine:1.0:*:*:*:*:*:*:*","matchCriteriaId":"FC01CC57-A2C6-4E39-9CCD-E5908C08F65E"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-1001","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-1001","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1004","sourceIdentifier":"cve@mitre.org","published":"1999-12-16T05:00:00.000","lastModified":"2026-06-16T21:49:30.250","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the POP server POProxy for the Norton Anti-Virus protection NAV2000 program via a large USER command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:symantec:norton_antivirus:2000:*:*:*:*:*:*:*","matchCriteriaId":"A40E47AA-884D-40B4-8AD6-2532F2D9CB3E"}]}]}],"references":[{"url":"http://service1.symantec.com/SUPPORT/nav.nsf/df0a595864594c86852567ac0063608c/6206f660a1f2516a882568660082c930?OpenDocument&Highlight=0%2Cpoproxy","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/6267","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/38970","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/39194","source":"cve@mitre.org"},{"url":"http://service1.symantec.com/SUPPORT/nav.nsf/df0a595864594c86852567ac0063608c/6206f660a1f2516a882568660082c930?OpenDocument&Highlight=0%2Cpoproxy","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/6267","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/38970","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/39194","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1005","sourceIdentifier":"cve@mitre.org","published":"1999-12-19T05:00:00.000","lastModified":"2026-06-16T21:49:30.380","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Groupwise web server GWWEB.EXE allows remote attackers to read arbitrary files with .htm extensions via a .. (dot dot) attack using the HELP parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:enterprise_server:3.0.7a:*:*:*:*:*:*:*","matchCriteriaId":"4F386C07-2C07-4C68-A8F6-D2B590A99133"},{"vulnerable":true,"criteria":"cpe:2.3:a:novell:groupwise:5.2:*:*:*:*:*:*:*","matchCriteriaId":"22426725-2204-4750-87F6-A57BA727F213"},{"vulnerable":true,"criteria":"cpe:2.3:a:novell:groupwise:5.5:*:*:*:*:*:*:*","matchCriteriaId":"A61E70C4-FE03-42AA-9F9B-C8DEB3E12F34"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94571433731824&w=2","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/3413","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/879","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94571433731824&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/3413","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/879","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1006","sourceIdentifier":"cve@mitre.org","published":"1999-12-19T05:00:00.000","lastModified":"2026-06-16T21:49:30.503","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Groupwise web server GWWEB.EXE allows remote attackers to determine the real path of the web server via the HELP parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:novell:groupwise:5.2:*:*:*:*:*:*:*","matchCriteriaId":"22426725-2204-4750-87F6-A57BA727F213"},{"vulnerable":true,"criteria":"cpe:2.3:a:novell:groupwise:5.5:*:*:*:*:*:*:*","matchCriteriaId":"A61E70C4-FE03-42AA-9F9B-C8DEB3E12F34"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94571433731824&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94571433731824&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0997","sourceIdentifier":"cve@mitre.org","published":"1999-12-20T05:00:00.000","lastModified":"2026-06-16T21:49:29.343","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"wu-ftp with FTP conversion enabled allows an attacker to execute commands via a malformed file name that is interpreted as an argument to the program that does the conversion, e.g. tar or uncompress."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:millenux_gmbh:anonftp:2.8.1:*:*:*:*:*:*:*","matchCriteriaId":"54BD613B-52C9-4F57-B1B3-C7E38F829F91"},{"vulnerable":true,"criteria":"cpe:2.3:a:university_of_washington:wu-ftpd:2.4.2:*:*:*:*:*:*:*","matchCriteriaId":"82A23988-1494-4BFD-908A-78FE2BC7C33B"},{"vulnerable":true,"criteria":"cpe:2.3:a:university_of_washington:wu-ftpd:2.5.0:*:*:*:*:*:*:*","matchCriteriaId":"54D2322D-BBA4-4C36-81EC-E37FE8C87689"},{"vulnerable":true,"criteria":"cpe:2.3:a:university_of_washington:wu-ftpd:2.6.0:*:*:*:*:*:*:*","matchCriteriaId":"688CB1B7-D36C-4DA2-A261-07B23FCE1230"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:*:*:*:*:*:*","matchCriteriaId":"A8EED385-8C39-4A40-A507-2EFE7652FB35"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"2DFA94D5-0139-490C-8257-0751FE9FBAE4"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"2EC4D3AB-38FA-4D44-AF5C-2DCD15994E76"}]}]}],"references":[{"url":"http://www.debian.org/security/2003/dsa-377","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/2003/dsa-377","source":"af854a3a-2127-422b-91ae-364da2661108"}],"vendorComments":[{"organization":"Red Hat","comment":"Red Hat does not consider CVE-1999-0997 to be a security vulnerability.  The wu-ftpd process chroots itself into the target ftp directory and will only run external commands as the user logged into the ftp server.  Because the process chroots itself, an attacker needs a valid login with write access to the ftp server, and even then they could only potentially execute commands as themselves.","lastModified":"2006-09-27T00:00:00"}]}},{"cve":{"id":"CVE-2000-0020","sourceIdentifier":"cve@mitre.org","published":"1999-12-20T05:00:00.000","lastModified":"2026-06-16T21:50:50.247","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"DNS PRO allows remote attackers to conduct a denial of service via a large number of connections."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:man_and_mice:dns_pro:5.7:*:*:*:*:*:*:*","matchCriteriaId":"793A2A29-826E-4AF4-A823-F0C618012EBB"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0020","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0020","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1497","sourceIdentifier":"cve@mitre.org","published":"1999-12-21T05:00:00.000","lastModified":"2026-06-16T21:50:34.077","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Ipswitch IMail 5.0 and 6.0 uses weak encryption to store passwords in registry keys, which allows local attackers to read passwords for e-mail accounts."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:imail:5.0:*:*:*:*:*:*:*","matchCriteriaId":"EFEFE5A5-6589-4316-9C9F-2F8109696158"},{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:imail:5.0.5:*:*:*:*:*:*:*","matchCriteriaId":"DB3992E3-D0C8-4A48-B4E1-D31B0D79CEE0"},{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:imail:5.0.6:*:*:*:*:*:*:*","matchCriteriaId":"65248233-61A3-4085-8808-6FC2FD87EAF6"},{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:imail:5.0.7:*:*:*:*:*:*:*","matchCriteriaId":"B37214DE-41E8-4DD4-AFBF-E608B88D6EAD"},{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:imail:5.0.8:*:*:*:*:*:*:*","matchCriteriaId":"6E11FF5E-9B3D-4818-B091-1286ECF47937"},{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:imail:6.0:*:*:*:*:*:*:*","matchCriteriaId":"9EADF489-0420-4C47-9F73-78114C2042F3"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/39329","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/880","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/39329","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/880","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0017","sourceIdentifier":"cve@mitre.org","published":"1999-12-21T05:00:00.000","lastModified":"2026-06-16T21:50:49.870","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Linux linuxconf package allows remote attackers to gain root privileges via a long parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:*:*:*:*:*:*:*:*","matchCriteriaId":"B133DAC8-2B0D-4F83-9025-AD071740187A"}]}]}],"references":[{"url":"https://marc.info/?l=bugtraq&m=94580196627059&w=2","source":"cve@mitre.org"},{"url":"https://marc.info/?l=bugtraq&m=94580196627059&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0022","sourceIdentifier":"cve@mitre.org","published":"1999-12-21T05:00:00.000","lastModified":"2026-06-16T21:50:50.480","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Lotus Domino HTTP server does not properly disable anonymous access for the cgi-bin directory."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:lotus:domino_server:4.6:*:*:*:*:*:*:*","matchCriteriaId":"D3174854-2CC6-42C5-BC53-F64DE247AF77"},{"vulnerable":true,"criteria":"cpe:2.3:a:lotus:domino_server:4.6.x:*:*:*:*:*:*:*","matchCriteriaId":"E41E19DD-7BA0-4F03-881D-F7332FFB8E69"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/881","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/881","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0023","sourceIdentifier":"cve@mitre.org","published":"1999-12-21T05:00:00.000","lastModified":"2026-06-16T21:50:50.597","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Lotus Domino HTTP server allows remote attackers to cause a denial of service via a long URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:lotus:domino_server:4.6:*:*:*:*:*:*:*","matchCriteriaId":"D3174854-2CC6-42C5-BC53-F64DE247AF77"},{"vulnerable":true,"criteria":"cpe:2.3:a:lotus:domino_server:4.6.x:*:*:*:*:*:*:*","matchCriteriaId":"E41E19DD-7BA0-4F03-881D-F7332FFB8E69"}]}]}],"references":[{"url":"http://www.osvdb.org/51","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/881","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/51","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/881","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0024","sourceIdentifier":"cve@mitre.org","published":"1999-12-21T05:00:00.000","lastModified":"2026-06-16T21:50:50.710","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IIS does not properly canonicalize URLs, potentially allowing remote attackers to bypass access restrictions in third-party software via escape characters, aka the \"Escape Character Parsing\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:N","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:site_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"4A503018-356B-46D9-965F-60750B5B7484"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:site_server_commerce:3.0:*:*:*:*:*:*:*","matchCriteriaId":"DD78B678-82A4-4485-BC4A-809A5FB105E9"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ246401","source":"cve@mitre.org"},{"url":"http://www.acrossecurity.com/aspr/ASPR-1999-11-10-1-PUB.txt","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-061","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ246401","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.acrossecurity.com/aspr/ASPR-1999-11-10-1-PUB.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-061","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0025","sourceIdentifier":"cve@mitre.org","published":"1999-12-21T05:00:00.000","lastModified":"2026-06-16T21:50:50.833","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IIS 4.0 and Site Server 3.0 allow remote attackers to read source code for ASP files if the file is in a virtual directory whose name includes extensions such as .com, .exe, .sh, .cgi, or .dll, aka the \"Virtual Directory Naming\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:site_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"4A503018-356B-46D9-965F-60750B5B7484"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:site_server_commerce:3.0:*:*:*:*:*:*:*","matchCriteriaId":"DD78B678-82A4-4485-BC4A-809A5FB105E9"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ238606","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/8098","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-058","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ238606","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/8098","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-058","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0026","sourceIdentifier":"cve@mitre.org","published":"1999-12-21T05:00:00.000","lastModified":"2026-06-16T21:50:50.967","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in UnixWare i2odialogd daemon allows remote attackers to gain root access via a long username/password authorization string."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:windowmaker:wmmon:1.0b2:*:*:*:*:*:*:*","matchCriteriaId":"12E1D19A-7891-4F5A-BD17-5C2D8978933A"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.1:*:*:*:*:*:*:*","matchCriteriaId":"B200C05F-0E89-4172-B500-47C2573D4461"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94606167110764&w=2","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/6310","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/876","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94606167110764&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/6310","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/876","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1066","sourceIdentifier":"cve@mitre.org","published":"1999-12-22T05:00:00.000","lastModified":"2026-06-16T21:49:38.163","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Quake 1 server responds to an initial UDP game connection request with a large amount of traffic, which allows remote attackers to use the server as an amplifier in a \"Smurf\" style attack on another host, by spoofing the connection request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sgi:quake_1_server:*:*:*:*:*:*:*:*","matchCriteriaId":"88349841-7A06-4200-8ADA-EB5965C017AB"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94589559631535&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94589559631535&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1109","sourceIdentifier":"cve@mitre.org","published":"1999-12-22T05:00:00.000","lastModified":"2026-06-16T21:49:44.347","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Sendmail before 8.10.0 allows remote attackers to cause a denial of service by sending a series of ETRN commands then disconnecting from the server, while Sendmail continues to process the commands after the connection has been terminated."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sendmail:sendmail:*:*:*:*:*:*:*:*","versionEndIncluding":"8.10.0","matchCriteriaId":"08ADDC65-35BF-49BE-98C9-3BEA81183E81"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94632241202626&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94780566911948&w=2","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/7760.php","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/904","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94632241202626&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=94780566911948&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.iss.net/security_center/static/7760.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/904","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0002","sourceIdentifier":"cve@mitre.org","published":"1999-12-22T05:00:00.000","lastModified":"2026-06-16T21:50:47.997","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in ZBServer Pro 1.50 allows remote attackers to execute commands via a long GET request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:zbsoft:zbserver:1.5:*:*:*:*:*:*:*","matchCriteriaId":"0A92DFC9-A26E-418B-B1BC-565B27C81795"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94598388530358&w=2","source":"cve@mitre.org"},{"url":"http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind9912&L=NTBUGTRAQ&P=R3556","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/889","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=36B0596E.8D111D66%40teleline.es","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94598388530358&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind9912&L=NTBUGTRAQ&P=R3556","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/889","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=36B0596E.8D111D66%40teleline.es","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0018","sourceIdentifier":"cve@mitre.org","published":"1999-12-22T05:00:00.000","lastModified":"2026-06-16T21:50:50.007","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"wmmon in FreeBSD allows local users to gain privileges via the .wmmonrc configuration file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:windowmaker:wmmon:1.0b2:*:*:*:*:*:*:*","matchCriteriaId":"12E1D19A-7891-4F5A-BD17-5C2D8978933A"}]}]}],"references":[{"url":"http://www.osvdb.org/1169","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/885","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1169","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/885","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0030","sourceIdentifier":"cve@mitre.org","published":"1999-12-22T05:00:00.000","lastModified":"2026-06-16T21:50:51.450","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Solaris dmispd dmi_cmd allows local users to fill up restricted disk space by adding files to the /var/dmi/db database."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:7.0:*:x86:*:*:*:*:*","matchCriteriaId":"8F1F312C-413F-4DB4-ABF4-48E33F6FECF2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/878","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/878","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0032","sourceIdentifier":"cve@mitre.org","published":"1999-12-22T05:00:00.000","lastModified":"2026-06-16T21:50:51.683","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Solaris dmi_cmd allows local users to crash the dmispd daemon by adding a malformed file to the /var/dmi/db database."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:7.0:*:x86:*:*:*:*:*","matchCriteriaId":"8F1F312C-413F-4DB4-ABF4-48E33F6FECF2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"http://www.osvdb.org/7582","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/878","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/7582","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/878","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0034","sourceIdentifier":"cve@mitre.org","published":"1999-12-22T05:00:00.000","lastModified":"2026-06-16T21:50:51.913","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Netscape 4.7 records user passwords in the preferences.js file during an IMAP or POP session, even if the user has not enabled \"remember passwords.\""}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.7:*:*:*:*:*:*:*","matchCriteriaId":"38FD74F5-12ED-4049-B06F-0F22A0254C0F"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0034","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0034","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0036","sourceIdentifier":"cve@mitre.org","published":"1999-12-22T05:00:00.000","lastModified":"2026-06-16T21:50:52.150","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Outlook Express 5 for Macintosh downloads attachments to HTML mail without prompting the user, aka the \"HTML Mail Attachment\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:4.5:*:macintosh:*:*:*:*:*","matchCriteriaId":"55EAB232-C39A-4737-85F3-3D727C727F2F"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook_express:5.0:*:macos:*:*:*:*:*","matchCriteriaId":"0C607D22-B01D-4404-9657-0D322CE59B0D"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ249082","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-060","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ249082","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-060","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0119","sourceIdentifier":"cve@mitre.org","published":"1999-12-22T05:00:00.000","lastModified":"2026-06-16T21:51:02.397","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default configurations for McAfee Virus Scan and Norton Anti-Virus virus checkers do not check files in the RECYCLED folder that is used by the Windows Recycle Bin utility, which allows attackers to store malicious code without detection."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mcafee:virusscan:*:*:*:*:*:*:*:*","matchCriteriaId":"3B6140F3-9135-4490-A2A2-F8D0A1FEF8C2"},{"vulnerable":true,"criteria":"cpe:2.3:a:symantec:norton_antivirus:*:*:*:*:*:*:*:*","matchCriteriaId":"7A58C09D-72A0-48E1-ABF0-49EBECA5D02B"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94936267131123&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94936267131123&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0001","sourceIdentifier":"cve@mitre.org","published":"1999-12-23T05:00:00.000","lastModified":"2026-06-16T21:50:47.890","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"RealMedia server allows remote attackers to cause a denial of service via a long ramgen request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:realnetworks:realserver:5.0:*:*:*:*:*:*:*","matchCriteriaId":"BE671A54-2E76-467E-8945-10982B79F4CE"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/888","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/888","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0028","sourceIdentifier":"cve@mitre.org","published":"1999-12-23T05:00:00.000","lastModified":"2026-06-16T21:50:51.210","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internet Explorer 5.0 and 5.01 allows remote attackers to bypass the cross frame security policy and read files via the external.NavigateAndFind function."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:N/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:4.0:a_mac_os:*:*:*:*:*:*","matchCriteriaId":"35AA9DC0-0694-48FC-8652-831DFAB29226"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:3.0:*:*:*:*:*:*:*","matchCriteriaId":"1BBF9241-A175-438C-A793-3D245BE2AE35"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:3.0.2:*:*:*:*:*:*:*","matchCriteriaId":"943D5C5C-FC49-4EDE-AE75-A79CFF42208E"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:3.1:*:*:*:*:*:*:*","matchCriteriaId":"59EB6841-0427-479B-8771-06DF62EE3C87"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:3.2:*:*:*:*:*:*:*","matchCriteriaId":"8873A08F-D4C7-46FC-8FE5-972644F85ADA"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0:*:*:*:*:*:*:*","matchCriteriaId":"A5B815D9-BC21-4A17-AF00-B8AD181027D7"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0.1:sp2:*:*:*:*:*:*","matchCriteriaId":"C375A9AA-505B-444C-A45F-2BAAD0B2CD0D"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.1:*:*:*:*:*:*:*","matchCriteriaId":"44FF4E47-AD75-42C7-BB84-42BBA46A58B2"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.5:*:*:*:*:*:*:*","matchCriteriaId":"1B26CE22-E730-4247-853E-5E640DB3ECB5"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.1:*:*:*:*:*:*:*","matchCriteriaId":"B1CFF390-FF33-45CA-BC96-C6766491C616"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0028","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0028","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0038","sourceIdentifier":"cve@mitre.org","published":"1999-12-23T05:00:00.000","lastModified":"2026-06-16T21:50:52.390","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"glFtpD includes a default glftpd user account with a default password and a UID of 0."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:glftpd:glftpd:*:*:*:*:*:*:*:*","versionEndIncluding":"1.17.2","matchCriteriaId":"A3E9A6FF-24D4-4900-8112-B18679318534"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0038","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0038","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0040","sourceIdentifier":"cve@mitre.org","published":"1999-12-23T05:00:00.000","lastModified":"2026-06-16T21:50:52.640","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"glFtpD allows local users to gain privileges via metacharacters in the SITE ZIPCHK command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:glftpd:glftpd:1.17.2:*:*:*:*:*:*:*","matchCriteriaId":"06212998-AE09-4DA2-9F9C-EBB60BBD7EBB"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0040","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0040","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0892","sourceIdentifier":"cve@mitre.org","published":"1999-12-24T05:00:00.000","lastModified":"2026-06-16T21:49:16.440","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Netscape Communicator before 4.7 via a dynamic font whose length field is less than the size of the font."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.5:*:*:*:*:*:*:*","matchCriteriaId":"4E9A5461-B0F2-49DB-A69C-3D2D27709647"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0892","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0892","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0455","sourceIdentifier":"cve@mitre.org","published":"1999-12-25T05:00:00.000","lastModified":"2026-06-16T21:48:26.050","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Expression Evaluator sample application in ColdFusion allows remote attackers to read or delete files on the server via exprcalc.cfm, which does not restrict access to the server properly."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:allaire:coldfusion_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"C334CA02-D4EC-40D0-B75F-AFBC0F3903E8"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/115","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/115","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-0477","sourceIdentifier":"cve@mitre.org","published":"1999-12-25T05:00:00.000","lastModified":"2026-06-16T21:48:28.877","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Expression Evaluator in the ColdFusion Application Server allows a remote attacker to upload files to the server via openfile.cfm, which does not restrict access to the server properly."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:allaire:coldfusion_server:2.0:*:*:*:*:*:*:*","matchCriteriaId":"EE00F45E-C410-4268-B0EC-18B4043E6631"},{"vulnerable":true,"criteria":"cpe:2.3:a:allaire:coldfusion_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"7BB5B124-A5C2-4B24-8091-FF9863D17BF2"},{"vulnerable":true,"criteria":"cpe:2.3:a:allaire:coldfusion_server:3.01:*:*:*:*:*:*:*","matchCriteriaId":"A32F27D3-0ECD-49BB-B32F-2F531DE6836D"},{"vulnerable":true,"criteria":"cpe:2.3:a:allaire:coldfusion_server:3.11:*:*:*:*:*:*:*","matchCriteriaId":"9646F809-1016-49AD-B60A-481CDB7D5ECF"},{"vulnerable":true,"criteria":"cpe:2.3:a:allaire:coldfusion_server:3.12:*:*:*:*:*:*:*","matchCriteriaId":"926AAAD1-68C5-4816-B387-8B1BB4E9E1C0"},{"vulnerable":true,"criteria":"cpe:2.3:a:allaire:coldfusion_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"C334CA02-D4EC-40D0-B75F-AFBC0F3903E8"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/115","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/115","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0006","sourceIdentifier":"cve@mitre.org","published":"1999-12-25T05:00:00.000","lastModified":"2026-06-16T21:50:48.500","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"strace allows local users to read arbitrary files via memory mapped file names."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:P/I:P/A:N","baseScore":2.6,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":1.9,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:paul_kranenburg:strace:*:*:*:*:*:*:*:*","matchCriteriaId":"52BF9814-611A-45A0-9773-3D2DCC3BC93A"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.3.20:*:*:*:*:*:*:*","matchCriteriaId":"D6ECC079-EBD4-4E01-9CAC-A4FC84F79656"}]}]}],"references":[{"url":"http://online.securityfocus.com/archive/1/39831","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4554","source":"cve@mitre.org"},{"url":"http://online.securityfocus.com/archive/1/39831","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4554","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0008","sourceIdentifier":"cve@mitre.org","published":"1999-12-26T05:00:00.000","lastModified":"2026-06-16T21:50:48.760","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"FTPPro allows local users to read sensitive information, which is stored in plain text."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:1st_choice_software:ftppro:7.5:*:*:*:*:*:*:*","matchCriteriaId":"18FCD28B-908C-4F39-8A74-E7FCD1A4EC61"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0008","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0008","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0010","sourceIdentifier":"cve@mitre.org","published":"1999-12-26T05:00:00.000","lastModified":"2026-06-16T21:50:49.007","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WebWho+ whois.cgi program allows remote attackers to execute commands via shell metacharacters in the TLD parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:tony_greenwood:webwho\\+:1.1:*:*:*:*:*:*:*","matchCriteriaId":"41F15172-51F6-46B3-9B95-3E52A8DFD1A6"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0010","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0010","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0012","sourceIdentifier":"cve@mitre.org","published":"1999-12-27T05:00:00.000","lastModified":"2026-06-16T21:50:49.253","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in w3-msql CGI program in miniSQL package allows remote attackers to execute commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:hughes:msql:2.0.11:*:*:*:*:*:*:*","matchCriteriaId":"4F2D54A4-BFAD-4C4E-B356-58FB6B850CBD"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/898","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/898","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0027","sourceIdentifier":"cve@mitre.org","published":"1999-12-27T05:00:00.000","lastModified":"2026-06-16T21:50:51.093","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IBM Network Station Manager NetStation allows local users to gain privileges via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:C/I:C/A:C","baseScore":6.2,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"MEDIUM","exploitabilityScore":1.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:network_station_manager:2.0r1:*:*:*:*:*:*:*","matchCriteriaId":"3857682E-352E-45CB-80F4-7C92AD32AA21"}]}]}],"references":[{"url":"http://www.iss.net/security_center/static/5381.php","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/39962","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/900","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/5381.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/39962","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/900","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0029","sourceIdentifier":"cve@mitre.org","published":"1999-12-27T05:00:00.000","lastModified":"2026-06-16T21:50:51.333","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"UnixWare pis and mkpis commands allow local users to gain privileges via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.1:*:*:*:*:*:*:*","matchCriteriaId":"B200C05F-0E89-4172-B500-47C2573D4461"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94780294009285&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/901","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94780294009285&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/901","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0033","sourceIdentifier":"cve@mitre.org","published":"1999-12-27T05:00:00.000","lastModified":"2026-06-16T21:50:51.807","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"InterScan VirusWall SMTP scanner does not properly scan messages with malformed attachments."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:trend_micro:interscan_viruswall:3.0.1:*:*:*:*:*:*:*","matchCriteriaId":"DEC14336-CD53-44F7-B271-3C98C016295B"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/899","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/899","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0060","sourceIdentifier":"cve@mitre.org","published":"1999-12-27T05:00:00.000","lastModified":"2026-06-16T21:50:55.140","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in aVirt Rover POP3 server 1.1 allows remote attackers to cause a denial of service via a long user name."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:avirt:rover:1.1:*:*:*:*:*:*:*","matchCriteriaId":"0FD726D2-67D8-4511-8C32-86E28791E905"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94633851427858&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=94647711311057&w=2","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/3765.php","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/894","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94633851427858&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=94647711311057&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.iss.net/security_center/static/3765.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/894","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1573","sourceIdentifier":"cve@mitre.org","published":"1999-12-28T05:00:00.000","lastModified":"2026-06-16T21:50:44.957","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Multiple unknown vulnerabilities in the \"r-cmnds\" (1) remshd, (2) rexecd, (3) rlogind, (4) rlogin, (5) remsh, (6) rcp, (7) rexec, and (8) rdist for HP-UX 10.00 through 11.00 allow attackers to gain privileges or access files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.00:*:*:*:*:*:*:*","matchCriteriaId":"3187435B-C052-4DBA-AA79-F8AC0287EE14"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.01:*:*:*:*:*:*:*","matchCriteriaId":"53BBFE9A-6846-4625-91AC-47AA0BC0933A"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.10:*:*:*:*:*:*:*","matchCriteriaId":"38BFA923-7D80-4F01-AF9F-6F13209948AC"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.20:*:*:*:*:*:*:*","matchCriteriaId":"EDE44C49-172C-4899-8CC8-29AA99A7CD2F"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.30:*:*:*:*:*:*:*","matchCriteriaId":"09070FE3-EF6B-41F6-89D8-3C9E31F3A6BF"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:11.00:*:*:*:*:*:*:*","matchCriteriaId":"771931F7-9180-4EBD-8627-E1CF17D24647"}]}]}],"references":[{"url":"http://www.auscert.org.au/render.html?it=490","source":"cve@mitre.org","tags":["Patch"]},{"url":"http://www.ciac.org/ciac/bulletins/j-022.shtml","source":"cve@mitre.org","tags":["Patch"]},{"url":"http://www.kb.cert.org/vuls/id/13217","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://www.securityfocus.com/advisories/1471","source":"cve@mitre.org","tags":["Patch"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7860","source":"cve@mitre.org"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5550","source":"cve@mitre.org"},{"url":"http://www.auscert.org.au/render.html?it=490","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"http://www.ciac.org/ciac/bulletins/j-022.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"http://www.kb.cert.org/vuls/id/13217","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"http://www.securityfocus.com/advisories/1471","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7860","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5550","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0014","sourceIdentifier":"cve@mitre.org","published":"1999-12-28T05:00:00.000","lastModified":"2026-06-16T21:50:49.510","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Denial of service in Savant web server via a null character in the requested URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:michael_lamont:savant_webserver:2.0:*:*:*:*:*:*:*","matchCriteriaId":"B40F344E-4968-4320-9423-5DC9204839A1"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/897","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/897","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0035","sourceIdentifier":"cve@mitre.org","published":"1999-12-28T05:00:00.000","lastModified":"2026-06-16T21:50:52.027","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"resend command in Majordomo allows local users to gain privileges via shell metacharacters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:great_circle_associates:majordomo:*:*:*:*:*:*:*:*","versionEndIncluding":"1.94.4","matchCriteriaId":"41A554BD-EF4B-41AF-AA3B-7C6276C6150D"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94780294009285&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/902","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94780294009285&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/902","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0037","sourceIdentifier":"cve@mitre.org","published":"1999-12-28T05:00:00.000","lastModified":"2026-06-16T21:50:52.263","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Majordomo wrapper allows local users to gain privileges by specifying an alternate configuration file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:great_circle_associates:majordomo:1.94.4:*:*:*:*:*:*:*","matchCriteriaId":"87D144BA-FE24-4894-BF02-03646750D298"},{"vulnerable":true,"criteria":"cpe:2.3:a:great_circle_associates:majordomo:1.94.5:*:*:*:*:*:*:*","matchCriteriaId":"FE7CCEAA-C667-4201-9986-90FD17EE3F90"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94780294009285&w=2","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-005.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/903","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94780294009285&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-005.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/903","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0041","sourceIdentifier":"cve@mitre.org","published":"1999-12-28T05:00:00.000","lastModified":"2026-06-16T21:50:52.757","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Macintosh systems generate large ICMP datagrams in response to malformed datagrams, allowing them to be used as amplifiers in a flood attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:apple:macos:9.0:*:*:*:*:*:*:*","matchCriteriaId":"5717CFDB-1070-408F-B769-9C9349316603"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/890","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/890","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0007","sourceIdentifier":"cve@mitre.org","published":"1999-12-29T05:00:00.000","lastModified":"2026-06-16T21:50:48.623","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Trend Micro PC-Cillin does not restrict access to its internal proxy port, allowing remote attackers to conduct a denial of service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:trend_micro:pc-cillin:6.0:*:*:*:*:*:*:*","matchCriteriaId":"ABBAA86F-8DE4-4BC8-B295-89CF981C28D0"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1740","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4491","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1740","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4491","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0009","sourceIdentifier":"cve@mitre.org","published":"1999-12-29T05:00:00.000","lastModified":"2026-06-16T21:50:48.877","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The bna_pass program in Optivity NETarchitect uses the PATH environmental variable for finding the \"rm\" program, which allows local users to execute arbitrary commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:nortel:optivity_net_architect:2.0:*:*:*:*:*:*:*","matchCriteriaId":"967C31EC-D5EE-46CF-A02E-F4E75B6D1F13"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/907","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/907","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0039","sourceIdentifier":"cve@mitre.org","published":"1999-12-29T05:00:00.000","lastModified":"2026-06-16T21:50:52.507","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"AltaVista search engine allows remote attackers to read files above the document root via a .. (dot dot) in the query.cgi CGI program."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:altavista:search_intranet:2.0b:*:*:*:*:*:*:*","matchCriteriaId":"6707B25F-EA7E-4E48-8D5F-E0FB2E22C386"},{"vulnerable":true,"criteria":"cpe:2.3:a:altavista:search_intranet:2.3a:*:*:*:*:*:*:*","matchCriteriaId":"A4E23292-1245-44C6-95DE-D025FD332B83"}]}]}],"references":[{"url":"http://www.osvdb.org/15","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/896","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/15","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/896","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0042","sourceIdentifier":"cve@mitre.org","published":"1999-12-29T05:00:00.000","lastModified":"2026-06-16T21:50:52.883","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in CSM mail server allows remote attackers to cause a denial of service or execute commands via a long HELO command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:csm:mail_server:1999-07b:*:*:*:*:*:*:*","matchCriteriaId":"762E296C-385B-4945-8B21-03C74FF9C179"},{"vulnerable":true,"criteria":"cpe:2.3:a:csm:mail_server:1999-07f:*:*:*:*:*:*:*","matchCriteriaId":"4D47465D-2356-4957-9353-A04EA64CD245"},{"vulnerable":true,"criteria":"cpe:2.3:a:csm:mail_server:1999-07g:*:*:*:*:*:*:*","matchCriteriaId":"93EC74A4-8032-4659-AE85-C15A323CC985"},{"vulnerable":true,"criteria":"cpe:2.3:a:csm:mail_server:1999-07h:*:*:*:*:*:*:*","matchCriteriaId":"D1E107C0-90A2-43C2-9598-4646AE3077FB"},{"vulnerable":true,"criteria":"cpe:2.3:a:csm:mail_server:1999-07i:*:*:*:*:*:*:*","matchCriteriaId":"8C854FD9-4CAE-4CB5-8F9E-BE5462953F1D"},{"vulnerable":true,"criteria":"cpe:2.3:a:csm:mail_server:1999-07m:*:*:*:*:*:*:*","matchCriteriaId":"A7724772-D4C2-4053-97D6-EA8520C08E21"},{"vulnerable":true,"criteria":"cpe:2.3:a:csm:mail_server:2000-01a:*:*:*:*:*:*:*","matchCriteriaId":"55CDCFC5-4815-4F25-85A4-A3072869D4B1"},{"vulnerable":true,"criteria":"cpe:2.3:a:csm:mail_server:2000.8.a:*:*:*:*:*:*:*","matchCriteriaId":"89BEFB57-EB66-41AD-B2D2-69EC3C6B74C7"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/895","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/895","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0100","sourceIdentifier":"cve@mitre.org","published":"1999-12-29T05:00:00.000","lastModified":"2026-06-16T21:51:00.050","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The SMS Remote Control program is installed with insecure permissions, which allows local users to gain privileges by modifying or replacing the program."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:systems_management_server:2.0:*:*:*:*:*:*:*","matchCriteriaId":"43E8A8EF-B54F-4413-9BC8-A6A479951313"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/ntbugtraq/current/0045.html","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-012","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/current/0045.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-012","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0001","sourceIdentifier":"cve@mitre.org","published":"1999-12-30T05:00:00.000","lastModified":"2026-06-16T21:47:13.977","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ip_input.c in BSD-derived TCP/IP implementations allows remote attackers to cause a denial of service (crash or hang) via crafted packets."},{"lang":"es","value":"ip_input.c en implementaciones de TCP/IP derivadas de BSD permiten a atacantes remotos causar una denegación de servicio (cuelgue o caída) mediante paquetes artesanales."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-20"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:bsdi:bsd_os:3.1:*:*:*:*:*:*:*","matchCriteriaId":"950CE88E-E396-4D32-AC9D-B76EB2B537C6"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:1.0:*:*:*:*:*:*:*","matchCriteriaId":"44EFD22E-02C9-4B80-8934-A9AC8DD858CF"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:1.1:*:*:*:*:*:*:*","matchCriteriaId":"B1B4D4A5-25EB-48FE-BDFD-A274CE802648"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:1.1.5.1:*:*:*:*:*:*:*","matchCriteriaId":"C496B665-70DA-4B98-A5D1-E2935C0CE840"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:1.2:*:*:*:*:*:*:*","matchCriteriaId":"F3A037F1-98AD-47CC-8D83-B42666E1B61E"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.0:*:*:*:*:*:*:*","matchCriteriaId":"F1F098C1-D09E-49B4-9B51-E84B6C4EA6CD"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.0.1:*:*:*:*:*:*:*","matchCriteriaId":"63236405-1F33-43DD-ACF7-B6D9656E0987"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.0.5:*:*:*:*:*:*:*","matchCriteriaId":"34797660-41F5-4358-B70F-2A40DE48F182"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.1.5:*:*:*:*:*:*:*","matchCriteriaId":"4054D69F-596F-4EB4-BE9A-E2478343F55A"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.1.6:*:*:*:*:*:*:*","matchCriteriaId":"CA26ABBE-9973-45FA-9E9B-82170B751219"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.1.6.1:*:*:*:*:*:*:*","matchCriteriaId":"7891202C-62AF-4590-9E5F-3514FDA2B38E"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.1.7:*:*:*:*:*:*:*","matchCriteriaId":"CF4F7002-A525-4A66-BE8B-E50ABBF144B2"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.1.7.1:*:*:*:*:*:*:*","matchCriteriaId":"BF8F9B2F-E898-4F87-A245-32A41748587B"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2:*:*:*:*:*:*:*","matchCriteriaId":"183667CA-6DF1-4BFB-AE32-9ABF55B7283A"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2.2:*:*:*:*:*:*:*","matchCriteriaId":"EBDDEC3F-52EB-4E1E-84C4-B472600059EC"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2.3:*:*:*:*:*:*:*","matchCriteriaId":"B58E02AE-38B4-466E-BF73-2F0B80AF7BA5"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2.4:*:*:*:*:*:*:*","matchCriteriaId":"3928D5CF-6FC0-434C-8A80-ABDBF346C2C9"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2.5:*:*:*:*:*:*:*","matchCriteriaId":"314BA420-4C74-4060-8ACE-D7A7C041CF2B"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2.6:*:*:*:*:*:*:*","matchCriteriaId":"2EAD7613-A5B3-4621-B981-290C7C6B8BA0"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2.8:*:*:*:*:*:*:*","matchCriteriaId":"D1CA3337-9BEE-49C5-9EDE-8CDBE5580537"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.0:*:*:*:*:*:*:*","matchCriteriaId":"EE38C50A-81FE-412E-9717-3672FAE6A6F4"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.3:*:*:*:*:*:*:*","matchCriteriaId":"1D2DA7F0-E3C0-447A-A2B0-ECC928389D84"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.4:*:*:*:*:*:*:*","matchCriteriaId":"FEBE290B-5EC6-4BBA-B645-294C150E417A"}]}]}],"references":[{"url":"http://www.openbsd.org/errata23.html#tcpfix","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/5707","source":"cve@mitre.org"},{"url":"http://www.openbsd.org/errata23.html#tcpfix","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/5707","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0003","sourceIdentifier":"cve@mitre.org","published":"1999-12-30T05:00:00.000","lastModified":"2026-06-16T21:50:48.120","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in UnixWare rtpm program allows local users to gain privileges via a long environmental variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:*:*:*:*:*:*:*:*","matchCriteriaId":"FAD1D156-6B19-4185-A42C-5FE2E7A5545C"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94908470928258&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94908470928258&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0043","sourceIdentifier":"cve@mitre.org","published":"1999-12-30T05:00:00.000","lastModified":"2026-06-16T21:50:53.007","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in CamShot WebCam HTTP server allows remote attackers to execute commands via a long GET request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:camshot:webcam_http_server:2.5:*:*:*:*:*:*:*","matchCriteriaId":"A16C36F1-2CB1-41E6-A12E-E95ACAA5F8AE"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/905","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/905","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0076","sourceIdentifier":"cve@mitre.org","published":"1999-12-30T05:00:00.000","lastModified":"2026-06-16T21:50:57.030","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"nviboot boot script in the Debian nvi package allows local users to delete files via malformed entries in vi.recover."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:berkeley:nvi:1.7x:*:*:*:*:*:*:*","matchCriteriaId":"B78598E7-08B7-4A4C-8324-ED57E2F12FF7"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.1:*:*:*:*:*:*:*","matchCriteriaId":"3C67BDA1-9451-4026-AC6D-E912C882A757"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94709988232618&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1439","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94709988232618&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1439","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0154","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:47:42.967","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IIS 2.0 and 3.0 allows remote attackers to read the source code for ASP pages by appending a . (dot) to the end of the URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"547AB6E2-4E9F-4783-8BB4-0AE297A38C9C"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_services:2.0:*:*:*:*:*:*:*","matchCriteriaId":"E701AB0D-E335-47DF-A0CA-607D5C6E9255"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0154","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0154","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0808","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:49:05.993","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Multiple buffer overflows in ISC DHCP Distribution server (dhcpd) 1.0 and 2.0 allow a remote attacker to cause a denial of service (crash) and possibly execute arbitrary commands via long options."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:isc:dhcp_client:1.0:*:*:*:*:*:*:*","matchCriteriaId":"140431BA-D68C-4688-AAB0-79D557ACFF86"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:dhcp_client:2.0:*:*:*:*:*:*:*","matchCriteriaId":"AEB862F1-3C18-42AA-9E7A-1BEF321618AE"}]}]}],"references":[{"url":"ftp://ftp.isc.org/isc/dhcp/dhcp-1.0-history/dhcp-1.0.0-1.0pl1.diff.gz","source":"cve@mitre.org","tags":["Patch"]},{"url":"http://ciac.llnl.gov/ciac/bulletins/i-053.shtml","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=90221101925960&w=2","source":"cve@mitre.org"},{"url":"ftp://ftp.isc.org/isc/dhcp/dhcp-1.0-history/dhcp-1.0.0-1.0pl1.diff.gz","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"http://ciac.llnl.gov/ciac/bulletins/i-053.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=90221101925960&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0815","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:49:06.917","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Memory leak in SNMP agent in Windows NT 4.0 before SP5 allows remote attackers to conduct a denial of service (memory exhaustion) via a large number of queries."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:*:*:server:*:*:*:*:*","versionEndIncluding":"4.0","matchCriteriaId":"CD8FDB19-E847-46B2-B938-8059145FDD82"}]}]}],"references":[{"url":"http://support.microsoft.com/support/kb/articles/q196/2/70.asp","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1974","source":"cve@mitre.org"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A952","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/support/kb/articles/q196/2/70.asp","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1974","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A952","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1035","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:49:34.207","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IIS 3.0 and 4.0 on x86 and Alpha allows remote attackers to cause a denial of service (hang) via a malformed GET request, aka the IIS \"GET\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"547AB6E2-4E9F-4783-8BB4-0AE297A38C9C"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"}]}]}],"references":[{"url":"http://support.microsoft.com/support/kb/articles/q192/2/96.asp","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1998/ms98-019","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1823","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/support/kb/articles/q192/2/96.asp","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1998/ms98-019","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1823","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1042","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:49:35.067","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Cisco Resource Manager (CRM) 1.0 and 1.1 creates world-readable log files and temporary files, which may expose sensitive information, to local users such as user IDs, passwords and SNMP community strings."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:P/I:N/A:N","baseScore":1.2,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":1.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:resource_manager:1.0:*:*:*:*:*:*:*","matchCriteriaId":"6CD172F3-4964-410A-A7E9-5659DE662734"},{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:resource_manager:1.1:*:*:*:*:*:*:*","matchCriteriaId":"8305C239-6496-4CF9-9515-FDE7478877E7"}]}]}],"references":[{"url":"http://www.cisco.com/warp/public/770/crmtmp-pub.shtml","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.cisco.com/warp/public/770/crmtmp-pub.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1043","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:49:35.187","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Exchange Server 5.5 and 5.0 does not properly handle (1) malformed NNTP data, or (2) malformed SMTP data, which allows remote attackers to cause a denial of service (application error)."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-noinfo"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:exchange_server:5.0:-:*:*:*:*:*:*","matchCriteriaId":"D823C88E-8560-469B-8655-4755E0484F14"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:exchange_server:5.5:-:*:*:*:*:*:*","matchCriteriaId":"B4F9C143-4734-4E5D-9281-F51513C5CAAF"}]}]}],"references":[{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1998/ms98-007","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1998/ms98-007","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1055","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:49:36.767","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Excel 97 does not warn the user before executing worksheet functions, which could allow attackers to execute arbitrary commands by using the CALL function to execute a malicious DLL, aka the Excel \"CALL Vulnerability.\""}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:excel:97:*:*:*:*:*:*:*","matchCriteriaId":"A78536AA-8694-4E0E-B7C6-9E5C3787D849"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/179","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1998/ms98-018","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1737","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/179","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1998/ms98-018","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1737","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1074","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:49:40.017","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Webmin before 0.5 does not restrict the number of invalid passwords that are entered for a valid username, which could allow remote attackers to gain privileges via brute force password cracking."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:webmin:webmin:0.1:*:*:*:*:*:*:*","matchCriteriaId":"30E3CF12-D0B7-4C7F-96C8-36A3FAFA8EDF"},{"vulnerable":true,"criteria":"cpe:2.3:a:webmin:webmin:0.2:*:*:*:*:*:*:*","matchCriteriaId":"C808C470-F0A1-4338-A988-3968EABE78E0"},{"vulnerable":true,"criteria":"cpe:2.3:a:webmin:webmin:0.3:*:*:*:*:*:*:*","matchCriteriaId":"C16685C0-94E9-4AE6-8221-1D32112808F6"},{"vulnerable":true,"criteria":"cpe:2.3:a:webmin:webmin:0.4:*:*:*:*:*:*:*","matchCriteriaId":"EDACA626-1687-4192-A2E8-C74823B715A5"},{"vulnerable":true,"criteria":"cpe:2.3:a:webmin:webmin:0.21:*:*:*:*:*:*:*","matchCriteriaId":"84B5A02C-96AB-46FD-A958-86AC0DFD1F2A"},{"vulnerable":true,"criteria":"cpe:2.3:a:webmin:webmin:0.22:*:*:*:*:*:*:*","matchCriteriaId":"BB1B8073-C512-4ACA-8E3F-92D46D63FBCF"},{"vulnerable":true,"criteria":"cpe:2.3:a:webmin:webmin:0.31:*:*:*:*:*:*:*","matchCriteriaId":"B368FAD0-39A7-4115-9327-1D32BECF2F7E"},{"vulnerable":true,"criteria":"cpe:2.3:a:webmin:webmin:0.41:*:*:*:*:*:*:*","matchCriteriaId":"2B3D7B7A-0426-4176-A759-E96024DC492D"},{"vulnerable":true,"criteria":"cpe:2.3:a:webmin:webmin:0.42:*:*:*:*:*:*:*","matchCriteriaId":"1E3EFDEE-A99B-4D0E-B6A7-E7C285A5DFBC"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/9138","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/98","source":"cve@mitre.org"},{"url":"http://www.webmin.com/webmin/changes.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/9138","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/98","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.webmin.com/webmin/changes.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1084","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:49:41.253","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The \"AEDebug\" registry key is installed with insecure permissions, which allows local users to modify the key to specify a Trojan Horse debugger which is automatically executed on a system crash."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:server:*:*:*:*:*","matchCriteriaId":"7C5FCE82-1E2F-49B9-B504-8C03F2BCF296"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:workstation:*:*:*:*:*","matchCriteriaId":"35346A7B-2CB5-446D-B0C3-1F21D71A746D"}]}]}],"references":[{"url":"http://marc.info/?l=ntbugtraq&m=90222453431604&w=2","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/support/kb/articles/q103/8/61.asp","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.ciac.org/ciac/bulletins/k-029.shtml","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1044","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-008","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=90222453431604&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://support.microsoft.com/support/kb/articles/q103/8/61.asp","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.ciac.org/ciac/bulletins/k-029.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1044","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-008","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1087","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:49:41.647","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internet Explorer 4 treats a 32-bit number (\"dotless IP address\") in the a URL as the hostname instead of an IP address, which causes IE to apply Local Intranet Zone settings to the resulting web page, allowing remote malicious web servers to conduct unauthorized activities by using URLs that contain the dotless IP address for their server."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0:*:*:*:*:*:*:*","matchCriteriaId":"A5B815D9-BC21-4A17-AF00-B8AD181027D7"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0.1:*:*:*:*:*:*:*","matchCriteriaId":"42502347-DD40-4F8C-9861-C0A88A3F8608"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0.1:sp1:*:*:*:*:*:*","matchCriteriaId":"0AF9C64F-9A67-4BA9-A653-75507935E6EA"}]}]}],"references":[{"url":"http://support.microsoft.com/support/kb/articles/q168/6/17.asp","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.microsoft.com/Windows/Ie/security/dotless.asp","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/7828","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1998/ms98-016","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2209","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/support/kb/articles/q168/6/17.asp","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.microsoft.com/Windows/Ie/security/dotless.asp","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/7828","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1998/ms98-016","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2209","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1093","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:49:42.420","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the Window.External function in the JScript Scripting Engine in Internet Explorer 4.01 SP1 and earlier allows remote attackers to execute arbitrary commands via a malicious web page."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:*:sp1:*:*:*:*:*:*","versionEndIncluding":"4.0.1","matchCriteriaId":"F185D0D0-43CE-4C46-9D34-47B7B26F6E36"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0:*:*:*:*:*:*:*","matchCriteriaId":"A5B815D9-BC21-4A17-AF00-B8AD181027D7"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0.1:*:*:*:*:*:*:*","matchCriteriaId":"42502347-DD40-4F8C-9861-C0A88A3F8608"}]}]}],"references":[{"url":"http://support.microsoft.com/support/kb/articles/q191/2/00.asp","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/1276.php","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1998/ms98-011","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/support/kb/articles/q191/2/00.asp","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.iss.net/security_center/static/1276.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1998/ms98-011","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1094","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:49:42.553","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Internet Explorer 4.01 and earlier allows remote attackers to execute arbitrary commands via a long URL with the \"mk:\" protocol, aka the \"MK Overrun security issue.\""}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:*:*:*:*:*:*:*:*","versionEndIncluding":"4.0.1","matchCriteriaId":"40B7DC57-531A-4BE6-8FB4-83975971F88C"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=88480839506155&w=2","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/support/kb/articles/q176/6/97.asp","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/917","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=88480839506155&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://support.microsoft.com/support/kb/articles/q176/6/97.asp","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/917","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1100","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:49:43.327","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Cisco PIX Private Link 4.1.6 and earlier does not properly process certain commands in the configuration file, which reduces the effective key length of the DES key to 48 bits instead of 56 bits, which makes it easier for an attacker to find the proper key via a brute force attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:pix_private_link:*:*:*:*:*:*:*:*","versionEndIncluding":"4.1\\(6\\)","matchCriteriaId":"E124299F-F51D-4603-B0E8-10E542360372"}]}]}],"references":[{"url":"http://ciac.llnl.gov/ciac/bulletins/i-056.shtml","source":"cve@mitre.org"},{"url":"http://www.cisco.com/warp/public/770/pixkey-pub.shtml","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1579","source":"cve@mitre.org"},{"url":"http://ciac.llnl.gov/ciac/bulletins/i-056.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.cisco.com/warp/public/770/pixkey-pub.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1579","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1102","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:49:43.580","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"lpr on SunOS 4.1.1, BSD 4.3, A/UX 2.0.1, and other BSD-based operating systems allows local users to create or overwrite arbitrary files via a symlink attack that is triggered after invoking lpr 1000 times."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:*:*:*:*:*:*:*:*","versionEndIncluding":"5.2","matchCriteriaId":"32EF3E35-E1CA-41E3-BB94-0A914E3B7883"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:apple:a_ux:2.0.1:*:*:*:*:*:*:*","matchCriteriaId":"6BDBAF8D-C7F4-470C-8A74-F0BF178D07EB"},{"vulnerable":true,"criteria":"cpe:2.3:o:bsd:bsd:4.3:*:*:*:*:*:*:*","matchCriteriaId":"388BB5C2-53B3-4597-913C-7D86E585CCD5"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:*:*:*:*:*:*:*:*","versionEndIncluding":"4.1.1","matchCriteriaId":"BD213C54-28D3-4584-95D2-E28732BC649A"}]}]}],"references":[{"url":"http://ciac.llnl.gov/ciac/bulletins/e-25.shtml","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.aenigma.net/resources/maillist/bugtraq/1994/0091.htm","source":"cve@mitre.org"},{"url":"http://www.phreak.org/archives/security/8lgm/8lgm.lpr","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://ciac.llnl.gov/ciac/bulletins/e-25.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.aenigma.net/resources/maillist/bugtraq/1994/0091.htm","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.phreak.org/archives/security/8lgm/8lgm.lpr","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1104","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:49:43.830","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Windows 95 uses weak encryption for the password list (.pwl) file used when password caching is enabled, which allows local users to gain privileges by decrypting the passwords."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_95:*:*:*:*:*:*:*:*","matchCriteriaId":"82F7322B-8022-4D0B-ADB3-D0F5B6F20309"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=87602167418931&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=88536273725787&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=88540877601866&w=2","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/support/kb/articles/q140/5/57.asp","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/71.php","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=87602167418931&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=88536273725787&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=88540877601866&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://support.microsoft.com/support/kb/articles/q140/5/57.asp","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.iss.net/security_center/static/71.php","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1105","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:49:43.947","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Windows 95, when Remote Administration and File Sharing for NetWare Networks is enabled, creates a share (C$) when an administrator logs in remotely, which allows remote attackers to read arbitrary files by mapping the network drive."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_95:*:*:*:*:*:*:*:*","matchCriteriaId":"82F7322B-8022-4D0B-ADB3-D0F5B6F20309"}]}]}],"references":[{"url":"http://www.iss.net/security_center/static/7231.php","source":"cve@mitre.org"},{"url":"http://www.net-security.sk/bugs/NT/netware1.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.zdnet.com/eweek/reviews/1016/tr42bug.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/7231.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.net-security.sk/bugs/NT/netware1.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.zdnet.com/eweek/reviews/1016/tr42bug.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1117","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:49:45.383","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"lquerypv in AIX 4.1 and 4.2 allows local users to read arbitrary files by specifying the file in the -h command line parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1:*:*:*:*:*:*:*","matchCriteriaId":"FBF25306-E7C2-4F9A-A809-4779A6C0A079"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.2:*:*:*:*:*:*:*","matchCriteriaId":"05F20EC2-ADE6-4F96-A2E7-1DCCA819D657"}]}]}],"references":[{"url":"http://ciac.llnl.gov/ciac/bulletins/h-13.shtml","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=87602167420195&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=87602167420196&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&w=2&r=1&s=lquerypv&q=b","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/455","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1752","source":"cve@mitre.org"},{"url":"http://ciac.llnl.gov/ciac/bulletins/h-13.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=87602167420195&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=87602167420196&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&w=2&r=1&s=lquerypv&q=b","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/455","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1752","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1124","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:49:46.283","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"HTTP Client application in ColdFusion allows remote attackers to bypass access restrictions for web pages on other ports by providing the target page to the mainframeset.cfm application, which requests the page from the server, making it look like the request is coming from the local host."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:allaire:coldfusion:*:*:*:*:*:*:*:*","matchCriteriaId":"6DA88352-88EF-48A1-A50B-572C78A090A6"}]}]}],"references":[{"url":"http://packetstorm.securify.com/mag/phrack/phrack54/P54-08","source":"cve@mitre.org"},{"url":"http://packetstorm.securify.com/mag/phrack/phrack54/P54-08","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1126","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:49:46.547","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Cisco Resource Manager (CRM) 1.1 and earlier creates certain files with insecure permissions that allow local users to obtain sensitive configuration information including usernames, passwords, and SNMP community strings, from (1) swim_swd.log, (2) swim_debug.log, (3) dbi_debug.log, and (4) temporary files whose names begin with \"DPR_\"."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:resource_manager:*:*:*:*:*:*:*:*","versionEndIncluding":"1.1","matchCriteriaId":"28FD65FA-AF10-44E8-B13C-69CB4CA1A124"}]}]}],"references":[{"url":"http://ciac.llnl.gov/ciac/bulletins/i-086.shtml","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.cisco.com/warp/public/770/crmtmp-pub.shtml","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1575","source":"cve@mitre.org"},{"url":"http://ciac.llnl.gov/ciac/bulletins/i-086.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.cisco.com/warp/public/770/crmtmp-pub.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1575","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1127","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:49:46.667","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Windows NT 4.0 does not properly shut down invalid named pipe RPC connections, which allows remote attackers to cause a denial of service (resource exhaustion) via a series of connections containing malformed data, aka the \"Named Pipes Over RPC\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","baseScore":7.5,"baseSeverity":"HIGH","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH"},"exploitabilityScore":3.9,"impactScore":3.6}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-772"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:-:*:*:enterprise:*:*:*","matchCriteriaId":"FA9FD6FB-7D96-42C9-AA8D-654A29FCA465"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:-:*:*:server:*:*:*","matchCriteriaId":"B48A648C-7D20-4546-B288-FBC795D8FE73"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:-:*:*:terminal_server:*:*:*","matchCriteriaId":"E30F6C9C-3371-44FF-AD0B-3CAA0AB6F1B8"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:-:*:*:workstation:*:*:*","matchCriteriaId":"22BA7A30-849D-411B-A790-FC175435379B"}]}]}],"references":[{"url":"http://support.microsoft.com/support/kb/articles/Q195/7/33.asp","source":"cve@mitre.org","tags":["Broken Link","Patch","Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/523.php","source":"cve@mitre.org","tags":["Broken Link"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1998/ms98-017","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://support.microsoft.com/support/kb/articles/Q195/7/33.asp","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Patch","Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/523.php","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1998/ms98-017","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1132","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:49:47.313","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Windows NT 4.0 allows remote attackers to cause a denial of service (crash) via extra source routing data such as (1) a Routing Information Field (RIF) field with a hop count greater than 7, or (2) a list containing duplicate Token Ring IDs."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=90763508011966&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=90760603030452&w=2","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/support/kb/articles/Q179/1/57.asp","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/1399.php","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=90763508011966&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=90760603030452&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://support.microsoft.com/support/kb/articles/Q179/1/57.asp","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/1399.php","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1148","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:49:49.420","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"FTP service in IIS 4.0 and earlier allows remote attackers to cause a denial of service (resource exhaustion) via many passive (PASV) connections at the same time."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:*:*:*:*:*:*:*:*","versionEndIncluding":"4.0","matchCriteriaId":"4B21A3CA-6F3B-4C27-A704-A9B8D9A60C15"}]}]}],"references":[{"url":"http://support.microsoft.com/support/kb/articles/Q189/2/62.ASP","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1998/ms98-006","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1215","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/support/kb/articles/Q189/2/62.ASP","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1998/ms98-006","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1215","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1157","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:49:50.523","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Tcpip.sys in Windows NT 4.0 before SP4 allows remote attackers to cause a denial of service via an ICMP Subnet Mask Address Request packet, when certain multiple IP addresses are bound to the same network interface."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:*:*:*:*:*:*:*:*","versionEndIncluding":"4.0","matchCriteriaId":"2DA4F4D4-444B-4CD8-A6E6-159303786DF8"}]}]}],"references":[{"url":"http://support.microsoft.com/support/kb/articles/Q192/7/74.ASP","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3894","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/support/kb/articles/Q192/7/74.ASP","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3894","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1167","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:49:51.783","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Cross-site scripting vulnerability in Third Voice Web annotation utility allows remote users to read sensitive data and generate fake web pages for other Third Voice users by injecting malicious Javascript into an annotation."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:N","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:third_voice:third_voice_web:*:*:*:*:*:*:*:*","matchCriteriaId":"39EAEEEC-D079-4F30-AA71-F021D48F14C0"}]}]}],"references":[{"url":"http://www.iss.net/security_center/static/7252.php","source":"cve@mitre.org"},{"url":"http://www.wired.com/news/technology/0%2C1282%2C20636%2C00.html","source":"cve@mitre.org"},{"url":"http://www.wired.com/news/technology/0%2C1282%2C20677%2C00.html","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/7252.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.wired.com/news/technology/0%2C1282%2C20636%2C00.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.wired.com/news/technology/0%2C1282%2C20677%2C00.html","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1175","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:49:52.753","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Web Cache Control Protocol (WCCP) in Cisco Cache Engine for Cisco IOS 11.2 and earlier does not use authentication, which allows remote attackers to redirect HTTP traffic to arbitrary hosts via WCCP packets to UDP port 2048."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:*:*:*:*:*:*:*:*","versionEndIncluding":"11.2","matchCriteriaId":"CEE938DF-8451-46DD-A532-1EF99DE8852D"}]}]}],"references":[{"url":"http://www.ciac.org/ciac/bulletins/i-054.shtml","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.cisco.com/warp/public/770/wccpauth-pub.shtml","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1577","source":"cve@mitre.org"},{"url":"http://www.ciac.org/ciac/bulletins/i-054.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.cisco.com/warp/public/770/wccpauth-pub.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1577","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1177","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:49:52.990","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in nph-publish before 1.2 allows remote attackers to overwrite arbitrary files via a .. (dot dot) in the pathname for an upload operation."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:lincoln_d._stein:nph-publish:*:*:*:*:*:*:*:*","versionEndIncluding":"1.2","matchCriteriaId":"4B1AFE71-C20B-4FD8-A43A-563F42048715"}]}]}],"references":[{"url":"http://www-genome.wi.mit.edu/WWW/tools/CGI_scripts/server_publish/nph-publish","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.w3.org/Security/Faq/wwwsf4.html","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2055","source":"cve@mitre.org"},{"url":"http://www-genome.wi.mit.edu/WWW/tools/CGI_scripts/server_publish/nph-publish","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.w3.org/Security/Faq/wwwsf4.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2055","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1206","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:49:56.753","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"SystemSoft SystemWizard package in HP Pavilion PC with Windows 98, and possibly other platforms and operating systems, installs two ActiveX controls that are marked as safe for scripting, which allows remote attackers to execute arbitrary commands via a malicious web page that references (1) the Launch control, or (2) the RegObj control."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:systemsoft:systemwizard:*:*:*:*:*:*:*:*","matchCriteriaId":"E5B57640-D538-4DB5-8E68-7B06B08EEDE5"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93336970231857&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/555","source":"cve@mitre.org"},{"url":"http://www.systemsoft.com/l-2/l-3/support-systemwizard.htm","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=93336970231857&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/555","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.systemsoft.com/l-2/l-3/support-systemwizard.htm","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1222","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:49:58.753","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Netbt.sys in Windows NT 4.0 allows remote malicious DNS servers to cause a denial of service (crash) by returning 0.0.0.0 as the IP address for a DNS host name lookup."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:terminal_server:*:*:*:*:*","matchCriteriaId":"6E7E6AD3-5418-4FEA-84B5-833059CA880D"}]}]}],"references":[{"url":"http://support.microsoft.com/support/kb/articles/Q188/5/71.ASP","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3893","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/support/kb/articles/Q188/5/71.ASP","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3893","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1223","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:49:58.883","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IIS 3.0 allows remote attackers to cause a denial of service via a request to an ASP page in which the URL contains a large number of / (forward slash) characters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"547AB6E2-4E9F-4783-8BB4-0AE297A38C9C"}]}]}],"references":[{"url":"http://support.microsoft.com/support/kb/articles/q187/5/03.asp","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3892","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/support/kb/articles/q187/5/03.asp","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3892","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1233","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:00.120","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IIS 4.0 does not properly restrict access for the initial session request from a user's IP address if the address does not resolve to a DNS domain, aka the \"Domain Resolution\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"}]}]}],"references":[{"url":"http://support.microsoft.com/support/kb/articles/Q241/5/62.asp","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/657","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-039","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3306","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/support/kb/articles/Q241/5/62.asp","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/657","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-039","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3306","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1246","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:01.790","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Direct Mailer feature in Microsoft Site Server 3.0 saves user domain names and passwords in plaintext in the TMLBQueue network share, which has insecure default permissions, allowing remote attackers to read the passwords and gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:site_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"4A503018-356B-46D9-965F-60750B5B7484"}]}]}],"references":[{"url":"http://support.microsoft.com/support/kb/articles/Q229/9/72.asp","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2068","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/support/kb/articles/Q229/9/72.asp","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2068","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1259","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:03.430","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Office 98, Macintosh Edition, does not properly initialize the disk space used by Office 98 files and effectively inserts data from previously deleted files into the Office file, which could allow attackers to obtain sensitive information."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:office:98:*:mac:*:*:*:*:*","matchCriteriaId":"36227AF5-8A53-41E3-88E3-5978C22BBAB2"}]}]}],"references":[{"url":"http://support.microsoft.com/support/kb/articles/q189/5/29.asp","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1780","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/support/kb/articles/q189/5/29.asp","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1780","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1279","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:05.937","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"An interaction between the AS/400 shared folders feature and Microsoft SNA Server 3.0 and earlier allows users to view each other's folders when the users share the same Local APPC LU."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:sna_server:*:*:*:*:*:*:*:*","versionEndIncluding":"3.0","matchCriteriaId":"15075075-9FD9-4E2E-B77F-E143855B86AB"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:sna_server:2.11:*:*:*:*:*:*:*","matchCriteriaId":"E9DD2968-5976-450D-8741-D86931246DF7"}]}]}],"references":[{"url":"http://support.microsoft.com/support/kb/articles/q138/0/01.asp","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1548","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/support/kb/articles/q138/0/01.asp","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1548","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1287","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:06.927","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in Analog 3.0 and earlier allows remote attackers to read arbitrary files via the forms interface."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:stephen_turner:analog:*:*:*:*:*:*:*:*","versionEndIncluding":"3.0","matchCriteriaId":"895314ED-7265-400B-8329-A7DA403F4788"}]}]}],"references":[{"url":"http://www.statslab.cam.ac.uk/~sret1/analog/security.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1410","source":"cve@mitre.org"},{"url":"http://www.statslab.cam.ac.uk/~sret1/analog/security.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1410","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1290","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:07.313","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in nftp FTP client version 1.40 allows remote malicious FTP servers to cause a denial of service, and possibly execute arbitrary commands, via a long response string."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:chris_matthee:nftp:1.40:*:*:*:*:*:*:*","matchCriteriaId":"31FF23CA-2441-4C94-A5D2-ECA896EA7129"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=91127951426494&w=2","source":"cve@mitre.org"},{"url":"http://www.ayukov.com/nftp/history.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1397","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=91127951426494&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.ayukov.com/nftp/history.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1397","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1293","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:07.733","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"mod_proxy in Apache 1.2.5 and earlier allows remote attackers to cause a denial of service via malformed FTP commands, which causes Apache to dump core."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:*:*:*:*:*:*:*:*","versionEndIncluding":"1.2.5","matchCriteriaId":"12268438-58C9-401E-8B20-7D7097797759"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=88413292830649&w=2","source":"cve@mitre.org"},{"url":"http://www.apache.org/info/security_bulletin_1.2.5.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=88413292830649&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.apache.org/info/security_bulletin_1.2.5.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1294","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:07.887","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Office Shortcut Bar (OSB) in Windows 3.51 enables backup and restore permissions, which are inherited by programs such as File Manager that are started from the Shortcut Bar, which could allow local users to read folders for which they do not have permission."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:3.51:*:*:*:*:*:*:*","matchCriteriaId":"60A471C3-BE72-440E-84A8-55C6F9D362F4"}]}]}],"references":[{"url":"http://support.microsoft.com/support/kb/articles/q146/6/04.asp","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/562","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/support/kb/articles/q146/6/04.asp","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/562","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1300","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:08.807","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in accton in Cray UNICOS 6.1 and 6.0 allows local users to read arbitrary files and modify system accounting configuration."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:N","baseScore":3.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cray:unicos:6.0:*:*:*:*:*:*:*","matchCriteriaId":"3E7725DD-085A-4D3A-8F9E-55C3D4BBDD1B"},{"vulnerable":true,"criteria":"cpe:2.3:o:cray:unicos:6.1:*:*:*:*:*:*:*","matchCriteriaId":"ACCD6F58-9E37-40F0-AFD5-49523BEA301E"}]}]}],"references":[{"url":"http://ciac.llnl.gov/ciac/bulletins/b-31.shtml","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://ciac.llnl.gov/ciac/bulletins/b-31.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1307","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:09.703","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in urestore in Novell UnixWare 1.1 allows local users to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:novell:unixware:1.1:*:*:*:*:*:*:*","matchCriteriaId":"C9B59744-C8BE-4ED8-9820-ECF29C5C7EB3"}]}]}],"references":[{"url":"http://ciac.llnl.gov/ciac/bulletins/f-06.shtml","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.dataguard.no/bugtraq/1994_4/0676.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://ciac.llnl.gov/ciac/bulletins/f-06.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.dataguard.no/bugtraq/1994_4/0676.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1315","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:10.717","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerabilities in DECnet/OSI for OpenVMS before 5.8 on DEC Alpha AXP and VAX/VMS systems allow local users to gain privileges or cause a denial of service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:dec:dec_openvms:*:*:*:*:*:*:*:*","versionEndIncluding":"5.8","matchCriteriaId":"7770FB2F-EA4E-4DF9-A2FC-8C2723610414"}]}]}],"references":[{"url":"http://ciac.llnl.gov/ciac/bulletins/f-04.shtml","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://ciac.llnl.gov/ciac/bulletins/f-04.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1316","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:10.843","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Passfilt.dll in Windows NT SP2 allows users to create a password that contains the user's name, which could make it easier for an attacker to guess."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp2:server:*:*:*:*:*","matchCriteriaId":"656AE014-AEEC-46E8-A696-61FEA7932F21"}]}]}],"references":[{"url":"http://support.microsoft.com/support/kb/articles/Q247/9/75.asp","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7391","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/support/kb/articles/Q247/9/75.asp","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7391","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1317","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:10.980","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Windows NT 4.0 SP4 and earlier allows local users to gain privileges by modifying the symbolic link table in the \\?? object folder using a different case letter (upper or lower) to point to a different device."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:*:sp4:*:*:*:*:*:*","versionEndIncluding":"4.0","matchCriteriaId":"0CC5B755-839E-494F-A96B-0BC94CF15C97"}]}]}],"references":[{"url":"http://marc.info/?l=ntbugtraq&m=92127046701349&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=92162979530341&w=2","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/support/kb/articles/q222/1/59.asp","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7398","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=92127046701349&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=92162979530341&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://support.microsoft.com/support/kb/articles/q222/1/59.asp","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7398","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1320","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:11.360","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in Novell NetWare 3.x and earlier allows local users to gain privileges via packet spoofing."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:novell:netware:*:*:*:*:*:*:*:*","versionEndIncluding":"3.0","matchCriteriaId":"07D7AF4E-1AC1-4615-A389-5C16AA7003BE"}]}]}],"references":[{"url":"http://ciac.llnl.gov/ciac/bulletins/d-01.shtml","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/7213.php","source":"cve@mitre.org"},{"url":"http://ciac.llnl.gov/ciac/bulletins/d-01.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/7213.php","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1324","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:11.863","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"VAXstations running Open VMS 5.3 through 5.5-2 with VMS DECwindows or MOTIF do not properly disable access to user accounts that exceed the break-in limit threshold for failed login attempts, which makes it easier for attackers to conduct brute force password guessing."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","baseScore":9.8,"baseSeverity":"CRITICAL","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":3.9,"impactScore":5.9}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-307"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:openvms_vax:*:*:*:*:*:*:*:*","versionStartIncluding":"5.3","versionEndIncluding":"5.5.2","matchCriteriaId":"8EC148C6-C2CE-4347-AB6A-6B58C84CDF77"}]}]}],"references":[{"url":"http://ciac.llnl.gov/ciac/bulletins/d-06.shtml","source":"cve@mitre.org","tags":["Broken Link","Patch","Third Party Advisory","US Government Resource","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7225","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://ciac.llnl.gov/ciac/bulletins/d-06.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Patch","Third Party Advisory","US Government Resource","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7225","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]}]}},{"cve":{"id":"CVE-1999-1325","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:11.993","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"SAS System 5.18 on VAX/VMS is installed with insecure permissions for its directories and startup file, which allows local users to gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:vax_vms:sas_system:5.18:*:*:*:*:*:*:*","matchCriteriaId":"AB89B11E-753E-4A80-97CE-531D21D4783E"}]}]}],"references":[{"url":"http://ciac.llnl.gov/ciac/bulletins/c-19.shtml","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7261","source":"cve@mitre.org"},{"url":"http://ciac.llnl.gov/ciac/bulletins/c-19.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7261","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1327","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:12.240","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in linuxconf 1.11r11-rh2 on Red Hat Linux 5.1 allows local users to gain root privileges via a long LANG environmental variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.1:*:*:*:*:*:*:*","matchCriteriaId":"4EF44364-0F57-4B74-81B0-501EA6B58501"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=90221103125826&w=2","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/7239.php","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/6065","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/rh51-errata-general.html#linuxconf","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=90221103125826&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.iss.net/security_center/static/7239.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/6065","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/rh51-errata-general.html#linuxconf","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1328","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:12.357","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"linuxconf before 1.11.r11-rh3 on Red Hat Linux 5.1 allows local users to overwrite arbitrary files and gain root access via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.1:*:*:*:*:*:*:*","matchCriteriaId":"4EF44364-0F57-4B74-81B0-501EA6B58501"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=90383955231511&w=2","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/7232.php","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/6068","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/rh51-errata-general.html#linuxconf","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=90383955231511&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.iss.net/security_center/static/7232.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/6068","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/rh51-errata-general.html#linuxconf","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1329","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:12.473","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in SysVInit in Red Hat Linux 5.1 and earlier allows local users to gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:*:*:*:*:*:*:*:*","versionEndIncluding":"5.1","matchCriteriaId":"64596B09-9E41-479E-9C66-01DCACE2282F"}]}]}],"references":[{"url":"http://www.iss.net/security_center/static/7250.php","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/rh50-errata-general.html#SysVinit","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/7250.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/rh50-errata-general.html#SysVinit","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1330","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:12.600","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The snprintf function in the db library 1.85.4 ignores the size parameter, which could allow attackers to exploit buffer overflows that would be prevented by a properly implemented snprintf."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:4.0:*:*:*:*:*:*:*","matchCriteriaId":"0F92AB32-E7DE-43F4-B877-1F41FA162EC7"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:4.2:*:*:*:*:*:*:*","matchCriteriaId":"F299301C-6BFC-436C-9CFD-2E291D3702AE"}]}]}],"references":[{"url":"http://lists.openresources.com/Debian/debian-bugs-closed/msg00581.html","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=87602661419259&w=2","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/7244.php","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/rh42-errata-general.html#db","source":"cve@mitre.org"},{"url":"http://lists.openresources.com/Debian/debian-bugs-closed/msg00581.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=87602661419259&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.iss.net/security_center/static/7244.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/rh42-errata-general.html#db","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1331","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:12.733","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"netcfg 2.16-1 in Red Hat Linux 4.2 allows the Ethernet interface to be controlled by users on reboot when an option is set, which allows local users to cause a denial of service by shutting down the interface."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:4.2:*:*:*:*:*:*:*","matchCriteriaId":"F299301C-6BFC-436C-9CFD-2E291D3702AE"}]}]}],"references":[{"url":"http://www.iss.net/security_center/static/7245.php","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/rh42-errata-general.html#netcfg","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/7245.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/rh42-errata-general.html#netcfg","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1332","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:12.877","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"gzexe in the gzip package on Red Hat Linux 5.0 and earlier allows local users to overwrite files of other users via a symlink attack on a temporary file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:*:*:*:*:*:*:*:*","versionEndIncluding":"5.0","matchCriteriaId":"040166C7-CB3A-485E-9337-CB679B779BF8"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=88603844115233&w=2","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/2003/dsa-308","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/7241.php","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/3812","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/rh50-errata-general.html#gzip","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/7845","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=88603844115233&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.debian.org/security/2003/dsa-308","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.iss.net/security_center/static/7241.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/3812","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/rh50-errata-general.html#gzip","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/7845","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1333","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:13.020","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"automatic download option in ncftp 2.4.2 FTP client in Red Hat Linux 5.0 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the names of files that are to be downloaded."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:*:*:*:*:*:*:*:*","versionEndIncluding":"5.0","matchCriteriaId":"040166C7-CB3A-485E-9337-CB679B779BF8"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=89042322924057&w=2","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/7240.php","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/6111","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/rh50-errata-general.html#ncftp","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=89042322924057&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.iss.net/security_center/static/7240.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/6111","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/rh50-errata-general.html#ncftp","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1334","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:13.147","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Multiple buffer overflows in filter command in Elm 2.4 allows attackers to execute arbitrary commands via (1) long From: headers, (2) long Reply-To: headers, or (3) via a long -f (filterfile) command line argument."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:elm_development_group:elm:2.4:*:*:*:*:*:*:*","matchCriteriaId":"5265C254-5FB6-4238-BD28-4176C70A29F4"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=88609666024181&w=2","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/rh50-errata-general.html#elm","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=88609666024181&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/rh50-errata-general.html#elm","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1335","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:13.290","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"snmpd server in cmu-snmp SNMP package before 3.3-1 in Red Hat Linux 4.0 is configured to allow remote attackers to read and write sensitive information."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:N","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:*:*:*:*:*:*:*:*","versionEndIncluding":"4.0","matchCriteriaId":"FCFC97A3-14D7-4B17-AB49-1A395A11CF64"}]}]}],"references":[{"url":"http://www.redhat.com/support/errata/rh40-errata-general.html#cmu-snmp","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7251","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/rh40-errata-general.html#cmu-snmp","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7251","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1339","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:13.823","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability when Network Address Translation (NAT) is enabled in Linux 2.2.10 and earlier with ipchains, or FreeBSD 3.2 with ipfw, allows remote attackers to cause a denial of service (kernel panic) via a ping -R (record route) command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.2:*:*:*:*:*:*:*","matchCriteriaId":"0419DD66-FF66-48BC-AD3B-F6AFD0551E36"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionEndIncluding":"2.2.10","matchCriteriaId":"45204613-D254-43D9-9261-EFC4DDD8576E"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93277426802802&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93277766505061&w=2","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/7257.php","source":"cve@mitre.org"},{"url":"http://www.kernel.org/pub/linux/kernel/v2.2/patch-2.2.11.gz","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/6105","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93277426802802&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=93277766505061&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.iss.net/security_center/static/7257.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.kernel.org/pub/linux/kernel/v2.2/patch-2.2.11.gz","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/6105","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1355","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:15.847","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"BMC Patrol component, when installed with Compaq Insight Management Agent 4.23 and earlier, or Management Agents for Servers 4.40 and earlier, creates a PFCUser account with a default password and potentially dangerous privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:compaq:insight_management_agent:*:*:*:*:*:*:*:*","versionEndIncluding":"4.20","matchCriteriaId":"1185A4ED-A75A-413C-9D79-91E154A1EE40"},{"vulnerable":true,"criteria":"cpe:2.3:a:compaq:management_agents_for_servers:*:*:*:*:*:*:*:*","versionEndIncluding":"4.40","matchCriteriaId":"6EE31BED-8CFD-4F36-8A47-20C3E440A1ED"}]}]}],"references":[{"url":"http://marc.info/?l=ntbugtraq&m=93542118727732&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=93654336516711&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=93759822430801&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=94183795025294&w=2","source":"cve@mitre.org"},{"url":"http://www.compaq.com/products/servers/management/advisory.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3231","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=93542118727732&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=93654336516711&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=93759822430801&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=94183795025294&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.compaq.com/products/servers/management/advisory.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3231","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1358","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:16.220","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"When an administrator in Windows NT or Windows 2000 changes a user policy, the policy is not properly updated if the local ntconfig.pol is not writable by the user, which could allow local users to bypass restrictions that would otherwise be enforced by the policy, possibly by changing the policy file to be read-only."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:*:*:*:*:*:*:*:*","matchCriteriaId":"ED27882B-A02A-4D5F-9117-A47976C676E0"}]}]}],"references":[{"url":"http://support.microsoft.com/support/kb/articles/q157/6/73.asp","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/7400.php","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/support/kb/articles/q157/6/73.asp","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/7400.php","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1359","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:16.343","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"When the Ntconfig.pol file is used on a server whose name is longer than 13 characters, Windows NT does not properly enforce policies for global groups, which could allow users to bypass restrictions that were intended by those policies."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:*:*:*:*:*:*:*:*","matchCriteriaId":"ED27882B-A02A-4D5F-9117-A47976C676E0"}]}]}],"references":[{"url":"http://support.microsoft.com/support/kb/articles/q163/8/75.asp","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/7401.php","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/support/kb/articles/q163/8/75.asp","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/7401.php","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1360","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:16.473","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Windows NT 4.0 allows local users to cause a denial of service via a user mode application that closes a handle that was opened in kernel mode, which causes a crash when the kernel attempts to close the handle."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"http://support.microsoft.com/support/kb/articles/q160/6/50.asp","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/7402.php","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/support/kb/articles/q160/6/50.asp","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/7402.php","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1362","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:16.720","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Win32k.sys in Windows NT 4.0 before SP2 allows local users to cause a denial of service (crash) by calling certain WIN32K functions with incorrect parameters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:*:*:*:*:*:*:*:*","versionEndIncluding":"4.0","matchCriteriaId":"2DA4F4D4-444B-4CD8-A6E6-159303786DF8"}]}]}],"references":[{"url":"http://support.microsoft.com/support/kb/articles/q160/6/01.asp","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/7403.php","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/support/kb/articles/q160/6/01.asp","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/7403.php","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1363","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:16.840","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Windows NT 3.51 and 4.0 allow local users to cause a denial of service (crash) by running a program that creates a large number of locks on a file, which exhausts the NonPagedPool."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:3.5.1:*:*:*:*:*:*:*","matchCriteriaId":"D0D4EAC2-A948-461F-B5DD-0AE73CF05D29"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"http://support.microsoft.com/support/kb/articles/q163/1/43.asp","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/7405.php","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/support/kb/articles/q163/1/43.asp","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/7405.php","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1364","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:16.977","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Windows NT 4.0 allows local users to cause a denial of service (crash) via an illegal kernel mode address to the functions (1) GetThreadContext or (2) SetThreadContext."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"http://support.microsoft.com/support/kb/articles/q142/6/53.asp","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/7421.php","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/support/kb/articles/q142/6/53.asp","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/7421.php","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1379","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:18.833","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"DNS allows remote attackers to use DNS name servers as traffic amplifiers via a UDP DNS query with a spoofed source address, which produces more traffic to the victim than was sent by the attacker."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:dnstools_software:dnstools:*:*:*:*:*:*:*:*","matchCriteriaId":"B73D2BE6-5D5F-49E3-8737-43923A78FFF6"}]}]}],"references":[{"url":"ftp://ftp.auscert.org.au/pub/auscert/advisory/AL-1999.004.dns_dos","source":"cve@mitre.org","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://ciac.llnl.gov/ciac/bulletins/j-063.shtml","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=93348057829957&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93433758607623&w=2","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/7238.php","source":"cve@mitre.org"},{"url":"ftp://ftp.auscert.org.au/pub/auscert/advisory/AL-1999.004.dns_dos","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://ciac.llnl.gov/ciac/bulletins/j-063.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=93348057829957&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=93433758607623&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.iss.net/security_center/static/7238.php","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1382","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:19.213","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"NetWare NFS mode 1 and 2 implements the \"Read Only\" flag in Unix by changing the ownership of a file to root, which allows local users to gain root privileges by creating a setuid program and setting it to \"Read Only,\" which NetWare-NFS changes to a setuid root program."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:novell:netware:*:*:*:*:*:*:*:*","matchCriteriaId":"BF45C68A-5F83-4090-A0C1-A09EC2987706"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=88427711321769&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=90295697702474&w=2","source":"cve@mitre.org"},{"url":"http://support.novell.com/cgi-bin/search/tidfinder.cgi?2940551","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/7246.php","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=88427711321769&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=90295697702474&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://support.novell.com/cgi-bin/search/tidfinder.cgi?2940551","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/7246.php","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1386","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:19.747","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Perl 5.004_04 and earlier follows symbolic links when running with the -e option, which allows local users to overwrite arbitrary files via a symlink attack on the /tmp/perl-eaXXXXX file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N","baseScore":5.5,"baseSeverity":"MEDIUM","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"HIGH","availabilityImpact":"NONE"},"exploitabilityScore":1.8,"impactScore":3.6}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-59"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:perl:perl:*:*:*:*:*:*:*:*","versionEndIncluding":"5.004_04","matchCriteriaId":"356EEFF0-DC56-4E12-B7B1-DB28784FF3B1"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=88932165406213&w=2","source":"cve@mitre.org","tags":["Exploit","Mailing List"]},{"url":"http://www.iss.net/security_center/static/7243.php","source":"cve@mitre.org","tags":["Broken Link"]},{"url":"http://www.redhat.com/support/errata/rh50-errata-general.html#perl","source":"cve@mitre.org","tags":["Broken Link"]},{"url":"http://marc.info/?l=bugtraq&m=88932165406213&w=2","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Mailing List"]},{"url":"http://www.iss.net/security_center/static/7243.php","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"]},{"url":"http://www.redhat.com/support/errata/rh50-errata-general.html#perl","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"]}]}},{"cve":{"id":"CVE-1999-1444","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:27.233","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"genkey utility in Alibaba 2.0 generates RSA key pairs with an exponent of 1, which results in transactions that are sent in cleartext."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:computer_software_manufaktur:alibaba:2.0:*:*:*:*:*:*:*","matchCriteriaId":"8DD3CBF4-B593-4C4A-8B9C-D005846B4090"}]}]}],"references":[{"url":"http://catless.ncl.ac.uk/Risks/20.41.html#subj4","source":"cve@mitre.org"},{"url":"http://catless.ncl.ac.uk/Risks/20.41.html#subj4","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1451","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:28.107","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Winmsdp.exe sample file in IIS 4.0 and Site Server 3.0 allows remote attackers to read arbitrary files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:site_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"4A503018-356B-46D9-965F-60750B5B7484"}]}]}],"references":[{"url":"http://support.microsoft.com/support/kb/articles/q231/3/68.asp","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-013","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3271","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/support/kb/articles/q231/3/68.asp","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-013","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3271","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1452","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:28.233","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"GINA in Windows NT 4.0 allows attackers with physical access to display a portion of the clipboard of the user who has locked the workstation by pasting (CTRL-V) the contents into the username prompt."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=91788829326419&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=91764169410814&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=91822011021558&w=2","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/support/kb/articles/q214/8/02.asp","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/198","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1975","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=91788829326419&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=91764169410814&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=91822011021558&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://support.microsoft.com/support/kb/articles/q214/8/02.asp","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/198","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1975","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1455","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:28.633","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"RSH service utility RSHSVC in Windows NT 3.5 through 4.0 does not properly restrict access as specified in the .Rhosts file when a user comes from an authorized host, which could allow unauthorized users to access the service by logging in from an authorized host."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:*:*:*:*:*:*:*:*","versionEndIncluding":"4.0","matchCriteriaId":"2DA4F4D4-444B-4CD8-A6E6-159303786DF8"}]}]}],"references":[{"url":"http://support.microsoft.com/support/kb/articles/q158/3/20.asp","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7422","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/support/kb/articles/q158/3/20.asp","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7422","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1456","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:28.777","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"thttpd HTTP server 2.03 and earlier allows remote attackers to read arbitrary files via a GET request with more than one leading / (slash) character in the filename."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:thttpd:thttpd_http_server:*:*:*:*:*:*:*:*","versionEndIncluding":"2.03","matchCriteriaId":"522B451F-0400-4980-A49A-252684241AFF"}]}]}],"references":[{"url":"http://www.acme.com/software/thttpd/thttpd.html#releasenotes","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/10368","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1809","source":"cve@mitre.org"},{"url":"http://www.acme.com/software/thttpd/thttpd.html#releasenotes","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/10368","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1809","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1462","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:29.523","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in bb-hist.sh CGI History module in Big Brother 1.09b and 1.09c allows remote attackers to read portions of arbitrary files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-200"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:bb4:big_brother:1.09b:*:*:*:*:*:*:*","matchCriteriaId":"A831C799-303E-487E-A7E3-67308E8ECEBA"},{"vulnerable":true,"criteria":"cpe:2.3:a:bb4:big_brother:1.09c:*:*:*:*:*:*:*","matchCriteriaId":"76561DA2-6188-476B-B4FF-46EF49F36EDA"}]}]}],"references":[{"url":"http://bb4.com/README.CHANGES","source":"cve@mitre.org","tags":["Broken Link"]},{"url":"http://www.securityfocus.com/archive/1/13440","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/142","source":"cve@mitre.org","tags":["Patch","Third Party Advisory","VDB Entry","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3755","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://bb4.com/README.CHANGES","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"]},{"url":"http://www.securityfocus.com/archive/1/13440","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/142","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory","VDB Entry","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3755","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]}]}},{"cve":{"id":"CVE-1999-1464","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:29.780","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in Cisco IOS 11.1CC and 11.1CT with distributed fast switching (DFS) enabled allows remote attackers to bypass certain access control lists when the router switches traffic from a DFS-enabled interface to an interface that does not have DFS enabled, as described by Cisco bug CSCdk35564."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.1cc:*:*:*:*:*:*:*","matchCriteriaId":"D5F31EAA-F76F-4182-B90D-6997E52EEB25"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.1ct:*:*:*:*:*:*:*","matchCriteriaId":"8D419BED-A8C0-4304-A0E9-7805CE3E7FB1"}]}]}],"references":[{"url":"http://ciac.llnl.gov/ciac/bulletins/j-016.shtml","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.cisco.com/warp/public/770/iosdfsacl-pub.shtml","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1401","source":"cve@mitre.org"},{"url":"http://ciac.llnl.gov/ciac/bulletins/j-016.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.cisco.com/warp/public/770/iosdfsacl-pub.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1401","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1465","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:29.897","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in Cisco IOS 11.1 through 11.3 with distributed fast switching (DFS) enabled allows remote attackers to bypass certain access control lists when the router switches traffic from a DFS-enabled input interface to an output interface with a logical subinterface, as described by Cisco bug CSCdk43862."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:*:*:*:*:*:*:*:*","versionEndIncluding":"11.3","matchCriteriaId":"2C53A003-5CF4-4657-A6DB-8A08489D11B6"}]}]}],"references":[{"url":"http://ciac.llnl.gov/ciac/bulletins/j-016.shtml","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.cisco.com/warp/public/770/iosdfsacl-pub.shtml","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1401","source":"cve@mitre.org"},{"url":"http://ciac.llnl.gov/ciac/bulletins/j-016.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.cisco.com/warp/public/770/iosdfsacl-pub.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1401","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1472","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:30.877","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internet Explorer 4.0 allows remote attackers to read arbitrary text and HTML files on the user's machine via a small IFRAME that uses Dynamic HTML (DHTML) to send the data to the attacker, aka the Freiburg text-viewing issue."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0:*:*:*:*:*:*:*","matchCriteriaId":"A5B815D9-BC21-4A17-AF00-B8AD181027D7"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=87710897923098&w=2","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/support/kb/articles/q176/6/97.asp","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://support.microsoft.com/support/kb/articles/q176/7/94.asp","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.insecure.org/sploits/Internet_explorer_4.0.hack.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.microsoft.com/Windows/ie/security/freiburg.asp","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/7819","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/587","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=87710897923098&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://support.microsoft.com/support/kb/articles/q176/6/97.asp","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://support.microsoft.com/support/kb/articles/q176/7/94.asp","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.insecure.org/sploits/Internet_explorer_4.0.hack.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.microsoft.com/Windows/ie/security/freiburg.asp","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/7819","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/587","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1473","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:31.017","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"When a Web site redirects the browser to another site, Internet Explorer 3.02 and 4.0 automatically resends authentication information to the second site, aka the \"Page Redirect Issue.\""}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:3.0.2:*:*:*:*:*:*:*","matchCriteriaId":"943D5C5C-FC49-4EDE-AE75-A79CFF42208E"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0:*:*:*:*:*:*:*","matchCriteriaId":"A5B815D9-BC21-4A17-AF00-B8AD181027D7"}]}]}],"references":[{"url":"http://support.microsoft.com/support/kb/articles/q176/6/97.asp","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/7426.php","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/7818","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/support/kb/articles/q176/6/97.asp","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/7426.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/7818","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1474","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:31.140","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"PowerPoint 95 and 97 allows remote attackers to cause an application to be run automatically without prompting the user, possibly through the slide show, when the document is opened in browsers such as Internet Explorer."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:powerpoint:95:*:*:*:*:*:*:*","matchCriteriaId":"54CAE34D-7010-411D-94CB-25D2F0F99BFC"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:powerpoint:97:*:*:*:*:*:*:*","matchCriteriaId":"3FFA2986-0E47-43C0-938E-65FC15F13C53"}]}]}],"references":[{"url":"http://www.microsoft.com/windows/ie/security/powerpoint.asp","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/179","source":"cve@mitre.org"},{"url":"http://www.microsoft.com/windows/ie/security/powerpoint.asp","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/179","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1476","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:31.403","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A bug in Intel Pentium processor (MMX and Overdrive) allows local users to cause a denial of service (hang) in Intel-based operating systems such as Windows NT and Windows 95, via an invalid instruction, aka the \"Invalid Operand with Locked CMPXCHG8B Instruction\" problem."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:intel:pentium:*:*:mmx:*:*:*:*:*","matchCriteriaId":"130477DF-BB29-4E6F-B664-02AF0D8A5BA7"},{"vulnerable":true,"criteria":"cpe:2.3:h:intel:pentuim:*:*:overdrive:*:*:*:*:*","matchCriteriaId":"724A4E98-8650-4449-A54F-0882D5CC8D15"}]}]}],"references":[{"url":"http://support.microsoft.com/support/kb/articles/q163/8/52.asp","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/704","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/support/kb/articles/q163/8/52.asp","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/704","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1481","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:32.043","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Squid 2.2.STABLE5 and below, when using external authentication, allows attackers to bypass access controls via a newline in the user/password pair."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:national_science_foundation:squid_web_proxy:1.0:*:*:*:*:*:*:*","matchCriteriaId":"907DE399-6B3B-4A6F-AFDD-5BE5FD6E5E57"},{"vulnerable":true,"criteria":"cpe:2.3:a:national_science_foundation:squid_web_proxy:1.0novm:*:*:*:*:*:*:*","matchCriteriaId":"391B1569-3599-40E1-91AF-928101723AF7"},{"vulnerable":true,"criteria":"cpe:2.3:a:national_science_foundation:squid_web_proxy:1.1:*:*:*:*:*:*:*","matchCriteriaId":"3C80314B-A472-416A-8B7C-E4A240A9ADCD"},{"vulnerable":true,"criteria":"cpe:2.3:a:national_science_foundation:squid_web_proxy:2.1:*:*:*:*:*:*:*","matchCriteriaId":"100F1BA1-3278-4917-9C42-80CEAE72CDB6"},{"vulnerable":true,"criteria":"cpe:2.3:a:national_science_foundation:squid_web_proxy:2.2:*:*:*:*:*:*:*","matchCriteriaId":"7676D506-ED4C-4A3B-8CA7-B0E5D9B3156E"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/33295","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/741","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.squid-cache.org/Versions/v2/2.2/bugs/","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3433","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/33295","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/741","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.squid-cache.org/Versions/v2/2.2/bugs/","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3433","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1488","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:32.927","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"sdrd daemon in IBM SP2 System Data Repository (SDR) allows remote attackers to read files without authentication."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:system_data_repository:sp_2.0:*:*:*:*:*:*:*","matchCriteriaId":"70B63CEB-0F9E-407C-AB16-2B05D983CA9B"}]}]}],"references":[{"url":"http://ciac.llnl.gov/ciac/bulletins/i-079a.shtml","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/7217.php","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/371","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://ciac.llnl.gov/ciac/bulletins/i-079a.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/7217.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/371","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1512","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:35.963","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The AMaViS virus scanner 0.2.0-pre4 and earlier allows remote attackers to execute arbitrary commands as root via an infected mail message with shell metacharacters in the reply-to field."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:amavis:virus_scanner:*:*:*:*:*:*:*:*","versionEndIncluding":"0.2_pre4","matchCriteriaId":"D447C999-F49C-4981-8ED6-67CD7F752F91"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=93219846414732&w=2","source":"cve@mitre.org"},{"url":"http://www.amavis.org/ChangeLog.txt","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/527","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2349","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93219846414732&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.amavis.org/ChangeLog.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/527","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2349","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1584","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:46.420","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Unknown vulnerability in (1) loadmodule, and (2) modload if modload is installed with setuid/setgid privileges, in SunOS 4.1.1 through 4.1.3c, and Open Windows 3.0, allows local users to gain root privileges via environment variables, a different vulnerability than CVE-1999-1586."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sun:openwindows:3.0:*:*:*:*:*:*:*","matchCriteriaId":"EC47C0A0-8A56-4869-9063-D48DBA3FEABC"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:4.1.1:*:*:*:*:*:*:*","matchCriteriaId":"92B19A06-832D-4974-9D08-2CE787228592"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:4.1.2:*:*:*:*:*:*:*","matchCriteriaId":"E3A07C67-66FB-4ECF-BECB-C2BE72A80F3B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:4.1.3:*:*:*:*:*:*:*","matchCriteriaId":"615FA6E4-4DE0-422A-9220-F747D95192C9"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:4.1.3c:*:*:*:*:*:*:*","matchCriteriaId":"915D5897-B5FF-4F26-936E-9BAEF2604A86"}]}]}],"references":[{"url":"http://sunsolve.sun.com/search/document.do?assetkey=1-22-00124-1","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.cert.org/advisories/CA-1993-18.html","source":"cve@mitre.org","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://sunsolve.sun.com/search/document.do?assetkey=1-22-00124-1","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.cert.org/advisories/CA-1993-18.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory","US Government Resource"]}]}},{"cve":{"id":"CVE-1999-1585","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:46.540","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The (1) rcS and (2) mountall programs in Sun Solaris 2.x, possibly before 2.4, start a privileged shell on the system console if fsck fails while the system is booting, which allows attackers with physical access to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.0:*:*:*:*:*:*:*","matchCriteriaId":"C1370216-93EB-400F-9AA6-CB2DC316DAA7"}]}]}],"references":[{"url":"http://sunsolve.sun.com/search/document.do?assetkey=1-22-00124-1","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://sunsolve.sun.com/search/document.do?assetkey=1-22-00124-1","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1586","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:46.653","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"loadmodule in SunOS 4.1.x, as used by xnews, does not properly sanitize its environment, which allows local users to gain privileges, a different vulnerability than CVE-1999-1584."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:4.1.1:*:*:*:*:*:*:*","matchCriteriaId":"92B19A06-832D-4974-9D08-2CE787228592"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:4.1.2:*:*:*:*:*:*:*","matchCriteriaId":"E3A07C67-66FB-4ECF-BECB-C2BE72A80F3B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:4.1.3:*:*:*:*:*:*:*","matchCriteriaId":"615FA6E4-4DE0-422A-9220-F747D95192C9"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:4.1.3c:*:*:*:*:*:*:*","matchCriteriaId":"915D5897-B5FF-4F26-936E-9BAEF2604A86"}]}]}],"references":[{"url":"http://www.cert.org/advisories/CA-1995-12.html","source":"cve@mitre.org","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.ciac.org/ciac/bulletins/g-02.shtml","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/498","source":"cve@mitre.org"},{"url":"http://www.cert.org/advisories/CA-1995-12.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.ciac.org/ciac/bulletins/g-02.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/498","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1587","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:46.783","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"/usr/ucb/ps in Sun Microsystems Solaris 8 and 9, and certain earlier releases, allows local users to view the environment variables and values of arbitrary processes via the -e option."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:9.0:*:sparc:*:*:*:*:*","matchCriteriaId":"A711CDC2-412C-499D-9FA6-7F25B06267C6"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.8:*:*:*:*:*:*:*","matchCriteriaId":"A2475113-CFE4-41C8-A86F-F2DA6548D224"}]}]}],"references":[{"url":"http://secunia.com/advisories/19426","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://securitytracker.com/id?1015833","source":"cve@mitre.org","tags":["Patch"]},{"url":"http://sunsolve.sun.com/search/document.do?assetkey=1-26-102215-1","source":"cve@mitre.org","tags":["Exploit","Patch"]},{"url":"http://www.osvdb.org/24200","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/19662","source":"cve@mitre.org"},{"url":"http://www.sunmanagers.org/archives/1996/1383.html","source":"cve@mitre.org","tags":["Exploit"]},{"url":"http://www.vupen.com/english/advisories/2006/1123","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/25460","source":"cve@mitre.org"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1470","source":"cve@mitre.org"},{"url":"http://secunia.com/advisories/19426","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://securitytracker.com/id?1015833","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"http://sunsolve.sun.com/search/document.do?assetkey=1-26-102215-1","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch"]},{"url":"http://www.osvdb.org/24200","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/19662","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.sunmanagers.org/archives/1996/1383.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]},{"url":"http://www.vupen.com/english/advisories/2006/1123","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/25460","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1470","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1588","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:46.927","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in nlps_server in Sun Solaris x86 2.4, 2.5, and 2.5.1 allows remote attackers to execute arbitrary code as root via a long string beginning with \"NLPS:002:002:\" to the listen (aka System V listener) port, TCP port 2766."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]},{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","affectedData":[{"vendor":"sun","product":"solaris","defaultStatus":"unknown","cpes":["cpe:2.3:o:sun:solaris:2.4:*:*:*:*:*:*:*"],"versions":[{"version":"2.4","status":"affected"}]},{"vendor":"sun","product":"solaris","defaultStatus":"unknown","cpes":["cpe:2.3:o:sun:solaris:2.5:*:*:*:*:*:*:*"],"versions":[{"version":"2.5","status":"affected"}]},{"vendor":"sun","product":"solaris","defaultStatus":"unknown","cpes":["cpe:2.3:o:sun:solaris:2.5.1:*:*:*:*:*:*:*"],"versions":[{"version":"2.5.1","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","baseScore":9.8,"baseSeverity":"CRITICAL","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":3.9,"impactScore":5.9}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}],"ssvcV203":[{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","ssvcData":{"timestamp":"2024-08-01T18:55:51.139162Z","id":"CVE-1999-1588","options":[{"exploitation":"none"},{"automatable":"yes"},{"technicalImpact":"total"}],"role":"CISA Coordinator","version":"2.0.3"}}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]},{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","type":"Secondary","description":[{"lang":"en","value":"CWE-119"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.4:*:x86:*:*:*:*:*","matchCriteriaId":"1F881110-7B54-49DA-B23A-710273430C44"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5:*:x86:*:*:*:*:*","matchCriteriaId":"200D8CB2-0D52-40A8-9CD9-6E4513605201"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5.1:*:x86:*:*:*:*:*","matchCriteriaId":"F66BAF35-A8B9-4E95-B270-444206FDD35B"}]}]}],"references":[{"url":"http://lsd-pl.net/files/get?SOLARIS/solx86_nlps_server","source":"cve@mitre.org"},{"url":"http://security-protocols.com/sploits/unsorted_exploits/nlps_server.c","source":"cve@mitre.org","tags":["Exploit"]},{"url":"http://www.securityfocus.com/bid/2319","source":"cve@mitre.org","tags":["Exploit"]},{"url":"http://www.securityfocus.com/data/vulnerabilities/exploits/nlps_server.c","source":"cve@mitre.org","tags":["Exploit"]},{"url":"http://lsd-pl.net/files/get?SOLARIS/solx86_nlps_server","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://security-protocols.com/sploits/unsorted_exploits/nlps_server.c","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]},{"url":"http://www.securityfocus.com/bid/2319","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]},{"url":"http://www.securityfocus.com/data/vulnerabilities/exploits/nlps_server.c","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]}]}},{"cve":{"id":"CVE-1999-1589","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:47.120","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Unspecified vulnerability in crontab in IBM AIX 3.2 allows local users to gain root privileges via unknown attack vectors."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-noinfo"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:1.2.1:*:*:*:*:*:*:*","matchCriteriaId":"73CE931A-1500-4450-B65A-591CAA3225AB"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:1.3:*:*:*:*:*:*:*","matchCriteriaId":"5F40A32B-3EF8-41D4-B6EC-3DC82D550365"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:2.2.1:*:*:*:*:*:*:*","matchCriteriaId":"28B1C99E-D05A-4778-8650-39B63CC8B2F4"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:3.1:*:*:*:*:*:*:*","matchCriteriaId":"CE321D29-3312-4F22-B930-1B119DA4BD27"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:3.2:*:*:*:*:*:*:*","matchCriteriaId":"DD5E0678-45C7-492A-963C-897494D6878F"}]}]}],"references":[{"url":"http://www.cert.org/advisories/CA-1992-10.html","source":"cve@mitre.org","tags":["Patch","US Government Resource"]},{"url":"http://www.securityfocus.com/bid/357","source":"cve@mitre.org","tags":["Patch"]},{"url":"http://www.cert.org/advisories/CA-1992-10.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","US Government Resource"]},{"url":"http://www.securityfocus.com/bid/357","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]}]}},{"cve":{"id":"CVE-1999-1590","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:47.250","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in Muhammad A. Muquit wwwcount (Count.cgi) 2.3 allows remote attackers to read arbitrary GIF files via \"..\" sequences in the image parameter, a different vulnerability than CVE-1999-0021."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:S/C:P/I:N/A:N","baseScore":3.5,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"SINGLE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":6.8,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:wwwcount:wwwcount:2.3:*:*:*:*:*:*:*","matchCriteriaId":"B2D184E2-F799-4274-A7DE-4770CA359C80"}]}]}],"references":[{"url":"http://seclists.org/bugtraq/1997/Oct/0058.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://seclists.org/bugtraq/1997/Oct/0058.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1591","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:47.373","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Internet Information Services (IIS) server 4.0 SP4, without certain hotfixes released for SP4, does not require authentication credentials under certain conditions, which allows remote attackers to bypass authentication requirements, as demonstrated by connecting via Microsoft Visual InterDev 6.0."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:sp4:*:*:*:*:*:*","matchCriteriaId":"B10C80B4-4C21-4D91-9A74-B78B6BF9D374"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:visual_interdev:6.0:*:*:*:*:*:*:*","matchCriteriaId":"394EC852-89B9-4246-86DB-D27A38ED29F5"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/ntbugtraq/1998-1999/msg00276.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/1998-1999/msg00277.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/190","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/1998-1999/msg00276.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/1998-1999/msg00277.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/190","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1592","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:47.503","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Multiple unspecified vulnerabilities in sendmail 5, as installed on Sun SunOS 4.1.3_U1 and 4.1.4, have unspecified attack vectors and impact.  NOTE: this might overlap CVE-1999-0129."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:o:sun:sunos:4.1.3u1:*:*:*:*:*:*:*","matchCriteriaId":"FD1BA107-F2D3-4F13-82EC-4576C429E3C1"},{"vulnerable":false,"criteria":"cpe:2.3:o:sun:sunos:4.1.4:*:*:*:*:*:*:*","matchCriteriaId":"1070749A-65E9-439A-A7CC-3CE529A5D5E7"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sendmail:sendmail:5:*:*:*:*:*:*:*","matchCriteriaId":"7AFADCBA-DB24-451F-9E1D-FBBEE41C5D52"}]}]}],"references":[{"url":"http://sunsolve.sun.com/search/document.do?assetkey=1-22-00159-1","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/243","source":"cve@mitre.org","tags":["Patch"]},{"url":"http://sunsolve.sun.com/search/document.do?assetkey=1-22-00159-1","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/243","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]}]}},{"cve":{"id":"CVE-2000-0011","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:49.127","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in AnalogX SimpleServer:WWW HTTP server allows remote attackers to execute commands via a long GET request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:analogx:simpleserver_www:1.0.1:*:*:*:*:*:*:*","matchCriteriaId":"79C629DD-3F9B-4824-A13C-85B2BDFDF557"}]}]}],"references":[{"url":"http://www.analogx.com/contents/download/network/sswww.htm","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1184","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/906","source":"cve@mitre.org"},{"url":"http://www.analogx.com/contents/download/network/sswww.htm","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1184","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/906","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0013","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:49.387","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IRIX soundplayer program allows local users to gain privileges by including shell metacharacters in a .wav file, which is executed via the midikeys program."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.2:*:*:*:*:*:*:*","matchCriteriaId":"0ECE564D-B4BB-4C05-88CC-CDC3F8E4E366"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/909","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/909","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0015","sourceIdentifier":"cve@mitre.org","published":"1999-12-31T05:00:00.000","lastModified":"2026-06-16T21:50:49.637","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"CascadeView TFTP server allows local users to gain privileges via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ascend:cascadeview_ux:1.0:*:*:*:*:*:*:*","matchCriteriaId":"FBDA4DDC-9DA4-4815-835A-8FFB293AABD2"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/910","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/910","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0964","sourceIdentifier":"cve@mitre.org","published":"2000-01-01T05:00:00.000","lastModified":"2026-06-16T21:49:25.217","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in FreeBSD setlocale in the libc module allows attackers to execute arbitrary code via a long PATH_LOCALE environment variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.1.6:*:*:*:*:*:*:*","matchCriteriaId":"CA26ABBE-9973-45FA-9E9B-82170B751219"}]}]}],"references":[{"url":"http://www.osvdb.org/6086","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/6086","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0069","sourceIdentifier":"cve@mitre.org","published":"2000-01-01T05:00:00.000","lastModified":"2026-06-16T21:50:56.200","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The recover program in Solstice Backup allows local users to restore sensitive files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sun:solstice_backup:5.1:*:*:*:*:*:*:*","matchCriteriaId":"7A1F23BD-2517-4074-8DD6-7EC24A4F402C"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0069","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0069","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0120","sourceIdentifier":"cve@mitre.org","published":"2000-01-01T05:00:00.000","lastModified":"2026-06-16T21:51:02.523","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Remote Access Service invoke.cfm template in Allaire Spectra 1.0 allows users to bypass authentication via the bAuthenticated parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:allaire:spectra:1.0:*:*:*:*:*:*:*","matchCriteriaId":"C7218A9E-7AA1-4536-967B-72B37B03C9C5"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/955","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4025","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/955","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4025","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0077","sourceIdentifier":"cve@mitre.org","published":"2000-01-02T05:00:00.000","lastModified":"2026-06-16T21:50:57.150","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The October 1998 version of the HP-UX aserver program allows local users to gain privileges by specifying an alternate PATH which aserver uses to find the ps and grep commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10:*:*:*:*:*:*:*","matchCriteriaId":"CC96D014-7CE2-4F61-BBAF-507829C542EA"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:11:*:*:*:*:*:*:*","matchCriteriaId":"87FB80D8-1BE7-46F7-9F7E-B7DA88D039F8"}]}]}],"references":[{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5549","source":"cve@mitre.org"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5549","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0078","sourceIdentifier":"cve@mitre.org","published":"2000-01-02T05:00:00.000","lastModified":"2026-06-16T21:50:57.287","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The June 1999 version of the HP-UX aserver program allows local users to gain privileges by specifying an alternate PATH which aserver uses to find the awk command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10:*:*:*:*:*:*:*","matchCriteriaId":"CC96D014-7CE2-4F61-BBAF-507829C542EA"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:11:*:*:*:*:*:*:*","matchCriteriaId":"87FB80D8-1BE7-46F7-9F7E-B7DA88D039F8"}]}]}],"references":[{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5728","source":"cve@mitre.org"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5728","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0082","sourceIdentifier":"cve@mitre.org","published":"2000-01-02T05:00:00.000","lastModified":"2026-06-16T21:50:57.770","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WebTV email client allows remote attackers to force the client to send email without the user's knowledge via HTML."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:webtv:*:*:*:*:*:*:*:*","matchCriteriaId":"3BB38E8E-B3B2-4C2F-84E7-D52BFD5E9236"}]}]}],"references":[{"url":"http://net4tv.com/voice/story.cfm?StoryID=1823","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.wired.com/news/technology/0%2C1282%2C33420%2C00.html","source":"cve@mitre.org"},{"url":"http://net4tv.com/voice/story.cfm?StoryID=1823","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.wired.com/news/technology/0%2C1282%2C33420%2C00.html","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0735","sourceIdentifier":"cve@mitre.org","published":"2000-01-04T05:00:00.000","lastModified":"2026-06-16T21:48:56.883","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"KDE K-Mail allows local users to gain privileges via a symlink attack in temporary user directories."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:kde:k-mail:*:*:*:*:*:*:*:*","versionEndIncluding":"1.1","matchCriteriaId":"66BF3084-39C8-4608-9EF4-207B69ADBF76"}]}]}],"references":[{"url":"http://www.redhat.com/support/errata/RHSA1999015_01.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/300","source":"cve@mitre.org","tags":["Exploit","Patch"]},{"url":"http://www.redhat.com/support/errata/RHSA1999015_01.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/300","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch"]}]}},{"cve":{"id":"CVE-1999-0744","sourceIdentifier":"cve@mitre.org","published":"2000-01-04T05:00:00.000","lastModified":"2026-06-16T21:48:57.993","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Netscape Enterprise Server and FastTrask Server allows remote attackers to gain privileges via a long HTTP GET request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:enterprise_server:*:*:*:*:*:*:*:*","matchCriteriaId":"EF437206-7696-4583-A6DC-A622F02001EF"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:fasttrack_server:*:*:*:*:*:*:*:*","matchCriteriaId":"6BBB1D15-C680-460B-BCCB-8E15C1F24AD5"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/603","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/603","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0876","sourceIdentifier":"cve@mitre.org","published":"2000-01-04T05:00:00.000","lastModified":"2026-06-16T21:49:14.490","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Internet Explorer 4.0 via EMBED tag."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":true,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-119"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:3.0:*:mac_os:*:*:*:*:*","matchCriteriaId":"2277E59E-D981-4D9D-8FC0-F124FB8B9C5B"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:3.1:*:mac_os:*:*:*:*:*","matchCriteriaId":"C6CB69E1-189F-425C-9023-DE2741669507"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:4.0:a:*:*:*:*:*:*","matchCriteriaId":"EB817B2B-6F65-4989-9177-153518F32894"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0:*:*:*:*:*:*:*","matchCriteriaId":"A5B815D9-BC21-4A17-AF00-B8AD181027D7"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.1:*:*:*:*:*:*:*","matchCriteriaId":"44FF4E47-AD75-42C7-BB84-42BBA46A58B2"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ185959","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/support/kb/articles/q176/6/97.asp","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ185959","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://support.microsoft.com/support/kb/articles/q176/6/97.asp","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0894","sourceIdentifier":"cve@mitre.org","published":"2000-01-04T05:00:00.000","lastModified":"2026-06-16T21:49:16.680","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Red Hat Linux screen program does not use Unix98 ptys, allowing local users to write to other terminals."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:*:*:*:*:*:*:*:*","matchCriteriaId":"B133DAC8-2B0D-4F83-9025-AD071740187A"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0894","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0894","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0049","sourceIdentifier":"cve@mitre.org","published":"2000-01-04T05:00:00.000","lastModified":"2026-06-16T21:50:53.757","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Winamp client allows remote attackers to execute commands via a long entry in a .pls file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:nullsoft:winamp:2.0:*:*:*:*:*:*:*","matchCriteriaId":"CAFFD8E7-A443-4131-9CFB-67AA9739E6E0"},{"vulnerable":true,"criteria":"cpe:2.3:a:nullsoft:winamp:2.10:*:*:*:*:*:*:*","matchCriteriaId":"6E0581F9-9B99-43F6-852E-BD28BB47B169"}]}]}],"references":[{"url":"http://www.osvdb.org/12022","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/925","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/12022","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/925","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0050","sourceIdentifier":"cve@mitre.org","published":"2000-01-04T05:00:00.000","lastModified":"2026-06-16T21:50:53.890","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Allaire Spectra Webtop allows authenticated users to access other Webtop sections by specifying explicit URLs."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:allaire:spectra:1.0:*:*:*:*:*:*:*","matchCriteriaId":"C7218A9E-7AA1-4536-967B-72B37B03C9C5"}]}]}],"references":[{"url":"http://www.allaire.com/handlers/index.cfm?ID=13976&Method=Full","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/915","source":"cve@mitre.org"},{"url":"http://www.allaire.com/handlers/index.cfm?ID=13976&Method=Full","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/915","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0051","sourceIdentifier":"cve@mitre.org","published":"2000-01-04T05:00:00.000","lastModified":"2026-06-16T21:50:54.023","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Allaire Spectra Configuration Wizard allows remote attackers to cause a denial of service by repeatedly resubmitting data collections for indexing via a URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:allaire:spectra:1.0:*:*:*:*:*:*:*","matchCriteriaId":"C7218A9E-7AA1-4536-967B-72B37B03C9C5"}]}]}],"references":[{"url":"http://www.allaire.com/handlers/index.cfm?ID=13977&Method=Full","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/916","source":"cve@mitre.org"},{"url":"http://www.allaire.com/handlers/index.cfm?ID=13977&Method=Full","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/916","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0052","sourceIdentifier":"cve@mitre.org","published":"2000-01-04T05:00:00.000","lastModified":"2026-06-16T21:50:54.140","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Red Hat userhelper program in the usermode package allows local users to gain root access via PAM and a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"D323A6B7-2741-4F31-B0D6-5D6FB738A2A1"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"ACAAD334-2CA7-4B3B-BA25-302E7610BC2A"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:i386:*:*:*:*:*","matchCriteriaId":"89F65C9D-BD68-4A86-BFDC-E7CE76F13948"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:i386:*:*:*:*:*","matchCriteriaId":"B72D6205-DFA4-41D9-B3B6-0B7DA756CD8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:turbolinux:turbolinux:3.5b2:*:*:*:*:*:*:*","matchCriteriaId":"667CF388-298D-4B64-9BA5-89D153FFA998"},{"vulnerable":true,"criteria":"cpe:2.3:o:turbolinux:turbolinux:4.2:*:*:*:*:*:*:*","matchCriteriaId":"5D15A193-3E01-467C-AEAD-497F4600DB06"},{"vulnerable":true,"criteria":"cpe:2.3:o:turbolinux:turbolinux:4.4:*:*:*:*:*:*:*","matchCriteriaId":"F7C765FF-0A3D-4BF4-B236-609658776ACA"},{"vulnerable":true,"criteria":"cpe:2.3:o:turbolinux:turbolinux:6.0.2:*:*:*:*:*:*:*","matchCriteriaId":"C6619B49-8A89-4600-A47F-A39C8BF54259"}]}]}],"references":[{"url":"http://www.l0pht.com/advisories/pam_advisory","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-001.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/913","source":"cve@mitre.org"},{"url":"http://xforce.iss.net/search.php3?type=2&pattern=linux-pam-userhelper","source":"cve@mitre.org"},{"url":"http://www.l0pht.com/advisories/pam_advisory","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-001.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/913","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://xforce.iss.net/search.php3?type=2&pattern=linux-pam-userhelper","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0053","sourceIdentifier":"cve@mitre.org","published":"2000-01-04T05:00:00.000","lastModified":"2026-06-16T21:50:54.267","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Commercial Internet System (MCIS) IMAP server allows remote attackers to cause a denial of service via a malformed IMAP request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:commercial_internet_system:2.0:*:*:*:*:*:*:*","matchCriteriaId":"81514AB5-388D-4D13-B63A-C237A502B86A"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:commercial_internet_system:2.5:*:*:*:*:*:*:*","matchCriteriaId":"879AFDCC-B9D8-41EF-85DD-70CC1BD5227C"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ246731","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/912","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-001","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ246731","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/912","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-001","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0057","sourceIdentifier":"cve@mitre.org","published":"2000-01-04T05:00:00.000","lastModified":"2026-06-16T21:50:54.753","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Cold Fusion CFCACHE tag places temporary cache files within the web document root, allowing remote attackers to obtain sensitive system information."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:allaire:coldfusion_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"C334CA02-D4EC-40D0-B75F-AFBC0F3903E8"},{"vulnerable":true,"criteria":"cpe:2.3:a:allaire:coldfusion_server:4.0.1:*:*:*:*:*:*:*","matchCriteriaId":"3630623B-468C-4E71-9C57-EFF83E5EFA4A"}]}]}],"references":[{"url":"http://www.allaire.com/handlers/index.cfm?ID=13978&Method=Full","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/917","source":"cve@mitre.org"},{"url":"http://www.allaire.com/handlers/index.cfm?ID=13978&Method=Full","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/917","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0059","sourceIdentifier":"cve@mitre.org","published":"2000-01-04T05:00:00.000","lastModified":"2026-06-16T21:50:55.000","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"PHP3 with safe_mode enabled does not properly filter shell metacharacters from commands that are executed by popen, which could allow remote attackers to execute commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:3.0:*:*:*:*:*:*:*","matchCriteriaId":"245C601D-0FE7-47E3-8304-6FF45E9567D6"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:3.0.1:*:*:*:*:*:*:*","matchCriteriaId":"691BB8BB-329A-4640-B758-7590C99B5E42"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:3.0.2:*:*:*:*:*:*:*","matchCriteriaId":"E2BC4CCE-2774-463E-82EA-36CD442D3A7B"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:3.0.3:*:*:*:*:*:*:*","matchCriteriaId":"C478024C-2FCD-463F-A75E-E04660AA9DF1"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:3.0.4:*:*:*:*:*:*:*","matchCriteriaId":"AC9C32F4-5102-4E9B-9F32-B24B65A5ED2F"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:3.0.5:*:*:*:*:*:*:*","matchCriteriaId":"A5BD99C0-E875-496E-BE5E-A8DCBD414B5C"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:3.0.6:*:*:*:*:*:*:*","matchCriteriaId":"1851ADE5-C70C-46E0-941A-6ADF7DB5C126"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:3.0.7:*:*:*:*:*:*:*","matchCriteriaId":"69DA3BA2-AF53-4C9D-93FA-0317841595B1"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:3.0.8:*:*:*:*:*:*:*","matchCriteriaId":"FB0CFEE5-2274-4BBC-A24A-3A0D13F607FA"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:3.0.9:*:*:*:*:*:*:*","matchCriteriaId":"67B59D6A-7EDA-4C34-81D6-C2557C85D164"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:3.0.10:*:*:*:*:*:*:*","matchCriteriaId":"AEBA40B6-8FDF-41AA-8166-F491FF7F3118"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:3.0.11:*:*:*:*:*:*:*","matchCriteriaId":"E74E2B72-A428-4BB3-B6F8-0AF5E487A807"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:3.0.12:*:*:*:*:*:*:*","matchCriteriaId":"1E2F1D82-8E6A-4FBF-9055-A0F395DC17FA"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:3.0.13:*:*:*:*:*:*:*","matchCriteriaId":"945FF149-3446-4905-BCA1-C397E3497B58"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/911","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/911","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0062","sourceIdentifier":"cve@mitre.org","published":"2000-01-04T05:00:00.000","lastModified":"2026-06-16T21:50:55.373","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The DTML implementation in the Z Object Publishing Environment (Zope) allows remote attackers to conduct unauthorized activities."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:zope:zope:1.10.3:*:*:*:*:*:*:*","matchCriteriaId":"46B2B101-676C-4EF3-90FB-7B5D36D1ADF0"},{"vulnerable":true,"criteria":"cpe:2.3:a:zope:zope:2.1.1:*:*:*:*:*:*:*","matchCriteriaId":"6C49596F-E215-4B70-8397-3C247F509D43"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/922","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000104222219.B41650%40schvin.net","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/922","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000104222219.B41650%40schvin.net","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0085","sourceIdentifier":"cve@mitre.org","published":"2000-01-04T05:00:00.000","lastModified":"2026-06-16T21:50:58.153","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Hotmail does not properly filter JavaScript code from a user's mailbox, which allows a remote attacker to execute code via the LOWSRC or DYNRC parameters in the IMG tag."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:hotmail:*:*:*:*:*:*:*:*","matchCriteriaId":"4E5C1DBF-21AF-4A3E-8A4A-42CCD6DD40C3"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0085","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0085","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0056","sourceIdentifier":"cve@mitre.org","published":"2000-01-05T05:00:00.000","lastModified":"2026-06-16T21:50:54.633","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IMail IMONITOR status.cgi CGI script allows remote attackers to cause a denial of service with many calls to status.cgi."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:imail:5.0.8:*:*:*:*:*:*:*","matchCriteriaId":"6E11FF5E-9B3D-4818-B091-1286ECF47937"},{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:imail:6.0:*:*:*:*:*:*:*","matchCriteriaId":"9EADF489-0420-4C47-9F73-78114C2042F3"},{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:imail:6.1:*:*:*:*:*:*:*","matchCriteriaId":"EAEA8FB7-3D42-4A39-BCCD-2DE3BC3EAC19"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/914","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/914","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0058","sourceIdentifier":"cve@mitre.org","published":"2000-01-05T05:00:00.000","lastModified":"2026-06-16T21:50:54.883","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Network HotSync program in Handspring Visor does not have authentication, which allows remote attackers to retrieve email and files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:handspring:visor_network_hotsync:1.0:*:*:*:*:*:*:*","matchCriteriaId":"BAEC17D8-DDC9-420A-8CC8-0FA1E2F19FCE"}]}]}],"references":[{"url":"http://www.security-express.com/archives/bugtraq/2000-01/0085.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/920","source":"cve@mitre.org"},{"url":"http://www.security-express.com/archives/bugtraq/2000-01/0085.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/920","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0044","sourceIdentifier":"cve@mitre.org","published":"2000-01-06T05:00:00.000","lastModified":"2026-06-16T21:50:53.137","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Macros in War FTP 1.70 and 1.67b2 allow local or remote attackers to read arbitrary files or execute commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:jgaa:warftpd:*:*:*:*:*:*:*:*","versionEndIncluding":"1.67b2","matchCriteriaId":"2FD852E0-64EB-404B-8930-37C50EBB4242"},{"vulnerable":true,"criteria":"cpe:2.3:a:jgaa:warftpd:1.70b:*:*:*:*:*:*:*","matchCriteriaId":"8751BED4-80DB-4819-8566-C7143B995825"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/919","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/919","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0055","sourceIdentifier":"cve@mitre.org","published":"2000-01-06T05:00:00.000","lastModified":"2026-06-16T21:50:54.510","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Solaris chkperm command allows local users to gain root access via a long -n option."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.4:*:x86:*:*:*:*:*","matchCriteriaId":"1F881110-7B54-49DA-B23A-710273430C44"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5:*:x86:*:*:*:*:*","matchCriteriaId":"200D8CB2-0D52-40A8-9CD9-6E4513605201"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5.1:*:ppc:*:*:*:*:*","matchCriteriaId":"54AF87E4-52A4-44CA-B48E-A5BB139E6410"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5.1:*:x86:*:*:*:*:*","matchCriteriaId":"F66BAF35-A8B9-4E95-B270-444206FDD35B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.6:*:*:*:*:*:*:*","matchCriteriaId":"34EBF074-78C8-41AF-88F1-DA6726E56F8B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:7.0:*:x86:*:*:*:*:*","matchCriteriaId":"8F1F312C-413F-4DB4-ABF4-48E33F6FECF2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:-:*:*:*:*:*:*:*","matchCriteriaId":"369207B4-96FA-4324-9445-98FAE8ECF5DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.3:*:*:*:*:*:*:*","matchCriteriaId":"C7A22D21-E0A9-4B56-86C7-805AD1A610D6"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.4:*:*:*:*:*:*:*","matchCriteriaId":"7AAC8954-74A8-4FE3-ABE7-57DA041D9D8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5:*:*:*:*:*:*:*","matchCriteriaId":"5B72953B-E873-4E44-A3CF-12D770A0D416"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5.1:*:*:*:*:*:*:*","matchCriteriaId":"39F847DB-65A9-47DA-BCFA-A179E5E2301A"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/918","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/918","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0084","sourceIdentifier":"cve@mitre.org","published":"2000-01-06T05:00:00.000","lastModified":"2026-06-16T21:50:58.020","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"CuteFTP uses weak encryption to store password information in its tree.dat file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:globalscape:cuteftp:*:*:*:*:*:*:*:*","versionEndIncluding":"2.x","matchCriteriaId":"12F2BB52-BA26-407A-AFCF-52B134BB9AB3"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0084","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0084","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0061","sourceIdentifier":"cve@mitre.org","published":"2000-01-07T05:00:00.000","lastModified":"2026-06-16T21:50:55.253","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internet Explorer 5 does not modify the security zone for a document that is being loaded into a window until after the document has been loaded, which could allow remote attackers to execute Javascript in a different security context while the document is loading."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0:*:*:*:*:*:*:*","matchCriteriaId":"A5B815D9-BC21-4A17-AF00-B8AD181027D7"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0.1:*:*:*:*:*:*:*","matchCriteriaId":"42502347-DD40-4F8C-9861-C0A88A3F8608"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.01:*:*:*:*:*:*:*","matchCriteriaId":"6219D36E-9E2C-4DC7-8FD5-FAD144A333F6"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.5:preview:*:*:*:*:*:*","matchCriteriaId":"8E93C22E-812E-4CDA-9850-2386CE1E817A"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/923","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/923","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1220","sourceIdentifier":"cve@mitre.org","published":"2000-01-08T05:00:00.000","lastModified":"2026-06-16T21:53:24.513","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The line printer daemon (lpd) in the lpr package in multiple Linux operating systems allows local users to gain root privileges by causing sendmail to execute with arbitrary command line arguments, as demonstrated using the -C option to specify a configuration file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5:*:*:*:*:*:*:*","matchCriteriaId":"C30D6962-3DBB-4DF8-A04F-8E47AFEDCF99"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.1:*:*:*:*:*:*:*","matchCriteriaId":"36B60E50-4F5A-4404-BEA3-C94F7D27B156"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.2:*:*:*:*:*:*:*","matchCriteriaId":"6ECB750B-9F53-4DB6-8B26-71BCCA446FF7"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.3:*:*:*:*:*:*:*","matchCriteriaId":"E6B2E6D1-8C2D-4E15-A6BB-E4FE878ED1E7"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.4:*:*:*:*:*:*:*","matchCriteriaId":"440B7208-34DB-4898-8461-4E703F7EDFB7"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.5:*:*:*:*:*:*:*","matchCriteriaId":"5663579C-3AD2-4E5B-A595-C8DB984F9C26"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.6:*:*:*:*:*:*:*","matchCriteriaId":"D07AA144-6FD7-4C80-B4F2-D21C1AFC864A"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.7:*:*:*:*:*:*:*","matchCriteriaId":"29113D8E-9618-4A0E-9157-678332082858"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.8:*:*:*:*:*:*:*","matchCriteriaId":"313613E9-4837-433C-90EE-84A92E8D24E5"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.9:*:*:*:*:*:*:*","matchCriteriaId":"41AA1290-5039-406F-B195-3A4C018202D3"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.10:*:*:*:*:*:*:*","matchCriteriaId":"60CC9410-F6B8-4748-B76F-30626279028E"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.11:*:*:*:*:*:*:*","matchCriteriaId":"DCC67401-C85A-4E4E-AE61-85FEBBF4346B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.12:*:*:*:*:*:*:*","matchCriteriaId":"1C4427AC-07C1-4765-981B-B5D86D698C2D"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.13:*:*:*:*:*:*:*","matchCriteriaId":"63EF0CEE-74A9-45C8-8AFD-77815230ACC6"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.14f:*:*:*:*:*:*:*","matchCriteriaId":"A7B59E7C-B059-41CD-AE33-E9623ADA12BC"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.14m:*:*:*:*:*:*:*","matchCriteriaId":"0DF1B657-C910-4BB0-828C-09B6A59D988D"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.15f:*:*:*:*:*:*:*","matchCriteriaId":"72D61A9F-AC57-4DD9-9047-74BFA9BFACFC"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.15m:*:*:*:*:*:*:*","matchCriteriaId":"C254FC5D-895D-4EFC-B9A7-74699D9FE65E"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.16f:*:*:*:*:*:*:*","matchCriteriaId":"27532639-37CD-4BD2-AE48-F741009D3449"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.16m:*:*:*:*:*:*:*","matchCriteriaId":"F83879DE-1BD7-4FF7-ACC6-5B119DB09BF9"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.17f:*:*:*:*:*:*:*","matchCriteriaId":"EED22734-8AAC-4897-BB71-438E19B8A005"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.17m:*:*:*:*:*:*:*","matchCriteriaId":"FEA9C28F-18E6-4199-9740-FAB00563EBF7"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.18f:*:*:*:*:*:*:*","matchCriteriaId":"C6E63313-9533-478D-ACC0-C050FBA3EACF"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.18m:*:*:*:*:*:*:*","matchCriteriaId":"EA0A7D5D-BDD9-45F8-9BE7-3B01D70C8CC1"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:4.0:*:*:*:*:*:*:*","matchCriteriaId":"C9092D88-585D-4A0C-B181-E8D93563C74B"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:4.1:*:*:*:*:*:*:*","matchCriteriaId":"D8211154-6685-4FF0-B3ED-43A5E5763A10"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:4.2:*:*:*:*:*:*:*","matchCriteriaId":"F299301C-6BFC-436C-9CFD-2E291D3702AE"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.0:*:*:*:*:*:*:*","matchCriteriaId":"4BF54738-3C44-4FD4-AA9C-CAB2E86B1DC1"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.1:*:*:*:*:*:*:*","matchCriteriaId":"4EF44364-0F57-4B74-81B0-501EA6B58501"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:i386:*:*:*:*:*","matchCriteriaId":"363AB7DB-A8BA-4D58-97C4-1DF1F0F43E07"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"2DFA94D5-0139-490C-8257-0751FE9FBAE4"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:i386:*:*:*:*:*","matchCriteriaId":"B72D6205-DFA4-41D9-B3B6-0B7DA756CD8F"}]}]}],"references":[{"url":"ftp://patches.sgi.com/support/free/security/advisories/20021104-01-P","source":"cve@mitre.org"},{"url":"http://seclists.org/lists/bugtraq/2000/Jan/0116.html","source":"cve@mitre.org"},{"url":"http://www.atstake.com/research/advisories/2000/lpd_advisory.txt","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/2000/20000109","source":"cve@mitre.org"},{"url":"http://www.kb.cert.org/vuls/id/39001","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://www.l0pht.com/advisories/lpd_advisory","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-002.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/927","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3841","source":"cve@mitre.org"},{"url":"ftp://patches.sgi.com/support/free/security/advisories/20021104-01-P","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://seclists.org/lists/bugtraq/2000/Jan/0116.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.atstake.com/research/advisories/2000/lpd_advisory.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.debian.org/security/2000/20000109","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.kb.cert.org/vuls/id/39001","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"http://www.l0pht.com/advisories/lpd_advisory","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-002.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/927","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3841","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1221","sourceIdentifier":"cve@mitre.org","published":"2000-01-08T05:00:00.000","lastModified":"2026-06-16T21:53:24.660","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The line printer daemon (lpd) in the lpr package in multiple Linux operating systems authenticates by comparing the reverse-resolved hostname of the local machine to the hostname of the print server as returned by gethostname, which allows remote attackers to bypass intended access controls by modifying the DNS for the attacking IP."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5:*:*:*:*:*:*:*","matchCriteriaId":"C30D6962-3DBB-4DF8-A04F-8E47AFEDCF99"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.1:*:*:*:*:*:*:*","matchCriteriaId":"36B60E50-4F5A-4404-BEA3-C94F7D27B156"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.2:*:*:*:*:*:*:*","matchCriteriaId":"6ECB750B-9F53-4DB6-8B26-71BCCA446FF7"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.3:*:*:*:*:*:*:*","matchCriteriaId":"E6B2E6D1-8C2D-4E15-A6BB-E4FE878ED1E7"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.4:*:*:*:*:*:*:*","matchCriteriaId":"440B7208-34DB-4898-8461-4E703F7EDFB7"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.5:*:*:*:*:*:*:*","matchCriteriaId":"5663579C-3AD2-4E5B-A595-C8DB984F9C26"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.6:*:*:*:*:*:*:*","matchCriteriaId":"D07AA144-6FD7-4C80-B4F2-D21C1AFC864A"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.7:*:*:*:*:*:*:*","matchCriteriaId":"29113D8E-9618-4A0E-9157-678332082858"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.8:*:*:*:*:*:*:*","matchCriteriaId":"313613E9-4837-433C-90EE-84A92E8D24E5"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.9:*:*:*:*:*:*:*","matchCriteriaId":"41AA1290-5039-406F-B195-3A4C018202D3"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.10:*:*:*:*:*:*:*","matchCriteriaId":"60CC9410-F6B8-4748-B76F-30626279028E"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.11:*:*:*:*:*:*:*","matchCriteriaId":"DCC67401-C85A-4E4E-AE61-85FEBBF4346B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.12:*:*:*:*:*:*:*","matchCriteriaId":"1C4427AC-07C1-4765-981B-B5D86D698C2D"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.13:*:*:*:*:*:*:*","matchCriteriaId":"63EF0CEE-74A9-45C8-8AFD-77815230ACC6"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.14f:*:*:*:*:*:*:*","matchCriteriaId":"A7B59E7C-B059-41CD-AE33-E9623ADA12BC"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.14m:*:*:*:*:*:*:*","matchCriteriaId":"0DF1B657-C910-4BB0-828C-09B6A59D988D"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.15f:*:*:*:*:*:*:*","matchCriteriaId":"72D61A9F-AC57-4DD9-9047-74BFA9BFACFC"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.15m:*:*:*:*:*:*:*","matchCriteriaId":"C254FC5D-895D-4EFC-B9A7-74699D9FE65E"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.16f:*:*:*:*:*:*:*","matchCriteriaId":"27532639-37CD-4BD2-AE48-F741009D3449"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.16m:*:*:*:*:*:*:*","matchCriteriaId":"F83879DE-1BD7-4FF7-ACC6-5B119DB09BF9"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.17f:*:*:*:*:*:*:*","matchCriteriaId":"EED22734-8AAC-4897-BB71-438E19B8A005"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.17m:*:*:*:*:*:*:*","matchCriteriaId":"FEA9C28F-18E6-4199-9740-FAB00563EBF7"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.18f:*:*:*:*:*:*:*","matchCriteriaId":"C6E63313-9533-478D-ACC0-C050FBA3EACF"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.18m:*:*:*:*:*:*:*","matchCriteriaId":"EA0A7D5D-BDD9-45F8-9BE7-3B01D70C8CC1"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.1:*:*:*:*:*:*:*","matchCriteriaId":"3C67BDA1-9451-4026-AC6D-E912C882A757"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:4.1:*:*:*:*:*:*:*","matchCriteriaId":"D8211154-6685-4FF0-B3ED-43A5E5763A10"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:4.2:*:*:*:*:*:*:*","matchCriteriaId":"F299301C-6BFC-436C-9CFD-2E291D3702AE"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.0:*:*:*:*:*:*:*","matchCriteriaId":"4BF54738-3C44-4FD4-AA9C-CAB2E86B1DC1"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:i386:*:*:*:*:*","matchCriteriaId":"363AB7DB-A8BA-4D58-97C4-1DF1F0F43E07"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"2DFA94D5-0139-490C-8257-0751FE9FBAE4"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:i386:*:*:*:*:*","matchCriteriaId":"B72D6205-DFA4-41D9-B3B6-0B7DA756CD8F"}]}]}],"references":[{"url":"ftp://patches.sgi.com/support/free/security/advisories/20021104-01-P","source":"cve@mitre.org","tags":["Patch"]},{"url":"http://rhn.redhat.com/errata/RHSA-2000-002.html","source":"cve@mitre.org"},{"url":"http://www.atstake.com/research/advisories/2000/lpd_advisory.txt","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/2000/20000109","source":"cve@mitre.org","tags":["Patch"]},{"url":"http://www.kb.cert.org/vuls/id/30308","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://www.l0pht.com/advisories/lpd_advisory","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/927","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3840","source":"cve@mitre.org"},{"url":"ftp://patches.sgi.com/support/free/security/advisories/20021104-01-P","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"http://rhn.redhat.com/errata/RHSA-2000-002.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.atstake.com/research/advisories/2000/lpd_advisory.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.debian.org/security/2000/20000109","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"http://www.kb.cert.org/vuls/id/30308","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"http://www.l0pht.com/advisories/lpd_advisory","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/927","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3840","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0046","sourceIdentifier":"cve@mitre.org","published":"2000-01-10T05:00:00.000","lastModified":"2026-06-16T21:50:53.383","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in ICQ 99b 1.1.1.1 client allows remote attackers to execute commands via a malformed URL within an ICQ message."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mirabilis:icq:0.99b_1.1.1.1:*:*:*:*:*:*:*","matchCriteriaId":"55BF15F6-FFF7-4A0D-A2FF-8160AB3D70C5"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/929","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/929","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0080","sourceIdentifier":"cve@mitre.org","published":"2000-01-10T05:00:00.000","lastModified":"2026-06-16T21:50:57.527","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"AIX techlibss allows local users to overwrite files via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.2:*:*:*:*:*:*:*","matchCriteriaId":"45F3C5D8-8BC3-44EB-917A-D0BA051D3D9D"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94757136413681&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/931","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94757136413681&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/931","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0081","sourceIdentifier":"cve@mitre.org","published":"2000-01-10T05:00:00.000","lastModified":"2026-06-16T21:50:57.650","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Hotmail does not properly filter JavaScript code from a user's mailbox, which allows a remote attacker to execute the code by using hexadecimal codes to specify the javascript: protocol, e.g. j&#x41;vascript."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:hotmail:*:*:*:*:*:*:*:*","matchCriteriaId":"4E5C1DBF-21AF-4A3E-8A4A-42CCD6DD40C3"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0081","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0081","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0045","sourceIdentifier":"cve@mitre.org","published":"2000-01-11T05:00:00.000","lastModified":"2026-06-16T21:50:53.257","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"MySQL allows local users to modify passwords for arbitrary MySQL users via the GRANT privilege."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:N","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:mysql:3.22.27:*:*:*:*:*:*:*","matchCriteriaId":"45AD5549-07DC-43DA-B277-D7BF16ABE4E8"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:mysql:3.22.29:*:*:*:*:*:*:*","matchCriteriaId":"C30459B9-0FAC-48DF-9601-AAD1A028846F"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:mysql:3.23.8:*:*:*:*:*:*:*","matchCriteriaId":"18E35942-7E70-468E-BA15-97CA5086C1B3"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/926","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/926","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0067","sourceIdentifier":"cve@mitre.org","published":"2000-01-11T05:00:00.000","lastModified":"2026-06-16T21:50:55.963","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"CyberCash Merchant Connection Kit (MCK) allows local users to modify files via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cybercash:merchant_connection_kit:3.2.0.4:*:*:*:*:*:*:*","matchCriteriaId":"C02AF175-0F6C-4FEC-98C2-3B7F157BAA22"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0067","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0067","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0071","sourceIdentifier":"cve@mitre.org","published":"2000-01-11T05:00:00.000","lastModified":"2026-06-16T21:50:56.437","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IIS 4.0 allows a remote attacker to obtain the real pathname of the document root by requesting non-existent files with .ida or .idq extensions."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"547AB6E2-4E9F-4783-8BB4-0AE297A38C9C"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_services:5.0:*:*:*:*:*:*:*","matchCriteriaId":"413C07EA-139F-4B7D-A58B-835BD2591FA0"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94770020309953&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94780058006791&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94770020309953&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=94780058006791&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0074","sourceIdentifier":"cve@mitre.org","published":"2000-01-11T05:00:00.000","lastModified":"2026-06-16T21:50:56.790","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"PowerScripts PlusMail CGI program allows remote attackers to execute commands via a password file with improper permissions."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:powerscripts:plusmail:*:*:*:*:*:*:*:*","matchCriteriaId":"51607815-55E7-41B4-B167-FE29CA929971"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0074","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0074","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1002","sourceIdentifier":"cve@mitre.org","published":"2000-01-12T05:00:00.000","lastModified":"2026-06-16T21:49:29.997","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Netscape Navigator uses weak encryption for storing a user's Netscape mail password."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.7:*:*:*:*:*:*:*","matchCriteriaId":"38FD74F5-12ED-4049-B06F-0F22A0254C0F"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94536309217214&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94570673523998&w=2","source":"cve@mitre.org"},{"url":"http://www.rstcorp.com/news/bad-crypto.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=94536309217214&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=94570673523998&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.rstcorp.com/news/bad-crypto.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0048","sourceIdentifier":"cve@mitre.org","published":"2000-01-12T05:00:00.000","lastModified":"2026-06-16T21:50:53.630","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"get_it program in Corel Linux Update allows local users to gain root access by specifying an alternate PATH for the cp program."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:corel:linux:1.0:*:*:*:*:*:*:*","matchCriteriaId":"0CB5BDE6-F735-461F-B3B9-066A4876AB0A"}]}]}],"references":[{"url":"http://linux.corel.com/support/clos_patch1.htm","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/928","source":"cve@mitre.org"},{"url":"http://linux.corel.com/support/clos_patch1.htm","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/928","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0070","sourceIdentifier":"cve@mitre.org","published":"2000-01-12T05:00:00.000","lastModified":"2026-06-16T21:50:56.313","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"NtImpersonateClientOfPort local procedure call in Windows NT 4.0 allows local users to gain privileges, aka \"Spoofed LPC Port Request.\""}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp1:*:*:*:*:*:*","matchCriteriaId":"5BDCBCB8-DAA3-465F-ADDE-9143B8251989"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp2:*:*:*:*:*:*","matchCriteriaId":"B86E0671-ED68-4549-B3AC-FD8BD79B0860"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp3:*:*:*:*:*:*","matchCriteriaId":"BB76E7EC-C396-4537-9065-4E815DA7097C"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp4:*:*:*:*:*:*","matchCriteriaId":"4CD026E2-B073-40A6-AD4A-8C76B9169B01"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp5:*:*:*:*:*:*","matchCriteriaId":"DBFB3E49-3FB5-4947-856D-727CBFFBA543"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp6:*:*:*:*:*:*","matchCriteriaId":"B9236480-6450-42E1-B1FF-F336488A683A"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ247869","source":"cve@mitre.org"},{"url":"http://www.bindview.com/security/advisory/adv_NtImpersonate.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/934","source":"cve@mitre.org"},{"url":"http://xforce.iss.net/search.php3?type=2&pattern=nt-spoofed-lpc-port","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-003","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ247869","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.bindview.com/security/advisory/adv_NtImpersonate.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/934","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://xforce.iss.net/search.php3?type=2&pattern=nt-spoofed-lpc-port","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-003","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0087","sourceIdentifier":"cve@mitre.org","published":"2000-01-12T05:00:00.000","lastModified":"2026-06-16T21:50:58.403","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Netscape Mail Notification (nsnotify) utility in Netscape Communicator uses IMAP without SSL, even if the user has set a preference for Communicator to use an SSL connection, allowing a remote attacker to sniff usernames and passwords in plaintext."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.7:*:*:*:*:*:*:*","matchCriteriaId":"38FD74F5-12ED-4049-B06F-0F22A0254C0F"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:navigator:*:*:*:*:*:*:*:*","matchCriteriaId":"DA2CA2F8-260C-4559-BF24-3E321CEAE93F"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94790377622943&w=2","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/4385.php","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94790377622943&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.iss.net/security_center/static/4385.php","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0066","sourceIdentifier":"cve@mitre.org","published":"2000-01-13T05:00:00.000","lastModified":"2026-06-16T21:50:55.843","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WebSite Pro allows remote attackers to determine the real pathname of webdirectories via a malformed URL request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oreilly:website_professional:2.3.18:*:*:*:*:*:*:*","matchCriteriaId":"C1D46829-3A28-49AC-9D19-7EFFAE6E55D2"},{"vulnerable":true,"criteria":"cpe:2.3:a:oreilly:website_professional:2.4.9:*:*:*:*:*:*:*","matchCriteriaId":"356B3E87-68AD-41F9-A008-D93FFEF536E0"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0066","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0066","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0075","sourceIdentifier":"cve@mitre.org","published":"2000-01-13T05:00:00.000","lastModified":"2026-06-16T21:50:56.910","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Super Mail Transfer Package (SMTP), later called MsgCore, has a memory leak which allows remote attackers to cause a denial of service by repeating multiple HELO, MAIL FROM, RCPT TO, and DATA commands in the same session."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:nosque:msgcore:1.9:*:*:*:*:*:*:*","matchCriteriaId":"99F4B15E-DC33-4023-9C6B-302BAB1035B5"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/930","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/930","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0063","sourceIdentifier":"cve@mitre.org","published":"2000-01-17T05:00:00.000","lastModified":"2026-06-16T21:50:55.487","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"cgiproc CGI script in Nortel Contivity HTTP server allows remote attackers to read arbitrary files by specifying the filename in a parameter to the script."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:nortel:contivity:1.0:*:*:*:*:*:*:*","matchCriteriaId":"74A31F83-CBE4-4CCF-A482-3FA076D6EFA7"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/938","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/938","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0064","sourceIdentifier":"cve@mitre.org","published":"2000-01-17T05:00:00.000","lastModified":"2026-06-16T21:50:55.610","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"cgiproc CGI script in Nortel Contivity HTTP server allows remote attackers to cause a denial of service via a malformed URL that includes shell metacharacters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:nortel:contivity:1.0:*:*:*:*:*:*:*","matchCriteriaId":"74A31F83-CBE4-4CCF-A482-3FA076D6EFA7"}]}]}],"references":[{"url":"http://www.osvdb.org/7583","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/938","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/7583","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/938","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0065","sourceIdentifier":"cve@mitre.org","published":"2000-01-17T05:00:00.000","lastModified":"2026-06-16T21:50:55.723","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in InetServ 3.0 allows remote attackers to execute commands via a long GET request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:avtronics:inetserv:3.0:*:*:*:*:*:*:*","matchCriteriaId":"24C3634B-FD67-441D-A0C9-C274B5DB4409"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0065","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0065","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0072","sourceIdentifier":"cve@mitre.org","published":"2000-01-17T05:00:00.000","lastModified":"2026-06-16T21:50:56.550","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Visual Casel (Vcasel) does not properly prevent users from executing files, which allows local users to use a relative pathname to specify an alternate file which has an approved name and possibly gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:computer_power_solutions:visual_casel:3.0:*:*:*:*:*:*:*","matchCriteriaId":"D74D20B7-F524-407D-A378-F60D27329939"},{"vulnerable":true,"criteria":"cpe:2.3:a:computer_power_solutions:visual_casel:3.5:*:*:*:*:*:*:*","matchCriteriaId":"2599A5C4-40C2-40FB-A5B1-99546AE56D56"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94823061421676&w=2","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/3867.php","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/937","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94823061421676&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.iss.net/security_center/static/3867.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/937","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0090","sourceIdentifier":"cve@mitre.org","published":"2000-01-17T05:00:00.000","lastModified":"2026-06-16T21:50:58.780","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"VMWare 1.1.2 allows local users to cause a denial of service via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:P","baseScore":3.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:vmware:workstation:1.0.1:*:*:*:*:*:*:*","matchCriteriaId":"AFBF029A-103D-4BB6-B037-25EC2224DF34"},{"vulnerable":true,"criteria":"cpe:2.3:a:vmware:workstation:1.0.2:*:*:*:*:*:*:*","matchCriteriaId":"D00C4D90-3697-4F3F-8FFF-FE63F3AD0DEA"},{"vulnerable":true,"criteria":"cpe:2.3:a:vmware:workstation:1.1:*:*:*:*:*:*:*","matchCriteriaId":"29AA2B37-BF5F-4AC5-844D-34CF56EC621C"},{"vulnerable":true,"criteria":"cpe:2.3:a:vmware:workstation:1.1.1:*:*:*:*:*:*:*","matchCriteriaId":"07131E56-53EE-4CE1-A135-050792EA3C1D"},{"vulnerable":true,"criteria":"cpe:2.3:a:vmware:workstation:1.1.2:*:*:*:*:*:*:*","matchCriteriaId":"86334051-8763-4CD9-9480-CAEAE756DFCA"}]}]}],"references":[{"url":"http://www.osvdb.org/1205","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/943","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1205","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/943","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0992","sourceIdentifier":"cve@mitre.org","published":"2000-01-18T05:00:00.000","lastModified":"2026-06-16T21:49:28.707","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"HP VirtualVault with the PHSS_17692 patch allows unprivileged processes to bypass access restrictions via the Trusted Gateway Proxy (TGP)."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:vvos:*:*:*:*:*:*:*:*","matchCriteriaId":"7AADED85-FA20-4D93-8921-A4933181ADF5"}]}]}],"references":[{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9912-107","source":"cve@mitre.org"},{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9912-107","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0079","sourceIdentifier":"cve@mitre.org","published":"2000-01-18T05:00:00.000","lastModified":"2026-06-16T21:50:57.407","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The W3C CERN httpd HTTP server allows remote attackers to determine the real pathnames of some commands via a request for a nonexistent URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:w3c:cern_httpd:3.0:*:*:*:*:*:*:*","matchCriteriaId":"D2681211-5D4C-4D59-9FA5-81D6F946572B"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/936","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/936","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0086","sourceIdentifier":"cve@mitre.org","published":"2000-01-18T05:00:00.000","lastModified":"2026-06-16T21:50:58.273","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Netopia Timbuktu Pro sends user IDs and passwords in cleartext, which allows remote attackers to obtain them via sniffing."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netopia:timbuktu_pro:2.0:*:*:*:*:*:*:*","matchCriteriaId":"84DF8888-9F75-4C19-AC1D-96F401764997"},{"vulnerable":true,"criteria":"cpe:2.3:a:netopia:timbuktu_pro:3.0:*:*:*:*:*:*:*","matchCriteriaId":"FCF66FA3-74FC-49DB-BCF4-11E1D8339F57"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/935","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/935","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0099","sourceIdentifier":"cve@mitre.org","published":"2000-01-18T05:00:00.000","lastModified":"2026-06-16T21:50:59.913","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in UnixWare ppptalk command allows local users to gain privileges via a long prompt argument."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.0.0:*:*:*:*:*:*:*","matchCriteriaId":"86A45194-7ACF-45EE-9542-D8CE3A204584"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.0.1:*:*:*:*:*:*:*","matchCriteriaId":"EF9FD7BF-97E4-426D-881F-03C9D5B8895D"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.1.0:*:*:*:*:*:*:*","matchCriteriaId":"1D7893E4-7541-4B35-8C64-AD553C0A4B0F"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94848865112897&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94848865112897&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0092","sourceIdentifier":"cve@mitre.org","published":"2000-01-19T05:00:00.000","lastModified":"2026-06-16T21:50:59.043","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The BSD make program allows local users to modify files via a symlink attack when the -j option is being used."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:C/I:C/A:C","baseScore":6.2,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"MEDIUM","exploitabilityScore":1.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.4:*:*:*:*:*:*:*","matchCriteriaId":"B982342C-1981-4C55-8044-AFE4D87623DF"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.1:*:x86:*:*:*:*:*","matchCriteriaId":"E2EE8A19-8AB1-4283-95EA-9EE3C7E5DED7"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.6:*:*:*:*:*:*:*","matchCriteriaId":"0DF053A1-C252-427E-9EEF-27240F422976"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:01.make.asc","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/939","source":"cve@mitre.org"},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:01.make.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/939","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0595","sourceIdentifier":"cve@mitre.org","published":"2000-01-20T05:00:00.000","lastModified":"2026-06-16T21:48:42.143","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A Windows NT system does not clear the system page file during shutdown, which might allow sensitive information to be recorded."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:3.5.1:*:*:*:*:*:*:*","matchCriteriaId":"D0D4EAC2-A948-461F-B5DD-0AE73CF05D29"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/216","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/216","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0088","sourceIdentifier":"cve@mitre.org","published":"2000-01-20T05:00:00.000","lastModified":"2026-06-16T21:50:58.527","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the conversion utilities for Japanese, Korean and Chinese Word 5 documents allows an attacker to execute commands, aka the \"Malformed Conversion Data\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:office:97:*:*:ja:*:*:*:*","matchCriteriaId":"0F00A805-2967-45B2-9721-B8745AAACDEE"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:office:97:*:*:ko:*:*:*:*","matchCriteriaId":"E3B19E1B-FA9E-4381-BBC0-8C1082F06FBD"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:office:97:*:*:zh:*:*:*:*","matchCriteriaId":"A0D80961-D483-4213-80BF-8D7662A11501"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:office:2000:*:*:ja:*:*:*:*","matchCriteriaId":"757EC6C1-F5E2-45CD-9F7F-7760ECEDC842"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:office:2000:*:*:ko:*:*:*:*","matchCriteriaId":"59B1B68C-86F1-4FA4-9F82-3E8761ED1E74"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:office:2000:*:*:zh:*:*:*:*","matchCriteriaId":"716DDA05-D094-4837-852C-0511CDDD5ABC"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:office_converter_pack:2000.0:*:*:*:*:*:*:*","matchCriteriaId":"BAC56810-E3C8-453E-A2B3-B6D0E62B3BBD"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:powerpoint:97:*:*:ja:*:*:*:*","matchCriteriaId":"D745459E-1C5B-46D2-BD3D-6AA63F15EE40"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:powerpoint:97:*:*:ko:*:*:*:*","matchCriteriaId":"421DE80D-4C7A-4E33-9896-FDA93C0FBF94"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:powerpoint:97:*:*:zh:*:*:*:*","matchCriteriaId":"46B0E734-C47C-443F-8C73-93EC37DD4567"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:powerpoint:2000:*:*:ja:*:*:*:*","matchCriteriaId":"FF8DA1F4-51F5-4701-BA23-6A77057DD420"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:powerpoint:2000:*:*:ko:*:*:*:*","matchCriteriaId":"FB88D5F8-4D7A-4D77-9F05-4910405E0A2B"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:powerpoint:2000:*:*:zh:*:*:*:*","matchCriteriaId":"C8CCDE97-AE42-4BB8-9947-5BBD81DA6CA0"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:word:97:*:*:ja:*:*:*:*","matchCriteriaId":"1695DE97-5840-4670-A891-F0E9F78A4FEA"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:word:97:*:*:ko:*:*:*:*","matchCriteriaId":"C4D4CC44-E1EC-4C6E-A341-DFC6A2C1BE63"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:word:97:*:*:zh:*:*:*:*","matchCriteriaId":"300D969F-7854-445D-8731-7B82E0C9DA18"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:word:98:*:*:ja:*:*:*:*","matchCriteriaId":"3B3A5E8E-CCE2-49AF-BAEB-549E3C67430B"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:word:98:*:*:ko:*:*:*:*","matchCriteriaId":"7159E6F4-7AD3-43F1-ADB1-A563CD697E54"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:word:98:*:*:zh:*:*:*:*","matchCriteriaId":"81B3F4F2-D2A3-47A9-838B-E49349079C63"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:word:2000:*:*:ja:*:*:*:*","matchCriteriaId":"DEAF9432-B59D-43AB-B42D-3CDA2192ED6C"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:word:2000:*:*:ko:*:*:*:*","matchCriteriaId":"0E2FB09D-03F1-464F-A302-0B32E4633C59"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:word:2000:*:*:zh:*:*:*:*","matchCriteriaId":"413AAFEE-51E4-41F6-A63A-E2018BFB3002"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/946","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-002","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/946","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-002","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0091","sourceIdentifier":"cve@mitre.org","published":"2000-01-21T05:00:00.000","lastModified":"2026-06-16T21:50:58.910","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in vchkpw/vpopmail POP authentication package allows remote attackers to gain root privileges via a long username or password."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:inter7:vpopmail:vchkpw_3.4.1:*:*:*:*:*:*:*","matchCriteriaId":"7EE370D9-945E-4DD8-A69C-AED356660732"},{"vulnerable":true,"criteria":"cpe:2.3:a:inter7:vpopmail:vchkpw_3.4.2:*:*:*:*:*:*:*","matchCriteriaId":"D2935241-381C-4EF6-98EE-582C48899124"},{"vulnerable":true,"criteria":"cpe:2.3:a:inter7:vpopmail:vchkpw_3.4.3:*:*:*:*:*:*:*","matchCriteriaId":"2EBE17B9-F890-4496-9B53-856FBB9F717D"},{"vulnerable":true,"criteria":"cpe:2.3:a:inter7:vpopmail:vchkpw_3.4.4:*:*:*:*:*:*:*","matchCriteriaId":"7A1342F1-BD91-4C43-918E-3701EDD0A407"},{"vulnerable":true,"criteria":"cpe:2.3:a:inter7:vpopmail:vchkpw_3.4.5:*:*:*:*:*:*:*","matchCriteriaId":"DDC0A8F8-9244-4D7A-A204-903F53FE29C9"},{"vulnerable":true,"criteria":"cpe:2.3:a:inter7:vpopmail:vchkpw_3.4.6:*:*:*:*:*:*:*","matchCriteriaId":"16D9ADFA-A94B-49D5-9602-E18E81E0C060"},{"vulnerable":true,"criteria":"cpe:2.3:a:inter7:vpopmail:vchkpw_3.4.7:*:*:*:*:*:*:*","matchCriteriaId":"99259D6D-2AD8-4EFE-A12B-A69A319E5970"},{"vulnerable":true,"criteria":"cpe:2.3:a:inter7:vpopmail:vchkpw_3.4.8:*:*:*:*:*:*:*","matchCriteriaId":"82EF0973-3E81-4AE9-A59E-9F18DBEC99F1"},{"vulnerable":true,"criteria":"cpe:2.3:a:inter7:vpopmail:vchkpw_3.4.9:*:*:*:*:*:*:*","matchCriteriaId":"0615E738-6FE7-48FD-83C9-FAA147EC9702"},{"vulnerable":true,"criteria":"cpe:2.3:a:inter7:vpopmail:vchkpw_3.4.11:*:*:*:*:*:*:*","matchCriteriaId":"FA6C3AE1-A219-48DD-A3E0-526C516A1728"}]}]}],"references":[{"url":"http://www.inter7.com/vpopmail/","source":"cve@mitre.org"},{"url":"http://www.inter7.com/vpopmail/ChangeLog","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/942","source":"cve@mitre.org"},{"url":"http://www.inter7.com/vpopmail/","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.inter7.com/vpopmail/ChangeLog","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/942","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0093","sourceIdentifier":"cve@mitre.org","published":"2000-01-21T05:00:00.000","lastModified":"2026-06-16T21:50:59.167","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"An installation of Red Hat uses DES password encryption with crypt() for the initial password, instead of md5."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"2EC4D3AB-38FA-4D44-AF5C-2DCD15994E76"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0093","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0093","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0115","sourceIdentifier":"cve@mitre.org","published":"2000-01-21T05:00:00.000","lastModified":"2026-06-16T21:51:01.897","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IIS allows local users to cause a denial of service via invalid regular expressions in a Visual Basic script in an ASP page."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:*:*:*:*:*:*:*:*","matchCriteriaId":"CE9D333C-76E2-4BD9-B98B-5CB96363AB89"}]}]}],"references":[{"url":"https://marc.info/?l=ntbugtraq&m=94881904724731&w=2","source":"cve@mitre.org"},{"url":"https://marc.info/?l=ntbugtraq&m=94881904724731&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0095","sourceIdentifier":"cve@mitre.org","published":"2000-01-24T05:00:00.000","lastModified":"2026-06-16T21:50:59.420","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The PMTU discovery procedure used by HP-UX 10.30 and 11.00 for determining the optimum MTU generates large amounts of traffic in response to small packets, allowing remote attackers to cause the system to be used as a packet amplifier."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.30:*:*:*:*:*:*:*","matchCriteriaId":"09070FE3-EF6B-41F6-89D8-3C9E31F3A6BF"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:11.00:*:*:*:*:*:*:*","matchCriteriaId":"771931F7-9180-4EBD-8627-E1CF17D24647"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/944","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/advisory.html?id=2041","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/944","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/advisory.html?id=2041","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0096","sourceIdentifier":"cve@mitre.org","published":"2000-01-26T05:00:00.000","lastModified":"2026-06-16T21:50:59.533","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in qpopper 3.0 beta versions allows local users to gain privileges via a long LIST command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0:*:*:*:*:*:*:*","matchCriteriaId":"B1208414-D175-41E2-BCBC-9E5EDBC41FFD"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0beta1:*:*:*:*:*:*:*","matchCriteriaId":"6535E515-B0FF-4FC6-8BCC-AF8EAEDCE099"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0beta2:*:*:*:*:*:*:*","matchCriteriaId":"6586A031-B6B9-4EC0-B6B7-82BBFA4AA562"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0beta3:*:*:*:*:*:*:*","matchCriteriaId":"E5364920-D969-4585-A822-E26846CF7BD6"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0beta4:*:*:*:*:*:*:*","matchCriteriaId":"9781C125-7E2B-41BB-A4B3-2317C3B95CC0"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0beta5:*:*:*:*:*:*:*","matchCriteriaId":"68CE4256-F1D2-49A5-B7D7-25FC9111BB61"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0beta6:*:*:*:*:*:*:*","matchCriteriaId":"91310B66-9AAC-44EC-A0CC-3455DB069C17"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0beta7:*:*:*:*:*:*:*","matchCriteriaId":"ABA8F10C-8C06-45B6-898E-4592FE903CB1"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0beta8:*:*:*:*:*:*:*","matchCriteriaId":"9DE692FF-40D9-4CE5-93A5-04082E281202"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0beta9:*:*:*:*:*:*:*","matchCriteriaId":"D9C0F200-2DB9-4492-95C8-72772B5EC6DD"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0beta10:*:*:*:*:*:*:*","matchCriteriaId":"E84B8226-E4DA-4BDE-AC48-9B8999853D49"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0beta11:*:*:*:*:*:*:*","matchCriteriaId":"DDC2EC10-3396-4C73-A5C5-7280F710A4EC"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0beta12:*:*:*:*:*:*:*","matchCriteriaId":"5314989E-4D5D-4A76-A1C1-6B9786142C05"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0beta13:*:*:*:*:*:*:*","matchCriteriaId":"A01E055E-9B9F-42AF-A531-0B783DED5AC9"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0beta14:*:*:*:*:*:*:*","matchCriteriaId":"DAEDEE2A-15DA-4D2D-BF03-5417B0243382"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0beta15:*:*:*:*:*:*:*","matchCriteriaId":"CB9BBB17-7B0A-4ACD-95DF-D0B1D40F8C2B"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0beta16:*:*:*:*:*:*:*","matchCriteriaId":"4248800A-6F2D-47EC-A62C-0E89DE89153B"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0beta17:*:*:*:*:*:*:*","matchCriteriaId":"A8249A1D-95D9-4205-9346-3110E250295C"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0beta18:*:*:*:*:*:*:*","matchCriteriaId":"E37B76A4-E760-45B1-90FF-C97327A28A21"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0beta19:*:*:*:*:*:*:*","matchCriteriaId":"33430029-28D1-4E4F-B4B7-D2E7EB4D97E9"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0beta20:*:*:*:*:*:*:*","matchCriteriaId":"A8C5CDE8-34FB-4AB4-A49D-5D701996CA3E"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0beta21:*:*:*:*:*:*:*","matchCriteriaId":"48863B32-5742-4FAB-B49D-B6A771F90FE7"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0beta22:*:*:*:*:*:*:*","matchCriteriaId":"A471EFDD-0618-4294-A1C0-4D37E794E3DF"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0beta23:*:*:*:*:*:*:*","matchCriteriaId":"CF088417-1645-4F40-802D-143433FACE4A"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0beta24:*:*:*:*:*:*:*","matchCriteriaId":"6802F665-8457-44C8-A3F0-91B318BE1014"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0beta25:*:*:*:*:*:*:*","matchCriteriaId":"8EBE0FA1-7BBE-49AA-AA2B-77C60EDA20AD"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0beta26:*:*:*:*:*:*:*","matchCriteriaId":"BCA23E68-E974-49A0-BDB0-AFB3A69D271D"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0beta27:*:*:*:*:*:*:*","matchCriteriaId":"14B5D240-F160-4419-AD95-577274D640B7"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0beta28:*:*:*:*:*:*:*","matchCriteriaId":"9843924C-1511-489E-A222-C32113DDB080"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0beta29:*:*:*:*:*:*:*","matchCriteriaId":"62F4369F-1ED0-4CCB-ABFE-D402E5A7599B"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/948","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/948","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0097","sourceIdentifier":"cve@mitre.org","published":"2000-01-26T05:00:00.000","lastModified":"2026-06-16T21:50:59.673","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The WebHits ISAPI filter in Microsoft Index Server allows remote attackers to read arbitrary files, aka the \"Malformed Hit-Highlighting Argument\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:index_server:2.0:*:*:*:*:*:*:*","matchCriteriaId":"D56759FD-DE03-4E90-8688-B6A49AA24F25"}]}]}],"references":[{"url":"http://www.osvdb.org/1210","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/950","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-006","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1210","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/950","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-006","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0098","sourceIdentifier":"cve@mitre.org","published":"2000-01-26T05:00:00.000","lastModified":"2026-06-16T21:50:59.800","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Index Server allows remote attackers to determine the real path for a web directory via a request to an Internet Data Query file that does not exist."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:index_server:2.0:*:*:*:*:*:*:*","matchCriteriaId":"D56759FD-DE03-4E90-8688-B6A49AA24F25"}]}]}],"references":[{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-006","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-006","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0126","sourceIdentifier":"cve@mitre.org","published":"2000-01-26T05:00:00.000","lastModified":"2026-06-16T21:51:03.277","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Sample Internet Data Query (IDQ) scripts in IIS 3 and 4 allow remote attackers to read files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"547AB6E2-4E9F-4783-8BB4-0AE297A38C9C"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0126","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0126","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0113","sourceIdentifier":"cve@mitre.org","published":"2000-01-27T05:00:00.000","lastModified":"2026-06-16T21:51:01.660","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The SyGate Remote Management program does not properly restrict access to its administration service, which allows remote attackers to cause a denial of service, or access network traffic statistics."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sybergen:sygate:2.0:*:*:*:*:*:*:*","matchCriteriaId":"64CE9873-D031-4DC9-8FCA-7AF2E7ADBF82"},{"vulnerable":true,"criteria":"cpe:2.3:a:sybergen:sygate:3.11:*:*:*:*:*:*:*","matchCriteriaId":"51E74011-4542-4818-AAF6-2AC5682D244D"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94934808714972&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94952641025328&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94973281714994&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/952","source":"cve@mitre.org"},{"url":"http://www.sybergen.com/support/fix.htm","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94934808714972&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=94952641025328&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=94973281714994&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/952","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.sybergen.com/support/fix.htm","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0130","sourceIdentifier":"cve@mitre.org","published":"2000-01-27T05:00:00.000","lastModified":"2026-06-16T21:51:03.790","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in SCO scohelp program allows remote attackers to execute commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.0:*:*:*:*:*:*:*","matchCriteriaId":"17439B5B-0B66-490B-9B53-2C9D576C879F"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.0.1:*:*:*:*:*:*:*","matchCriteriaId":"EF9FD7BF-97E4-426D-881F-03C9D5B8895D"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.1:*:*:*:*:*:*:*","matchCriteriaId":"B200C05F-0E89-4172-B500-47C2573D4461"}]}]}],"references":[{"url":"ftp://ftp.sco.com/SSE/security_bulletins/SB-00.02a","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94908470928258&w=2","source":"cve@mitre.org"},{"url":"ftp://ftp.sco.com/SSE/security_bulletins/SB-00.02a","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=94908470928258&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1216","sourceIdentifier":"cve@mitre.org","published":"2000-01-27T05:00:00.000","lastModified":"2026-06-16T21:53:24.043","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in portmir for AIX 4.3.0 allows local users to corrupt lock files and gain root privileges via the echo_error routine."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-120"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.0:*:*:*:*:*:*:*","matchCriteriaId":"92B77367-8BF2-4E68-A7F1-D0780E102CCA"}]}]}],"references":[{"url":"http://www-1.ibm.com/support/docview.wss?uid=isg1IY07832","source":"cve@mitre.org","tags":["Broken Link"]},{"url":"http://www.kb.cert.org/vuls/id/433499","source":"cve@mitre.org","tags":["Third Party Advisory","US Government Resource"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7929","source":"cve@mitre.org","tags":["VDB Entry","Vendor Advisory"]},{"url":"http://www-1.ibm.com/support/docview.wss?uid=isg1IY07832","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"]},{"url":"http://www.kb.cert.org/vuls/id/433499","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","US Government Resource"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7929","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["VDB Entry","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0111","sourceIdentifier":"cve@mitre.org","published":"2000-01-29T05:00:00.000","lastModified":"2026-06-16T21:51:01.420","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The RightFax web client uses predictable session numbers, which allows remote attackers to hijack user sessions."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:avt:rightfax:5.2:*:*:*:*:*:*:*","matchCriteriaId":"46A432E6-2590-4683-B62A-C73F1BD9B584"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/953","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/953","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0116","sourceIdentifier":"cve@mitre.org","published":"2000-01-29T05:00:00.000","lastModified":"2026-06-16T21:51:02.023","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Firewall-1 does not properly filter script tags, which allows remote attackers to bypass the \"Strip Script Tags\" restriction by including an extra < in front of the SCRIPT tag."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:3.0:*:*:*:*:*:*:*","matchCriteriaId":"A550C18E-F07A-4A05-87F0-B1D52FDC401C"}]}]}],"references":[{"url":"http://www.osvdb.org/1212","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/954","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1212","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/954","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0117","sourceIdentifier":"cve@mitre.org","published":"2000-01-30T05:00:00.000","lastModified":"2026-06-16T21:51:02.133","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The siteUserMod.cgi program in Cobalt RaQ2 servers allows any Site Administrator to modify passwords for other users, site administrators, and possibly admin (root)."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sun:cobalt_raq:1.0:*:*:*:*:*:*:*","matchCriteriaId":"A8CEF7BC-2B9A-4383-B6AF-4FFA79DE9C54"},{"vulnerable":true,"criteria":"cpe:2.3:h:sun:cobalt_raq_2:*:*:*:*:*:*:*:*","matchCriteriaId":"0F6DDD9F-5C58-4092-BF3D-332E2E566182"},{"vulnerable":true,"criteria":"cpe:2.3:h:sun:cobalt_raq_3i:*:*:*:*:*:*:*:*","matchCriteriaId":"0C1E1872-D16C-4848-800C-32B80DD59494"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/951","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/951","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0109","sourceIdentifier":"cve@mitre.org","published":"2000-01-31T05:00:00.000","lastModified":"2026-06-16T21:51:01.183","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The mcsp Client Site Processor system (MultiCSP) in Standard and Poor's ComStock is installed with several accounts that have no passwords or easily guessable default passwords."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:comstock:multicsp:4.2:*:*:*:*:*:*:*","matchCriteriaId":"11668EE3-1CFE-4982-805F-F2F61583D081"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0109","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0109","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0132","sourceIdentifier":"cve@mitre.org","published":"2000-01-31T05:00:00.000","lastModified":"2026-06-16T21:51:04.040","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Java Virtual Machine allows remote attackers to read files via the getSystemResourceAsStream function."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:N/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-200"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:virtual_machine:2000:*:*:*:*:*:*:*","matchCriteriaId":"A299BA2B-FD34-4FD5-8A4B-EA99DA9BA3EE"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:virtual_machine:3000:*:*:*:*:*:*:*","matchCriteriaId":"DC2655D3-B360-4F82-B9CE-EECC95E0FAEE"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/957","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/957","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0101","sourceIdentifier":"cve@mitre.org","published":"2000-02-01T05:00:00.000","lastModified":"2026-06-16T21:51:00.167","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Make-a-Store OrderPage shopping cart application allows remote users to modify sensitive purchase information via hidden form fields."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:make-a-store:orderpage:*:*:*:*:*:*:*:*","matchCriteriaId":"FF532D8A-F91F-431D-8BDA-D6B940C5EE41"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0101","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0101","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0102","sourceIdentifier":"cve@mitre.org","published":"2000-02-01T05:00:00.000","lastModified":"2026-06-16T21:51:00.290","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The SalesCart shopping cart application allows remote users to modify sensitive purchase information via hidden form fields."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:salescart:salescart:*:*:*:*:*:*:*:*","matchCriteriaId":"856DF0A7-2342-4847-8503-36F012607C6C"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0102","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0102","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0103","sourceIdentifier":"cve@mitre.org","published":"2000-02-01T05:00:00.000","lastModified":"2026-06-16T21:51:00.427","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The SmartCart shopping cart application allows remote users to modify sensitive purchase information via hidden form fields."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netsmart:smartcart:*:*:*:*:*:*:*:*","matchCriteriaId":"5022F435-F272-45C5-9199-A0E6E611D07F"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0103","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0103","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0104","sourceIdentifier":"cve@mitre.org","published":"2000-02-01T05:00:00.000","lastModified":"2026-06-16T21:51:00.540","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Shoptron shopping cart application allows remote users to modify sensitive purchase information via hidden form fields."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:web_express:shoptron:1.2:*:*:*:*:*:*:*","matchCriteriaId":"4D8F9BDA-C20A-4C4C-B5F9-9DB31B22D07A"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0104","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0104","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0105","sourceIdentifier":"cve@mitre.org","published":"2000-02-01T05:00:00.000","lastModified":"2026-06-16T21:51:00.663","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Outlook Express 5.01 and Internet Explorer 5.01 allow remote attackers to view a user's email messages via a script that accesses a variable that references subsequent email messages that are read by the client."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook_express:5.0:*:*:*:*:*:*:*","matchCriteriaId":"1F71D6D7-6CB2-4BE9-839A-A5714144029C"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/962","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/962","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0106","sourceIdentifier":"cve@mitre.org","published":"2000-02-01T05:00:00.000","lastModified":"2026-06-16T21:51:00.797","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The EasyCart shopping cart application allows remote users to modify sensitive purchase information via hidden form fields."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:easycart:easycart:*:*:*:*:*:*:*:*","matchCriteriaId":"81DE1CC4-1098-4885-A89B-D1960933DD63"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0106","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0106","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0107","sourceIdentifier":"cve@mitre.org","published":"2000-02-01T05:00:00.000","lastModified":"2026-06-16T21:51:00.917","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Linux apcd program allows local attackers to modify arbitrary files via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.1:*:*:*:*:*:*:*","matchCriteriaId":"3C67BDA1-9451-4026-AC6D-E912C882A757"}]}]}],"references":[{"url":"http://www.debian.org/security/2000/20000201","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/958","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/2000/20000201","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/958","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0108","sourceIdentifier":"cve@mitre.org","published":"2000-02-01T05:00:00.000","lastModified":"2026-06-16T21:51:01.067","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Intellivend shopping cart application allows remote users to modify sensitive purchase information via hidden form fields."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:intelligent_vending_systems:intellivend:*:*:*:*:*:*:*:*","matchCriteriaId":"0B525A39-332B-4EA0-A9F3-E2DADA2F0C91"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0108","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0108","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0110","sourceIdentifier":"cve@mitre.org","published":"2000-02-01T05:00:00.000","lastModified":"2026-06-16T21:51:01.310","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The WebSiteTool shopping cart application allows remote users to modify sensitive purchase information via hidden form fields."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:baron_consulting_group:websitetool:*:*:*:*:*:*:*:*","matchCriteriaId":"3F4B11E5-E6D7-4221-98F9-FAAB04CB7C21"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0110","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0110","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0121","sourceIdentifier":"cve@mitre.org","published":"2000-02-01T05:00:00.000","lastModified":"2026-06-16T21:51:02.643","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Recycle Bin utility in Windows NT and Windows 2000 allows local users to read or modify files by creating a subdirectory with the victim's SID in the recycler directory, aka the \"Recycle Bin Creation\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:N","baseScore":3.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp1:*:*:*:*:*:*","matchCriteriaId":"5BDCBCB8-DAA3-465F-ADDE-9143B8251989"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp2:*:*:*:*:*:*","matchCriteriaId":"B86E0671-ED68-4549-B3AC-FD8BD79B0860"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp3:*:*:*:*:*:*","matchCriteriaId":"BB76E7EC-C396-4537-9065-4E815DA7097C"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp4:*:*:*:*:*:*","matchCriteriaId":"4CD026E2-B073-40A6-AD4A-8C76B9169B01"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp5:*:*:*:*:*:*","matchCriteriaId":"DBFB3E49-3FB5-4947-856D-727CBFFBA543"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp6:*:*:*:*:*:*","matchCriteriaId":"B9236480-6450-42E1-B1FF-F336488A683A"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ248399","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/963","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-007","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ248399","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/963","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-007","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0123","sourceIdentifier":"cve@mitre.org","published":"2000-02-01T05:00:00.000","lastModified":"2026-06-16T21:51:02.893","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The shopping cart application provided with Filemaker allows remote users to modify sensitive purchase information via hidden form fields."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:filemaker:filemaker:*:*:pro:*:*:*:*:*","matchCriteriaId":"C2E57AAF-9A43-4039-B333-E788EE678E04"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0123","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0123","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0131","sourceIdentifier":"cve@mitre.org","published":"2000-02-01T05:00:00.000","lastModified":"2026-06-16T21:51:03.917","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in War FTPd 1.6x allows users to cause a denial of service via long MKD and CWD commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:jgaa:warftpd:1.66x4s:*:*:*:*:*:*:*","matchCriteriaId":"BD95B797-7A40-4D42-844C-758C742C34D6"},{"vulnerable":true,"criteria":"cpe:2.3:a:jgaa:warftpd:1.67.3:*:*:*:*:*:*:*","matchCriteriaId":"A47F294E-DBB2-4406-9CF2-58A9E76C7B50"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94960703721503&w=2","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/4677","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/966","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94960703721503&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/4677","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/966","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0133","sourceIdentifier":"cve@mitre.org","published":"2000-02-01T05:00:00.000","lastModified":"2026-06-16T21:51:04.157","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflows in Tiny FTPd 0.52 beta3 FTP server allows users to execute commands via the STOR, RNTO, MKD, XMKD, RMD, XRMD, APPE, SIZE, and RNFR commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:h._nomura:tiny_ftpdaemon:*:*:*:*:*:*:*:*","versionEndIncluding":"0.52","matchCriteriaId":"66FBDC33-1713-49CA-AA58-AD825B32B578"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/961","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/961","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0134","sourceIdentifier":"cve@mitre.org","published":"2000-02-01T05:00:00.000","lastModified":"2026-06-16T21:51:04.273","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Check It Out shopping cart application allows remote users to modify sensitive purchase information via hidden form fields."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:adgrafix_corporation:check_it_out:*:*:*:*:*:*:*:*","matchCriteriaId":"5ADCB606-CF86-4E96-9C28-6A489C1AEA4F"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0134","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0134","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0135","sourceIdentifier":"cve@mitre.org","published":"2000-02-01T05:00:00.000","lastModified":"2026-06-16T21:51:04.387","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The @Retail shopping cart application allows remote users to modify sensitive purchase information via hidden form fields."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:atretail:atretail:*:*:*:*:*:*:*:*","matchCriteriaId":"96CBDA55-DC40-4961-8B5C-057A6D76C570"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0135","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0135","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0136","sourceIdentifier":"cve@mitre.org","published":"2000-02-01T05:00:00.000","lastModified":"2026-06-16T21:51:04.510","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Cart32 shopping cart application allows remote users to modify sensitive purchase information via hidden form fields."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mcmurtrey_whitaker_and_associates:cart32:*:*:*:*:*:*:*:*","matchCriteriaId":"69D0916B-9E1C-4536-820C-DCB759A48D8B"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0136","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0136","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0137","sourceIdentifier":"cve@mitre.org","published":"2000-02-01T05:00:00.000","lastModified":"2026-06-16T21:51:04.640","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The CartIt shopping cart application allows remote users to modify sensitive purchase information via hidden form fields."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cartit:cartit:*:*:*:*:*:*:*:*","matchCriteriaId":"E05B217C-DE60-4B0F-8592-6C758B311147"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0137","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0137","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0151","sourceIdentifier":"cve@mitre.org","published":"2000-02-01T05:00:00.000","lastModified":"2026-06-16T21:51:06.407","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"GNU make follows symlinks when it reads a Makefile from stdin, which allows other local users to execute commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:C/I:C/A:C","baseScore":6.2,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"MEDIUM","exploitabilityScore":1.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:make:3.77.44:*:*:*:*:*:*:*","matchCriteriaId":"8E7A5639-F2F6-41DE-867E-0178A49C80C0"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/981","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/981","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0157","sourceIdentifier":"cve@mitre.org","published":"2000-02-01T05:00:00.000","lastModified":"2026-06-16T21:51:07.147","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"NetBSD ptrace call on VAX allows local users to gain privileges by modifying the PSL contents in the debugging process."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.1:*:*:*:*:*:*:*","matchCriteriaId":"1C288A88-11C6-429E-A109-0395D0989264"}]}]}],"references":[{"url":"ftp://ftp.NetBSD.ORG/pub/NetBSD/misc/security/advisories/NetBSD-SA1999-012.txt.asc","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/992","source":"cve@mitre.org"},{"url":"ftp://ftp.NetBSD.ORG/pub/NetBSD/misc/security/advisories/NetBSD-SA1999-012.txt.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/992","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1205","sourceIdentifier":"cve@mitre.org","published":"2000-02-01T05:00:00.000","lastModified":"2026-06-16T21:53:22.627","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Cross site scripting vulnerabilities in Apache 1.3.0 through 1.3.11 allow remote attackers to execute script as other web site visitors via (1) the printenv CGI (printenv.pl), which does not encode its output, (2) pages generated by the ap_send_error_response function such as a default 404, which does not add an explicit charset, or (3) various messages that are generated by certain Apache modules or core code.  NOTE: the printenv issue might still exist for web browsers that can render text/plain content types as HTML, such as Internet Explorer, but CVE regards this as a design limitation of those browsers, not Apache.  The printenv.pl/acuparam vector, discloser on 20070724, is one such variant."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:N/I:P/A:N","baseScore":4.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":8.6,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-79"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.3.0:*:*:*:*:*:*:*","matchCriteriaId":"D9B12229-3F9E-469C-8AD6-7E43FA45B876"},{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.3.1:*:*:*:*:*:*:*","matchCriteriaId":"30D94958-0D13-4076-B6F0-61D505136789"},{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.3.2:*:*:*:*:*:*:*","matchCriteriaId":"691D7D29-420E-4ABC-844F-D5DD401598F1"},{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.3.3:*:*:*:*:*:*:*","matchCriteriaId":"B22DA22E-54DA-46CF-B3AE-4B0900D8086A"},{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.3.4:*:*:*:*:*:*:*","matchCriteriaId":"F90F496A-5D57-448F-A46F-E15F06CBFD01"},{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.3.5:*:*:*:*:*:*:*","matchCriteriaId":"1EC3D727-F7C1-4CA1-BBF4-9A38BD3B052F"},{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.3.6:*:*:*:*:*:*:*","matchCriteriaId":"89B58983-633F-4D20-80AE-8E7EB865CF83"},{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.3.7:*:*:*:*:*:*:*","matchCriteriaId":"EB2EC909-197D-4509-9D89-374D89BBBA26"},{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.3.8:*:*:*:*:*:*:*","matchCriteriaId":"96E2083D-E7EC-49D1-A870-7F0B0AF0F614"},{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.3.9:*:*:*:*:*:*:*","matchCriteriaId":"19C8989C-D8A6-4AE9-99B6-F2DAE5999EB6"},{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.3.10:*:*:*:*:*:*:*","matchCriteriaId":"F715F8CB-A473-4374-8CF1-E9D74EBA5E8F"},{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.3.11:*:*:*:*:*:*:*","matchCriteriaId":"7B6EE0E2-D608-4E72-A0E5-F407511405C2"}]}]}],"references":[{"url":"http://archive.cert.uni-stuttgart.de/bugtraq/2002/12/msg00243.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2002-12/0233.html","source":"cve@mitre.org"},{"url":"http://httpd.apache.org/info/css-security/apache_specific.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=118529436424127&w=2","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/10938","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/35597","source":"cve@mitre.org"},{"url":"https://lists.apache.org/thread.html/r5419c9ba0951ef73a655362403d12bb8d10fab38274deb3f005816f5%40%3Ccvs.httpd.apache.org%3E","source":"cve@mitre.org"},{"url":"https://lists.apache.org/thread.html/r5f9c22f9c28adbd9f00556059edc7b03a5d5bb71d4bb80257c0d34e4%40%3Ccvs.httpd.apache.org%3E","source":"cve@mitre.org"},{"url":"https://lists.apache.org/thread.html/r9f93cf6dde308d42a9c807784e8102600d0397f5f834890708bf6920%40%3Ccvs.httpd.apache.org%3E","source":"cve@mitre.org"},{"url":"https://lists.apache.org/thread.html/rf2f0f3611f937cf6cfb3b4fe4a67f69885855126110e1e3f2fb2728e%40%3Ccvs.httpd.apache.org%3E","source":"cve@mitre.org"},{"url":"https://lists.apache.org/thread.html/rf6449464fd8b7437704c55f88361b66f12d5b5f90bcce66af4be4ba9%40%3Ccvs.httpd.apache.org%3E","source":"cve@mitre.org"},{"url":"http://archive.cert.uni-stuttgart.de/bugtraq/2002/12/msg00243.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2002-12/0233.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://httpd.apache.org/info/css-security/apache_specific.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=118529436424127&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/10938","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/35597","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://lists.apache.org/thread.html/r5419c9ba0951ef73a655362403d12bb8d10fab38274deb3f005816f5%40%3Ccvs.httpd.apache.org%3E","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://lists.apache.org/thread.html/r5f9c22f9c28adbd9f00556059edc7b03a5d5bb71d4bb80257c0d34e4%40%3Ccvs.httpd.apache.org%3E","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://lists.apache.org/thread.html/r9f93cf6dde308d42a9c807784e8102600d0397f5f834890708bf6920%40%3Ccvs.httpd.apache.org%3E","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://lists.apache.org/thread.html/rf2f0f3611f937cf6cfb3b4fe4a67f69885855126110e1e3f2fb2728e%40%3Ccvs.httpd.apache.org%3E","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://lists.apache.org/thread.html/rf6449464fd8b7437704c55f88361b66f12d5b5f90bcce66af4be4ba9%40%3Ccvs.httpd.apache.org%3E","source":"af854a3a-2127-422b-91ae-364da2661108"}],"vendorComments":[{"organization":"Apache","comment":"Fixed in Apache HTTP Server 1.3.12:\nhttp://httpd.apache.org/security/vulnerabilities_13.html","lastModified":"2008-07-02T00:00:00"}]}},{"cve":{"id":"CVE-2000-0112","sourceIdentifier":"cve@mitre.org","published":"2000-02-02T05:00:00.000","lastModified":"2026-06-16T21:51:01.543","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default installation of Debian GNU/Linux uses an insecure Master Boot Record (MBR) which allows a local user to boot from a floppy disk during the installation."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.0:*:*:*:*:*:*:*","matchCriteriaId":"203BDD63-2FA5-42FD-A9CD-6BDBB41A63C4"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.0:r5:*:*:*:*:*:*","matchCriteriaId":"D3067DBB-FBA1-48E9-9EC8-5A8D74B9F2D1"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.1:*:*:*:*:*:*:*","matchCriteriaId":"3C67BDA1-9451-4026-AC6D-E912C882A757"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.2:*:*:*:*:*:*:*","matchCriteriaId":"58B90124-0543-4226-BFF4-13CCCBCCB243"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.2:*:pre_potato:*:*:*:*:*","matchCriteriaId":"2B19ABCB-70F0-450E-9A71-2EE8F2BFB2EE"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94973075614088&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/960","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94973075614088&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/960","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0114","sourceIdentifier":"cve@mitre.org","published":"2000-02-02T05:00:00.000","lastModified":"2026-06-16T21:51:01.787","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Frontpage Server Extensions allows remote attackers to determine the name of the anonymous account via an RPC POST request to shtml.dll in the /_vti_bin/ virtual directory."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"547AB6E2-4E9F-4783-8BB4-0AE297A38C9C"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0114","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0114","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0469","sourceIdentifier":"cve@mitre.org","published":"2000-02-02T05:00:00.000","lastModified":"2026-06-16T21:51:48.070","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Selena Sol WebBanner 4.0 allows remote attackers to read arbitrary files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:selena_sol:webbanner:4.0:*:*:*:*:*:*:*","matchCriteriaId":"FD550CBE-1DC6-47F5-8BCF-94911830B6CF"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1347","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-06-22&msg=ILENKALMCAFBLHBGEOFKGEJCCAAA.jwesterink%40jwesterink.daxis.nl","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=4.2.0.58.20000620193604.00979950%40mail.clark.net","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1347","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-06-22&msg=ILENKALMCAFBLHBGEOFKGEJCCAAA.jwesterink%40jwesterink.daxis.nl","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=4.2.0.58.20000620193604.00979950%40mail.clark.net","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0122","sourceIdentifier":"cve@mitre.org","published":"2000-02-03T05:00:00.000","lastModified":"2026-06-16T21:51:02.767","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Frontpage Server Extensions allows remote attackers to determine the physical path of a virtual directory via a GET request to the htimage.exe CGI program."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:frontpage:98:*:*:*:*:*:*:*","matchCriteriaId":"A5F2F998-5866-4DA7-88CF-7987E971947E"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:frontpage:2000:*:*:*:*:*:*:*","matchCriteriaId":"D2C6629C-BF53-49A1-B32C-A828CA0A0500"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/470458/100/0/threaded","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/964","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/34719","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/470458/100/0/threaded","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/964","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/34719","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0124","sourceIdentifier":"cve@mitre.org","published":"2000-02-03T05:00:00.000","lastModified":"2026-06-16T21:51:03.020","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"surfCONTROL SuperScout does not properly asign a category to web sites with a . (dot) at the end, which may allow users to bypass web access restrictions."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:surfcontrol:superscout:2.6.1.6:*:*:*:*:*:*:*","matchCriteriaId":"FDC26E3B-0A5A-4092-A2F9-E6949C1B182A"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/965","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/965","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0125","sourceIdentifier":"cve@mitre.org","published":"2000-02-03T05:00:00.000","lastModified":"2026-06-16T21:51:03.143","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"wwwthreads does not properly cleanse numeric data or table names that are passed to SQL queries, which allows remote attackers to gain privileges for wwwthreads forums."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:wired_community_software:wwwthreads:*:*:*:*:*:*:*:*","matchCriteriaId":"7320CDBE-43EC-46F7-92BB-729157851A41"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/967","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.10.10002031027120.15921-100000%40eight.wiretrip.net","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/967","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.10.10002031027120.15921-100000%40eight.wiretrip.net","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0127","sourceIdentifier":"cve@mitre.org","published":"2000-02-03T05:00:00.000","lastModified":"2026-06-16T21:51:03.400","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Webspeed configuration program does not properly disable access to the WSMadmin utility, which allows remote attackers to gain privileges via wsisa.dll."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:progress:webspeed:3.0:*:*:*:*:*:*:*","matchCriteriaId":"4CA5B493-3BB1-4847-8055-15B93171EC9B"}]}]}],"references":[{"url":"http://www.progress.com/services/support/cgi-bin/techweb-kbase.cgi/webkb.html?kbid=19412&keywords=security%20Webspeed","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/969","source":"cve@mitre.org"},{"url":"http://www.progress.com/services/support/cgi-bin/techweb-kbase.cgi/webkb.html?kbid=19412&keywords=security%20Webspeed","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/969","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0218","sourceIdentifier":"cve@mitre.org","published":"2000-02-03T05:00:00.000","lastModified":"2026-06-16T21:51:15.003","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Linux mount and umount allows local users to gain root privileges via a long relative pathname."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux:2.3:*:*:*:*:*:*:*","matchCriteriaId":"23B38FCC-2C86-4E84-860B-EBAE0FA123B6"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:*:*:*:*:*:*:*:*","matchCriteriaId":"67527281-81FA-4068-9E0A-7B19FB6A208A"}]}]}],"references":[{"url":"ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2000-002.0.txt","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/6980","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/7004","source":"cve@mitre.org"},{"url":"ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2000-002.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/6980","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/7004","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0089","sourceIdentifier":"cve@mitre.org","published":"2000-02-04T05:00:00.000","lastModified":"2026-06-16T21:50:58.660","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The rdisk utility in Microsoft Terminal Server Edition and Windows NT 4.0 stores registry hive information in a temporary file with permissions that allow local users to read it, aka the \"RDISK Registry Enumeration File\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:server:*:*:*:*:*","matchCriteriaId":"7C5FCE82-1E2F-49B9-B504-8C03F2BCF296"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:terminal_server:*:*:*:*:*","matchCriteriaId":"6E7E6AD3-5418-4FEA-84B5-833059CA880D"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp1:enterprise:*:*:*:*:*","matchCriteriaId":"BBD9C514-5AF7-4849-A535-F0F3C9339051"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ249108","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/947","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-004","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ249108","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/947","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-004","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0128","sourceIdentifier":"cve@mitre.org","published":"2000-02-04T05:00:00.000","lastModified":"2026-06-16T21:51:03.530","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Finger Server 0.82 allows remote attackers to execute commands via shell metacharacters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:daniel_beckham:the_finger_server:0.80_beta:*:*:*:*:*:*:*","matchCriteriaId":"F7BBCFD3-60DC-4D6D-BEA9-C47166498B52"},{"vulnerable":true,"criteria":"cpe:2.3:a:daniel_beckham:the_finger_server:0.81_beta:*:*:*:*:*:*:*","matchCriteriaId":"39CC38F7-F512-43BC-93D1-0A8ADC9B9E74"},{"vulnerable":true,"criteria":"cpe:2.3:a:daniel_beckham:the_finger_server:0.82_beta:*:*:*:*:*:*:*","matchCriteriaId":"A2885CB6-08AD-44EA-A89C-F8B863AB7BAC"},{"vulnerable":true,"criteria":"cpe:2.3:a:daniel_beckham:the_finger_server:0.83_beta:*:*:*:*:*:*:*","matchCriteriaId":"A2EDE741-9583-471F-B803-046D5FF76C2D"}]}]}],"references":[{"url":"http://www.glazed.org/finger/changelog.txt","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/7610","source":"cve@mitre.org"},{"url":"http://www.glazed.org/finger/changelog.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/7610","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0129","sourceIdentifier":"cve@mitre.org","published":"2000-02-04T05:00:00.000","lastModified":"2026-06-16T21:51:03.660","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the SHGetPathFromIDList function of the Serv-U FTP server allows attackers to cause a denial of service by performing a LIST command on a malformed .lnk file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_95:*:*:*:*:*:*:*:*","matchCriteriaId":"82F7322B-8022-4D0B-ADB3-D0F5B6F20309"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98:*:gold:*:*:*:*:*:*","matchCriteriaId":"2D3B703C-79B2-4FA2-9E12-713AB977A880"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0129","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0129","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0145","sourceIdentifier":"cve@mitre.org","published":"2000-02-05T05:00:00.000","lastModified":"2026-06-16T21:51:05.630","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The libguile.so library file used by gnucash in Debian GNU/Linux is installed with world-writable permissions."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:4.0:*:*:*:*:*:*:*","matchCriteriaId":"0F92AB32-E7DE-43F4-B877-1F41FA162EC7"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0145","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0145","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0472","sourceIdentifier":"cve@mitre.org","published":"2000-02-06T05:00:00.000","lastModified":"2026-06-16T21:51:48.463","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in innd 2.2.2 allows remote attackers to execute arbitrary commands via a cancel request containing a long message ID."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:N","baseScore":3.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:isc:inn:2.0:*:*:*:*:*:*:*","matchCriteriaId":"A2480B45-A626-49F5-A48B-BA6DFAA4411B"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:inn:2.1:*:*:*:*:*:*:*","matchCriteriaId":"21969A37-9F10-4D70-AC73-F3DB4D169AEB"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:inn:2.2:*:*:*:*:*:*:*","matchCriteriaId":"94FD2948-EF52-464B-A605-DA3806037762"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:inn:2.2.1:*:*:*:*:*:*:*","matchCriteriaId":"1CC41E6D-B892-4888-8AEE-12287935F570"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:inn:2.2.2:*:*:*:*:*:*:*","matchCriteriaId":"7DED2B74-71B6-467C-8B07-F6F728AD7BF4"}]}]}],"references":[{"url":"ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-2000-016.0.txt","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0003.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0097.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0298.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0330.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1316","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4615","source":"cve@mitre.org"},{"url":"ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-2000-016.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0003.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0097.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0298.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0330.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1316","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4615","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0144","sourceIdentifier":"cve@mitre.org","published":"2000-02-07T05:00:00.000","lastModified":"2026-06-16T21:51:05.503","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Axis 700 Network Scanner does not properly restrict access to administrator URLs, which allows users to bypass the password protection via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:axis:700_network_document_server:1.0:*:*:*:*:*:*:*","matchCriteriaId":"4ADB9B02-6ED7-448D-A409-6A2F56AEFCD5"},{"vulnerable":true,"criteria":"cpe:2.3:h:axis:700_network_document_server:1.10:*:*:*:*:*:*:*","matchCriteriaId":"657A10D8-2BBC-4B20-9DB0-D37842C4EC81"},{"vulnerable":true,"criteria":"cpe:2.3:h:axis:700_network_document_server:1.11:*:*:*:*:*:*:*","matchCriteriaId":"3982C911-305E-49B4-90C9-CE12584A7C54"},{"vulnerable":true,"criteria":"cpe:2.3:h:axis:700_network_document_server:1.12:*:*:*:*:*:*:*","matchCriteriaId":"0AA3DD85-191E-48BE-A46F-8990848F8850"},{"vulnerable":true,"criteria":"cpe:2.3:h:axis:700_network_document_server:1.13:*:*:*:*:*:*:*","matchCriteriaId":"86CBA528-BAD0-4848-81B2-281EDEA33DE8"},{"vulnerable":true,"criteria":"cpe:2.3:h:axis:700_network_document_server:1.14:*:*:*:*:*:*:*","matchCriteriaId":"72897C22-B421-496D-8EA4-7B8CB4ED4E68"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-02/0034.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/971","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-02/0034.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/971","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0146","sourceIdentifier":"cve@mitre.org","published":"2000-02-07T05:00:00.000","lastModified":"2026-06-16T21:51:05.753","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Java Server in the Novell GroupWise Web Access Enhancement Pack allows remote attackers to cause a denial of service via a long URL to the servlet."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:novell:groupwise:5.5:*:enhancement_pack:*:*:*:*:*","matchCriteriaId":"E7F809F7-C72F-4869-BE95-EE8BF5F0E111"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-02/0049.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/972","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-02/0049.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/972","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0147","sourceIdentifier":"cve@mitre.org","published":"2000-02-08T05:00:00.000","lastModified":"2026-06-16T21:51:05.877","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"snmpd in SCO OpenServer has an SNMP community string that is writable by default, which allows local attackers to modify the host's configuration."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sco:openserver:5.0.5:*:*:*:*:*:*:*","matchCriteriaId":"B8BA72B4-C4AF-41C6-92ED-30B286E00EF5"}]}]}],"references":[{"url":"ftp://ftp.sco.com/SSE/security_bulletins/SB-00.04a","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-02/0045.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/973","source":"cve@mitre.org"},{"url":"ftp://ftp.sco.com/SSE/security_bulletins/SB-00.04a","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-02/0045.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/973","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0148","sourceIdentifier":"cve@mitre.org","published":"2000-02-08T05:00:00.000","lastModified":"2026-06-16T21:51:06.007","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"MySQL 3.22 allows remote attackers to bypass password authentication and access a database via a short check string."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:mysql:3.22.26:*:*:*:*:*:*:*","matchCriteriaId":"C883DB55-0CAC-462A-912B-69E9E7E1C79C"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:mysql:3.22.27:*:*:*:*:*:*:*","matchCriteriaId":"45AD5549-07DC-43DA-B277-D7BF16ABE4E8"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:mysql:3.22.29:*:*:*:*:*:*:*","matchCriteriaId":"C30459B9-0FAC-48DF-9601-AAD1A028846F"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:mysql:3.22.30:*:*:*:*:*:*:*","matchCriteriaId":"86DC48D3-09F1-48BD-A783-0549D4D5E8B0"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:mysql:3.23.8:*:*:*:*:*:*:*","matchCriteriaId":"18E35942-7E70-468E-BA15-97CA5086C1B3"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:mysql:3.23.9:*:*:*:*:*:*:*","matchCriteriaId":"CCB886BB-EA7C-4618-9029-BB16A45A4301"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:mysql:3.23.10:*:*:*:*:*:*:*","matchCriteriaId":"56EC4832-82D1-4E57-86DA-8918CA006723"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-02/0053.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/975","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-02/0053.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/975","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0149","sourceIdentifier":"cve@mitre.org","published":"2000-02-08T05:00:00.000","lastModified":"2026-06-16T21:51:06.133","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Zeus web server allows remote attackers to view the source code for CGI programs via a null character (%00) at the end of a URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:zeus_technologies:zeus_web_server:3.1.1:*:*:*:*:*:*:*","matchCriteriaId":"5963529B-AC59-4A6E-9A5A-C658C4853092"},{"vulnerable":true,"criteria":"cpe:2.3:a:zeus_technologies:zeus_web_server:3.1.2:*:*:*:*:*:*:*","matchCriteriaId":"D0378E46-61DA-4D8D-97F2-F1377401CF3E"},{"vulnerable":true,"criteria":"cpe:2.3:a:zeus_technologies:zeus_web_server:3.1.3:*:*:*:*:*:*:*","matchCriteriaId":"B41474DE-0DE7-4493-B050-307E3CECDECA"},{"vulnerable":true,"criteria":"cpe:2.3:a:zeus_technologies:zeus_web_server:3.1.4:*:*:*:*:*:*:*","matchCriteriaId":"B7CF7BAB-13BB-474C-B8CA-B6193913D9D4"},{"vulnerable":true,"criteria":"cpe:2.3:a:zeus_technologies:zeus_web_server:3.1.5:*:*:*:*:*:*:*","matchCriteriaId":"ED101610-A479-412B-AD20-0A3C1906F2F6"},{"vulnerable":true,"criteria":"cpe:2.3:a:zeus_technologies:zeus_web_server:3.1.6:*:*:*:*:*:*:*","matchCriteriaId":"FA500577-636F-417D-B728-2551B14CBB8B"},{"vulnerable":true,"criteria":"cpe:2.3:a:zeus_technologies:zeus_web_server:3.1.7:*:*:*:*:*:*:*","matchCriteriaId":"27932CB0-D66A-41F2-AA81-096B94D5AE30"},{"vulnerable":true,"criteria":"cpe:2.3:a:zeus_technologies:zeus_web_server:3.1.8:*:*:*:*:*:*:*","matchCriteriaId":"925A449C-269B-4E3E-93BD-D5FB69ED2ADE"},{"vulnerable":true,"criteria":"cpe:2.3:a:zeus_technologies:zeus_web_server:3.1.9:*:*:*:*:*:*:*","matchCriteriaId":"1BFE4867-4093-4024-AF75-3580513E01B4"},{"vulnerable":true,"criteria":"cpe:2.3:a:zeus_technologies:zeus_web_server:3.3:*:*:*:*:*:*:*","matchCriteriaId":"80D7AFB8-4C19-4E4E-9BCE-4C7B45A7BB38"},{"vulnerable":true,"criteria":"cpe:2.3:a:zeus_technologies:zeus_web_server:3.3.1:*:*:*:*:*:*:*","matchCriteriaId":"1D7BD6BD-8945-45FC-909B-853BBD328618"},{"vulnerable":true,"criteria":"cpe:2.3:a:zeus_technologies:zeus_web_server:3.3.2:*:*:*:*:*:*:*","matchCriteriaId":"C9DBE4CC-5AAA-415E-9C2D-5B559377643B"},{"vulnerable":true,"criteria":"cpe:2.3:a:zeus_technologies:zeus_web_server:3.3.3:*:*:*:*:*:*:*","matchCriteriaId":"FF4E0DB8-AE4D-47AA-9815-9AF0590F19E0"},{"vulnerable":true,"criteria":"cpe:2.3:a:zeus_technologies:zeus_web_server:3.3.4:*:*:*:*:*:*:*","matchCriteriaId":"9135EE22-7B20-47C4-9B28-8706768E4179"},{"vulnerable":true,"criteria":"cpe:2.3:a:zeus_technologies:zeus_web_server:3.3.5:*:*:*:*:*:*:*","matchCriteriaId":"980FDE19-37D5-4135-8CAE-D58AAB0FD210"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-02/0057.html","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/254","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/977","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3982","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-02/0057.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/254","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/977","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3982","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0215","sourceIdentifier":"cve@mitre.org","published":"2000-02-08T05:00:00.000","lastModified":"2026-06-16T21:51:14.577","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in SCO cu program in UnixWare 7.x allows local users to gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.0:*:*:*:*:*:*:*","matchCriteriaId":"17439B5B-0B66-490B-9B53-2C9D576C879F"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.0.1:*:*:*:*:*:*:*","matchCriteriaId":"EF9FD7BF-97E4-426D-881F-03C9D5B8895D"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.1:*:*:*:*:*:*:*","matchCriteriaId":"B200C05F-0E89-4172-B500-47C2573D4461"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.1.1:*:*:*:*:*:*:*","matchCriteriaId":"71DDB9D9-AD7B-479D-B128-7150286EE563"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1019","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1019","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0140","sourceIdentifier":"cve@mitre.org","published":"2000-02-10T05:00:00.000","lastModified":"2026-06-16T21:51:04.987","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internet Anywhere POP3 Mail Server allows remote attackers to cause a denial of service via a large number of connections."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:true_north:internet_anywhere_mail_server:3.1.3:*:*:*:*:*:*:*","matchCriteriaId":"346E073E-72EE-44C6-A24F-39474627F857"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=95021326417936&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/980","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=95021326417936&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/980","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0141","sourceIdentifier":"cve@mitre.org","published":"2000-02-11T05:00:00.000","lastModified":"2026-06-16T21:51:05.100","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Infopop Ultimate Bulletin Board (UBB) allows remote attackers to execute commands via shell metacharacters in the topic hidden field."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:infopop:ultimate_bulletin_board:5.43:*:*:*:*:*:*:*","matchCriteriaId":"109D6BE8-39AD-43A7-B620-DEAA989D809E"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/991","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-02-22&msg=NDBBLKOPOLNKELHPDEFKIEPGCAAA.renzo.toma%40veronica.nl","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-02-8&msg=20000211224935.A13236%40infomag.ape.relarn.ru","source":"cve@mitre.org"},{"url":"http://www.ultimatebb.com/home/versions.shtml","source":"cve@mitre.org","tags":["URL Repurposed"]},{"url":"http://www.securityfocus.com/bid/991","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-02-22&msg=NDBBLKOPOLNKELHPDEFKIEPGCAAA.renzo.toma%40veronica.nl","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-02-8&msg=20000211224935.A13236%40infomag.ape.relarn.ru","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.ultimatebb.com/home/versions.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["URL Repurposed"]}]}},{"cve":{"id":"CVE-2000-0142","sourceIdentifier":"cve@mitre.org","published":"2000-02-11T05:00:00.000","lastModified":"2026-06-16T21:51:05.240","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The authentication protocol in Timbuktu Pro 2.0b650 allows remote attackers to cause a denial of service via connections to port 407 and 1417."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netopia:timbuktu_pro:2.0:*:*:*:*:*:*:*","matchCriteriaId":"84DF8888-9F75-4C19-AC1D-96F401764997"},{"vulnerable":true,"criteria":"cpe:2.3:a:netopia:timbuktu_pro:5.2.1:*:*:*:*:*:*:*","matchCriteriaId":"77601D02-02E0-4A19-8B67-3140DDF1DF14"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0142","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0142","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0143","sourceIdentifier":"cve@mitre.org","published":"2000-02-11T05:00:00.000","lastModified":"2026-06-16T21:51:05.360","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The SSH protocol server sshd allows local users without shell access to redirect a TCP connection through a service that uses the standard system password database for authentication, such as POP or FTP."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:openbsd:openssh:*:*:*:*:*:*:*:*","versionEndIncluding":"1.2.1","matchCriteriaId":"D4EFC03C-F5A7-4B74-B664-5828763B3E8E"},{"vulnerable":true,"criteria":"cpe:2.3:a:openbsd:openssh:1.2:*:*:*:*:*:*:*","matchCriteriaId":"316C8534-9CE3-456C-A04E-5D2B789FBE31"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.0:*:*:*:*:*:*:*","matchCriteriaId":"1E9C3330-E163-4699-B7F6-2D9B089E8A6D"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.1:*:*:*:*:*:*:*","matchCriteriaId":"F62C0C54-6BC0-4A8B-8006-F1EEEFAC3699"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.2:*:*:*:*:*:*:*","matchCriteriaId":"011ECCA8-63DD-4FB0-A2F4-B4BAF344242E"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.3:*:*:*:*:*:*:*","matchCriteriaId":"86A52DB0-B17A-437C-8E3A-0F824B9F88AD"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.4:*:*:*:*:*:*:*","matchCriteriaId":"8EDDCCD5-76B1-4981-BA9D-0C4702DD3FBA"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.5:*:*:*:*:*:*:*","matchCriteriaId":"6A9E54C6-7003-46B0-85B3-0C2E7E611D38"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.6:*:*:*:*:*:*:*","matchCriteriaId":"082C8ECC-CDAF-440B-90D0-A1FE028B03F9"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.7:*:*:*:*:*:*:*","matchCriteriaId":"7D0AAA72-CAA5-4985-ADD9-1790CE3C66D4"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.8:*:*:*:*:*:*:*","matchCriteriaId":"C0C2A220-D8AB-4FAD-8048-F2C1764F965F"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.9:*:*:*:*:*:*:*","matchCriteriaId":"5010A78A-394E-4196-90CB-5D371C3BD1EC"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.10:*:*:*:*:*:*:*","matchCriteriaId":"E5F6F181-41B1-47D1-A216-194DC4C762EC"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.11:*:*:*:*:*:*:*","matchCriteriaId":"D6EEBDAB-AA0D-407B-B8EE-6C33B0423AF9"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.12:*:*:*:*:*:*:*","matchCriteriaId":"45446BD9-3B03-43B6-B686-F6EACFABD699"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.13:*:*:*:*:*:*:*","matchCriteriaId":"FCE6F492-8E28-4FA1-9BF1-96BAF5D68545"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.14:*:*:*:*:*:*:*","matchCriteriaId":"41BF66ED-CB08-440E-AC05-A31371B7A380"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.15:*:*:*:*:*:*:*","matchCriteriaId":"E0EE3216-D8FF-43F0-9329-6676E2CEC250"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.16:*:*:*:*:*:*:*","matchCriteriaId":"9310E12D-1136-4AD6-9678-8ADCD9EE58C3"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.17:*:*:*:*:*:*:*","matchCriteriaId":"BBEDF399-58DE-491A-8B51-87E0392FF9C9"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.18:*:*:*:*:*:*:*","matchCriteriaId":"CBDF2DE8-8559-4BED-80AE-E1420BBF4043"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.19:*:*:*:*:*:*:*","matchCriteriaId":"23EB8421-76BF-47D1-B294-68412D5E4572"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.20:*:*:*:*:*:*:*","matchCriteriaId":"D9560989-5342-4C6B-974F-7D90C467BA39"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.21:*:*:*:*:*:*:*","matchCriteriaId":"971835AF-E908-4C74-9DE0-167349138DEC"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.22:*:*:*:*:*:*:*","matchCriteriaId":"2E0D49C5-54B4-4437-A2D3-3EBFA1D9A3CF"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.23:*:*:*:*:*:*:*","matchCriteriaId":"926B57D7-009C-4317-ACFB-98551FADC5B2"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.24:*:*:*:*:*:*:*","matchCriteriaId":"B0EDBA45-FDEE-4D4B-A6FF-7E953B523DAE"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.25:*:*:*:*:*:*:*","matchCriteriaId":"7AF5BDEF-E86B-4F4D-AF6D-B27044A96B1E"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.26:*:*:*:*:*:*:*","matchCriteriaId":"7D0FF07F-E13B-425F-9892-C50B326B2944"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.27:*:*:*:*:*:*:*","matchCriteriaId":"338EDA76-05D6-48C0-952E-6244A5F206F3"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0143","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0143","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0150","sourceIdentifier":"cve@mitre.org","published":"2000-02-12T05:00:00.000","lastModified":"2026-06-16T21:51:06.277","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Check Point Firewall-1 allows remote attackers to bypass port access restrictions on an FTP server by forcing it to send malicious packets that Firewall-1 misinterprets as a valid 227 response to a client's PASV attempt."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:3.0:*:*:*:*:*:*:*","matchCriteriaId":"A550C18E-F07A-4A05-87F0-B1D52FDC401C"},{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:4.0:*:*:*:*:*:*:*","matchCriteriaId":"0F543272-8C7E-4326-BA97-142FBEA641E5"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:pix_firewall_software:4.1\\(6\\):*:*:*:*:*:*:*","matchCriteriaId":"1EEDB9DD-C862-4783-9F96-88836424B298"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:pix_firewall_software:4.1\\(6b\\):*:*:*:*:*:*:*","matchCriteriaId":"3BD36C4A-4B90-4012-B4A5-6081C413E302"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:pix_firewall_software:4.2\\(1\\):*:*:*:*:*:*:*","matchCriteriaId":"B1C4F7D5-DCD0-409C-86BF-A96A5253DF64"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:pix_firewall_software:4.2\\(2\\):*:*:*:*:*:*:*","matchCriteriaId":"8198D129-76D0-4983-BFC4-8EC724FE1B6A"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:pix_firewall_software:4.3:*:*:*:*:*:*:*","matchCriteriaId":"49566EAC-05AF-4880-8000-351AF538E4CC"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:pix_firewall_software:4.4\\(4\\):*:*:*:*:*:*:*","matchCriteriaId":"118CBF59-DAD8-468E-B279-F6359E4624F1"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:pix_firewall_software:5.0:*:*:*:*:*:*:*","matchCriteriaId":"7AA2E425-904C-4070-8F5F-B81BCF3147F6"}]}]}],"references":[{"url":"http://www.kb.cert.org/vuls/id/328867","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://www.osvdb.org/4417","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/979","source":"cve@mitre.org"},{"url":"http://www.kb.cert.org/vuls/id/328867","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"http://www.osvdb.org/4417","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/979","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0197","sourceIdentifier":"cve@mitre.org","published":"2000-02-14T05:00:00.000","lastModified":"2026-06-16T21:51:12.237","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Windows NT scheduler uses the drive mapping of the interactive user who is currently logged onto the system, which allows the local user to gain privileges by providing a Trojan horse batch file in place of the original batch file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/ntbugtraq/current/0202.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1050","source":"cve@mitre.org","tags":["Exploit","Patch"]},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/current/0202.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1050","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch"]}]}},{"cve":{"id":"CVE-2000-0167","sourceIdentifier":"cve@mitre.org","published":"2000-02-15T05:00:00.000","lastModified":"2026-06-16T21:51:08.410","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IIS Inetinfo.exe allows local users to cause a denial of service by creating a mail file with a long name and a .txt.eml extension in the pickup directory."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"}]}]}],"references":[{"url":"http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind0002&L=ntbugtraq&F=&S=&P=8800","source":"cve@mitre.org"},{"url":"http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind0002&L=ntbugtraq&F=&S=&P=8800","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0222","sourceIdentifier":"cve@mitre.org","published":"2000-02-15T05:00:00.000","lastModified":"2026-06-16T21:51:15.520","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The installation for Windows 2000 does not activate the Administrator password until the system has rebooted, which allows remote attackers to connect to the ADMIN$ share without a password until the reboot occurs."},{"lang":"es","value":"La instalación para Windows 2000 no activa la contraseña de administrador hasta que el sistema se ha reiniciado, lo que permite a los atacantes remotos conectarse al recurso compartido ADMIN$ sin contraseña hasta que se produzca el reinicio."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/990","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000215155750.M4500%40safe.hsc.fr","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/990","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000215155750.M4500%40safe.hsc.fr","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0224","sourceIdentifier":"cve@mitre.org","published":"2000-02-15T05:00:00.000","lastModified":"2026-06-16T21:51:15.793","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ARCserve agent in SCO UnixWare 7.x allows local attackers to gain root privileges via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:N/I:P/A:N","baseScore":1.2,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":1.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.1:*:*:*:*:*:*:*","matchCriteriaId":"B200C05F-0E89-4172-B500-47C2573D4461"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.1.1:*:*:*:*:*:*:*","matchCriteriaId":"71DDB9D9-AD7B-479D-B128-7150286EE563"}]}]}],"references":[{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-02-15&msg=000101bf78af%2494528870%244d2f45a1%40jmagdych.na.nai.com","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-02-15&msg=000101bf78af%2494528870%244d2f45a1%40jmagdych.na.nai.com","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0094","sourceIdentifier":"cve@mitre.org","published":"2000-02-16T05:00:00.000","lastModified":"2026-06-16T21:50:59.290","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"procfs in BSD systems allows local users to gain root privileges by modifying the /proc/pid/mem interface via a modified file descriptor for stderr."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.1:*:*:*:*:*:*:*","matchCriteriaId":"1C288A88-11C6-429E-A109-0395D0989264"}]}]}],"references":[{"url":"ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2000-001.txt.asc","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/20760","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/940","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3995","source":"cve@mitre.org"},{"url":"ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2000-001.txt.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/20760","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/940","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3995","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0154","sourceIdentifier":"cve@mitre.org","published":"2000-02-16T05:00:00.000","lastModified":"2026-06-16T21:51:06.770","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The ARCserve agent in UnixWare allows local attackers to modify arbitrary files via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:N/I:P/A:N","baseScore":1.2,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":1.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.1:*:*:*:*:*:*:*","matchCriteriaId":"B200C05F-0E89-4172-B500-47C2573D4461"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.1.1:*:*:*:*:*:*:*","matchCriteriaId":"71DDB9D9-AD7B-479D-B128-7150286EE563"}]}]}],"references":[{"url":"http://www.sco.com/security/","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/988","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-02-15&msg=000101bf78af%2494528870%244d2f45a1%40jmagdych.na.nai.com","source":"cve@mitre.org"},{"url":"http://www.sco.com/security/","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/988","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-02-15&msg=000101bf78af%2494528870%244d2f45a1%40jmagdych.na.nai.com","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0156","sourceIdentifier":"cve@mitre.org","published":"2000-02-16T05:00:00.000","lastModified":"2026-06-16T21:51:07.020","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internet Explorer 4.x and 5.x allows remote web servers to access files on the client that are outside of its security domain, aka the \"Image Source Redirect\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0:*:*:*:*:*:*:*","matchCriteriaId":"A5B815D9-BC21-4A17-AF00-B8AD181027D7"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0.1:*:*:*:*:*:*:*","matchCriteriaId":"42502347-DD40-4F8C-9861-C0A88A3F8608"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.01:*:*:*:*:*:*:*","matchCriteriaId":"6219D36E-9E2C-4DC7-8FD5-FAD144A333F6"}]}]}],"references":[{"url":"http://www.osvdb.org/7827","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-009","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3996","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/7827","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-009","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3996","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0158","sourceIdentifier":"cve@mitre.org","published":"2000-02-16T05:00:00.000","lastModified":"2026-06-16T21:51:07.263","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in MMDF server allows remote attackers to gain privileges via a long MAIL FROM command to the SMTP daemon."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sco:openserver:5.0:*:*:*:*:*:*:*","matchCriteriaId":"2C19F7B3-9043-4E53-90DE-92A4387858A7"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:openserver:5.0.2:*:*:*:*:*:*:*","matchCriteriaId":"0169CBF5-9301-42D2-A6DA-73393BD986D8"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:openserver:5.0.4:*:*:*:*:*:*:*","matchCriteriaId":"035FBF8B-EB91-4211-9979-8A9E913A54A1"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:openserver:5.0.5:*:*:*:*:*:*:*","matchCriteriaId":"B8BA72B4-C4AF-41C6-92ED-30B286E00EF5"}]}]}],"references":[{"url":"ftp://ftp.sco.com/SSE/security_bulletins/SB-00.06a","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/997","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-02-15&msg=000001bf78af%246d0d47a0%244d2f45a1%40jmagdych.na.nai.com","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-02-15&msg=200002181449.JAA03436%40dragonfly.corp.home.net","source":"cve@mitre.org"},{"url":"ftp://ftp.sco.com/SSE/security_bulletins/SB-00.06a","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/997","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-02-15&msg=000001bf78af%246d0d47a0%244d2f45a1%40jmagdych.na.nai.com","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-02-15&msg=200002181449.JAA03436%40dragonfly.corp.home.net","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0159","sourceIdentifier":"cve@mitre.org","published":"2000-02-17T05:00:00.000","lastModified":"2026-06-16T21:51:07.393","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"HP Ignite-UX does not save /etc/passwd when it creates an image of a trusted system, which can set the password field to a blank and allow an attacker to gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:11.00:*:*:*:*:*:*:*","matchCriteriaId":"771931F7-9180-4EBD-8627-E1CF17D24647"}]}]}],"references":[{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-02-15&msg=20000217160216.13708.qmail%40underground.org","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-02-15&msg=20000217160216.13708.qmail%40underground.org","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0155","sourceIdentifier":"cve@mitre.org","published":"2000-02-18T05:00:00.000","lastModified":"2026-06-16T21:51:06.887","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Windows NT Autorun executes the autorun.inf file on non-removable media, which allows local attackers to specify an alternate program to execute when other users access a drive."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-94"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_95:*:*:*:*:*:*:*:*","matchCriteriaId":"82F7322B-8022-4D0B-ADB3-D0F5B6F20309"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98:*:gold:*:*:*:*:*:*","matchCriteriaId":"2D3B703C-79B2-4FA2-9E12-713AB977A880"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/993","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-02-15&msg=000701bf79cd%24fdb5a620%244c4342a6%40mightye.org","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/993","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-02-15&msg=000701bf79cd%24fdb5a620%244c4342a6%40mightye.org","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0161","sourceIdentifier":"cve@mitre.org","published":"2000-02-18T05:00:00.000","lastModified":"2026-06-16T21:51:07.640","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Sample web sites on Microsoft Site Server 3.0 Commerce Edition do not validate an identification number, which allows remote attackers to execute SQL commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:site_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"4A503018-356B-46D9-965F-60750B5B7484"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/994","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-010","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/994","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-010","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0162","sourceIdentifier":"cve@mitre.org","published":"2000-02-18T05:00:00.000","lastModified":"2026-06-16T21:51:07.757","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Microsoft virtual machine (VM) in Internet Explorer 4.x and 5.x allows a remote attacker to read files via a malicious Java applet that escapes the Java sandbox, aka the \"VM File Reading\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:4.0:*:windows_98:*:*:*:*:*","matchCriteriaId":"D0BDA2A8-EBB9-47AB-9DA0-5C24527F7210"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:4.0:*:windows_nt:*:*:*:*:*","matchCriteriaId":"077B638C-F14D-4048-86C8-B62517C5182F"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:4.1:*:windows_95:*:*:*:*:*","matchCriteriaId":"D45C47A8-8B5F-4A49-8B36-FCBA09029375"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:4.1:*:windows_nt_4.0:*:*:*:*:*","matchCriteriaId":"84730D4D-7887-4A64-8C76-F50C85309FE7"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5:*:windows_nt_4.0:*:*:*:*:*","matchCriteriaId":"7AAA310C-7DED-40B3-B5EF-80C7407BB01A"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5.0:*:windows_95:*:*:*:*:*","matchCriteriaId":"0CE25503-0EDA-4AFA-A4B8-36396BB4A4E9"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5.0:*:windows_98:*:*:*:*:*","matchCriteriaId":"376DA3A6-FAB8-4B18-B9D9-C176675C7671"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0:*:*:*:*:*:*:*","matchCriteriaId":"A5B815D9-BC21-4A17-AF00-B8AD181027D7"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:visual_studio:6.0:*:*:*:*:*:*:*","matchCriteriaId":"D5CDA0E2-DFBD-4EE0-80DC-76AA55ADFEFC"}]}]}],"references":[{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-011","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-011","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0164","sourceIdentifier":"cve@mitre.org","published":"2000-02-20T05:00:00.000","lastModified":"2026-06-16T21:51:08.017","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The installation of Sun Internet Mail Server (SIMS) creates a world-readable file that allows local users to obtain passwords."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sun:solaris_isp_server:2.0:*:*:*:*:*:*:*","matchCriteriaId":"7B2C1CBE-EE61-4253-9F58-06F60739BA3B"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1004","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-02-15&msg=Pine.SOL.4.21.0002200031320.22675-100000%40klayman.hq.formus.pl","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1004","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-02-15&msg=Pine.SOL.4.21.0002200031320.22675-100000%40klayman.hq.formus.pl","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0160","sourceIdentifier":"cve@mitre.org","published":"2000-02-21T05:00:00.000","lastModified":"2026-06-16T21:51:07.510","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Microsoft Active Setup ActiveX component in Internet Explorer 4.x and 5.x allows a remote attacker to install software components without prompting the user by stating that the software's manufacturer is Microsoft."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:C/I:C/A:C","baseScore":7.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":4.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:4.x:*:*:*:*:*:*:*","matchCriteriaId":"45091F51-BA28-4FEB-9F84-58AC2E1DB48F"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5:*:*:*:*:*:*:*","matchCriteriaId":"B4071D03-D955-4C1B-ACD8-A864F7D0FA02"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook:*:*:*:*:*:*:*:*","matchCriteriaId":"91EB05F7-D88A-40AA-A8CB-F76C449878AA"}]}]}],"references":[{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-02-15&msg=20000221103938.T21312%40securityfocus.com","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-02-15&msg=20000221103938.T21312%40securityfocus.com","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0163","sourceIdentifier":"cve@mitre.org","published":"2000-02-21T05:00:00.000","lastModified":"2026-06-16T21:51:07.887","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"asmon and ascpu in FreeBSD allow local users to gain root privileges via a configuration file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.0:*:*:*:*:*:*:*","matchCriteriaId":"EE38C50A-81FE-412E-9717-3672FAE6A6F4"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.1:*:*:*:*:*:*:*","matchCriteriaId":"263F3734-7076-4EA8-B4C0-F37CFC4E979E"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.2:*:*:*:*:*:*:*","matchCriteriaId":"0419DD66-FF66-48BC-AD3B-F6AFD0551E36"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.3:*:*:*:*:*:*:*","matchCriteriaId":"C3518628-08E5-4AD7-AAF6-A4E38F1CDE2C"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.4:*:*:*:*:*:*:*","matchCriteriaId":"B982342C-1981-4C55-8044-AFE4D87623DF"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/996","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/advisory.html?id=2092","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/996","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/advisory.html?id=2092","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0166","sourceIdentifier":"cve@mitre.org","published":"2000-02-21T05:00:00.000","lastModified":"2026-06-16T21:51:08.287","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the InterAccess telnet server TelnetD allows remote attackers to execute commands via a long login name."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:interaccess:interaccess_telnetd_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5CD83AB6-6378-4CAA-86B5-0A15D97B2BAB"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=95142756403323&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/995","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=NCBBKFKDOLAGKIAPMILPGEJHCCAA.labs%40ussrback.com","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=95142756403323&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/995","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=NCBBKFKDOLAGKIAPMILPGEJHCCAA.labs%40ussrback.com","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0210","sourceIdentifier":"cve@mitre.org","published":"2000-02-21T05:00:00.000","lastModified":"2026-06-16T21:51:13.927","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The lit program in Sun Flex License Manager (FlexLM) follows symlinks, which allows local users to modify arbitrary files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:N/I:P/A:N","baseScore":1.2,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":1.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sun:workshop:5.0:*:*:*:*:*:*:*","matchCriteriaId":"9B522DB0-C196-4840-83E5-A8CA2FCB1BDA"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/998","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/998","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0182","sourceIdentifier":"cve@mitre.org","published":"2000-02-23T05:00:00.000","lastModified":"2026-06-16T21:51:10.270","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"iPlanet Web Server 4.1 allows remote attackers to cause a denial of service via a large number of GET commands, which consumes memory and causes a kernel panic."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:iplanet:iplanet_web_server:4.1_enterprise:*:*:*:*:*:*:*","matchCriteriaId":"F52699EB-CC9F-4768-86CB-FEAA727EDD9B"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0182","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0182","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0211","sourceIdentifier":"cve@mitre.org","published":"2000-02-23T05:00:00.000","lastModified":"2026-06-16T21:51:14.050","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Windows Media server allows remote attackers to cause a denial of service via a series of client handshake packets that are sent in an improper sequence, aka the \"Misordered Windows Media Services Handshake\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:windows_media_services:4.0:*:*:*:*:*:*:*","matchCriteriaId":"D073958F-0428-4E15-97B0-8EDAD0E80632"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:windows_media_services:4.1:*:*:*:*:*:*:*","matchCriteriaId":"AA3DDE73-E623-45A3-AA49-17BAFB89A2CC"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1000","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-013","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1000","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-013","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0213","sourceIdentifier":"cve@mitre.org","published":"2000-02-23T05:00:00.000","lastModified":"2026-06-16T21:51:14.327","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Sambar server includes batch files ECHO.BAT and HELLO.BAT in the CGI directory, which allow remote attackers to execute commands via shell metacharacters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sambar:sambar_server:*:beta7:*:*:*:*:*:*","versionEndIncluding":"4.2","matchCriteriaId":"1C1C9F1B-2D13-4C36-9DBB-675A309BF526"}]}]}],"references":[{"url":"http://www.sambar.com/session/highlight?url=/syshelp/history.htm&words=security+&color=red","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1002","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=38B3E60A.6A84FEC3%40cybcom.net","source":"cve@mitre.org"},{"url":"http://www.sambar.com/session/highlight?url=/syshelp/history.htm&words=security+&color=red","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1002","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=38B3E60A.6A84FEC3%40cybcom.net","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0219","sourceIdentifier":"cve@mitre.org","published":"2000-02-23T05:00:00.000","lastModified":"2026-06-16T21:51:15.137","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Red Hat 6.0 allows local users to gain root access by booting single user and hitting ^C at the password prompt."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-264"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:i386:*:*:*:*:*","matchCriteriaId":"89F65C9D-BD68-4A86-BFDC-E7CE76F13948"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1005","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200002230248.NAA19185%40cairo.anu.edu.au","source":"cve@mitre.org"},{"url":"https://kc.mcafee.com/corporate/index?page=content&id=SB10053","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1005","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200002230248.NAA19185%40cairo.anu.edu.au","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://kc.mcafee.com/corporate/index?page=content&id=SB10053","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0194","sourceIdentifier":"cve@mitre.org","published":"2000-02-24T05:00:00.000","lastModified":"2026-06-16T21:51:11.867","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"buildxconf in Corel Linux allows local users to modify or create arbitrary files via the -x or -f parameters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:corel:linux:1.0:*:*:*:*:*:*:*","matchCriteriaId":"0CB5BDE6-F735-461F-B3B9-066A4876AB0A"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-02/0323.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1007","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-02/0323.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1007","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0195","sourceIdentifier":"cve@mitre.org","published":"2000-02-24T05:00:00.000","lastModified":"2026-06-16T21:51:11.990","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"setxconf in Corel Linux allows local users to gain root access via the -T parameter, which executes the user's .xserverrc file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:corel:linux:1.0:*:*:*:*:*:*:*","matchCriteriaId":"0CB5BDE6-F735-461F-B3B9-066A4876AB0A"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-02/0323.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1008","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-02/0323.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1008","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0212","sourceIdentifier":"cve@mitre.org","published":"2000-02-24T05:00:00.000","lastModified":"2026-06-16T21:51:14.190","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"InterAccess TelnetD Server 4.0 allows remote attackers to conduct a denial of service via malformed terminal client configuration information."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:pragma_systems:interaccess_telnetd_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"4C561A2E-7083-4E3D-B2AE-5F984ED5A617"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1001","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4033","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1001","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4033","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0214","sourceIdentifier":"cve@mitre.org","published":"2000-02-24T05:00:00.000","lastModified":"2026-06-16T21:51:14.457","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"FTP Explorer uses weak encryption for storing the username, password, and profile of FTP sites."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ftpx:ftp_explorer:1.00.10:*:*:*:*:*:*:*","matchCriteriaId":"224F78A5-E8B6-4E28-92F7-4508CEA36AB1"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1003","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.10.10002242035500.30645-100000%40unreal.sekure.org","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1003","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.10.10002242035500.30645-100000%40unreal.sekure.org","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0217","sourceIdentifier":"cve@mitre.org","published":"2000-02-24T05:00:00.000","lastModified":"2026-06-16T21:51:14.860","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default configuration of SSH allows X forwarding, which could allow a remote attacker to control a client's X sessions via a malicious xauth program."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:openbsd:openssh:1.2:*:*:*:*:*:*:*","matchCriteriaId":"316C8534-9CE3-456C-A04E-5D2B789FBE31"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.0:*:*:*:*:*:*:*","matchCriteriaId":"1E9C3330-E163-4699-B7F6-2D9B089E8A6D"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.1:*:*:*:*:*:*:*","matchCriteriaId":"F62C0C54-6BC0-4A8B-8006-F1EEEFAC3699"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.2:*:*:*:*:*:*:*","matchCriteriaId":"011ECCA8-63DD-4FB0-A2F4-B4BAF344242E"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.3:*:*:*:*:*:*:*","matchCriteriaId":"86A52DB0-B17A-437C-8E3A-0F824B9F88AD"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.4:*:*:*:*:*:*:*","matchCriteriaId":"8EDDCCD5-76B1-4981-BA9D-0C4702DD3FBA"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.5:*:*:*:*:*:*:*","matchCriteriaId":"6A9E54C6-7003-46B0-85B3-0C2E7E611D38"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.6:*:*:*:*:*:*:*","matchCriteriaId":"082C8ECC-CDAF-440B-90D0-A1FE028B03F9"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.7:*:*:*:*:*:*:*","matchCriteriaId":"7D0AAA72-CAA5-4985-ADD9-1790CE3C66D4"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.8:*:*:*:*:*:*:*","matchCriteriaId":"C0C2A220-D8AB-4FAD-8048-F2C1764F965F"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.9:*:*:*:*:*:*:*","matchCriteriaId":"5010A78A-394E-4196-90CB-5D371C3BD1EC"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.10:*:*:*:*:*:*:*","matchCriteriaId":"E5F6F181-41B1-47D1-A216-194DC4C762EC"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.11:*:*:*:*:*:*:*","matchCriteriaId":"D6EEBDAB-AA0D-407B-B8EE-6C33B0423AF9"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.12:*:*:*:*:*:*:*","matchCriteriaId":"45446BD9-3B03-43B6-B686-F6EACFABD699"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.13:*:*:*:*:*:*:*","matchCriteriaId":"FCE6F492-8E28-4FA1-9BF1-96BAF5D68545"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.14:*:*:*:*:*:*:*","matchCriteriaId":"41BF66ED-CB08-440E-AC05-A31371B7A380"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.15:*:*:*:*:*:*:*","matchCriteriaId":"E0EE3216-D8FF-43F0-9329-6676E2CEC250"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.16:*:*:*:*:*:*:*","matchCriteriaId":"9310E12D-1136-4AD6-9678-8ADCD9EE58C3"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.17:*:*:*:*:*:*:*","matchCriteriaId":"BBEDF399-58DE-491A-8B51-87E0392FF9C9"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.18:*:*:*:*:*:*:*","matchCriteriaId":"CBDF2DE8-8559-4BED-80AE-E1420BBF4043"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.19:*:*:*:*:*:*:*","matchCriteriaId":"23EB8421-76BF-47D1-B294-68412D5E4572"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.20:*:*:*:*:*:*:*","matchCriteriaId":"D9560989-5342-4C6B-974F-7D90C467BA39"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.21:*:*:*:*:*:*:*","matchCriteriaId":"971835AF-E908-4C74-9DE0-167349138DEC"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.22:*:*:*:*:*:*:*","matchCriteriaId":"2E0D49C5-54B4-4437-A2D3-3EBFA1D9A3CF"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.23:*:*:*:*:*:*:*","matchCriteriaId":"926B57D7-009C-4317-ACFB-98551FADC5B2"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.24:*:*:*:*:*:*:*","matchCriteriaId":"B0EDBA45-FDEE-4D4B-A6FF-7E953B523DAE"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.25:*:*:*:*:*:*:*","matchCriteriaId":"7AF5BDEF-E86B-4F4D-AF6D-B27044A96B1E"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.26:*:*:*:*:*:*:*","matchCriteriaId":"7D0FF07F-E13B-425F-9892-C50B326B2944"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.27:*:*:*:*:*:*:*","matchCriteriaId":"338EDA76-05D6-48C0-952E-6244A5F206F3"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.28:*:*:*:*:*:*:*","matchCriteriaId":"F719468E-A218-4EB5-9F8D-7841E84F44C8"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.29:*:*:*:*:*:*:*","matchCriteriaId":"1E4FCD36-0009-4A93-A190-8FDD11C672CA"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.30:*:*:*:*:*:*:*","matchCriteriaId":"71727854-1B75-465F-AF8C-DFE6EFF46B40"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.31:*:*:*:*:*:*:*","matchCriteriaId":"64B76EA2-D3A6-4751-ADE6-998C2A7B44FA"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0:*:*:*:*:*:*:*","matchCriteriaId":"4A7DB2FA-58A8-45B9-AE2E-AE20A872BF90"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.1:*:*:*:*:*:*:*","matchCriteriaId":"2DD92EA8-8C01-4E4E-9AFE-2B1242AB10CE"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.2:*:*:*:*:*:*:*","matchCriteriaId":"6FB31028-59BA-4833-BF14-3CB1CA18DAAC"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.3:*:*:*:*:*:*:*","matchCriteriaId":"8A3E89B6-872D-4541-A413-88A956FDAE81"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.4:*:*:*:*:*:*:*","matchCriteriaId":"98CC86ED-CA78-4E2A-8A12-4F766DB79733"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.5:*:*:*:*:*:*:*","matchCriteriaId":"BD500A33-4D0E-44B5-9BBE-A30AA999F662"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.6:*:*:*:*:*:*:*","matchCriteriaId":"EBB8D72F-51E7-47DF-96A4-4EBB517A79D7"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.7:*:*:*:*:*:*:*","matchCriteriaId":"EC2379BA-621E-4986-AAC5-AF359FD57381"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.8:*:*:*:*:*:*:*","matchCriteriaId":"9972B3A4-369E-40B5-9415-F92B7394604A"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.9:*:*:*:*:*:*:*","matchCriteriaId":"1B6E719F-010B-4B8A-B508-0491BD15C465"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.10:*:*:*:*:*:*:*","matchCriteriaId":"E44D2AE3-DD8B-46D0-B6AB-9F0E6B4DCC4C"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.11:*:*:*:*:*:*:*","matchCriteriaId":"B7735CDD-8BFC-4E30-9C88-27C8943637CA"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh2:2.0.12:*:*:*:*:*:*:*","matchCriteriaId":"A1582187-F4BA-44D6-97F0-E78D814A9E9E"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1006","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1006","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0220","sourceIdentifier":"cve@mitre.org","published":"2000-02-24T05:00:00.000","lastModified":"2026-06-16T21:51:15.270","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ZoneAlarm sends sensitive system and network information in cleartext to the Zone Labs server if a user requests more information about an event."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:zonelabs:zonealarm:2.0.26:*:*:*:*:*:*:*","matchCriteriaId":"1579C5D8-3F58-4477-97E7-C951DD541920"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0220","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0220","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0221","sourceIdentifier":"cve@mitre.org","published":"2000-02-25T05:00:00.000","lastModified":"2026-06-16T21:51:15.397","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Nautica Marlin bridge allows remote attackers to cause a denial of service via a zero length UDP packet to the SNMP port."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:nortel:nautica_marlin:*:*:*:*:*:*:*:*","matchCriteriaId":"61FE2203-90B6-4DFE-86A6-3C6B8FA42D11"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1009","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1009","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0170","sourceIdentifier":"cve@mitre.org","published":"2000-02-26T05:00:00.000","lastModified":"2026-06-16T21:51:08.797","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the man program in Linux allows local users to gain privileges via the MANPAGER environmental variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:4.0:*:*:*:*:*:*:*","matchCriteriaId":"C9092D88-585D-4A0C-B181-E8D93563C74B"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:4.1:*:*:*:*:*:*:*","matchCriteriaId":"D8211154-6685-4FF0-B3ED-43A5E5763A10"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:4.2:*:*:*:*:*:*:*","matchCriteriaId":"F299301C-6BFC-436C-9CFD-2E291D3702AE"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.0:*:*:*:*:*:*:*","matchCriteriaId":"4BF54738-3C44-4FD4-AA9C-CAB2E86B1DC1"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.1:*:*:*:*:*:*:*","matchCriteriaId":"4EF44364-0F57-4B74-81B0-501EA6B58501"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:*:*:*:*:*:*","matchCriteriaId":"A8EED385-8C39-4A40-A507-2EFE7652FB35"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"2DFA94D5-0139-490C-8257-0751FE9FBAE4"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:*:*:*:*:*:*","matchCriteriaId":"0633B5A6-7A88-4A96-9462-4C09D124ED36"},{"vulnerable":true,"criteria":"cpe:2.3:o:turbolinux:turbolinux:3.5b2:*:*:*:*:*:*:*","matchCriteriaId":"667CF388-298D-4B64-9BA5-89D153FFA998"},{"vulnerable":true,"criteria":"cpe:2.3:o:turbolinux:turbolinux:4.2:*:*:*:*:*:*:*","matchCriteriaId":"5D15A193-3E01-467C-AEAD-497F4600DB06"},{"vulnerable":true,"criteria":"cpe:2.3:o:turbolinux:turbolinux:4.4:*:*:*:*:*:*:*","matchCriteriaId":"F7C765FF-0A3D-4BF4-B236-609658776ACA"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1011","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1011","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0187","sourceIdentifier":"cve@mitre.org","published":"2000-02-27T05:00:00.000","lastModified":"2026-06-16T21:51:10.903","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"EZShopper 3.0 loadpage.cgi CGI script allows remote attackers to read arbitrary files via a .. (dot dot) attack or execute commands via shell metacharacters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:alex_heiphetz_group:ezshopper:3.0:*:*:*:*:*:*:*","matchCriteriaId":"5DB24D0E-9799-4C96-B9F0-45B821ABA365"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-02/0356.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1014","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-02/0356.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1014","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0188","sourceIdentifier":"cve@mitre.org","published":"2000-02-27T05:00:00.000","lastModified":"2026-06-16T21:51:11.027","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"EZShopper 3.0 search.cgi CGI script allows remote attackers to read arbitrary files via a .. (dot dot) attack or execute commands via shell metacharacters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:alex_heiphetz_group:ezshopper:3.0:*:*:*:*:*:*:*","matchCriteriaId":"5DB24D0E-9799-4C96-B9F0-45B821ABA365"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-02/0356.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1014","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-02/0356.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1014","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0209","sourceIdentifier":"cve@mitre.org","published":"2000-02-27T05:00:00.000","lastModified":"2026-06-16T21:51:13.793","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Lynx 2.x allows remote attackers to crash Lynx and possibly execute commands via a long URL in a malicious web page."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:C/I:C/A:C","baseScore":7.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":4.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:university_of_kansas:lynx:2.7:*:*:*:*:*:*:*","matchCriteriaId":"E01953FC-9DA9-4C14-9989-6A81AA2B42E8"},{"vulnerable":true,"criteria":"cpe:2.3:a:university_of_kansas:lynx:2.8:*:*:*:*:*:*:*","matchCriteriaId":"08198583-325B-42B7-8856-14C864838AE7"},{"vulnerable":true,"criteria":"cpe:2.3:a:university_of_kansas:lynx:2.8.3_dev22:*:*:*:*:*:*:*","matchCriteriaId":"FD071013-25ED-4898-B603-2D3C97059357"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1012","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1012","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0178","sourceIdentifier":"cve@mitre.org","published":"2000-02-28T05:00:00.000","lastModified":"2026-06-16T21:51:09.800","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ServerIron switches by Foundry Networks have predictable TCP/IP sequence numbers, which allows remote attackers to spoof or hijack sessions."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:foundrynet:serveriron:5.1.10t12:*:*:*:*:*:*:*","matchCriteriaId":"8F5240D4-EF05-4134-9B75-03C1BFE7D37D"},{"vulnerable":true,"criteria":"cpe:2.3:a:foundrynet:serveriron:6.0:*:*:*:*:*:*:*","matchCriteriaId":"E3BDF7B5-5962-4D37-965B-22022255C96B"}]}]}],"references":[{"url":"http://www.foundrynet.com/bugTraq.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1017","source":"cve@mitre.org"},{"url":"http://www.foundrynet.com/bugTraq.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1017","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0179","sourceIdentifier":"cve@mitre.org","published":"2000-02-28T05:00:00.000","lastModified":"2026-06-16T21:51:09.917","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"HP OpenView OmniBack 2.55 allows remote attackers to cause a denial of service via a large number of connections to port 5555."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:hp:openview_omniback_ii:2.55:*:*:*:*:*:*:*","matchCriteriaId":"F72AF3E1-0BD4-45CE-85EC-F07C46AC348C"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:openview_omniback_ii:3.0:*:*:*:*:*:*:*","matchCriteriaId":"7BA93113-D9DC-46FE-B0F6-08400503207F"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:openview_omniback_ii:3.1:*:*:*:*:*:*:*","matchCriteriaId":"0CACE475-0F80-44B5-882C-7FB9ADA4B945"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-02/0387.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1015","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX0006-115","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-02/0387.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1015","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX0006-115","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0186","sourceIdentifier":"cve@mitre.org","published":"2000-02-28T05:00:00.000","lastModified":"2026-06-16T21:51:10.780","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the dump utility in the Linux ext2fs backup package allows local users to gain privileges via a long command line argument."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.4:*:*:*:*:*:*:*","matchCriteriaId":"B982342C-1981-4C55-8044-AFE4D87623DF"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"ACAAD334-2CA7-4B3B-BA25-302E7610BC2A"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"E4853E92-5E0A-47B9-A343-D5BEE87D2C27"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.1:*:*:*:*:*:*:*","matchCriteriaId":"4EF44364-0F57-4B74-81B0-501EA6B58501"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:i386:*:*:*:*:*","matchCriteriaId":"363AB7DB-A8BA-4D58-97C4-1DF1F0F43E07"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:i386:*:*:*:*:*","matchCriteriaId":"89F65C9D-BD68-4A86-BFDC-E7CE76F13948"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:i386:*:*:*:*:*","matchCriteriaId":"B72D6205-DFA4-41D9-B3B6-0B7DA756CD8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:i386:*:*:*:*:*","matchCriteriaId":"B7EC2B95-4715-4EC9-A10A-2542501F8A61"},{"vulnerable":true,"criteria":"cpe:2.3:o:turbolinux:turbolinux:4.2:*:*:*:*:*:*:*","matchCriteriaId":"5D15A193-3E01-467C-AEAD-497F4600DB06"},{"vulnerable":true,"criteria":"cpe:2.3:o:turbolinux:turbolinux:4.4:*:*:*:*:*:*:*","matchCriteriaId":"F7C765FF-0A3D-4BF4-B236-609658776ACA"},{"vulnerable":true,"criteria":"cpe:2.3:o:turbolinux:turbolinux:6.0.2:*:*:*:*:*:*:*","matchCriteriaId":"C6619B49-8A89-4600-A47F-A39C8BF54259"}]}]}],"references":[{"url":"http://www.redhat.com/support/errata/RHSA-2000-100.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1020","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-100.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1020","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0196","sourceIdentifier":"cve@mitre.org","published":"2000-02-28T05:00:00.000","lastModified":"2026-06-16T21:51:12.113","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in mhshow in the Linux nmh package allows remote attackers to execute commands via malformed MIME headers in an email message."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:nmh:nmh:1.0.2:*:*:*:*:*:*:*","matchCriteriaId":"CEE22340-554C-4E8F-970B-27264B89F0B0"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:alpha:*:*:*:*:*","matchCriteriaId":"07396B95-E434-46C9-A345-27C9EA9BEA26"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:i386:*:*:*:*:*","matchCriteriaId":"363AB7DB-A8BA-4D58-97C4-1DF1F0F43E07"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:sparc:*:*:*:*:*","matchCriteriaId":"0775CE08-C5AD-4FF7-AEA9-537B1EAE3BDE"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:alpha:*:*:*:*:*","matchCriteriaId":"6931FB54-A163-4CE3-BBD9-D345AA0977A6"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:i386:*:*:*:*:*","matchCriteriaId":"89F65C9D-BD68-4A86-BFDC-E7CE76F13948"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:sparc:*:*:*:*:*","matchCriteriaId":"5ABD1331-277C-4C31-8186-978243C62255"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:alpha:*:*:*:*:*","matchCriteriaId":"C89454B9-4F45-4A42-A06D-ED42D893C544"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:i386:*:*:*:*:*","matchCriteriaId":"B72D6205-DFA4-41D9-B3B6-0B7DA756CD8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:sparc:*:*:*:*:*","matchCriteriaId":"1E64093E-7D53-4238-95C3-48ED5A0FFD97"},{"vulnerable":true,"criteria":"cpe:2.3:o:turbolinux:turbolinux:3.5b2:*:*:*:*:*:*:*","matchCriteriaId":"667CF388-298D-4B64-9BA5-89D153FFA998"},{"vulnerable":true,"criteria":"cpe:2.3:o:turbolinux:turbolinux:4.2:*:*:*:*:*:*:*","matchCriteriaId":"5D15A193-3E01-467C-AEAD-497F4600DB06"},{"vulnerable":true,"criteria":"cpe:2.3:o:turbolinux:turbolinux:4.4:*:*:*:*:*:*:*","matchCriteriaId":"F7C765FF-0A3D-4BF4-B236-609658776ACA"},{"vulnerable":true,"criteria":"cpe:2.3:o:turbolinux:turbolinux:6.0.2:*:*:*:*:*:*:*","matchCriteriaId":"C6619B49-8A89-4600-A47F-A39C8BF54259"}]}]}],"references":[{"url":"http://www.redhat.com/support/errata/RHSA-2000-006.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1018","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-006.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1018","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0203","sourceIdentifier":"cve@mitre.org","published":"2000-02-28T05:00:00.000","lastModified":"2026-06-16T21:51:12.990","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Trend Micro OfficeScan client tmlisten.exe allows remote attackers to cause a denial of service via malformed data to port 12345."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:trend_micro:officescan:3.5:*:*:*:*:*:*:*","matchCriteriaId":"59CDE5D7-3DEC-42DE-8B5A-63903754937B"}]}]}],"references":[{"url":"http://www.antivirus.com/download/ofce_patch_35.htm","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1013","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=412FC0AFD62ED31191B40008C7E9A11A0D481D%40srvnt04.previnet.it","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=D129BBE1730AD2118A0300805FC1C2FE038AF28B%40209-76-212-10.trendmicro.com","source":"cve@mitre.org"},{"url":"http://www.antivirus.com/download/ofce_patch_35.htm","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1013","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=412FC0AFD62ED31191B40008C7E9A11A0D481D%40srvnt04.previnet.it","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=D129BBE1730AD2118A0300805FC1C2FE038AF28B%40209-76-212-10.trendmicro.com","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0204","sourceIdentifier":"cve@mitre.org","published":"2000-02-28T05:00:00.000","lastModified":"2026-06-16T21:51:13.130","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Trend Micro OfficeScan client allows remote attackers to cause a denial of service by making 5 connections to port 12345, which raises CPU utilization to 100%."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:trend_micro:officescan:3.5:*:*:*:*:*:*:*","matchCriteriaId":"59CDE5D7-3DEC-42DE-8B5A-63903754937B"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-02/0340.html","source":"cve@mitre.org"},{"url":"http://www.antivirus.com/download/ofce_patch_35.htm","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1013","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=D129BBE1730AD2118A0300805FC1C2FE038AF28B%40209-76-212-10.trendmicro.com","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-02/0340.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.antivirus.com/download/ofce_patch_35.htm","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1013","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=D129BBE1730AD2118A0300805FC1C2FE038AF28B%40209-76-212-10.trendmicro.com","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0176","sourceIdentifier":"cve@mitre.org","published":"2000-02-29T05:00:00.000","lastModified":"2026-06-16T21:51:09.550","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default configuration of Serv-U 2.5d and earlier allows remote attackers to determine the real pathname of the server by requesting a URL for a directory or file that does not exist."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cat_soft:serv-u:2.4:*:*:*:*:*:*:*","matchCriteriaId":"1232F683-50D0-43E0-B38C-094F5A800FF5"},{"vulnerable":true,"criteria":"cpe:2.3:a:cat_soft:serv-u:2.5:*:*:*:*:*:*:*","matchCriteriaId":"10A8CC65-6AD3-4CB4-A8D7-F91DC9048F7B"},{"vulnerable":true,"criteria":"cpe:2.3:a:cat_soft:serv-u:2.5a:*:*:*:*:*:*:*","matchCriteriaId":"61E1B73D-6202-4C21-B342-AA2513423F60"},{"vulnerable":true,"criteria":"cpe:2.3:a:cat_soft:serv-u:2.5b:*:*:*:*:*:*:*","matchCriteriaId":"E52DBFB6-09FB-4A8A-AF81-D2A1055EA6D7"},{"vulnerable":true,"criteria":"cpe:2.3:a:cat_soft:serv-u:2.5c:*:*:*:*:*:*:*","matchCriteriaId":"78ED1285-0950-4C6E-BDB1-066C1A484B01"},{"vulnerable":true,"criteria":"cpe:2.3:a:cat_soft:serv-u:2.5d:*:*:*:*:*:*:*","matchCriteriaId":"D83331F2-8E8D-447E-A042-8F73FC728144"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-02/0417.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1016","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-02/0417.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1016","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0191","sourceIdentifier":"cve@mitre.org","published":"2000-02-29T05:00:00.000","lastModified":"2026-06-16T21:51:11.463","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Axis StorPoint CD allows remote attackers to access administrator URLs without authentication via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:axis:storpoint_cd:*:*:*:*:*:*:*:*","matchCriteriaId":"7889BD02-DCDE-49F4-B432-DF9EB39C1251"}]}]}],"references":[{"url":"http://www.osvdb.org/19","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1025","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=41256894.00492503.00%40mailgw.backupcentralen.se","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/19","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1025","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=41256894.00492503.00%40mailgw.backupcentralen.se","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0208","sourceIdentifier":"cve@mitre.org","published":"2000-02-29T05:00:00.000","lastModified":"2026-06-16T21:51:13.673","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The htdig (ht://Dig) CGI program htsearch allows remote attackers to read arbitrary files by enclosing the file name with backticks (`) in parameters to htsearch."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:htdig:htdig:3.1.1:*:*:*:*:*:*:*","matchCriteriaId":"E1E0D3BD-1A90-40DE-BAB8-2025E851C02C"},{"vulnerable":true,"criteria":"cpe:2.3:a:htdig:htdig:3.1.2:*:*:*:*:*:*:*","matchCriteriaId":"0889D68B-2AC5-4D74-A7FC-4A856E15BF31"},{"vulnerable":true,"criteria":"cpe:2.3:a:htdig:htdig:3.1.3:*:*:*:*:*:*:*","matchCriteriaId":"0DFD60F3-76C8-4463-B540-E19D605C2FCD"},{"vulnerable":true,"criteria":"cpe:2.3:a:htdig:htdig:3.1.4:*:*:*:*:*:*:*","matchCriteriaId":"843F2EB6-4698-45B7-9D58-A5BD91B5A29D"},{"vulnerable":true,"criteria":"cpe:2.3:a:htdig:htdig:3.2.0b1:*:*:*:*:*:*:*","matchCriteriaId":"223D6AA9-BAF4-4A42-AA4B-252F8BB53207"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1026","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1026","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0216","sourceIdentifier":"cve@mitre.org","published":"2000-02-29T05:00:00.000","lastModified":"2026-06-16T21:51:14.723","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft email clients in Outlook, Exchange, and Windows Messaging automatically respond to Read Receipt and Delivery Receipt tags, which could allow an attacker to flood a mail system with responses by forging a Read Receipt request that is redirected to a large distribution list."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:exchange_server:*:*:*:*:*:*:*:*","matchCriteriaId":"261FB692-DD0F-494F-A25A-AFCC00BE4585"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook:*:*:*:*:*:*:*:*","matchCriteriaId":"91EB05F7-D88A-40AA-A8CB-F76C449878AA"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:windows_messaging:*:*:*:*:*:*:*:*","matchCriteriaId":"06BBAE78-16A5-47EC-B5DD-3D01025D2F2D"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q1/0176.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q1/0176.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0189","sourceIdentifier":"cve@mitre.org","published":"2000-03-01T05:00:00.000","lastModified":"2026-06-16T21:51:11.173","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ColdFusion Server 4.x allows remote attackers to determine the real pathname of the server via an HTTP request to the application.cfm or onrequestend.cfm files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:allaire:coldfusion_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"C334CA02-D4EC-40D0-B75F-AFBC0F3903E8"},{"vulnerable":true,"criteria":"cpe:2.3:a:allaire:coldfusion_server:4.0.1:*:*:*:*:*:*:*","matchCriteriaId":"3630623B-468C-4E71-9C57-EFF83E5EFA4A"},{"vulnerable":true,"criteria":"cpe:2.3:a:allaire:coldfusion_server:4.5:*:*:*:*:*:*:*","matchCriteriaId":"292DA1C8-5B98-4552-B51B-B0C3F230321F"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1021","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1021","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0201","sourceIdentifier":"cve@mitre.org","published":"2000-03-01T05:00:00.000","lastModified":"2026-06-16T21:51:12.747","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The window.showHelp() method in Internet Explorer 5.x does not restrict HTML help files (.chm) to be executed from the local host, which allows remote attackers to execute arbitrary commands via Microsoft Networking."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.01:*:*:*:*:*:*:*","matchCriteriaId":"6219D36E-9E2C-4DC7-8FD5-FAD144A333F6"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1033","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1033","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0207","sourceIdentifier":"cve@mitre.org","published":"2000-03-01T05:00:00.000","lastModified":"2026-06-16T21:51:13.523","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"SGI InfoSearch CGI program infosrch.cgi allows remote attackers to execute commands via shell metacharacters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sgi:infosearch:1.0:*:*:*:*:*:*:*","matchCriteriaId":"3169FB68-8E0E-4178-8271-1B9C92EB2828"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5:*:*:*:*:*:*:*","matchCriteriaId":"C30D6962-3DBB-4DF8-A04F-8E47AFEDCF99"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.1:*:*:*:*:*:*:*","matchCriteriaId":"36B60E50-4F5A-4404-BEA3-C94F7D27B156"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.2m:*:*:*:*:*:*:*","matchCriteriaId":"772E3C7E-9947-414F-8642-18653BB048E0"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.3:*:*:*:*:*:*:*","matchCriteriaId":"E6B2E6D1-8C2D-4E15-A6BB-E4FE878ED1E7"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.3f:*:*:*:*:*:*:*","matchCriteriaId":"8D51EC29-8836-4F87-ABF8-FF7530DECBB1"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.3m:*:*:*:*:*:*:*","matchCriteriaId":"518B7253-7B0F-4A0A-ADA7-F3E3B5AAF877"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.4:*:*:*:*:*:*:*","matchCriteriaId":"440B7208-34DB-4898-8461-4E703F7EDFB7"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.6:*:*:*:*:*:*:*","matchCriteriaId":"D07AA144-6FD7-4C80-B4F2-D21C1AFC864A"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.7:*:*:*:*:*:*:*","matchCriteriaId":"29113D8E-9618-4A0E-9157-678332082858"}]}]}],"references":[{"url":"ftp://patches.sgi.com/support/free/security/advisories/20000501-01-P","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1031","source":"cve@mitre.org"},{"url":"ftp://patches.sgi.com/support/free/security/advisories/20000501-01-P","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1031","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0693","sourceIdentifier":"cve@mitre.org","published":"2000-03-02T05:00:00.000","lastModified":"2026-06-16T21:48:51.690","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in TT_SESSION environment variable in ToolTalk shared library allows local users to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10:*:*:*:*:*:*:*","matchCriteriaId":"CC96D014-7CE2-4F61-BBAF-507829C542EA"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:11:*:*:*:*:*:*:*","matchCriteriaId":"87FB80D8-1BE7-46F7-9F7E-B7DA88D039F8"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4:*:*:*:*:*:*:*","matchCriteriaId":"0BAE3D61-9D78-46D7-87EB-5A33ECF86F83"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7:*:*:*:*:*:*:*","matchCriteriaId":"710007F4-EF8B-4DCC-89E9-54A13DF9B153"}]}]}],"references":[{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/192","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/641","source":"cve@mitre.org"},{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9909-103","source":"cve@mitre.org"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A4374","source":"cve@mitre.org"},{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/192","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/641","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9909-103","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A4374","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0177","sourceIdentifier":"cve@mitre.org","published":"2000-03-02T05:00:00.000","lastModified":"2026-06-16T21:51:09.670","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"DNSTools CGI applications allow remote attackers to execute arbitrary commands via shell metacharacters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:dnstools_software:dnstools:*:*:*:*:*:*:*:*","versionEndIncluding":"1.0.8","matchCriteriaId":"20EDAB5F-8701-4E3B-A1C3-AA8459BD8583"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0000.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1028","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0000.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1028","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0190","sourceIdentifier":"cve@mitre.org","published":"2000-03-02T05:00:00.000","lastModified":"2026-06-16T21:51:11.313","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"AOL Instant Messenger (AIM) client allows remote attackers to cause a denial of service via a message with a malformed ASCII value."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:aol:instant_messenger:*:*:*:*:*:*:*:*","versionEndIncluding":"3.5","matchCriteriaId":"3EFDAD29-7868-4161-9BA1-7D7E9A72CFDD"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0016.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0016.html","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0193","sourceIdentifier":"cve@mitre.org","published":"2000-03-02T05:00:00.000","lastModified":"2026-06-16T21:51:11.730","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default configuration of Dosemu in Corel Linux 1.0 allows local users to execute the system.com program and gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:corel:linux:1.0:*:*:*:*:*:*:*","matchCriteriaId":"0CB5BDE6-F735-461F-B3B9-066A4876AB0A"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1030","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200003020436.PAA20168%40jawa.chilli.net.au","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1030","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200003020436.PAA20168%40jawa.chilli.net.au","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0172","sourceIdentifier":"cve@mitre.org","published":"2000-03-03T05:00:00.000","lastModified":"2026-06-16T21:51:09.050","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The mtr program only uses a seteuid call when attempting to drop privileges, which could allow local users to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:matt_kimball_and_roger_wolff:mtr:0.28:*:*:*:*:*:*:*","matchCriteriaId":"374B0A57-7231-403F-B339-1F0E8051E62E"},{"vulnerable":true,"criteria":"cpe:2.3:a:matt_kimball_and_roger_wolff:mtr:0.41:*:*:*:*:*:*:*","matchCriteriaId":"CED7EB1A-43A1-40C8-BA1C-AE826986E89A"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:turbolinux:turbolinux:3.5b2:*:*:*:*:*:*:*","matchCriteriaId":"667CF388-298D-4B64-9BA5-89D153FFA998"},{"vulnerable":true,"criteria":"cpe:2.3:o:turbolinux:turbolinux:4.2:*:*:*:*:*:*:*","matchCriteriaId":"5D15A193-3E01-467C-AEAD-497F4600DB06"},{"vulnerable":true,"criteria":"cpe:2.3:o:turbolinux:turbolinux:4.4:*:*:*:*:*:*:*","matchCriteriaId":"F7C765FF-0A3D-4BF4-B236-609658776ACA"},{"vulnerable":true,"criteria":"cpe:2.3:o:turbolinux:turbolinux:6.0.2:*:*:*:*:*:*:*","matchCriteriaId":"C6619B49-8A89-4600-A47F-A39C8BF54259"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1038","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1038","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0205","sourceIdentifier":"cve@mitre.org","published":"2000-03-03T05:00:00.000","lastModified":"2026-06-16T21:51:13.267","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Trend Micro OfficeScan allows remote attackers to replay administrative commands and modify the configuration of OfficeScan clients."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:P","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:trend_micro:officescan:3.5:*:*:*:*:*:*:*","matchCriteriaId":"59CDE5D7-3DEC-42DE-8B5A-63903754937B"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0015.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.antivirus.com/download/ofce_patch_35.htm","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1013","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=D129BBE1730AD2118A0300805FC1C2FE038AF28B%40209-76-212-10.trendmicro.com","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0015.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.antivirus.com/download/ofce_patch_35.htm","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1013","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=D129BBE1730AD2118A0300805FC1C2FE038AF28B%40209-76-212-10.trendmicro.com","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0168","sourceIdentifier":"cve@mitre.org","published":"2000-03-04T05:00:00.000","lastModified":"2026-06-16T21:51:08.537","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Windows 9x operating systems allow an attacker to cause a denial of service via a pathname that includes file device names, aka the \"DOS Device in Path Name\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_95:*:*:*:*:*:*:*:*","matchCriteriaId":"82F7322B-8022-4D0B-ADB3-D0F5B6F20309"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98:*:gold:*:*:*:*:*:*","matchCriteriaId":"2D3B703C-79B2-4FA2-9E12-713AB977A880"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98se:*:*:*:*:*:*:*:*","matchCriteriaId":"AA733AD2-D948-46A0-A063-D29081A56F1F"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1043","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/advisory.html?id=2126","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=NCBBKFKDOLAGKIAPMILPCENECCAA.labs%40ussrback.com","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1043","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/advisory.html?id=2126","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=NCBBKFKDOLAGKIAPMILPCENECCAA.labs%40ussrback.com","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0192","sourceIdentifier":"cve@mitre.org","published":"2000-03-05T05:00:00.000","lastModified":"2026-06-16T21:51:11.600","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default installation of Caldera OpenLinux 2.3 includes the CGI program rpm_query, which allows remote attackers to determine what packages are installed on the system."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux:2.3:*:*:*:*:*:*:*","matchCriteriaId":"23B38FCC-2C86-4E84-860B-EBAE0FA123B6"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0029.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1036","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0029.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1036","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0206","sourceIdentifier":"cve@mitre.org","published":"2000-03-05T05:00:00.000","lastModified":"2026-06-16T21:51:13.403","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The installation of Oracle 8.1.5.x on Linux follows symlinks and creates the orainstRoot.sh file with world-writeable permissions, which allows local users to gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:C/I:C/A:C","baseScore":6.2,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"MEDIUM","exploitabilityScore":1.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:oracle8i:8.1.5:*:*:*:*:*:*:*","matchCriteriaId":"42AF8B37-C5AA-4B92-A565-214A677C3486"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0023.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1035","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0023.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1035","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0200","sourceIdentifier":"cve@mitre.org","published":"2000-03-06T05:00:00.000","lastModified":"2026-06-16T21:51:12.620","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Microsoft Clip Art Gallery allows remote attackers to cause a denial of service or execute commands via a malformed CIL (clip art library) file, aka the \"Clip Art Buffer Overrun\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:clip_art:1.0:*:*:*:*:*:*:*","matchCriteriaId":"278667E0-7207-4F5A-9D59-FE300FAF6930"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:greetings:2000:*:*:*:*:*:*:*","matchCriteriaId":"0BE30618-56A2-49DC-80C8-DDED0C1C7E74"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:home_publishing:2000:*:*:*:*:*:*:*","matchCriteriaId":"3BE1F3B2-ACB1-4479-9D6E-214FAEB74983"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1034","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-015","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1034","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-015","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0225","sourceIdentifier":"cve@mitre.org","published":"2000-03-07T05:00:00.000","lastModified":"2026-06-16T21:51:15.920","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Pocsag POC32 program does not properly prevent remote users from accessing its server port, even if the option has been disabled."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:deti_fliegl:poc32:2.05:*:*:*:*:*:*:*","matchCriteriaId":"37DB43F5-7002-4975-BF2B-2FD8C6D11538"}]}]}],"references":[{"url":"http://www.osvdb.org/259","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1032","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=003601bf854b%246893a090%240100a8c0%40FIREWALKER","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/259","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1032","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=003601bf854b%246893a090%240100a8c0%40FIREWALKER","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0185","sourceIdentifier":"cve@mitre.org","published":"2000-03-08T05:00:00.000","lastModified":"2026-06-16T21:51:10.650","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"RealMedia RealServer reveals the real IP address of a Real Server, even if the address is supposed to be private."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:realnetworks:realserver:5.0:*:*:*:*:*:*:*","matchCriteriaId":"BE671A54-2E76-467E-8945-10982B79F4CE"},{"vulnerable":true,"criteria":"cpe:2.3:a:realnetworks:realserver:7.0:*:*:*:*:*:*:*","matchCriteriaId":"9392C48A-A1AB-43F7-8374-02BDCE6589AC"},{"vulnerable":true,"criteria":"cpe:2.3:a:realnetworks:realserver_g2:1.0:*:*:*:*:*:*:*","matchCriteriaId":"C3F22E7F-F4D8-4052-A8DF-BA717EDD94B4"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0069.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1049","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0069.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1049","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0202","sourceIdentifier":"cve@mitre.org","published":"2000-03-08T05:00:00.000","lastModified":"2026-06-16T21:51:12.873","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft SQL Server 7.0 and Microsoft Data Engine (MSDE) 1.0 allow remote attackers to gain privileges via a malformed Select statement in an SQL query."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:data_engine:1.0:*:*:*:*:*:*:*","matchCriteriaId":"F455C373-A9F7-47F9-828E-DEE2C8CC6545"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:sql_server:7.0:*:*:*:*:*:*:*","matchCriteriaId":"A2AB95D7-394E-423B-884C-87A9960682EE"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1041","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-014","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1041","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-014","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0174","sourceIdentifier":"cve@mitre.org","published":"2000-03-09T05:00:00.000","lastModified":"2026-06-16T21:51:09.300","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"StarOffice StarScheduler web server allows remote attackers to read arbitrary files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sun:staroffice:5.1:*:*:*:*:*:*:*","matchCriteriaId":"7C93C6E1-EF21-4CAA-96EC-780BDDA33488"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0063.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1040","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0063.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1040","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0175","sourceIdentifier":"cve@mitre.org","published":"2000-03-09T05:00:00.000","lastModified":"2026-06-16T21:51:09.427","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in StarOffice StarScheduler web server allows remote attackers to gain root access via a long GET command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sun:staroffice:5.1:*:*:*:*:*:*:*","matchCriteriaId":"7C93C6E1-EF21-4CAA-96EC-780BDDA33488"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0063.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1039","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0063.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1039","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0184","sourceIdentifier":"cve@mitre.org","published":"2000-03-09T05:00:00.000","lastModified":"2026-06-16T21:51:10.530","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Linux printtool sets the permissions of printer configuration files to be world-readable, which allows local attackers to obtain printer share passwords."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"E4853E92-5E0A-47B9-A343-D5BEE87D2C27"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:alpha:*:*:*:*:*","matchCriteriaId":"C89454B9-4F45-4A42-A06D-ED42D893C544"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:i386:*:*:*:*:*","matchCriteriaId":"B72D6205-DFA4-41D9-B3B6-0B7DA756CD8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:sparc:*:*:*:*:*","matchCriteriaId":"1E64093E-7D53-4238-95C3-48ED5A0FFD97"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:i386:*:*:*:*:*","matchCriteriaId":"B7EC2B95-4715-4EC9-A10A-2542501F8A61"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0082.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1037","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0082.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1037","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0173","sourceIdentifier":"cve@mitre.org","published":"2000-03-10T05:00:00.000","lastModified":"2026-06-16T21:51:09.170","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in the EELS system in SCO UnixWare 7.1.x allows remote attackers to cause a denial of service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.1:*:*:*:*:*:*:*","matchCriteriaId":"B200C05F-0E89-4172-B500-47C2573D4461"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.1.1:*:*:*:*:*:*:*","matchCriteriaId":"71DDB9D9-AD7B-479D-B128-7150286EE563"}]}]}],"references":[{"url":"ftp://ftp.sco.com/SSE/security_bulletins/SB-00.08a","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"ftp://ftp.sco.com/SSE/security_bulletins/SB-00.08a","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0183","sourceIdentifier":"cve@mitre.org","published":"2000-03-10T05:00:00.000","lastModified":"2026-06-16T21:51:10.400","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in ircII 4.4 IRC client allows remote attackers to execute commands via the DCC chat capability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:michael_sandrof:ircii:4.4.7:*:*:*:*:*:*:*","matchCriteriaId":"7FE0492E-580C-4578-B6F8-4FEEE6E1F69D"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0093.html","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-008.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1046","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0093.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-008.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1046","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0223","sourceIdentifier":"cve@mitre.org","published":"2000-03-10T05:00:00.000","lastModified":"2026-06-16T21:51:15.650","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the wmcdplay CD player program for the WindowMaker desktop allows local users to gain root privileges via a long parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sam_hawker:wmcdplay:1.0_beta2:*:*:*:*:*:*:*","matchCriteriaId":"C33086D5-227D-4502-A02E-2C0B725A156A"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0107.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1047","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0107.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1047","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0171","sourceIdentifier":"cve@mitre.org","published":"2000-03-11T05:00:00.000","lastModified":"2026-06-16T21:51:08.920","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"atsadc in the atsar package for Linux does not properly check the permissions of an output file, which allows local users to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:at_computing:atsar_linux:1.4:*:*:*:*:*:*:*","matchCriteriaId":"CC0265C7-6307-4DE6-BF9D-84960C0E9BA5"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0102.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1048","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0102.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1048","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0181","sourceIdentifier":"cve@mitre.org","published":"2000-03-11T05:00:00.000","lastModified":"2026-06-16T21:51:10.150","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Firewall-1 3.0 and 4.0 leaks packets with private IP address information, which could allow remote attackers to determine the real IP address of the host that is making the connection."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:3.0:*:*:*:*:*:*:*","matchCriteriaId":"A550C18E-F07A-4A05-87F0-B1D52FDC401C"},{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:4.0:*:*:*:*:*:*:*","matchCriteriaId":"0F543272-8C7E-4326-BA97-142FBEA641E5"},{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:4.1:*:*:*:*:*:*:*","matchCriteriaId":"100F03E3-1538-47AF-9CA6-E9E5C1DF05D4"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0119.html","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1256","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1054","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0119.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1256","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1054","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0237","sourceIdentifier":"cve@mitre.org","published":"2000-03-11T05:00:00.000","lastModified":"2026-06-16T21:51:17.547","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Netscape Enterprise Server with Web Publishing enabled allows remote attackers to list arbitrary directories via a GET request for the /publisher directory, which provides a Java applet that allows the attacker to browse the directories."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:N","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:enterprise_server:3.5:*:*:*:*:*:*:*","matchCriteriaId":"34D42A9F-449C-4F4D-B610-538BF133F744"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:enterprise_server:3.6:*:*:*:*:*:*:*","matchCriteriaId":"3577B789-DBB6-413D-B964-B32FE3E8CD8B"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1075","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://zsh.stupidphat.com/advisory.cgi?000311-1","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1075","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://zsh.stupidphat.com/advisory.cgi?000311-1","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0230","sourceIdentifier":"cve@mitre.org","published":"2000-03-13T05:00:00.000","lastModified":"2026-06-16T21:51:16.610","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in imwheel allows local users to gain root privileges via the imwheel-solo script and a long HOME environmental variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:halloween:halloween_linux:4.0:*:*:*:*:*:*:*","matchCriteriaId":"D096A84E-F4FB-40D4-AC59-1E57CBD7E9E7"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"2EC4D3AB-38FA-4D44-AF5C-2DCD15994E76"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:*:*:*:*:*:*","matchCriteriaId":"0633B5A6-7A88-4A96-9462-4C09D124ED36"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0168.html","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-016.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1060","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0168.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-016.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1060","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0180","sourceIdentifier":"cve@mitre.org","published":"2000-03-14T05:00:00.000","lastModified":"2026-06-16T21:51:10.033","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Sojourn search engine allows remote attackers to read arbitrary files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:generation_terrorists_designs_and_concepts:sojourn:2.0:*:*:*:*:*:*:*","matchCriteriaId":"C1287989-3B2F-403C-90F9-9C2D60DD67FF"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q1/0201.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1052","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4197","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q1/0201.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1052","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4197","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0199","sourceIdentifier":"cve@mitre.org","published":"2000-03-14T05:00:00.000","lastModified":"2026-06-16T21:51:12.490","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"When a new SQL Server is registered in Enterprise Manager for Microsoft SQL Server 7.0 and the \"Always prompt for login name and password\" option is not set, then the Enterprise Manager uses weak encryption to store the login ID and password."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:sql_server:7.0:*:*:*:*:*:*:*","matchCriteriaId":"A2AB95D7-394E-423B-884C-87A9960682EE"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1055","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1055","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0169","sourceIdentifier":"cve@mitre.org","published":"2000-03-15T05:00:00.000","lastModified":"2026-06-16T21:51:08.663","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Batch files in the Oracle web listener ows-bin directory allow remote attackers to execute commands via a malformed URL that includes '?&'."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:application_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"F6C0725F-D926-473E-8E74-EA3A38D47EC4"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q1/0211.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1053","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q1/0211.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1053","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0198","sourceIdentifier":"cve@mitre.org","published":"2000-03-15T05:00:00.000","lastModified":"2026-06-16T21:51:12.360","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in POP3 and IMAP servers in the MERCUR mail server suite allows remote attackers to cause a denial of service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:atrium_software:mercur_imap4_server:3.20.01:*:*:*:*:*:*:*","matchCriteriaId":"9A7E5072-A782-4056-BB8A-029E1DA64BC8"},{"vulnerable":true,"criteria":"cpe:2.3:a:atrium_software:mercur_mailserver:3.2:*:*:*:*:*:*:*","matchCriteriaId":"2C1C96FB-D121-4097-8838-B88C6F87E63A"},{"vulnerable":true,"criteria":"cpe:2.3:a:atrium_software:mercur_pop3_server:3.20.01:*:*:*:*:*:*:*","matchCriteriaId":"A66332A0-BDB1-45A6-874A-595B89518CEE"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/current/0137.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/current/0206.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1051","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/current/0137.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/current/0206.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1051","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0233","sourceIdentifier":"cve@mitre.org","published":"2000-03-15T05:00:00.000","lastModified":"2026-06-16T21:51:17.033","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"SuSE Linux IMAP server allows remote attackers to bypass IMAP authentication and gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:suse:suse_linux_imap_server:1.0:*:*:*:*:*:*:*","matchCriteriaId":"CBFD2B9C-53B5-4791-9EE6-0DFCCC91E8B9"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/vendor/2000-q1/0035.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/vendor/2000-q1/0035.html","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0239","sourceIdentifier":"cve@mitre.org","published":"2000-03-15T05:00:00.000","lastModified":"2026-06-16T21:51:17.810","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the MERCUR WebView WebMail server allows remote attackers to cause a denial of service via a long mail_user parameter in the GET request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:atrium_software:mercur_imap4_server:3.20.01:*:*:*:*:*:*:*","matchCriteriaId":"9A7E5072-A782-4056-BB8A-029E1DA64BC8"},{"vulnerable":true,"criteria":"cpe:2.3:a:atrium_software:mercur_mailserver:3.2:*:*:*:*:*:*:*","matchCriteriaId":"2C1C96FB-D121-4097-8838-B88C6F87E63A"},{"vulnerable":true,"criteria":"cpe:2.3:a:atrium_software:mercur_pop3_server:3.20.01:*:*:*:*:*:*:*","matchCriteriaId":"A66332A0-BDB1-45A6-874A-595B89518CEE"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=95325335825295&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1056","source":"cve@mitre.org"},{"url":"http://www.ussrback.com/labs36.html","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=95325335825295&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1056","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.ussrback.com/labs36.html","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0231","sourceIdentifier":"cve@mitre.org","published":"2000-03-16T05:00:00.000","lastModified":"2026-06-16T21:51:16.747","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Linux kreatecd trusts a user-supplied path that is used to find the cdrecord program, allowing local users to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:halloween:halloween_linux:4.0:*:*:*:*:*:*:*","matchCriteriaId":"D096A84E-F4FB-40D4-AC59-1E57CBD7E9E7"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"F163E145-09F7-4BE2-9B46-5B6713070BAB"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"124E1802-7984-45ED-8A92-393FC20662FD"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.2:*:*:*:*:*:*:*","matchCriteriaId":"1B67020A-6942-4478-B501-764147C4970D"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.3:*:*:*:*:*:*:*","matchCriteriaId":"0AD0FF64-05DF-48C2-9BB5-FD993121FB2E"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0162.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1061","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0162.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1061","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0228","sourceIdentifier":"cve@mitre.org","published":"2000-03-17T05:00:00.000","lastModified":"2026-06-16T21:51:16.323","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Windows Media License Manager allows remote attackers to cause a denial of service by sending a malformed request that causes the manager to halt, aka the \"Malformed Media License Request\" Vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:windows_media_rights_manager:4.0:*:*:*:*:*:*:*","matchCriteriaId":"8561A9DF-D3BB-4287-9374-83B09F0CA4C7"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:windows_media_rights_manager:4.1:*:*:*:*:*:*:*","matchCriteriaId":"FCAF8A5D-A9E3-4E95-BB93-A10C626A314B"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1058","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-016","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1058","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-016","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0236","sourceIdentifier":"cve@mitre.org","published":"2000-03-17T05:00:00.000","lastModified":"2026-06-16T21:51:17.417","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Netscape Enterprise Server with Directory Indexing enabled allows remote attackers to list server directories via web publishing tags such as ?wp-ver-info and ?wp-cs-dump."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:enterprise_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"7A7B9FDA-DC62-4EC9-9120-A7E6795C2815"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:enterprise_server:3.5.1:*:*:*:*:*:*:*","matchCriteriaId":"4147A43C-DA7B-4D08-90E9-72DE57B1D61D"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:enterprise_server:3.6:*:*:*:*:*:*:*","matchCriteriaId":"3577B789-DBB6-413D-B964-B32FE3E8CD8B"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1063","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=38D2173D.24E39DD0%40relaygroup.com","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1063","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=38D2173D.24E39DD0%40relaygroup.com","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0238","sourceIdentifier":"cve@mitre.org","published":"2000-03-17T05:00:00.000","lastModified":"2026-06-16T21:51:17.670","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the web server for Norton AntiVirus for Internet Email Gateways allows remote attackers to cause a denial of service via a long URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:symantec:norton_antivirus:1.0:*:internet_email_gateways:*:*:*:*:*","matchCriteriaId":"DBDA52B8-F432-49D6-9E75-15A52E7BD24A"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1064","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=s8d1f3e3.036%40kib.co.kodiak.ak.us","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1064","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=s8d1f3e3.036%40kib.co.kodiak.ak.us","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0226","sourceIdentifier":"cve@mitre.org","published":"2000-03-20T05:00:00.000","lastModified":"2026-06-16T21:51:16.057","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IIS 4.0 allows attackers to cause a denial of service by requesting a large buffer in a POST or PUT command which consumes memory, aka the \"Chunked Transfer Encoding Buffer Overflow Vulnerability.\""}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1066","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-018","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1066","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-018","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0613","sourceIdentifier":"cve@mitre.org","published":"2000-03-20T05:00:00.000","lastModified":"2026-06-16T21:52:06.677","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Cisco Secure PIX Firewall does not properly identify forged TCP Reset (RST) packets, which allows remote attackers to force the firewall to close legitimate connections."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:pix_firewall:*:*:*:*:*:*:*:*","matchCriteriaId":"A9C63DA6-1FBC-431A-9D8A-66EA93225294"}]}]}],"references":[{"url":"http://www.cisco.com/warp/public/707/pixtcpreset-pub.shtml","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1457","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1454","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=B3D6883199DBD311868100A0C9FC2CDC046B72%40protea.citec.net","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4928","source":"cve@mitre.org"},{"url":"http://www.cisco.com/warp/public/707/pixtcpreset-pub.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1457","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1454","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=B3D6883199DBD311868100A0C9FC2CDC046B72%40protea.citec.net","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4928","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0240","sourceIdentifier":"cve@mitre.org","published":"2000-03-21T05:00:00.000","lastModified":"2026-06-16T21:51:17.947","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"vqSoft vqServer program allows remote attackers to read arbitrary files via a /........../ in the URL, a variation of a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:vqsoft:vqserver:1.9.9:*:*:*:*:*:*:*","matchCriteriaId":"C8EF307C-8279-416D-8A4B-4FFDAF6DD88B"}]}]}],"references":[{"url":"http://www.osvdb.org/270","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1067","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=4.1.20000321084646.0095c7f0%40olga.swip.net","source":"cve@mitre.org"},{"url":"http://www.vqsoft.com/vq/server/faqs/dotdotbug.html","source":"cve@mitre.org","tags":["URL Repurposed"]},{"url":"http://www.osvdb.org/270","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1067","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=4.1.20000321084646.0095c7f0%40olga.swip.net","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.vqsoft.com/vq/server/faqs/dotdotbug.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["URL Repurposed"]}]}},{"cve":{"id":"CVE-2000-0241","sourceIdentifier":"cve@mitre.org","published":"2000-03-21T05:00:00.000","lastModified":"2026-06-16T21:51:18.113","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"vqSoft vqServer stores sensitive information such as passwords in cleartext in the server.cfg file, which allows attackers to gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:vqsoft:vqserver:1.9.9:*:*:*:*:*:*:*","matchCriteriaId":"C8EF307C-8279-416D-8A4B-4FFDAF6DD88B"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1068","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=4.1.20000321084646.0095c7f0%40olga.swip.net","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1068","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=4.1.20000321084646.0095c7f0%40olga.swip.net","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0229","sourceIdentifier":"cve@mitre.org","published":"2000-03-22T05:00:00.000","lastModified":"2026-06-16T21:51:16.460","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"gpm-root in the gpm package does not properly drop privileges, which allows local users to gain privileges by starting a utility from gpm-root."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:alessandro_rubini:gpm:1.18.1:*:*:*:*:*:*:*","matchCriteriaId":"FD68842D-DD39-4FFD-95B5-0A4BB28D9F94"},{"vulnerable":true,"criteria":"cpe:2.3:o:alessandro_rubini:gpm:1.19:*:*:*:*:*:*:*","matchCriteriaId":"8156E792-8374-41CD-B60C-DAB2911E7169"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.0:*:*:*:*:*:*:*","matchCriteriaId":"203BDD63-2FA5-42FD-A9CD-6BDBB41A63C4"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.1:*:*:*:*:*:*:*","matchCriteriaId":"3C67BDA1-9451-4026-AC6D-E912C882A757"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.2:*:*:*:*:*:*:*","matchCriteriaId":"58B90124-0543-4226-BFF4-13CCCBCCB243"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.2:*:pre_potato:*:*:*:*:*","matchCriteriaId":"2B19ABCB-70F0-450E-9A71-2EE8F2BFB2EE"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:i386:*:*:*:*:*","matchCriteriaId":"89F65C9D-BD68-4A86-BFDC-E7CE76F13948"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:i386:*:*:*:*:*","matchCriteriaId":"B72D6205-DFA4-41D9-B3B6-0B7DA756CD8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:i386:*:*:*:*:*","matchCriteriaId":"B7EC2B95-4715-4EC9-A10A-2542501F8A61"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:5.3:*:*:*:*:*:*:*","matchCriteriaId":"BCC94EF9-5872-402F-B2FC-06331A924BB2"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"F163E145-09F7-4BE2-9B46-5B6713070BAB"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"124E1802-7984-45ED-8A92-393FC20662FD"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.2:*:*:*:*:*:*:*","matchCriteriaId":"1B67020A-6942-4478-B501-764147C4970D"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.3:*:*:*:*:*:*:*","matchCriteriaId":"0AD0FF64-05DF-48C2-9BB5-FD993121FB2E"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0242.html","source":"cve@mitre.org"},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_45.html","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-009.html","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-045.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1069","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0242.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_45.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-009.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-045.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1069","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0247","sourceIdentifier":"cve@mitre.org","published":"2000-03-22T05:00:00.000","lastModified":"2026-06-16T21:51:18.900","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Unknown vulnerability in Generic-NQS (GNQS) allows local users to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gnqs:gnqs:3.50.6:*:*:*:*:*:*:*","matchCriteriaId":"CBF4E8A5-6544-40B6-B429-AE3A6C7D0852"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnqs:gnqs:3.50.7:*:*:*:*:*:*:*","matchCriteriaId":"73434B4D-B226-4F27-A2E8-090ADD490E04"}]}]}],"references":[{"url":"ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:13.generic-nqs.asc","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0236.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://ftp.gnqs.org/pub/gnqs/source/by-version-number/v3.50/Generic-NQS-3.50.8-ChangeLog.txt","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1842","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4306","source":"cve@mitre.org"},{"url":"ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:13.generic-nqs.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0236.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://ftp.gnqs.org/pub/gnqs/source/by-version-number/v3.50/Generic-NQS-3.50.8-ChangeLog.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1842","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4306","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0227","sourceIdentifier":"cve@mitre.org","published":"2000-03-23T05:00:00.000","lastModified":"2026-06-16T21:51:16.173","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Linux 2.2.x kernel does not restrict the number of Unix domain sockets as defined by the wmem_max parameter, which allows local users to cause a denial of service by requesting a large number of sockets."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.2.12:*:*:*:*:*:*:*","matchCriteriaId":"0EEF4480-D50B-464C-AE39-A12455DBC99F"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.2.14:*:*:*:*:*:*:*","matchCriteriaId":"15928E10-7D41-45B2-87D6-8AA10190A8EB"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.3.99:pre2:*:*:*:*:*:*","matchCriteriaId":"28ECE0D4-624D-4804-8013-DBA9BAF659ED"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0254.html","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=95421263519558&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1072","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4186","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0254.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=95421263519558&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1072","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4186","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0242","sourceIdentifier":"cve@mitre.org","published":"2000-03-25T05:00:00.000","lastModified":"2026-06-16T21:51:18.250","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WindMail allows remote attackers to read arbitrary files or execute commands via shell metacharacters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:geocel:windmail:3.0:*:*:*:*:*:*:*","matchCriteriaId":"6F2AEF1D-D1FC-47F4-B603-9A48C5A7D46B"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1073","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-03-22&msg=20000325224146.6839.qmail%40securityfocus.com","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1073","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-03-22&msg=20000325224146.6839.qmail%40securityfocus.com","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0243","sourceIdentifier":"cve@mitre.org","published":"2000-03-25T05:00:00.000","lastModified":"2026-06-16T21:51:18.377","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"AnalogX SimpleServer:WWW HTTP server 1.03 allows remote attackers to cause a denial of service via a short GET request to cgi-bin."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:analogx:simpleserver_www:1.0.3:*:*:*:*:*:*:*","matchCriteriaId":"B310C106-DC4E-4600-9218-984E1A7D083E"}]}]}],"references":[{"url":"http://www.analogx.com/contents/download/network/sswww.htm","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1265","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1076","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=web-5645555%40post2.rnci.com","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4189","source":"cve@mitre.org"},{"url":"http://www.analogx.com/contents/download/network/sswww.htm","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1265","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1076","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=web-5645555%40post2.rnci.com","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4189","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0281","sourceIdentifier":"cve@mitre.org","published":"2000-03-26T05:00:00.000","lastModified":"2026-06-16T21:51:23.380","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the Napster client beta 5 allows remote attackers to cause a denial of service via a long message."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:napster:napster_client:beta_5:*:*:*:*:*:*:*","matchCriteriaId":"ABE8E5B3-6378-458D-9B99-89C5D35156F9"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0277.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0299.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0277.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0299.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0235","sourceIdentifier":"cve@mitre.org","published":"2000-03-27T05:00:00.000","lastModified":"2026-06-16T21:51:17.297","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the huh program in the orville-write package allows local users to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.0:*:*:*:*:*:*:*","matchCriteriaId":"EE38C50A-81FE-412E-9717-3672FAE6A6F4"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.1:*:*:*:*:*:*:*","matchCriteriaId":"263F3734-7076-4EA8-B4C0-F37CFC4E979E"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.2:*:*:*:*:*:*:*","matchCriteriaId":"0419DD66-FF66-48BC-AD3B-F6AFD0551E36"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.3:*:*:*:*:*:*:*","matchCriteriaId":"C3518628-08E5-4AD7-AAF6-A4E38F1CDE2C"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.4:*:*:*:*:*:*:*","matchCriteriaId":"B982342C-1981-4C55-8044-AFE4D87623DF"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:10-orville-write.asc","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1263","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1070","source":"cve@mitre.org"},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:10-orville-write.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1263","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1070","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0245","sourceIdentifier":"cve@mitre.org","published":"2000-03-27T05:00:00.000","lastModified":"2026-06-16T21:51:18.650","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in SGI IRIX objectserver daemon allows remote attackers to create user accounts."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:5.2:*:*:*:*:*:*:*","matchCriteriaId":"E292DA15-91BF-4957-9C0F-A69518538BED"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:5.3:*:*:*:*:*:*:*","matchCriteriaId":"26144F94-63FD-4907-B548-09B68C2FC9B3"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:5.3:*:xfs:*:*:*:*:*","matchCriteriaId":"92BF03B6-9CDC-4161-9C1C-3E73582C3D83"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.0:*:*:*:*:*:*:*","matchCriteriaId":"26309EFA-0991-46B6-9818-F0FBB902D5F5"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.0.1:*:*:*:*:*:*:*","matchCriteriaId":"B6A81ED6-CE92-4C10-AA2B-AB9AF573D120"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.0.1:*:xfs:*:*:*:*:*","matchCriteriaId":"D157E1C1-F82B-4FDF-9ADB-5571B75E7D6B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.1:*:*:*:*:*:*:*","matchCriteriaId":"966C1A13-8007-408D-96BE-0DA3BB6CA401"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.2:*:*:*:*:*:*:*","matchCriteriaId":"0ECE564D-B4BB-4C05-88CC-CDC3F8E4E366"}]}]}],"references":[{"url":"ftp://sgigate.sgi.com/security/20000303-01-PX","source":"cve@mitre.org"},{"url":"http://www.ciac.org/ciac/bulletins/k-030.shtml","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1267","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1079","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200003290852.aa27218%40blaze.arl.mil","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4206","source":"cve@mitre.org"},{"url":"ftp://sgigate.sgi.com/security/20000303-01-PX","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.ciac.org/ciac/bulletins/k-030.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1267","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1079","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200003290852.aa27218%40blaze.arl.mil","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4206","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0289","sourceIdentifier":"cve@mitre.org","published":"2000-03-27T05:00:00.000","lastModified":"2026-06-16T21:51:24.380","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IP masquerading in Linux 2.2.x allows remote attackers to route UDP packets through the internal interface by modifying the external source IP address and port number to match those of an established connection."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.1:*:*:*:*:*:*:*","matchCriteriaId":"3C67BDA1-9451-4026-AC6D-E912C882A757"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.2:*:*:*:*:*:*:*","matchCriteriaId":"58B90124-0543-4226-BFF4-13CCCBCCB243"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.2:*:pre_potato:*:*:*:*:*","matchCriteriaId":"2B19ABCB-70F0-450E-9A71-2EE8F2BFB2EE"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.2.10:*:*:*:*:*:*:*","matchCriteriaId":"AA3D3E03-0ABE-4325-AD67-BA8EA16B6DBE"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.2.12:*:*:*:*:*:*:*","matchCriteriaId":"0EEF4480-D50B-464C-AE39-A12455DBC99F"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.2.14:*:*:*:*:*:*:*","matchCriteriaId":"15928E10-7D41-45B2-87D6-8AA10190A8EB"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:alpha:*:*:*:*:*","matchCriteriaId":"6931FB54-A163-4CE3-BBD9-D345AA0977A6"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:i386:*:*:*:*:*","matchCriteriaId":"89F65C9D-BD68-4A86-BFDC-E7CE76F13948"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:sparc:*:*:*:*:*","matchCriteriaId":"5ABD1331-277C-4C31-8186-978243C62255"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:alpha:*:*:*:*:*","matchCriteriaId":"C89454B9-4F45-4A42-A06D-ED42D893C544"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:i386:*:*:*:*:*","matchCriteriaId":"B72D6205-DFA4-41D9-B3B6-0B7DA756CD8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:sparc:*:*:*:*:*","matchCriteriaId":"1E64093E-7D53-4238-95C3-48ED5A0FFD97"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:i386:*:*:*:*:*","matchCriteriaId":"B7EC2B95-4715-4EC9-A10A-2542501F8A61"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0284.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_48.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1078","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0284.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_48.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1078","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0244","sourceIdentifier":"cve@mitre.org","published":"2000-03-29T05:00:00.000","lastModified":"2026-06-16T21:51:18.517","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Citrix ICA (Independent Computing Architecture) protocol uses weak encryption (XOR) for user authentication."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:citrix:metaframe:*:*:windows_2000:*:*:*:*:*","versionEndIncluding":"1.8","matchCriteriaId":"0E71883B-EA60-4BE2-9A38-C0EAB30C7756"},{"vulnerable":true,"criteria":"cpe:2.3:a:citrix:metaframe:*:*:windows_nt_4.0_tse:*:*:*:*:*","versionEndIncluding":"1.8","matchCriteriaId":"7D434E7D-2D68-417C-8AA8-2F8625746C81"},{"vulnerable":true,"criteria":"cpe:2.3:a:citrix:metaframe:1.0:*:unix:*:*:*:*:*","matchCriteriaId":"D7E2FE0C-4763-4624-83D4-B8D43E303600"},{"vulnerable":true,"criteria":"cpe:2.3:a:citrix:winframe:3.5_1.8_for_windows_nt:*:*:*:*:*:*:*","matchCriteriaId":"F396ECA2-2C14-455D-A5D9-5299B42F5F1E"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1077","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.BSO.4.20.0003290949280.2640-100000%40naughty.monkey.org","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1077","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.BSO.4.20.0003290949280.2640-100000%40naughty.monkey.org","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0152","sourceIdentifier":"cve@mitre.org","published":"2000-03-30T05:00:00.000","lastModified":"2026-06-16T21:51:06.527","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Remote attackers can cause a denial of service in Novell BorderManager 3.5 by pressing the enter key in a telnet connection to port 2000."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:novell:bordermanager:3.0:*:*:*:*:*:*:*","matchCriteriaId":"690D90A8-E5F4-492D-A338-222CBEB5819A"},{"vulnerable":true,"criteria":"cpe:2.3:a:novell:bordermanager:3.5:*:*:*:*:*:*:*","matchCriteriaId":"3DCB9A5D-862A-4266-94D3-385B611A7960"}]}]}],"references":[{"url":"http://www.osvdb.org/7468","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/976","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/7468","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/976","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0232","sourceIdentifier":"cve@mitre.org","published":"2000-03-30T05:00:00.000","lastModified":"2026-06-16T21:51:16.883","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft TCP/IP Printing Services, aka Print Services for Unix, allows an attacker to cause a denial of service via a malformed TCP/IP print request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:terminal_server:*:*:*:*:*:*:*:*","matchCriteriaId":"40242161-D5AD-4314-AB95-E61292C49DF2"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0306.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1082","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-021","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-03/0306.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1082","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-021","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0246","sourceIdentifier":"cve@mitre.org","published":"2000-03-30T05:00:00.000","lastModified":"2026-06-16T21:51:18.773","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IIS 4.0 and 5.0 does not properly perform ISAPI extension processing if a virtual directory is mapped to a UNC share, which allows remote attackers to read the source code of ASP and other files, aka the \"Virtualized UNC Share\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:commercial_internet_system:2.0:*:*:*:*:*:*:*","matchCriteriaId":"81514AB5-388D-4D13-B63A-C237A502B86A"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:commercial_internet_system:2.5:*:*:*:*:*:*:*","matchCriteriaId":"879AFDCC-B9D8-41EF-85DD-70CC1BD5227C"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_services:5.0:*:*:*:*:*:*:*","matchCriteriaId":"413C07EA-139F-4B7D-A58B-835BD2591FA0"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:proxy_server:2.0:*:*:*:*:*:*:*","matchCriteriaId":"2F7BF233-8DE6-4DC4-B9ED-5D4A180DD8B9"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:site_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"4A503018-356B-46D9-965F-60750B5B7484"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:site_server_commerce:3.0:*:*:*:*:*:*:*","matchCriteriaId":"DD78B678-82A4-4485-BC4A-809A5FB105E9"}]}]}],"references":[{"url":"http://www.microsoft.com/technet/support/kb.asp?ID=249599","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1081","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-019","source":"cve@mitre.org"},{"url":"http://www.microsoft.com/technet/support/kb.asp?ID=249599","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1081","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-019","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0234","sourceIdentifier":"cve@mitre.org","published":"2000-03-31T05:00:00.000","lastModified":"2026-06-16T21:51:17.167","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default configuration of Cobalt RaQ2 and RaQ3 as specified in access.conf allows remote attackers to view sensitive contents of a .htaccess file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:sun:cobalt_raq_2:*:*:*:*:*:*:*:*","matchCriteriaId":"0F6DDD9F-5C58-4092-BF3D-332E2E566182"},{"vulnerable":true,"criteria":"cpe:2.3:h:sun:cobalt_raq_3i:*:*:*:*:*:*:*:*","matchCriteriaId":"0C1E1872-D16C-4848-800C-32B80DD59494"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1083","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/advisory.html?id=2150","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000330220757.28456.qmail%40securityfocus.com","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1083","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/advisory.html?id=2150","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000330220757.28456.qmail%40securityfocus.com","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0290","sourceIdentifier":"cve@mitre.org","published":"2000-03-31T05:00:00.000","lastModified":"2026-06-16T21:51:24.517","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Webstar HTTP server allows remote attackers to cause a denial of service via a long GET request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:4d:webstar_http_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"CEE20C8E-4CEB-4EAF-92B1-69139BA8EC1E"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0005.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1822","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4792","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0005.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1822","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4792","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0296","sourceIdentifier":"cve@mitre.org","published":"2000-03-31T05:00:00.000","lastModified":"2026-06-16T21:51:25.290","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"fcheck allows local users to gain privileges by embedding shell metacharacters into file names that are processed by fcheck."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:michael_a._gumienny:fcheck:2.7.45:*:*:*:*:*:*:*","matchCriteriaId":"57D80F13-676D-4B97-A376-2D9F0E85D673"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/current/0011.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1086","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/current/0011.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1086","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0302","sourceIdentifier":"cve@mitre.org","published":"2000-03-31T05:00:00.000","lastModified":"2026-06-16T21:51:26.027","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Index Server allows remote attackers to view the source code of ASP files by appending a %20 to the filename in the CiWebHitsFile argument to the null.htw URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:index_server:2.0:*:*:*:*:*:*:*","matchCriteriaId":"D56759FD-DE03-4E90-8688-B6A49AA24F25"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=95453598317340&w=2","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/271","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1084","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-006","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=95453598317340&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/271","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1084","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-006","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0790","sourceIdentifier":"cve@mitre.org","published":"2000-04-01T05:00:00.000","lastModified":"2026-06-16T21:49:03.810","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A remote attacker can read information from a Netscape user's cache via JavaScript."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:N/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.0:*:*:*:*:*:*:*","matchCriteriaId":"209C7BB1-EFDF-43AB-9FB6-DF67465DEAEF"}]}]}],"references":[{"url":"http://home.netscape.com/security/notes/jscachebrowsing.html","source":"cve@mitre.org"},{"url":"http://home.netscape.com/security/notes/jscachebrowsing.html","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0277","sourceIdentifier":"cve@mitre.org","published":"2000-04-03T04:00:00.000","lastModified":"2026-06-16T21:51:22.867","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Excel 97 and 2000 does not warn the user when executing Excel Macro Language (XLM) macros in external text files, which could allow an attacker to execute a macro virus, aka the \"XLM Text Macro\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-254"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:excel:97:*:*:*:*:*:*:*","matchCriteriaId":"A78536AA-8694-4E0E-B7C6-9E5C3787D849"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:excel:2000:*:*:*:*:*:*:*","matchCriteriaId":"F55D42D5-7371-47C2-BF55-B7F51C19B61E"}]}]}],"references":[{"url":"http://www.osvdb.org/1272","source":"cve@mitre.org","tags":["Broken Link"]},{"url":"http://www.securityfocus.com/bid/1087","source":"cve@mitre.org","tags":["Third Party Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-022","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1272","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"]},{"url":"http://www.securityfocus.com/bid/1087","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-022","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0280","sourceIdentifier":"cve@mitre.org","published":"2000-04-03T04:00:00.000","lastModified":"2026-06-16T21:51:23.237","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the RealNetworks RealPlayer client versions 6 and 7 allows remote attackers to cause a denial of service via a long Location URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:N/I:N/A:P","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:realnetworks:realplayer:6.0:*:win:*:*:*:*:*","matchCriteriaId":"0DF36439-BC5B-4DB9-8AC7-57E4C15CC0D3"},{"vulnerable":true,"criteria":"cpe:2.3:a:realnetworks:realplayer:7.0:*:win:*:*:*:*:*","matchCriteriaId":"27A1EB45-9CDB-434D-81EB-30E590E3F9A7"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0018.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1088","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0018.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1088","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0297","sourceIdentifier":"cve@mitre.org","published":"2000-04-03T04:00:00.000","lastModified":"2026-06-16T21:51:25.410","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Allaire Forums 2.0.5 allows remote attackers to bypass access restrictions to secure conferences via the rightAccessAllForums or rightModerateAllForums variables."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:N","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:allaire:forums:2.0.5:*:*:*:*:*:*:*","matchCriteriaId":"56882CBB-6AE2-4918-80FF-CB22CD57DF54"}]}]}],"references":[{"url":"http://www.osvdb.org/1270","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1085","source":"cve@mitre.org"},{"url":"http://www2.allaire.com/handlers/index.cfm?ID=15099&Method=Full","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1270","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1085","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www2.allaire.com/handlers/index.cfm?ID=15099&Method=Full","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0634","sourceIdentifier":"cve@mitre.org","published":"2000-04-03T04:00:00.000","lastModified":"2026-06-16T21:52:09.323","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The web administration interface for CommuniGate Pro 3.2.5 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:stalker:communigate_pro:3.2.4:*:*:*:*:*:*:*","matchCriteriaId":"ACA7E146-9B89-4D96-B0AF-5A7D8CF7E933"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0223.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/5774","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1493","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5105","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0223.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/5774","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1493","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5105","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0299","sourceIdentifier":"cve@mitre.org","published":"2000-04-04T04:00:00.000","lastModified":"2026-06-16T21:51:25.650","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in WebObjects.exe in the WebObjects Developer 4.5 package allows remote attackers to cause a denial of service via an HTTP request with long headers such as Accept."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:apple:webobjects:4.5:*:*:*:*:*:*:*","matchCriteriaId":"D101474C-842F-45A7-A20D-00F6810C3F13"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0020.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0020.html","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0255","sourceIdentifier":"cve@mitre.org","published":"2000-04-05T04:00:00.000","lastModified":"2026-06-16T21:51:19.953","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Nbase-Xyplex EdgeBlaster router allows remote attackers to cause a denial of service via a scan for the FormMail CGI program."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:nbase-xyplex:edgeblaster:1.0:*:*:*:*:*:*:*","matchCriteriaId":"4CDC283E-B1BD-474C-BE50-CCC03152E182"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0022.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1091","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0022.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1091","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0251","sourceIdentifier":"cve@mitre.org","published":"2000-04-06T04:00:00.000","lastModified":"2026-06-16T21:51:19.423","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"HP-UX 11.04 VirtualVault (VVOS) sends data to unprivileged processes via an interface that has multiple aliased IP addresses."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:11.4:*:*:*:*:*:*:*","matchCriteriaId":"F038B325-A982-43FB-9146-E103CCFB5C41"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:vvos:3.50:*:*:*:*:*:*:*","matchCriteriaId":"C74B2BE9-2A39-4F69-9DF5-86985E7FB394"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0021.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1090","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0021.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1090","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0300","sourceIdentifier":"cve@mitre.org","published":"2000-04-06T04:00:00.000","lastModified":"2026-06-16T21:51:25.770","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default encryption method of PcAnywhere 9.x uses weak encryption, which allows remote attackers to sniff and decrypt PcAnywhere or NT domain accounts."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:symantec:pcanywhere:9.0:*:*:*:*:*:*:*","matchCriteriaId":"CB0C7336-52DC-4E0D-9F6F-9B401B0A93EB"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1093","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000406030958.23902.qmail%40securityfocus.com","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1093","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000406030958.23902.qmail%40securityfocus.com","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0301","sourceIdentifier":"cve@mitre.org","published":"2000-04-06T04:00:00.000","lastModified":"2026-06-16T21:51:25.897","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Ipswitch IMAIL server 6.02 and earlier allows remote attackers to cause a denial of service via the AUTH CRAM-MD5 command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:imail:5.0:*:*:*:*:*:*:*","matchCriteriaId":"EFEFE5A5-6589-4316-9C9F-2F8109696158"},{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:imail:5.0.5:*:*:*:*:*:*:*","matchCriteriaId":"DB3992E3-D0C8-4A48-B4E1-D31B0D79CEE0"},{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:imail:5.0.6:*:*:*:*:*:*:*","matchCriteriaId":"65248233-61A3-4085-8808-6FC2FD87EAF6"},{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:imail:5.0.7:*:*:*:*:*:*:*","matchCriteriaId":"B37214DE-41E8-4DD4-AFBF-E608B88D6EAD"},{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:imail:5.0.8:*:*:*:*:*:*:*","matchCriteriaId":"6E11FF5E-9B3D-4818-B091-1286ECF47937"},{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:imail:6.0:*:*:*:*:*:*:*","matchCriteriaId":"9EADF489-0420-4C47-9F73-78114C2042F3"},{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:imail:6.1:*:*:*:*:*:*:*","matchCriteriaId":"EAEA8FB7-3D42-4A39-BCCD-2DE3BC3EAC19"},{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:imail:6.2:*:*:*:*:*:*:*","matchCriteriaId":"12658962-53E6-49EB-83EF-04A1B5D693B3"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=95505800117143&w=2","source":"cve@mitre.org"},{"url":"http://support.ipswitch.com/kb/IM-20000208-DM02.htm","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1094","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=95505800117143&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://support.ipswitch.com/kb/IM-20000208-DM02.htm","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1094","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0279","sourceIdentifier":"cve@mitre.org","published":"2000-04-07T04:00:00.000","lastModified":"2026-06-16T21:51:23.117","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"BeOS allows remote attackers to cause a denial of service via malformed packets whose length field is less than the length of the headers."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:be:beos:4.0:*:*:*:*:*:*:*","matchCriteriaId":"0E8314CD-9480-4F0E-B2E2-DED493C4D575"},{"vulnerable":true,"criteria":"cpe:2.3:o:be:beos:4.5:*:*:*:*:*:*:*","matchCriteriaId":"A78731F7-6AFC-4349-972C-929323519225"},{"vulnerable":true,"criteria":"cpe:2.3:o:be:beos:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6EBFAEE-C1D9-48AE-AFE3-2C44CAC74616"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0029.html","source":"cve@mitre.org"},{"url":"http://bebugs.be.com/devbugs/detail.php3?oid=2505312","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1100","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0029.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://bebugs.be.com/devbugs/detail.php3?oid=2505312","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1100","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0298","sourceIdentifier":"cve@mitre.org","published":"2000-04-07T04:00:00.000","lastModified":"2026-06-16T21:51:25.530","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The unattended installation of Windows 2000 with the OEMPreinstall option sets insecure permissions for the All Users and Default Users directories."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q2/0027.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1758","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4278","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q2/0027.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1758","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4278","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0273","sourceIdentifier":"cve@mitre.org","published":"2000-04-09T04:00:00.000","lastModified":"2026-06-16T21:51:22.387","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"PCAnywhere allows remote attackers to cause a denial of service by terminating the connection before PCAnywhere provides a login prompt."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:symantec:pcanywhere:8.0:*:*:*:*:*:*:*","matchCriteriaId":"447EE4D0-ED48-490E-BC1C-831A165CFF29"},{"vulnerable":true,"criteria":"cpe:2.3:a:symantec:pcanywhere:9.0:*:*:*:*:*:*:*","matchCriteriaId":"CB0C7336-52DC-4E0D-9F6F-9B401B0A93EB"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0031.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1095","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0031.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1095","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0274","sourceIdentifier":"cve@mitre.org","published":"2000-04-10T04:00:00.000","lastModified":"2026-06-16T21:51:22.503","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Linux trustees kernel patch allows attackers to cause a denial of service by accessing a file or directory with a long name."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:bray_systems:linux_trustees:1.5:*:*:*:*:*:*:*","matchCriteriaId":"39D83A24-79B0-407C-BBD2-36373AF22877"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0035.html","source":"cve@mitre.org"},{"url":"http://www.braysystems.com/linux/trustees.html","source":"cve@mitre.org","tags":["URL Repurposed"]},{"url":"http://www.securityfocus.com/bid/1096","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0035.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.braysystems.com/linux/trustees.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["URL Repurposed"]},{"url":"http://www.securityfocus.com/bid/1096","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0275","sourceIdentifier":"cve@mitre.org","published":"2000-04-10T04:00:00.000","lastModified":"2026-06-16T21:51:22.627","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"CRYPTOCard CryptoAdmin for PalmOS uses weak encryption to store a user's PIN number, which allows an attacker with access to the .PDB file to generate valid PT-1 tokens after cracking the PIN."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cryptocard:cryptoadmin:4.1:*:*:*:*:*:*:*","matchCriteriaId":"2915A632-CCE7-4214-828A-5B43D4ED05E2"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0033.html","source":"cve@mitre.org"},{"url":"http://www.l0pht.com/advisories/cc-pinextract.txt","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1097","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0033.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.l0pht.com/advisories/cc-pinextract.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1097","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0276","sourceIdentifier":"cve@mitre.org","published":"2000-04-10T04:00:00.000","lastModified":"2026-06-16T21:51:22.743","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"BeOS 4.5 and 5.0 allow local users to cause a denial of service via malformed direct system calls using interrupt 37."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:be:beos:4.5:*:*:*:*:*:*:*","matchCriteriaId":"A78731F7-6AFC-4349-972C-929323519225"},{"vulnerable":true,"criteria":"cpe:2.3:o:be:beos:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6EBFAEE-C1D9-48AE-AFE3-2C44CAC74616"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1098","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000410131628.659.qmail%40securityfocus.com","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1098","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000410131628.659.qmail%40securityfocus.com","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0294","sourceIdentifier":"cve@mitre.org","published":"2000-04-10T04:00:00.000","lastModified":"2026-06-16T21:51:25.057","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in healthd for FreeBSD allows local users to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:jim_housley:healthd:0.1:*:*:*:*:*:*:*","matchCriteriaId":"11E4A3B0-5E5F-4878-96D1-D2281A215248"},{"vulnerable":true,"criteria":"cpe:2.3:a:jim_housley:healthd:0.2:*:*:*:*:*:*:*","matchCriteriaId":"BB9E7024-BD07-4561-99D1-F54771D8A135"},{"vulnerable":true,"criteria":"cpe:2.3:a:jim_housley:healthd:0.3:*:*:*:*:*:*:*","matchCriteriaId":"303A28C2-894F-4140-9C28-0C0982C14A2D"}]}]}],"references":[{"url":"http://www.osvdb.org/606","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1107","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/advisory.html?id=2162","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/606","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1107","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/advisory.html?id=2162","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0695","sourceIdentifier":"cve@mitre.org","published":"2000-04-11T04:00:00.000","lastModified":"2026-06-16T21:48:51.943","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Sybase PowerDynamo personal web server allows attackers to read arbitrary files through a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sybase:powerdynamo:3.0.652:*:*:*:*:*:*:*","matchCriteriaId":"26CB5AE3-4DA9-4CC9-9EEB-983821A6D226"}]}]}],"references":[{"url":"http://www.osvdb.org/1064","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/620","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1064","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/620","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0699","sourceIdentifier":"cve@mitre.org","published":"2000-04-11T04:00:00.000","lastModified":"2026-06-16T21:48:52.427","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Bluestone Sapphire web server allows session hijacking via easily guessable session IDs."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:bluestone:sapphire_web:5.0:*:*:*:*:*:*:*","matchCriteriaId":"44EF3E30-37A2-455A-9815-9CDFF52CC2CA"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/623","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/623","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0701","sourceIdentifier":"cve@mitre.org","published":"2000-04-11T04:00:00.000","lastModified":"2026-06-16T21:48:52.677","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"After an unattended installation of Windows NT 4.0, an installation file could include sensitive information such as the local Administrator password."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-16"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ173039","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/626","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-036","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ173039","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/626","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-036","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0979","sourceIdentifier":"cve@mitre.org","published":"2000-04-11T04:00:00.000","lastModified":"2026-06-16T21:49:27.110","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The SCO UnixWare privileged process system allows local users to gain root privileges by using a debugger such as gdb to insert traps into _init before the privileged process is executed."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.0:*:*:*:*:*:*:*","matchCriteriaId":"17439B5B-0B66-490B-9B53-2C9D576C879F"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.0.1:*:*:*:*:*:*:*","matchCriteriaId":"EF9FD7BF-97E4-426D-881F-03C9D5B8895D"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.1:*:*:*:*:*:*:*","matchCriteriaId":"B200C05F-0E89-4172-B500-47C2573D4461"},{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.1.1:*:*:*:*:*:*:*","matchCriteriaId":"71DDB9D9-AD7B-479D-B128-7150286EE563"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=94530783815434&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/869","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=94530783815434&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/869","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0252","sourceIdentifier":"cve@mitre.org","published":"2000-04-11T04:00:00.000","lastModified":"2026-06-16T21:51:19.550","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The dansie shopping cart application cart.pl allows remote attackers to execute commands via a shell metacharacters in a form variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:craig_dansie:dansie_shopping_cart:3.0.4:*:*:*:*:*:*:*","matchCriteriaId":"4B1ED2E6-F12C-4C15-BC75-202618C5E43D"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0051.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1115","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4975","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0051.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1115","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4975","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0253","sourceIdentifier":"cve@mitre.org","published":"2000-04-11T04:00:00.000","lastModified":"2026-06-16T21:51:19.690","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The dansie shopping cart application cart.pl allows remote attackers to modify sensitive purchase information via hidden form fields."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:craig_dansie:dansie_shopping_cart:3.0.4:*:*:*:*:*:*:*","matchCriteriaId":"4B1ED2E6-F12C-4C15-BC75-202618C5E43D"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1115","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4621","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1115","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4621","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0258","sourceIdentifier":"cve@mitre.org","published":"2000-04-12T04:00:00.000","lastModified":"2026-06-16T21:51:20.377","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IIS 4.0 and 5.0 allows remote attackers to cause a denial of service by sending many URLs with a large number of escaped characters, aka the \"Myriad Escaped Characters\" Vulnerability."},{"lang":"es","value":"IIS 4.0 y 5.0 permite a atacantes remotos provocar una denegación de servicio enviando muchas URLs con un largo número de caracteres de escape, también conocida como la Vulnerabilidad \"Myriad Escaped Characters\"."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV30":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","baseScore":7.5,"baseSeverity":"HIGH","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH"},"exploitabilityScore":3.9,"impactScore":3.6}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-20"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_services:5.0:*:*:*:*:*:*:*","matchCriteriaId":"413C07EA-139F-4B7D-A58B-835BD2591FA0"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1101","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-023","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1101","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-023","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0259","sourceIdentifier":"cve@mitre.org","published":"2000-04-12T04:00:00.000","lastModified":"2026-06-16T21:51:20.513","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default permissions for the Cryptography\\Offload registry key used by the OffloadModExpo in Windows NT 4.0 allows local users to obtain compromise the cryptographic keys of other users."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:terminal_server:*:*:*:*:*:*:*:*","matchCriteriaId":"40242161-D5AD-4314-AB95-E61292C49DF2"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1105","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-024","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1105","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-024","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0261","sourceIdentifier":"cve@mitre.org","published":"2000-04-12T04:00:00.000","lastModified":"2026-06-16T21:51:20.763","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The AVM KEN! web server allows remote attackers to read arbitrary files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:avm:ken:1.3.10:*:*:*:*:*:*:*","matchCriteriaId":"1D6F4F7C-2905-46E9-AFA9-CBAC56A5809A"},{"vulnerable":true,"criteria":"cpe:2.3:a:avm:ken:1.4.30:*:*:*:*:*:*:*","matchCriteriaId":"00DBCDEA-5443-493C-B7D1-2789794E8711"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0073.html","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1282","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1103","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=383085010.956159226625.JavaMail.root%40web305-mc.mail.com","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0073.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1282","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1103","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=383085010.956159226625.JavaMail.root%40web305-mc.mail.com","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0262","sourceIdentifier":"cve@mitre.org","published":"2000-04-12T04:00:00.000","lastModified":"2026-06-16T21:51:20.893","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The AVM KEN! ISDN Proxy server allows remote attackers to cause a denial of service via a malformed request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:avm:ken:1.3.10:*:*:*:*:*:*:*","matchCriteriaId":"1D6F4F7C-2905-46E9-AFA9-CBAC56A5809A"},{"vulnerable":true,"criteria":"cpe:2.3:a:avm:ken:1.4.30:*:*:*:*:*:*:*","matchCriteriaId":"00DBCDEA-5443-493C-B7D1-2789794E8711"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0073.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1103","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=383085010.956159226625.JavaMail.root%40web305-mc.mail.com","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0073.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1103","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=383085010.956159226625.JavaMail.root%40web305-mc.mail.com","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0282","sourceIdentifier":"cve@mitre.org","published":"2000-04-12T04:00:00.000","lastModified":"2026-06-16T21:51:23.500","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"TalentSoft webpsvr daemon in the Web+ shopping cart application allows remote attackers to read arbitrary files via a .. (dot dot) attack on the webplus CGI program."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:talentsoft:web\\+:4:*:*:*:*:*:*:*","matchCriteriaId":"4329D0DC-6FB0-44E1-8FFE-9364A0540542"}]}]}],"references":[{"url":"ftp://ftp.talentsoft.com/Download/Webplus/Unix/Patches/Webplus46p%20Read%20me.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0050.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1102","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"ftp://ftp.talentsoft.com/Download/Webplus/Unix/Patches/Webplus46p%20Read%20me.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0050.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1102","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0283","sourceIdentifier":"cve@mitre.org","published":"2000-04-12T04:00:00.000","lastModified":"2026-06-16T21:51:23.630","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default installation of IRIX Performance Copilot allows remote attackers to access sensitive system information via the pmcd daemon."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:P","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.2:*:*:*:*:*:*:*","matchCriteriaId":"0ECE564D-B4BB-4C05-88CC-CDC3F8E4E366"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.3:*:*:*:*:*:*:*","matchCriteriaId":"B2D59247-56FA-46B4-BB51-2DAE71AFC145"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.4:*:*:*:*:*:*:*","matchCriteriaId":"15BE08F8-5F3F-45DB-BFE0-1F6F2F57A4D4"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.3:*:*:*:*:*:*:*","matchCriteriaId":"E6B2E6D1-8C2D-4E15-A6BB-E4FE878ED1E7"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.3f:*:*:*:*:*:*:*","matchCriteriaId":"8D51EC29-8836-4F87-ABF8-FF7530DECBB1"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.3m:*:*:*:*:*:*:*","matchCriteriaId":"518B7253-7B0F-4A0A-ADA7-F3E3B5AAF877"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.4:*:*:*:*:*:*:*","matchCriteriaId":"440B7208-34DB-4898-8461-4E703F7EDFB7"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.6:*:*:*:*:*:*:*","matchCriteriaId":"D07AA144-6FD7-4C80-B4F2-D21C1AFC864A"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0056.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1106","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0056.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1106","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0287","sourceIdentifier":"cve@mitre.org","published":"2000-04-12T04:00:00.000","lastModified":"2026-06-16T21:51:24.117","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The BizDB CGI script bizdb-search.cgi allows remote attackers to execute arbitrary commands via shell metacharacters in the dbname parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cnc:technology_bizdb:1.0:*:*:*:*:*:*:*","matchCriteriaId":"3B534A23-7E20-4F79-97D6-13D4975F2AC3"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0058.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1104","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0058.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1104","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0288","sourceIdentifier":"cve@mitre.org","published":"2000-04-12T04:00:00.000","lastModified":"2026-06-16T21:51:24.260","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Infonautics getdoc.cgi allows remote attackers to bypass the payment phase for accessing documents via a modified form variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0049.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0049.html","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0250","sourceIdentifier":"cve@mitre.org","published":"2000-04-14T04:00:00.000","lastModified":"2026-06-16T21:51:19.307","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The crypt function in QNX uses weak encryption, which allows local users to decrypt passwords."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:qnx:qnx:4.25a:*:*:*:*:*:*:*","matchCriteriaId":"103982C9-A49A-4CF0-A24E-2E6ADCEEDBFD"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0072.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1114","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0072.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1114","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0254","sourceIdentifier":"cve@mitre.org","published":"2000-04-14T04:00:00.000","lastModified":"2026-06-16T21:51:19.827","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The dansie shopping cart application cart.pl allows remote attackers to obtain the shopping cart database and configuration information via a URL that references either the env, db, or vars form variables."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:craig_dansie:dansie_shopping_cart:3.0.4:*:*:*:*:*:*:*","matchCriteriaId":"4B1ED2E6-F12C-4C15-BC75-202618C5E43D"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1115","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4954","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1115","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4954","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0260","sourceIdentifier":"cve@mitre.org","published":"2000-04-14T04:00:00.000","lastModified":"2026-06-16T21:51:20.640","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the dvwssr.dll DLL in Microsoft Visual Interdev 1.0 allows users to cause a denial of service or execute commands, aka the \"Link View Server-Side Component\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:frontpage:*:*:*:*:*:*:*:*","matchCriteriaId":"0951E183-2BFE-4B19-9F06-107B5E22DBC5"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:visual_interdev:1.0:*:*:*:*:*:*:*","matchCriteriaId":"A8056FB5-2B2B-416B-AC5F-35EE4CA59F36"}]}]}],"references":[{"url":"http://www.osvdb.org/282","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1109","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-025","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/282","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1109","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-025","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1218","sourceIdentifier":"cve@mitre.org","published":"2000-04-14T04:00:00.000","lastModified":"2026-06-16T21:53:24.263","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default configuration for the domain name resolver for Microsoft Windows 98, NT 4.0, 2000, and XP sets the QueryIpMatching parameter to 0, which causes Windows to accept DNS updates from hosts that it did not query, which allows remote attackers to poison the DNS cache."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","baseScore":9.8,"baseSeverity":"CRITICAL","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":3.9,"impactScore":5.9}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-346"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:-:*:*:*:*:*:*:*","matchCriteriaId":"685F1981-EA61-4A00-89F8-A748A88962F8"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98:-:*:*:*:*:*:*:*","matchCriteriaId":"40FC681A-7B85-4495-8DCC-C459FE7E2F13"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98se:-:*:*:*:*:*:*:*","matchCriteriaId":"A2354216-8103-49F9-A95C-7DE4F738BBEE"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_xp:-:*:*:*:*:*:*:*","matchCriteriaId":"B47EBFCC-1828-45AB-BC6D-FB980929A81A"}]}]}],"references":[{"url":"http://www.kb.cert.org/vuls/id/458659","source":"cve@mitre.org","tags":["Third Party Advisory","US Government Resource"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4280","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://www.kb.cert.org/vuls/id/458659","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","US Government Resource"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4280","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]}]}},{"cve":{"id":"CVE-2000-0263","sourceIdentifier":"cve@mitre.org","published":"2000-04-16T04:00:00.000","lastModified":"2026-06-16T21:51:21.020","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The X font server xfs in Red Hat Linux 6.x allows an attacker to cause a denial of service via a malformed request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:alpha:*:*:*:*:*","matchCriteriaId":"6931FB54-A163-4CE3-BBD9-D345AA0977A6"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:i386:*:*:*:*:*","matchCriteriaId":"89F65C9D-BD68-4A86-BFDC-E7CE76F13948"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:sparc:*:*:*:*:*","matchCriteriaId":"5ABD1331-277C-4C31-8186-978243C62255"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:alpha:*:*:*:*:*","matchCriteriaId":"C89454B9-4F45-4A42-A06D-ED42D893C544"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:i386:*:*:*:*:*","matchCriteriaId":"B72D6205-DFA4-41D9-B3B6-0B7DA756CD8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:sparc:*:*:*:*:*","matchCriteriaId":"1E64093E-7D53-4238-95C3-48ED5A0FFD97"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:alpha:*:*:*:*:*","matchCriteriaId":"344610A8-DB6D-4407-9304-916C419F648C"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:i386:*:*:*:*:*","matchCriteriaId":"B7EC2B95-4715-4EC9-A10A-2542501F8A61"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:sparc:*:*:*:*:*","matchCriteriaId":"64775BEF-2E53-43CA-8639-A7E54F6F4222"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0079.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1111","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0079.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1111","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0284","sourceIdentifier":"cve@mitre.org","published":"2000-04-16T04:00:00.000","lastModified":"2026-06-16T21:51:23.750","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in University of Washington imapd version 4.7 allows users with a valid account to execute commands via LIST or other commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:university_of_washington:imap:12.264:*:*:*:*:*:*:*","matchCriteriaId":"22F0C6F3-A9B5-4001-99CF-C8297735D86F"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0074.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0085.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1110","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0074.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0085.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1110","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0285","sourceIdentifier":"cve@mitre.org","published":"2000-04-16T04:00:00.000","lastModified":"2026-06-16T21:51:23.867","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in XFree86 3.3.x allows local users to execute arbitrary commands via a long -xkbmap parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:xfree86_project:x11r6:3.3.6:*:*:*:*:*:*:*","matchCriteriaId":"0946A224-6A0C-4DE3-89F9-200682431737"},{"vulnerable":true,"criteria":"cpe:2.3:a:xfree86_project:x11r6:4.0:*:*:*:*:*:*:*","matchCriteriaId":"F33E5444-E178-4F49-BDA1-DE576D8526EE"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0076.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1306","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0076.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1306","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0286","sourceIdentifier":"cve@mitre.org","published":"2000-04-16T04:00:00.000","lastModified":"2026-06-16T21:51:23.993","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"X fontserver xfs allows local users to cause a denial of service via malformed input to the server."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:alpha:*:*:*:*:*","matchCriteriaId":"6931FB54-A163-4CE3-BBD9-D345AA0977A6"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:i386:*:*:*:*:*","matchCriteriaId":"89F65C9D-BD68-4A86-BFDC-E7CE76F13948"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:sparc:*:*:*:*:*","matchCriteriaId":"5ABD1331-277C-4C31-8186-978243C62255"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:alpha:*:*:*:*:*","matchCriteriaId":"C89454B9-4F45-4A42-A06D-ED42D893C544"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:i386:*:*:*:*:*","matchCriteriaId":"B72D6205-DFA4-41D9-B3B6-0B7DA756CD8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:sparc:*:*:*:*:*","matchCriteriaId":"1E64093E-7D53-4238-95C3-48ED5A0FFD97"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:alpha:*:*:*:*:*","matchCriteriaId":"344610A8-DB6D-4407-9304-916C419F648C"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:i386:*:*:*:*:*","matchCriteriaId":"B7EC2B95-4715-4EC9-A10A-2542501F8A61"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:sparc:*:*:*:*:*","matchCriteriaId":"64775BEF-2E53-43CA-8639-A7E54F6F4222"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0079.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1111","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0079.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1111","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0291","sourceIdentifier":"cve@mitre.org","published":"2000-04-16T04:00:00.000","lastModified":"2026-06-16T21:51:24.650","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Star Office 5.1 allows attackers to cause a denial of service by embedding a long URL within a document."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sun:staroffice:5.1:*:*:*:*:*:*:*","matchCriteriaId":"7C93C6E1-EF21-4CAA-96EC-780BDDA33488"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0077.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1112","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0077.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1112","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0264","sourceIdentifier":"cve@mitre.org","published":"2000-04-17T04:00:00.000","lastModified":"2026-06-16T21:51:21.143","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Panda Security 3.0 with registry editing disabled allows users to edit the registry and gain privileges by directly executing a .reg file or using other methods."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:panda:panda_security:3.0:*:*:*:*:*:*:*","matchCriteriaId":"03C5DC7E-F0EA-4C33-BF61-7698FD12F69A"}]}]}],"references":[{"url":"http://updates.pandasoftware.com/docs/us/Avoidvulnerability.zip","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1119","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=38FB45F2.550EA000%40teleline.es","source":"cve@mitre.org"},{"url":"http://updates.pandasoftware.com/docs/us/Avoidvulnerability.zip","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1119","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=38FB45F2.550EA000%40teleline.es","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0265","sourceIdentifier":"cve@mitre.org","published":"2000-04-17T04:00:00.000","lastModified":"2026-06-16T21:51:21.267","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Panda Security 3.0 allows users to uninstall the Panda software via its Add/Remove Programs applet."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:panda:panda_security:3.0:*:*:*:*:*:*:*","matchCriteriaId":"03C5DC7E-F0EA-4C33-BF61-7698FD12F69A"}]}]}],"references":[{"url":"http://updates.pandasoftware.com/docs/us/Avoidvulnerability.zip","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1119","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=38FB45F2.550EA000%40teleline.es","source":"cve@mitre.org"},{"url":"http://updates.pandasoftware.com/docs/us/Avoidvulnerability.zip","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1119","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=38FB45F2.550EA000%40teleline.es","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0083","sourceIdentifier":"cve@mitre.org","published":"2000-04-18T04:00:00.000","lastModified":"2026-06-16T21:50:57.903","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"HP asecure creates the Audio Security File audio.sec with insecure permissions, which allows local users to cause a denial of service or gain additional privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10:*:*:*:*:*:*:*","matchCriteriaId":"CC96D014-7CE2-4F61-BBAF-507829C542EA"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:11:*:*:*:*:*:*:*","matchCriteriaId":"87FB80D8-1BE7-46F7-9F7E-B7DA88D039F8"}]}]}],"references":[{"url":"http://www.securityfocus.com/templates/advisory.html?id=2031","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/advisory.html?id=2031","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0266","sourceIdentifier":"cve@mitre.org","published":"2000-04-18T04:00:00.000","lastModified":"2026-06-16T21:51:21.387","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internet Explorer 5.01 allows remote attackers to bypass the cross frame security policy via a malicious applet that interacts with the Java JSObject to modify the DOM properties to set the IFRAME to an arbitrary Javascript URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:N/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.01:*:*:*:*:*:*:*","matchCriteriaId":"6219D36E-9E2C-4DC7-8FD5-FAD144A333F6"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1121","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=38FC6130.D6D178FD%40nat.bg","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1121","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=38FC6130.D6D178FD%40nat.bg","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0269","sourceIdentifier":"cve@mitre.org","published":"2000-04-18T04:00:00.000","lastModified":"2026-06-16T21:51:21.877","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Emacs 20 does not properly set permissions for a slave PTY device when starting a new subprocess, which allows local users to read or modify communications between Emacs and the subprocess."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:emacs:20.0:*:*:*:*:*:*:*","matchCriteriaId":"E460F3A1-71DD-4A37-9F17-6B4E5C9A46AE"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:emacs:20.1:*:*:*:*:*:*:*","matchCriteriaId":"0F9D5B3C-7534-4DC6-BE44-91A0031FBA6C"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:emacs:20.2:*:*:*:*:*:*:*","matchCriteriaId":"4EB2E29F-371A-43AB-8CBF-DDFABDB103BB"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:emacs:20.3:*:*:*:*:*:*:*","matchCriteriaId":"05F6124D-F3C1-4E4C-B580-85AB01833885"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:emacs:20.4:*:*:*:*:*:*:*","matchCriteriaId":"9571E866-AB82-4B95-8097-ED0DA038331F"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:emacs:20.5:*:*:*:*:*:*:*","matchCriteriaId":"3A773690-9650-40E1-BCE3-7E020AF61BCD"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:emacs:20.6:*:*:*:*:*:*:*","matchCriteriaId":"26D9A554-CB40-461D-9C95-78051B0CA354"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1125","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-04-15&msg=tg4s8zioxq.fsf%40mercury.rus.uni-stuttgart.de","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1125","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-04-15&msg=tg4s8zioxq.fsf%40mercury.rus.uni-stuttgart.de","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0270","sourceIdentifier":"cve@mitre.org","published":"2000-04-18T04:00:00.000","lastModified":"2026-06-16T21:51:22.010","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The make-temp-name Lisp function in Emacs 20 creates temporary files with predictable names, which allows attackers to conduct a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:N","baseScore":3.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:emacs:20.0:*:*:*:*:*:*:*","matchCriteriaId":"E460F3A1-71DD-4A37-9F17-6B4E5C9A46AE"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:emacs:20.1:*:*:*:*:*:*:*","matchCriteriaId":"0F9D5B3C-7534-4DC6-BE44-91A0031FBA6C"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:emacs:20.2:*:*:*:*:*:*:*","matchCriteriaId":"4EB2E29F-371A-43AB-8CBF-DDFABDB103BB"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:emacs:20.3:*:*:*:*:*:*:*","matchCriteriaId":"05F6124D-F3C1-4E4C-B580-85AB01833885"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:emacs:20.4:*:*:*:*:*:*:*","matchCriteriaId":"9571E866-AB82-4B95-8097-ED0DA038331F"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:emacs:20.5:*:*:*:*:*:*:*","matchCriteriaId":"3A773690-9650-40E1-BCE3-7E020AF61BCD"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:emacs:20.6:*:*:*:*:*:*:*","matchCriteriaId":"26D9A554-CB40-461D-9C95-78051B0CA354"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1126","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-04-15&msg=tg4s8zioxq.fsf%40mercury.rus.uni-stuttgart.de","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1126","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-04-15&msg=tg4s8zioxq.fsf%40mercury.rus.uni-stuttgart.de","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0271","sourceIdentifier":"cve@mitre.org","published":"2000-04-18T04:00:00.000","lastModified":"2026-06-16T21:51:22.133","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"read-passwd and other Lisp functions in Emacs 20 do not properly clear the history of recently typed keys, which allows an attacker to read unencrypted passwords."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:emacs:20.0:*:*:*:*:*:*:*","matchCriteriaId":"E460F3A1-71DD-4A37-9F17-6B4E5C9A46AE"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:emacs:20.1:*:*:*:*:*:*:*","matchCriteriaId":"0F9D5B3C-7534-4DC6-BE44-91A0031FBA6C"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:emacs:20.2:*:*:*:*:*:*:*","matchCriteriaId":"4EB2E29F-371A-43AB-8CBF-DDFABDB103BB"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:emacs:20.3:*:*:*:*:*:*:*","matchCriteriaId":"05F6124D-F3C1-4E4C-B580-85AB01833885"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:emacs:20.4:*:*:*:*:*:*:*","matchCriteriaId":"9571E866-AB82-4B95-8097-ED0DA038331F"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:emacs:20.5:*:*:*:*:*:*:*","matchCriteriaId":"3A773690-9650-40E1-BCE3-7E020AF61BCD"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:emacs:20.6:*:*:*:*:*:*:*","matchCriteriaId":"26D9A554-CB40-461D-9C95-78051B0CA354"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1125","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-04-15&msg=tg4s8zioxq.fsf%40mercury.rus.uni-stuttgart.de","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1125","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-04-15&msg=tg4s8zioxq.fsf%40mercury.rus.uni-stuttgart.de","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0256","sourceIdentifier":"cve@mitre.org","published":"2000-04-19T04:00:00.000","lastModified":"2026-06-16T21:51:20.110","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflows in htimage.exe and Imagemap.exe in FrontPage 97 and 98 Server Extensions allow a user to conduct activities that are not otherwise available through the web site, aka the \"Server-Side Image Map Components\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:frontpage:*:*:*:*:*:*:*:*","matchCriteriaId":"0951E183-2BFE-4B19-9F06-107B5E22DBC5"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:personal_web_server:2.0:*:*:*:*:*:*:*","matchCriteriaId":"7FF19563-8E22-4DDC-948D-6F97975745EB"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/470458/100/0/threaded","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1117","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-028","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/34720","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/470458/100/0/threaded","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1117","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-028","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/34720","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0257","sourceIdentifier":"cve@mitre.org","published":"2000-04-19T04:00:00.000","lastModified":"2026-06-16T21:51:20.243","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the NetWare remote web administration utility allows remote attackers to cause a denial of service or execute commands via a long URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:novell:netware:5.1:*:*:*:*:*:*:*","matchCriteriaId":"455ED4E4-8033-4043-BF10-20188BF0B8B6"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1118","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.21.0004171825340.10088-100000%40nimue.tpi.pl","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1118","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.21.0004171825340.10088-100000%40nimue.tpi.pl","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0292","sourceIdentifier":"cve@mitre.org","published":"2000-04-19T04:00:00.000","lastModified":"2026-06-16T21:51:24.773","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Adtran MX2800 M13 Multiplexer allows remote attackers to cause a denial of service via a ping flood to the Ethernet interface, which causes the device to crash."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:adtran:mx2800:m13:*:*:*:*:*:*:*","matchCriteriaId":"C26D11D0-3C0D-4072-8EF4-6806CE598767"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1129","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.10.10004190908140.32750-100000%40localhost.localdomain","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1129","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.10.10004190908140.32750-100000%40localhost.localdomain","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0267","sourceIdentifier":"cve@mitre.org","published":"2000-04-20T04:00:00.000","lastModified":"2026-06-16T21:51:21.513","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Cisco Catalyst 5.4.x allows a user to gain access to the \"enable\" mode without a password."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:catos:5.4\\(1\\):*:*:*:*:*:*:*","matchCriteriaId":"F1D952CE-9CDE-442D-8544-4614DBE5AC12"}]}]}],"references":[{"url":"http://www.cisco.com/warp/public/707/catos-enable-bypass-pub.shtml","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.osvdb.org/1288","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1122","source":"cve@mitre.org"},{"url":"http://www.cisco.com/warp/public/707/catos-enable-bypass-pub.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.osvdb.org/1288","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1122","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0268","sourceIdentifier":"cve@mitre.org","published":"2000-04-20T04:00:00.000","lastModified":"2026-06-16T21:51:21.700","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Cisco IOS 11.x and 12.x allows remote attackers to cause a denial of service by sending the ENVIRON option to the Telnet daemon before it is ready to accept it, which causes the system to reboot."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.3aa:*:*:*:*:*:*:*","matchCriteriaId":"D8783C0A-990A-4B79-8BF9-64E425DA585E"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(2\\):*:*:*:*:*:*:*","matchCriteriaId":"77DDC99D-8B73-452C-94A7-A9A48F2F379B"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(2\\)xc:*:*:*:*:*:*:*","matchCriteriaId":"5145C737-2D5E-4BD4-BA9F-66ED2887A4DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(2\\)xd:*:*:*:*:*:*:*","matchCriteriaId":"C48466C4-5A1E-4C71-8822-32D387B36B8B"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(2\\)xf:*:*:*:*:*:*:*","matchCriteriaId":"08E23131-D207-4D98-96D5-2B71FF792604"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(2\\)xg:*:*:*:*:*:*:*","matchCriteriaId":"1BFB5A8C-BF1B-4111-9E6A-F8D8FE1476AA"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(3\\)t2:*:*:*:*:*:*:*","matchCriteriaId":"E7109585-1433-4940-B7C9-C561DEAF1498"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(4\\):*:*:*:*:*:*:*","matchCriteriaId":"1A0D82E1-CCF7-429B-A637-479E839EAE3C"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(4\\)s:*:*:*:*:*:*:*","matchCriteriaId":"E9D1F7A6-6DB3-41D1-BD87-DE1898EC91A9"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(4\\)t:*:*:*:*:*:*:*","matchCriteriaId":"4F1B2747-4A9C-44FC-BBA8-39E338B30417"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(5\\):*:*:*:*:*:*:*","matchCriteriaId":"D5BB7513-C232-4B4F-BE68-972B05086ABD"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(6\\):*:*:*:*:*:*:*","matchCriteriaId":"ECCE69A3-41C6-4893-86D4-7F264352C8A9"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(7\\)t:*:*:*:*:*:*:*","matchCriteriaId":"FA654CE6-82C3-43D0-BAED-70E88A740BF1"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:accesspath:ls-3:*:*:*:*:*:*:*","matchCriteriaId":"7D8CD3D5-C52F-4B38-8DA7-5441B7CD000D"},{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:accesspath:ts-3:*:*:*:*:*:*:*","matchCriteriaId":"1DD96A21-1862-4E35-BD02-2928DD44B3C1"},{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:accesspath:vs-3:*:*:*:*:*:*:*","matchCriteriaId":"D537F5F7-8227-46CC-A30F-B81C25AD9FA3"},{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:as5200:*:*:*:*:*:*:*:*","matchCriteriaId":"6E74902A-1785-40FE-92A0-55BD27D6FEC3"},{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:as5300:*:*:*:*:*:*:*:*","matchCriteriaId":"883975E5-FE8B-4DC4-8F71-E68791ABD17D"},{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:as5800:*:*:*:*:*:*:*:*","matchCriteriaId":"823E4E18-8719-4167-83BE-CF2DA55558E9"},{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:system_controller_3640:*:*:*:*:*:*:*:*","matchCriteriaId":"B7C0CC3E-3E01-4607-BE75-4A6A1074DC82"},{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:voice_gateway_as5800:*:*:*:*:*:*:*:*","matchCriteriaId":"9D185F2F-788C-44F1-A635-90E33A4A88B9"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:3660_router:*:*:*:*:*:*:*:*","matchCriteriaId":"5EAE468C-7D0F-4F6D-B598-B2E422EFDCD5"},{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:7100_router:*:*:*:*:*:*:*:*","matchCriteriaId":"C3715102-E348-457A-9546-94BBCEF91A00"},{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:7200_router:*:*:*:*:*:*:*:*","matchCriteriaId":"60DEA083-B9BC-42DB-A4F7-986A5A185DE6"},{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:7500_router:*:*:*:*:*:*:*:*","matchCriteriaId":"FCFAA111-F831-4BC9-BCD7-246ED6C0F3FF"},{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:ubr7200:*:*:*:*:*:*:*:*","matchCriteriaId":"0B4917DF-B485-46A3-9515-8BDDD1F13C77"}]}]}],"references":[{"url":"http://www.cisco.com/warp/public/707/iostelnetopt-pub.shtml","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1289","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1123","source":"cve@mitre.org"},{"url":"http://www.cisco.com/warp/public/707/iostelnetopt-pub.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1289","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1123","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0272","sourceIdentifier":"cve@mitre.org","published":"2000-04-20T04:00:00.000","lastModified":"2026-06-16T21:51:22.260","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"RealNetworks RealServer allows remote attackers to cause a denial of service by sending malformed input to the server at port 7070."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:C","baseScore":7.8,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:realnetworks:realserver:7.0:*:*:*:*:*:*:*","matchCriteriaId":"9392C48A-A1AB-43F7-8374-02BDCE6589AC"},{"vulnerable":true,"criteria":"cpe:2.3:a:realnetworks:realserver:basic:*:*:*:*:*:*:*","matchCriteriaId":"E0C507DD-95ED-48D1-AA74-7BE15A4259FC"},{"vulnerable":true,"criteria":"cpe:2.3:a:realnetworks:realserver:g2_1.0:*:*:*:*:*:*:*","matchCriteriaId":"EFCC35BE-D76A-48CF-84B7-EF4A3681F15F"},{"vulnerable":true,"criteria":"cpe:2.3:a:realnetworks:realserver:intranet:*:*:*:*:*:*:*","matchCriteriaId":"47455BB6-F5B4-4EC3-AD03-6DB17FC02BCB"},{"vulnerable":true,"criteria":"cpe:2.3:a:realnetworks:realserver:plus:*:*:*:*:*:*:*","matchCriteriaId":"BDA39DE5-C08F-493D-A5C0-68761388B0AB"},{"vulnerable":true,"criteria":"cpe:2.3:a:realnetworks:realserver:pro:*:*:*:*:*:*:*","matchCriteriaId":"43F75E54-9B53-48B3-95E9-125E74E9C54C"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=95625288231045&w=2","source":"cve@mitre.org"},{"url":"http://service.real.com/help/faq/servg270.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1128","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=95625288231045&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://service.real.com/help/faq/servg270.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1128","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0311","sourceIdentifier":"cve@mitre.org","published":"2000-04-20T04:00:00.000","lastModified":"2026-06-16T21:51:27.110","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Windows 2000 domain controller allows a malicious user to modify Active Directory information by modifying an unprotected attribute, aka the \"Mixed Object Access\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1145","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-026","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1145","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-026","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0331","sourceIdentifier":"cve@mitre.org","published":"2000-04-20T04:00:00.000","lastModified":"2026-06-16T21:51:29.623","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Microsoft command processor (CMD.EXE) for Windows NT and Windows 2000 allows a local user to cause a denial of service via a long environment variable, aka the \"Malformed Environment Variable\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:terminal_server:*:*:*:*:*:*:*:*","matchCriteriaId":"40242161-D5AD-4314-AB95-E61292C49DF2"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0147.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1135","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-027","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0147.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1135","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-027","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0295","sourceIdentifier":"cve@mitre.org","published":"2000-04-21T04:00:00.000","lastModified":"2026-06-16T21:51:25.167","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in LCDproc allows remote attackers to gain root privileges via the screen_add command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:lcdproc:lcdproc:0.4:*:*:*:*:*:*:*","matchCriteriaId":"288E218A-A047-4840-B782-97458F1A2ED6"}]}]}],"references":[{"url":"http://secunia.com/advisories/7829","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/305589/30/26390/threaded","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1131","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.3.96.1000421010946.15318I-200000%40schizo.strange.net","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4315","source":"cve@mitre.org"},{"url":"http://secunia.com/advisories/7829","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/305589/30/26390/threaded","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1131","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.3.96.1000421010946.15318I-200000%40schizo.strange.net","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4315","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0318","sourceIdentifier":"cve@mitre.org","published":"2000-04-21T04:00:00.000","lastModified":"2026-06-16T21:51:27.977","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Atrium Mercur Mail Server 3.2 allows local attackers to read other user's email and create arbitrary files via a dot dot (..) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:atrium_software:mercur_mailserver:3.2:*:*:*:*:*:*:*","matchCriteriaId":"2C1C96FB-D121-4097-8838-B88C6F87E63A"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q2/0057.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1144","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q2/0057.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1144","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0320","sourceIdentifier":"cve@mitre.org","published":"2000-04-21T04:00:00.000","lastModified":"2026-06-16T21:51:28.230","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Qpopper 2.53 and 3.0 does not properly identify the \\n string which identifies the end of message text, which allows a remote attacker to cause a denial of service or corrupt mailboxes via a message line that is 1023 characters long and ends in \\n."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:2.53:*:*:*:*:*:*:*","matchCriteriaId":"B223F362-D00F-4D93-8328-33FF1CE331EA"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:3.0:*:*:*:*:*:*:*","matchCriteriaId":"B1208414-D175-41E2-BCBC-9E5EDBC41FFD"},{"vulnerable":true,"criteria":"cpe:2.3:h:sun:cobalt_raq_2:*:*:*:*:*:*:*:*","matchCriteriaId":"0F6DDD9F-5C58-4092-BF3D-332E2E566182"},{"vulnerable":true,"criteria":"cpe:2.3:h:sun:cobalt_raq_3i:*:*:*:*:*:*:*:*","matchCriteriaId":"0C1E1872-D16C-4848-800C-32B80DD59494"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1133","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=9763.000421%40SECURITY.NNOV.RU","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1133","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=9763.000421%40SECURITY.NNOV.RU","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0336","sourceIdentifier":"cve@mitre.org","published":"2000-04-21T04:00:00.000","lastModified":"2026-06-16T21:51:30.277","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Linux OpenLDAP server allows local users to modify arbitrary files via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:openldap:openldap:1.2.7:*:*:*:*:*:*:*","matchCriteriaId":"AC07AD0D-5DF9-41A4-8592-CEFF1842355D"},{"vulnerable":true,"criteria":"cpe:2.3:a:openldap:openldap:1.2.8:*:*:*:*:*:*:*","matchCriteriaId":"30017C56-42A9-4AF9-B5B3-7357E424F837"},{"vulnerable":true,"criteria":"cpe:2.3:a:openldap:openldap:1.2.9:*:*:*:*:*:*:*","matchCriteriaId":"C8A51F38-3F5A-4F6D-93EE-776B5C2FF48F"},{"vulnerable":true,"criteria":"cpe:2.3:a:openldap:openldap:1.2.10:*:*:*:*:*:*:*","matchCriteriaId":"8DBEC27E-3220-42CE-B6CC-675F387CB506"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"ACAAD334-2CA7-4B3B-BA25-302E7610BC2A"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"E4853E92-5E0A-47B9-A343-D5BEE87D2C27"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:alpha:*:*:*:*:*","matchCriteriaId":"C89454B9-4F45-4A42-A06D-ED42D893C544"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:i386:*:*:*:*:*","matchCriteriaId":"B72D6205-DFA4-41D9-B3B6-0B7DA756CD8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:sparc:*:*:*:*:*","matchCriteriaId":"1E64093E-7D53-4238-95C3-48ED5A0FFD97"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:alpha:*:*:*:*:*","matchCriteriaId":"344610A8-DB6D-4407-9304-916C419F648C"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:i386:*:*:*:*:*","matchCriteriaId":"B7EC2B95-4715-4EC9-A10A-2542501F8A61"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:sparc:*:*:*:*:*","matchCriteriaId":"64775BEF-2E53-43CA-8639-A7E54F6F4222"},{"vulnerable":true,"criteria":"cpe:2.3:o:turbolinux:turbolinux:4.2:*:*:*:*:*:*:*","matchCriteriaId":"5D15A193-3E01-467C-AEAD-497F4600DB06"},{"vulnerable":true,"criteria":"cpe:2.3:o:turbolinux:turbolinux:4.4:*:*:*:*:*:*:*","matchCriteriaId":"F7C765FF-0A3D-4BF4-B236-609658776ACA"},{"vulnerable":true,"criteria":"cpe:2.3:o:turbolinux:turbolinux:6.0.2:*:*:*:*:*:*:*","matchCriteriaId":"C6619B49-8A89-4600-A47F-A39C8BF54259"}]}]}],"references":[{"url":"ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-2000-009.0.txt","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-012.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1232","source":"cve@mitre.org"},{"url":"http://www.turbolinux.com/pipermail/tl-security-announce/2000-May/000009.html","source":"cve@mitre.org"},{"url":"ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-2000-009.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-012.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1232","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.turbolinux.com/pipermail/tl-security-announce/2000-May/000009.html","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0458","sourceIdentifier":"cve@mitre.org","published":"2000-04-22T04:00:00.000","lastModified":"2026-06-16T21:51:46.667","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The MSWordView application in IMP creates world-readable files in the /tmp directory, which allows other local users to read potentially sensitive information."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:imp:imp:2.0.9:*:*:*:*:*:*:*","matchCriteriaId":"F0F032E4-518E-43A7-926D-CB7F9F702330"},{"vulnerable":true,"criteria":"cpe:2.3:a:imp:imp:2.0.10:*:*:*:*:*:*:*","matchCriteriaId":"D4188591-6049-4184-88B4-63EF708C7A16"},{"vulnerable":true,"criteria":"cpe:2.3:a:imp:imp:2.0.11:*:*:*:*:*:*:*","matchCriteriaId":"382BE04C-F526-4450-9E5E-CA5BB98DD145"},{"vulnerable":true,"criteria":"cpe:2.3:a:imp:imp:2.2_pre9:*:*:*:*:*:*:*","matchCriteriaId":"439EC501-2922-42BA-86A7-235F9E8CDF08"},{"vulnerable":true,"criteria":"cpe:2.3:a:imp:imp:2.2_pre10:*:*:*:*:*:*:*","matchCriteriaId":"694CE5EF-9FF9-42B9-AE2F-8FEF039794C0"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=95672120116627&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1360","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=95672120116627&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1360","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0459","sourceIdentifier":"cve@mitre.org","published":"2000-04-22T04:00:00.000","lastModified":"2026-06-16T21:51:46.800","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IMP does not remove files properly if the MSWordView application quits, which allows local users to cause a denial of service by filling up the disk space by requesting a large number of documents and prematurely stopping the request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:imp:imp:2.0.9:*:*:*:*:*:*:*","matchCriteriaId":"F0F032E4-518E-43A7-926D-CB7F9F702330"},{"vulnerable":true,"criteria":"cpe:2.3:a:imp:imp:2.0.10:*:*:*:*:*:*:*","matchCriteriaId":"D4188591-6049-4184-88B4-63EF708C7A16"},{"vulnerable":true,"criteria":"cpe:2.3:a:imp:imp:2.0.11:*:*:*:*:*:*:*","matchCriteriaId":"382BE04C-F526-4450-9E5E-CA5BB98DD145"},{"vulnerable":true,"criteria":"cpe:2.3:a:imp:imp:2.2_pre9:*:*:*:*:*:*:*","matchCriteriaId":"439EC501-2922-42BA-86A7-235F9E8CDF08"},{"vulnerable":true,"criteria":"cpe:2.3:a:imp:imp:2.2_pre10:*:*:*:*:*:*:*","matchCriteriaId":"694CE5EF-9FF9-42B9-AE2F-8FEF039794C0"},{"vulnerable":true,"criteria":"cpe:2.3:a:imp:imp:2.2_pre11:*:*:*:*:*:*:*","matchCriteriaId":"A8A4A17F-2363-489B-89B4-0B8FD1FCC3AE"},{"vulnerable":true,"criteria":"cpe:2.3:a:imp:imp:2.2_pre12:*:*:*:*:*:*:*","matchCriteriaId":"1B1A3F7C-C795-45F6-BC6A-FB591D287287"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=95672120116627&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1361","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=95672120116627&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1361","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0319","sourceIdentifier":"cve@mitre.org","published":"2000-04-23T04:00:00.000","lastModified":"2026-06-16T21:51:28.097","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"mail.local in Sendmail 8.10.x does not properly identify the .\\n string which identifies the end of message text, which allows a remote attacker to cause a denial of service or corrupt mailboxes via a message line that is 2047 characters long and ends in .\\n."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:eric_allman:sendmail:5.58:*:*:*:*:*:*:*","matchCriteriaId":"1D07F493-9C8D-44A4-8652-F28B46CBA27C"},{"vulnerable":true,"criteria":"cpe:2.3:a:eric_allman:sendmail:5.59:*:*:*:*:*:*:*","matchCriteriaId":"B8863BB7-833C-462F-BF5F-B27761B05E6F"},{"vulnerable":true,"criteria":"cpe:2.3:a:eric_allman:sendmail:8.6.x:*:*:*:*:*:*:*","matchCriteriaId":"11C2CB74-F51B-40B9-8008-5EAEA9E8F896"},{"vulnerable":true,"criteria":"cpe:2.3:a:eric_allman:sendmail:8.7.1:*:*:*:*:*:*:*","matchCriteriaId":"C2D488B8-49D0-4AFD-A5C1-63CB036E3886"},{"vulnerable":true,"criteria":"cpe:2.3:a:eric_allman:sendmail:8.7.2:*:*:*:*:*:*:*","matchCriteriaId":"A3E2EE58-BCAD-4F26-94B6-F91CF1731429"},{"vulnerable":true,"criteria":"cpe:2.3:a:eric_allman:sendmail:8.7.3:*:*:*:*:*:*:*","matchCriteriaId":"10AC2FAD-C4AD-46DD-88D1-4F99433B3476"},{"vulnerable":true,"criteria":"cpe:2.3:a:eric_allman:sendmail:8.7.4:*:*:*:*:*:*:*","matchCriteriaId":"3B730F70-5662-4BE4-8202-93E12620CBD2"},{"vulnerable":true,"criteria":"cpe:2.3:a:eric_allman:sendmail:8.7.5:*:*:*:*:*:*:*","matchCriteriaId":"FA6D5E9F-275F-41EB-9707-6B7F129A700F"},{"vulnerable":true,"criteria":"cpe:2.3:a:eric_allman:sendmail:8.7.6:*:*:*:*:*:*:*","matchCriteriaId":"02C8FAE4-24FF-49E3-A0D5-A94EBCC80EF4"},{"vulnerable":true,"criteria":"cpe:2.3:a:eric_allman:sendmail:8.7.x:*:*:*:*:*:*:*","matchCriteriaId":"94C2D541-2E53-44F1-A891-D601F402E1B8"},{"vulnerable":true,"criteria":"cpe:2.3:a:eric_allman:sendmail:8.8:*:*:*:*:*:*:*","matchCriteriaId":"C973CF06-BEE8-4D79-8649-1510E9EFC29D"},{"vulnerable":true,"criteria":"cpe:2.3:a:eric_allman:sendmail:8.8.1:*:*:*:*:*:*:*","matchCriteriaId":"56D2BAF2-F430-41A1-8DEE-1D9CB2A56C32"},{"vulnerable":true,"criteria":"cpe:2.3:a:eric_allman:sendmail:8.8.2:*:*:*:*:*:*:*","matchCriteriaId":"5E36E877-6028-49DE-8B2E-3087A141F8EC"},{"vulnerable":true,"criteria":"cpe:2.3:a:eric_allman:sendmail:8.8.3:*:*:*:*:*:*:*","matchCriteriaId":"9D8484F8-8712-4B55-A163-BA492B4D0095"},{"vulnerable":true,"criteria":"cpe:2.3:a:eric_allman:sendmail:8.8.4:*:*:*:*:*:*:*","matchCriteriaId":"D15777E6-6951-4559-B19F-08CE6246BF33"},{"vulnerable":true,"criteria":"cpe:2.3:a:eric_allman:sendmail:8.8.5:*:*:*:*:*:*:*","matchCriteriaId":"5ADBDC99-E03C-42FC-9A97-133D45FF4810"},{"vulnerable":true,"criteria":"cpe:2.3:a:eric_allman:sendmail:8.8.x:*:*:*:*:*:*:*","matchCriteriaId":"8A712A7D-1E91-4FE7-A871-5DF20F441198"},{"vulnerable":true,"criteria":"cpe:2.3:a:eric_allman:sendmail:8.9.1:*:*:*:*:*:*:*","matchCriteriaId":"F81633D9-456A-4377-93F5-E294146FF2D0"},{"vulnerable":true,"criteria":"cpe:2.3:a:eric_allman:sendmail:8.9.3:*:*:*:*:*:*:*","matchCriteriaId":"D4273E93-B536-4B2C-8DAD-84A6F5E38890"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1146","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=2694.000424%40SECURITY.NNOV.RU","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1146","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=2694.000424%40SECURITY.NNOV.RU","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0338","sourceIdentifier":"cve@mitre.org","published":"2000-04-23T04:00:00.000","lastModified":"2026-06-16T21:51:30.520","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Concurrent Versions Software (CVS) uses predictable temporary file names for locking, which allows local users to cause a denial of service by creating the lock directory before it is created for use by a legitimate CVS user."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","baseScore":5.5,"baseSeverity":"MEDIUM","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH"},"exploitabilityScore":1.8,"impactScore":3.6}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-667"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:concurrent_versions_software_project:concurrent_versions_software:-:*:*:*:*:*:*:*","matchCriteriaId":"BB12A3F8-D509-4EC0-86F0-A832C4D1AE57"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1136","source":"cve@mitre.org","tags":["Broken Link","Exploit","Patch","Third Party Advisory","VDB Entry","Vendor Advisory"]},{"url":"http://www.securityfocus.com/frames/?content=/templates/archive.pike%3Flist%3D1%26msg%3D20000423174038.A520%40clico.pl","source":"cve@mitre.org","tags":["Broken Link","Third Party Advisory","VDB Entry"]},{"url":"http://www.securityfocus.com/bid/1136","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Exploit","Patch","Third Party Advisory","VDB Entry","Vendor Advisory"]},{"url":"http://www.securityfocus.com/frames/?content=/templates/archive.pike%3Flist%3D1%26msg%3D20000423174038.A520%40clico.pl","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Third Party Advisory","VDB Entry"]}]}},{"cve":{"id":"CVE-2000-0248","sourceIdentifier":"cve@mitre.org","published":"2000-04-24T04:00:00.000","lastModified":"2026-06-16T21:51:19.057","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The web GUI for the Linux Virtual Server (LVS) software in the Red Hat Linux Piranha package has a backdoor password that allows remote attackers to execute arbitrary commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:alpha:*:*:*:*:*","matchCriteriaId":"344610A8-DB6D-4407-9304-916C419F648C"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:i386:*:*:*:*:*","matchCriteriaId":"B7EC2B95-4715-4EC9-A10A-2542501F8A61"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:sparc:*:*:*:*:*","matchCriteriaId":"64775BEF-2E53-43CA-8639-A7E54F6F4222"}]}]}],"references":[{"url":"http://xforce.iss.net/alerts/advise46.php3","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://xforce.iss.net/alerts/advise46.php3","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0316","sourceIdentifier":"cve@mitre.org","published":"2000-04-24T04:00:00.000","lastModified":"2026-06-16T21:51:27.727","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Solaris 7 lp allows local users to gain root privileges via a long -d option."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:7.0:*:x86:*:*:*:*:*","matchCriteriaId":"8F1F312C-413F-4DB4-ABF4-48E33F6FECF2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0191.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1143","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0191.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1143","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0317","sourceIdentifier":"cve@mitre.org","published":"2000-04-24T04:00:00.000","lastModified":"2026-06-16T21:51:27.843","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Solaris 7 lpset allows local users to gain root privileges via a long -r option."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.6:*:*:*:*:*:*:*","matchCriteriaId":"34EBF074-78C8-41AF-88F1-DA6726E56F8B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:7.0:*:x86:*:*:*:*:*","matchCriteriaId":"8F1F312C-413F-4DB4-ABF4-48E33F6FECF2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:-:*:*:*:*:*:*:*","matchCriteriaId":"369207B4-96FA-4324-9445-98FAE8ECF5DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0192.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0236.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=95729763119559&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1138","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0192.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0236.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=95729763119559&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1138","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0321","sourceIdentifier":"cve@mitre.org","published":"2000-04-24T04:00:00.000","lastModified":"2026-06-16T21:51:28.350","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in IC Radius package allows a remote attacker to cause a denial of service via a long user name."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:icradius:icradius:0.14:*:*:*:*:*:*:*","matchCriteriaId":"2A28A174-45A4-4886-8C87-2D475F9ABF18"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0190.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1147","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0190.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1147","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0322","sourceIdentifier":"cve@mitre.org","published":"2000-04-24T04:00:00.000","lastModified":"2026-06-16T21:51:28.470","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The passwd.php3 CGI script in the Red Hat Piranha Virtual Server Package allows local users to execute arbitrary commands via shell metacharacters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:alpha:*:*:*:*:*","matchCriteriaId":"344610A8-DB6D-4407-9304-916C419F648C"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:i386:*:*:*:*:*","matchCriteriaId":"B7EC2B95-4715-4EC9-A10A-2542501F8A61"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:sparc:*:*:*:*:*","matchCriteriaId":"64775BEF-2E53-43CA-8639-A7E54F6F4222"}]}]}],"references":[{"url":"http://www.redhat.com/support/errata/RHSA-2000-014.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1149","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Enip.BSO.23.0004241601140.28851-100000%40www.whitehats.com","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-014.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1149","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Enip.BSO.23.0004241601140.28851-100000%40www.whitehats.com","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0334","sourceIdentifier":"cve@mitre.org","published":"2000-04-24T04:00:00.000","lastModified":"2026-06-16T21:51:30.020","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Allaire Spectra container editor preview tool does not properly enforce object security, which allows an attacker to conduct unauthorized activities via an object-method that is added to the container object with a publishing rule."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:allaire:spectra:1.0:*:*:*:*:*:*:*","matchCriteriaId":"C7218A9E-7AA1-4536-967B-72B37B03C9C5"},{"vulnerable":true,"criteria":"cpe:2.3:a:allaire:spectra:1.0.1:*:*:*:*:*:*:*","matchCriteriaId":"42D8A283-08F2-4F40-AA94-FDE57403DE02"}]}]}],"references":[{"url":"http://www.allaire.com/handlers/index.cfm?ID=15411&Method=Full","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1181","source":"cve@mitre.org"},{"url":"http://www.allaire.com/handlers/index.cfm?ID=15411&Method=Full","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1181","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0337","sourceIdentifier":"cve@mitre.org","published":"2000-04-24T04:00:00.000","lastModified":"2026-06-16T21:51:30.407","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Xsun X server in Solaris 7 allows local users to gain root privileges via a long -dev parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:7.0:*:x86:*:*:*:*:*","matchCriteriaId":"8F1F312C-413F-4DB4-ABF4-48E33F6FECF2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:8.0:*:x86:*:*:*:*:*","matchCriteriaId":"1894C542-AA81-40A9-BF47-AE24C93C1ACB"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.8:*:*:*:*:*:*:*","matchCriteriaId":"A2475113-CFE4-41C8-A86F-F2DA6548D224"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0188.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1140","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0188.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1140","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0339","sourceIdentifier":"cve@mitre.org","published":"2000-04-24T04:00:00.000","lastModified":"2026-06-16T21:51:30.653","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ZoneAlarm 2.1.10 and earlier does not filter UDP packets with a source port of 67, which allows remote attackers to bypass the firewall rules."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:zonelabs:zonealarm:*:*:*:*:*:*:*:*","versionEndIncluding":"2.2.10","matchCriteriaId":"90AB2A1E-E48F-478B-91A3-0F37DD4F152C"}]}]}],"references":[{"url":"http://www.osvdb.org/1294","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1137","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000421044123.2353.qmail%40securityfocus.com","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1294","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1137","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000421044123.2353.qmail%40securityfocus.com","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0324","sourceIdentifier":"cve@mitre.org","published":"2000-04-25T04:00:00.000","lastModified":"2026-06-16T21:51:28.727","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"pcAnywhere 8.x and 9.0 allows remote attackers to cause a denial of service via a TCP SYN scan, e.g. by nmap."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:symantec:pcanywhere:8.0.1:*:*:*:*:*:*:*","matchCriteriaId":"B543CCFB-954B-4CCF-8BB7-E64DAFA0C1F9"},{"vulnerable":true,"criteria":"cpe:2.3:a:symantec:pcanywhere:8.0.2:*:*:*:*:*:*:*","matchCriteriaId":"09E5DA00-5FDC-42DE-955B-E977E62A2B69"},{"vulnerable":true,"criteria":"cpe:2.3:a:symantec:pcanywhere:9.0:*:*:*:*:*:*:*","matchCriteriaId":"CB0C7336-52DC-4E0D-9F6F-9B401B0A93EB"},{"vulnerable":true,"criteria":"cpe:2.3:a:symantec:pcanywhere:9.2:*:*:*:*:*:*:*","matchCriteriaId":"DFDF9CE6-93A7-49EC-B6B5-428C7517E902"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2001-02/0201.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2001-02/0258.html","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/4347.php","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1301","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1150","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.3.96.1000425150157.13567A-100000%40sword.damocles.com","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2001-02/0201.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2001-02/0258.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.iss.net/security_center/static/4347.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1301","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1150","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.3.96.1000425150157.13567A-100000%40sword.damocles.com","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0326","sourceIdentifier":"cve@mitre.org","published":"2000-04-25T04:00:00.000","lastModified":"2026-06-16T21:51:28.997","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Meeting Maker uses weak encryption (a polyalphabetic substitution cipher) for passwords, which allows remote attackers to sniff and decrypt passwords for Meeting Maker accounts."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:on_technology:meeting_maker:1.0:*:*:*:*:*:*:*","matchCriteriaId":"39128C71-4023-4E97-974E-B6B1AD71E5F2"},{"vulnerable":true,"criteria":"cpe:2.3:a:on_technology:meeting_maker:2.0:*:*:*:*:*:*:*","matchCriteriaId":"6DBC91CD-6D87-446A-A872-6860DE947C5D"},{"vulnerable":true,"criteria":"cpe:2.3:a:on_technology:meeting_maker:3.0:*:*:*:*:*:*:*","matchCriteriaId":"18D9F60D-1382-498B-832E-C5F07DE6AD0C"},{"vulnerable":true,"criteria":"cpe:2.3:a:on_technology:meeting_maker:4.0:*:*:*:*:*:*:*","matchCriteriaId":"9A79A030-A4E3-40A4-A7CE-11263D61C94D"},{"vulnerable":true,"criteria":"cpe:2.3:a:on_technology:meeting_maker:5.0:*:*:*:*:*:*:*","matchCriteriaId":"6C0C323E-8071-4B3C-98AF-1C0A3175CC3C"},{"vulnerable":true,"criteria":"cpe:2.3:a:on_technology:meeting_maker:6.0:*:*:*:*:*:*:*","matchCriteriaId":"A1D6D755-ED32-4BF1-A4BF-08BF4A230A30"}]}]}],"references":[{"url":"http://support.on.com/support/mmxp.nsf/31af51e08bcc93eb852565a90056138b/11af70407a16b165852568c50056a952?OpenDocument","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1151","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://support.on.com/support/mmxp.nsf/31af51e08bcc93eb852565a90056138b/11af70407a16b165852568c50056a952?OpenDocument","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1151","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0249","sourceIdentifier":"cve@mitre.org","published":"2000-04-26T04:00:00.000","lastModified":"2026-06-16T21:51:19.180","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The AIX Fast Response Cache Accelerator (FRCA) allows local users to modify arbitrary files via the configuration capability in the frcactrl program."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3:*:*:*:*:*:*:*","matchCriteriaId":"11ACD012-F05F-45CD-A170-96CBAA42FFE4"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.1:*:*:*:*:*:*:*","matchCriteriaId":"55919E74-09E7-44BA-9941-D1B69BB1692F"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.2:*:*:*:*:*:*:*","matchCriteriaId":"45F3C5D8-8BC3-44EB-917A-D0BA051D3D9D"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1152","source":"cve@mitre.org"},{"url":"http://xforce.iss.net/alerts/advise47.php3","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1152","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://xforce.iss.net/alerts/advise47.php3","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0380","sourceIdentifier":"cve@mitre.org","published":"2000-04-26T04:00:00.000","lastModified":"2026-06-16T21:51:35.753","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The IOS HTTP service in Cisco routers and switches running IOS 11.1 through 12.1 allows remote attackers to cause a denial of service by requesting a URL that contains a %% string."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:N/I:N/A:C","baseScore":7.1,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":8.6,"impactScore":6.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-20"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.1:*:*:*:*:*:*:*","matchCriteriaId":"82B6315D-7BEF-419F-9B93-3CF669E986D1"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.2:*:*:*:*:*:*:*","matchCriteriaId":"E8026B11-6144-467F-8094-F4F73CD37526"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.2\\(4\\)f1:*:*:*:*:*:*:*","matchCriteriaId":"17DE2319-19D9-4C02-80B4-0A6AAD853867"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.2\\(8\\):*:*:*:*:*:*:*","matchCriteriaId":"82BFEABB-6E90-4A24-BBE3-2BDB524028A0"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.2\\(8\\)p:*:*:*:*:*:*:*","matchCriteriaId":"F169E322-3D72-4F86-BD5F-74589E5DD823"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.2\\(9\\)p:*:*:*:*:*:*:*","matchCriteriaId":"047F9781-38B8-488C-B999-A3CA6BDB639C"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.2\\(9\\)xa:*:*:*:*:*:*:*","matchCriteriaId":"3E3586C0-64AF-4584-8F56-7E0756B4A521"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.2\\(10\\):*:*:*:*:*:*:*","matchCriteriaId":"9B784C9F-79EE-4D08-9D03-985EC7E378FE"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.2\\(10\\)bc:*:*:*:*:*:*:*","matchCriteriaId":"FFBA8825-442E-4CAD-A9B2-4DD8546F35F9"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.2\\(17\\):*:*:*:*:*:*:*","matchCriteriaId":"F106D24F-7EDD-4A52-9A3A-F25E6EEC1870"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.2p:*:*:*:*:*:*:*","matchCriteriaId":"0DC1411B-4E7E-4F57-B025-9FE27B09C7AC"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.3:*:*:*:*:*:*:*","matchCriteriaId":"33CCFFC6-9D26-4C39-AF76-0B8FCDE743CF"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.3\\(1\\):*:*:*:*:*:*:*","matchCriteriaId":"2A6F8329-15C7-4FED-A61D-5AF4F3A33976"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.3\\(1\\)ed:*:*:*:*:*:*:*","matchCriteriaId":"CD13732A-DAE0-4D5B-9DAC-6D2CF391220D"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.3\\(1\\)t:*:*:*:*:*:*:*","matchCriteriaId":"A53DE80A-5865-4514-BE14-BA5992EE7BDA"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.3t:*:*:*:*:*:*:*","matchCriteriaId":"655BB9C1-BA90-452E-A9C8-9B1E15B99650"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0:*:*:*:*:*:*:*","matchCriteriaId":"8F86F790-6247-42F2-9487-3D60A2842F52"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(1\\)w:*:*:*:*:*:*:*","matchCriteriaId":"53D87AC5-0F63-4AE8-AC05-FCEC98D18BDC"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(1\\)xa3:*:*:*:*:*:*:*","matchCriteriaId":"AE210B04-7ECD-419C-9258-0F619A353A8A"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(1\\)xb:*:*:*:*:*:*:*","matchCriteriaId":"3B467741-B277-4128-9804-E13ED23FD310"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(1\\)xe:*:*:*:*:*:*:*","matchCriteriaId":"5E7EE856-9CE7-49FD-8ADC-05C580CD54A7"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(2\\):*:*:*:*:*:*:*","matchCriteriaId":"77DDC99D-8B73-452C-94A7-A9A48F2F379B"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(2\\)xc:*:*:*:*:*:*:*","matchCriteriaId":"5145C737-2D5E-4BD4-BA9F-66ED2887A4DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(2\\)xd:*:*:*:*:*:*:*","matchCriteriaId":"C48466C4-5A1E-4C71-8822-32D387B36B8B"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(2\\)xf:*:*:*:*:*:*:*","matchCriteriaId":"08E23131-D207-4D98-96D5-2B71FF792604"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(2\\)xg:*:*:*:*:*:*:*","matchCriteriaId":"1BFB5A8C-BF1B-4111-9E6A-F8D8FE1476AA"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(3\\)t2:*:*:*:*:*:*:*","matchCriteriaId":"E7109585-1433-4940-B7C9-C561DEAF1498"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(4\\):*:*:*:*:*:*:*","matchCriteriaId":"1A0D82E1-CCF7-429B-A637-479E839EAE3C"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(4\\)s:*:*:*:*:*:*:*","matchCriteriaId":"E9D1F7A6-6DB3-41D1-BD87-DE1898EC91A9"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(4\\)t:*:*:*:*:*:*:*","matchCriteriaId":"4F1B2747-4A9C-44FC-BBA8-39E338B30417"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(5\\):*:*:*:*:*:*:*","matchCriteriaId":"D5BB7513-C232-4B4F-BE68-972B05086ABD"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(5\\)t1:*:*:*:*:*:*:*","matchCriteriaId":"EA263B60-E7C0-4374-96DF-6E4EB9C16743"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(6\\):*:*:*:*:*:*:*","matchCriteriaId":"ECCE69A3-41C6-4893-86D4-7F264352C8A9"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(7\\)t:*:*:*:*:*:*:*","matchCriteriaId":"FA654CE6-82C3-43D0-BAED-70E88A740BF1"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(8\\):*:*:*:*:*:*:*","matchCriteriaId":"387FCCC1-B05D-4493-9F05-BAC5A0E57F15"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(9\\)s:*:*:*:*:*:*:*","matchCriteriaId":"C4EB360F-7BAE-4BB5-BB55-E3FFC567A1E4"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0db:*:*:*:*:*:*:*","matchCriteriaId":"4F7CF26C-AEAA-42D7-8136-56E77E73DCB2"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0s:*:*:*:*:*:*:*","matchCriteriaId":"2C398460-3F38-4AA7-A4B1-FD8A01588DB5"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0t:*:*:*:*:*:*:*","matchCriteriaId":"CA7F94E8-86FC-456B-A7BB-57953F67F754"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0261.html","source":"cve@mitre.org"},{"url":"http://www.cisco.com/warp/public/707/ioshttpserver-pub.shtml","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1302","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1154","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0261.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.cisco.com/warp/public/707/ioshttpserver-pub.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1302","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1154","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0706","sourceIdentifier":"cve@mitre.org","published":"2000-04-27T04:00:00.000","lastModified":"2026-06-16T21:48:53.300","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Linux xmonisdn package allows local users to gain root privileges by modifying the IFS or PATH environmental variables."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:isc:inn:1.5.1:*:*:*:*:*:*:*","matchCriteriaId":"5658CF74-5AF1-4161-BF4C-6A394F2AA164"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:inn:1.7:*:*:*:*:*:*:*","matchCriteriaId":"62017AA2-B4DB-44AA-806C-6CFEC839E297"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:inn:1.7.2:*:*:*:*:*:*:*","matchCriteriaId":"E4F9A712-AF96-4A04-B547-F29094ACFE9B"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:inn:2.0:*:*:*:*:*:*:*","matchCriteriaId":"A2480B45-A626-49F5-A48B-BA6DFAA4411B"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:inn:2.1:*:*:*:*:*:*:*","matchCriteriaId":"21969A37-9F10-4D70-AC73-F3DB4D169AEB"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:inn:2.2:*:*:*:*:*:*:*","matchCriteriaId":"94FD2948-EF52-464B-A605-DA3806037762"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:4.1:*:*:*:*:*:*:*","matchCriteriaId":"D8211154-6685-4FF0-B3ED-43A5E5763A10"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:4.2:*:*:*:*:*:*:*","matchCriteriaId":"F299301C-6BFC-436C-9CFD-2E291D3702AE"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.0:*:*:*:*:*:*:*","matchCriteriaId":"4BF54738-3C44-4FD4-AA9C-CAB2E86B1DC1"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.1:*:*:*:*:*:*:*","matchCriteriaId":"4EF44364-0F57-4B74-81B0-501EA6B58501"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:i386:*:*:*:*:*","matchCriteriaId":"363AB7DB-A8BA-4D58-97C4-1DF1F0F43E07"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:i386:*:*:*:*:*","matchCriteriaId":"89F65C9D-BD68-4A86-BFDC-E7CE76F13948"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/583","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/583","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0429","sourceIdentifier":"cve@mitre.org","published":"2000-04-27T04:00:00.000","lastModified":"2026-06-16T21:51:42.837","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A backdoor password in Cart32 3.0 and earlier allows remote attackers to execute arbitrary commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mcmurtrey_whitaker_and_associates:cart32:2.6:*:*:*:*:*:*:*","matchCriteriaId":"D1B408F8-482A-4C1C-AE51-89E6E78F8F5B"},{"vulnerable":true,"criteria":"cpe:2.3:a:mcmurtrey_whitaker_and_associates:cart32:3.0:*:*:*:*:*:*:*","matchCriteriaId":"6CF765E6-54DC-42DE-A853-2170F4F8A91E"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=95686068203138&w=2","source":"cve@mitre.org"},{"url":"http://www.cart32.com/kbshow.asp?article=c048","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=95686068203138&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.cart32.com/kbshow.asp?article=c048","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0342","sourceIdentifier":"cve@mitre.org","published":"2000-04-28T04:00:00.000","lastModified":"2026-06-16T21:51:31.033","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Eudora 4.x allows remote attackers to bypass the user warning for executable attachments such as .exe, .com, and .bat by using a .lnk file that refers to the attachment, aka \"Stealth Attachment.\""}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","baseScore":7.5,"baseSeverity":"HIGH","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"HIGH","availabilityImpact":"NONE"},"exploitabilityScore":3.9,"impactScore":3.6}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-59"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:eudora:4.0:*:*:*:*:*:*:*","matchCriteriaId":"812A1AE1-56DE-4AA7-9AE8-FE36089189F5"}]}]}],"references":[{"url":"http://news.cnet.com/news/0-1005-200-1773077.html?tag=st.ne.fd.lthd.1005-200-1773077","source":"cve@mitre.org","tags":["Not Applicable","Vendor Advisory"]},{"url":"http://www.peacefire.org/security/stealthattach/explanation.html","source":"cve@mitre.org","tags":["Exploit"]},{"url":"http://www.securityfocus.com/bid/1157","source":"cve@mitre.org","tags":["Broken Link","Third Party Advisory","VDB Entry"]},{"url":"http://news.cnet.com/news/0-1005-200-1773077.html?tag=st.ne.fd.lthd.1005-200-1773077","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Not Applicable","Vendor Advisory"]},{"url":"http://www.peacefire.org/security/stealthattach/explanation.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]},{"url":"http://www.securityfocus.com/bid/1157","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Third Party Advisory","VDB Entry"]}]}},{"cve":{"id":"CVE-2000-0340","sourceIdentifier":"cve@mitre.org","published":"2000-04-29T04:00:00.000","lastModified":"2026-06-16T21:51:30.770","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Gnomelib in SuSE Linux 6.3 allows local users to execute arbitrary commands via the DISPLAY environmental variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.3:*:*:*:*:*:*:*","matchCriteriaId":"0AD0FF64-05DF-48C2-9BB5-FD993121FB2E"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.4:*:*:*:*:*:*:*","matchCriteriaId":"7786607A-362E-4817-A17E-C76D6A1F737D"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1155","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=00042902575201.09597%40wintermute-pub","source":"cve@mitre.org"},{"url":"http://www.suse.com/us/support/download/updates/axp_63.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1155","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=00042902575201.09597%40wintermute-pub","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.suse.com/us/support/download/updates/axp_63.html","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0427","sourceIdentifier":"cve@mitre.org","published":"2000-05-01T04:00:00.000","lastModified":"2026-06-16T21:48:22.377","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Eudora 4.1 allows remote attackers to perform a denial of service by sending attachments with long file names."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:eudora:4.2:*:*:*:*:*:*:*","matchCriteriaId":"A2A8B413-CD80-4D91-BE69-9063EA60345B"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:eudora:4.3:*:*:*:*:*:*:*","matchCriteriaId":"A9F8ADFF-D7B7-4907-B5DB-3920BC6EFB7B"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:eudora_light:3.0:*:*:*:*:*:*:*","matchCriteriaId":"7ACF3406-FA48-412E-A245-2FF225C74893"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:eudora_pro:1.00:*:*:*:*:*:*:*","matchCriteriaId":"31CC9842-AAC0-47B7-B9D5-2411ADBFEB39"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0427","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0427","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0341","sourceIdentifier":"cve@mitre.org","published":"2000-05-01T04:00:00.000","lastModified":"2026-06-16T21:51:30.910","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ATRIUM Cassandra NNTP Server 1.10 allows remote attackers to cause a denial of service via a long login name."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:atrium_software:cassandra_nntp_server:1.10:*:*:*:*:*:*:*","matchCriteriaId":"9819E684-0CE8-4AE9-A8A1-AF97F6C42750"}]}]}],"references":[{"url":"http://marc.info/?l=ntbugtraq&m=95736106504870&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1156","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://marc.info/?l=ntbugtraq&m=95736106504870&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1156","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0344","sourceIdentifier":"cve@mitre.org","published":"2000-05-01T04:00:00.000","lastModified":"2026-06-16T21:51:31.287","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The knfsd NFS server in Linux kernel 2.2.x allows remote attackers to cause a denial of service via a negative size value."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.1:*:*:*:*:*:*:*","matchCriteriaId":"5E4A2912-12AC-4DF1-8023-A0B7DBE9A866"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.2.0:*:*:*:*:*:*:*","matchCriteriaId":"146F7A77-A950-4CAD-BDA9-C239696F569D"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.3.0:*:*:*:*:*:*:*","matchCriteriaId":"BC74D465-3256-4D87-8F47-C4D7CEA6E2D4"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1160","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.21.0005012042550.6419-100000%40ferret.lmh.ox.ac.uk","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1160","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.21.0005012042550.6419-100000%40ferret.lmh.ox.ac.uk","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0401","sourceIdentifier":"cve@mitre.org","published":"2000-05-01T04:00:00.000","lastModified":"2026-06-16T21:51:38.337","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflows in redirect.exe and changepw.exe in PDGSoft shopping cart allow remote attackers to execute arbitrary commands via a long query string."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:pdgsoft:pdg_shopping_cart:1.5:*:*:*:*:*:*:*","matchCriteriaId":"90887F5A-23E7-4A0B-9E5A-811878D09A82"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=95928319715983&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=95928667119963&w=2","source":"cve@mitre.org"},{"url":"http://www.pdgsoft.com/Security/security2.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1256","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=95928319715983&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=95928667119963&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.pdgsoft.com/Security/security2.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1256","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0440","sourceIdentifier":"cve@mitre.org","published":"2000-05-01T04:00:00.000","lastModified":"2026-06-16T21:51:44.310","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"NetBSD 1.4.2 and earlier allows remote attackers to cause a denial of service by sending a packet with an unaligned IP timestamp option."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.4:*:*:*:*:*:*:*","matchCriteriaId":"B982342C-1981-4C55-8044-AFE4D87623DF"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.0:*:*:*:*:*:*:*","matchCriteriaId":"D0A585A1-FF82-418F-90F8-072458DB7816"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:5.0:*:*:*:*:*:*:*","matchCriteriaId":"61EBA52A-2D8B-4FB5-866E-AE67CE1842E7"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.1:*:*:*:*:*:*:*","matchCriteriaId":"1C288A88-11C6-429E-A109-0395D0989264"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.2:*:*:*:*:*:*:*","matchCriteriaId":"516C6D9A-7483-4E36-A2E0-42698161AD31"}]}]}],"references":[{"url":"ftp://ftp.netbsd.org/pub/NetBSD/misc/security/advisories/NetBSD-SA2000-002.txt.asc","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0088.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1173","source":"cve@mitre.org"},{"url":"ftp://ftp.netbsd.org/pub/NetBSD/misc/security/advisories/NetBSD-SA2000-002.txt.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0088.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1173","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0447","sourceIdentifier":"cve@mitre.org","published":"2000-05-01T04:00:00.000","lastModified":"2026-06-16T21:51:45.190","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in WebShield SMTP 4.5.44 allows remote attackers to execute arbitrary commands via a long configuration parameter to the WebShield remote management service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:network_associates:webshield:4.5.44:*:*:*:*:*:*:*","matchCriteriaId":"D1D831D5-5266-4554-8CB1-731692ACBA9F"}]}]}],"references":[{"url":"http://www.osvdb.org/327","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1254","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=6C740781F92BD411831F0090273A8AB806FD4A%40exchange.servers.delphis.net","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/327","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1254","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=6C740781F92BD411831F0090273A8AB806FD4A%40exchange.servers.delphis.net","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0448","sourceIdentifier":"cve@mitre.org","published":"2000-05-01T04:00:00.000","lastModified":"2026-06-16T21:51:45.323","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The WebShield SMTP Management Tool version 4.5.44 does not properly restrict access to the management port when an IP address does not resolve to a hostname, which allows remote attackers to access the configuration via the GET_CONFIG command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:network_associates:webshield:4.5.44:*:*:*:*:*:*:*","matchCriteriaId":"D1D831D5-5266-4554-8CB1-731692ACBA9F"}]}]}],"references":[{"url":"http://www.osvdb.org/326","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1253","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=6C740781F92BD411831F0090273A8AB806FD4A%40exchange.servers.delphis.net","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/326","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1253","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=6C740781F92BD411831F0090273A8AB806FD4A%40exchange.servers.delphis.net","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0449","sourceIdentifier":"cve@mitre.org","published":"2000-05-01T04:00:00.000","lastModified":"2026-06-16T21:51:45.473","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Omnis Studio 2.4 uses weak encryption (trivial encoding) for encrypting database fields."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:omnis:studio:2.4:*:*:*:*:*:*:*","matchCriteriaId":"02AAE5E5-C466-46FC-B5D6-9D25D5877741"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0311.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1255","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0311.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1255","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0138","sourceIdentifier":"cve@mitre.org","published":"2000-05-02T04:00:00.000","lastModified":"2026-06-16T21:51:04.757","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A system has a distributed denial of service (DDOS) attack master, agent, or zombie installed, such as (1) Trinoo, (2) Tribe Flood Network (TFN), (3) Tribe Flood Network 2000 (TFN2K), (4) stacheldraht, (5) mstream, or (6) shaft."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=95715370208598&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=95722093124322&w=2","source":"cve@mitre.org"},{"url":"http://xforce.iss.net/alerts/advise48.php3","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=95715370208598&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=95722093124322&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://xforce.iss.net/alerts/advise48.php3","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0293","sourceIdentifier":"cve@mitre.org","published":"2000-05-02T04:00:00.000","lastModified":"2026-06-16T21:51:24.927","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"aaa_base in SuSE Linux 6.3, and cron.daily in earlier versions, allow local users to delete arbitrary files by creating files whose names include spaces, which are then incorrectly interpreted by aaa_base when it deletes expired files from the /tmp directory."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"F163E145-09F7-4BE2-9B46-5B6713070BAB"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"124E1802-7984-45ED-8A92-393FC20662FD"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.1:alpha:*:*:*:*:*:*","matchCriteriaId":"C7F08806-9458-439A-8EAE-2553122262ED"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.2:*:*:*:*:*:*:*","matchCriteriaId":"1B67020A-6942-4478-B501-764147C4970D"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.3:*:*:*:*:*:*:*","matchCriteriaId":"0AD0FF64-05DF-48C2-9BB5-FD993121FB2E"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.3:*:ppc:*:*:*:*:*","matchCriteriaId":"E74E0A28-7C78-4160-8BCF-99605285C0EE"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.3:alpha:*:*:*:*:*:*","matchCriteriaId":"76159C25-0760-47CB-AFCE-28306CDEA830"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.4:*:*:*:*:*:*:*","matchCriteriaId":"7786607A-362E-4817-A17E-C76D6A1F737D"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1130","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1130","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0343","sourceIdentifier":"cve@mitre.org","published":"2000-05-02T04:00:00.000","lastModified":"2026-06-16T21:51:31.160","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Sniffit 0.3.x with the -L logging option enabled allows remote attackers to execute arbitrary commands via a long MAIL FROM mail header."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:brecht_claerhout:sniffit:0.3.6hip:*:*:*:*:*:*:*","matchCriteriaId":"DE24A14F-9755-441A-9364-E8354D840CEA"},{"vulnerable":true,"criteria":"cpe:2.3:a:brecht_claerhout:sniffit:0.3.7beta:*:*:*:*:*:*:*","matchCriteriaId":"A9AF026F-809E-44DF-8839-4CBD78F5B600"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1158","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200005021736.TAA01991%40ALuSSi","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1158","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200005021736.TAA01991%40ALuSSi","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0346","sourceIdentifier":"cve@mitre.org","published":"2000-05-02T04:00:00.000","lastModified":"2026-06-16T21:51:31.557","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"AppleShare IP 6.1 and later allows a remote attacker to read potentially sensitive information via an invalid range request to the web server."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:apple:appleshare:6.1:*:*:ja:*:*:*:*","matchCriteriaId":"6E94AA87-3ECE-4C83-9708-4D641C148460"},{"vulnerable":true,"criteria":"cpe:2.3:a:apple:appleshare:6.2:*:*:ja:*:*:*:*","matchCriteriaId":"6D2DC8A4-1486-4A59-B914-E23E24D506EA"},{"vulnerable":true,"criteria":"cpe:2.3:a:apple:appleshare:6.3:*:*:ja:*:*:*:*","matchCriteriaId":"5051B185-32D5-42A2-8E42-1534470A4C3D"}]}]}],"references":[{"url":"http://asu.info.apple.com/swupdates.nsf/artnum/n11670","source":"cve@mitre.org","tags":["Broken Link"]},{"url":"http://www.securityfocus.com/bid/1162","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000502133240.21807.qmail%40securityfocus.com","source":"cve@mitre.org"},{"url":"http://asu.info.apple.com/swupdates.nsf/artnum/n11670","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"]},{"url":"http://www.securityfocus.com/bid/1162","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000502133240.21807.qmail%40securityfocus.com","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0347","sourceIdentifier":"cve@mitre.org","published":"2000-05-02T04:00:00.000","lastModified":"2026-06-16T21:51:31.690","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Windows 95 and Windows 98 allow a remote attacker to cause a denial of service via a NetBIOS session request packet with a NULL source name."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_95:*:*:*:*:*:*:*:*","matchCriteriaId":"82F7322B-8022-4D0B-ADB3-D0F5B6F20309"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98:*:gold:*:*:*:*:*:*","matchCriteriaId":"2D3B703C-79B2-4FA2-9E12-713AB977A880"}]}]}],"references":[{"url":"http://marc.info/?l=ntbugtraq&m=95737580922397&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1163","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=95737580922397&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1163","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0385","sourceIdentifier":"cve@mitre.org","published":"2000-05-02T04:00:00.000","lastModified":"2026-06-16T21:51:36.373","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"FileMaker Pro 5 Web Companion allows remote attackers to bypass Field-Level database security restrictions via the XML publishing or email capabilities."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:filemaker:filemaker:5.0:*:pro:*:*:*:*:*","matchCriteriaId":"C5E304BE-7628-463F-B27B-C4F7A6398669"}]}]}],"references":[{"url":"http://www.blueworld.com/blueworld/news/05.01.00-FM5_Security.html","source":"cve@mitre.org"},{"url":"http://www.filemaker.com/support/webcompanion.html","source":"cve@mitre.org"},{"url":"http://www.blueworld.com/blueworld/news/05.01.00-FM5_Security.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.filemaker.com/support/webcompanion.html","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0386","sourceIdentifier":"cve@mitre.org","published":"2000-05-02T04:00:00.000","lastModified":"2026-06-16T21:51:36.493","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"FileMaker Pro 5 Web Companion allows remote attackers to send anonymous or forged email."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:filemaker:filemaker:5.0:*:pro:*:*:*:*:*","matchCriteriaId":"C5E304BE-7628-463F-B27B-C4F7A6398669"}]}]}],"references":[{"url":"http://www.blueworld.com/blueworld/news/05.01.00-FM5_Security.html","source":"cve@mitre.org"},{"url":"http://www.filemaker.com/support/webcompanion.html","source":"cve@mitre.org"},{"url":"http://www.blueworld.com/blueworld/news/05.01.00-FM5_Security.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.filemaker.com/support/webcompanion.html","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0433","sourceIdentifier":"cve@mitre.org","published":"2000-05-02T04:00:00.000","lastModified":"2026-06-16T21:51:43.377","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The SuSE aaa_base package installs some system accounts with home directories set to /tmp, which allows local users to gain privileges to those accounts by creating standard user startup scripts such as profiles."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"124E1802-7984-45ED-8A92-393FC20662FD"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.1:alpha:*:*:*:*:*:*","matchCriteriaId":"C7F08806-9458-439A-8EAE-2553122262ED"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.2:*:*:*:*:*:*:*","matchCriteriaId":"1B67020A-6942-4478-B501-764147C4970D"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.3:*:*:*:*:*:*:*","matchCriteriaId":"0AD0FF64-05DF-48C2-9BB5-FD993121FB2E"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.3:*:ppc:*:*:*:*:*","matchCriteriaId":"E74E0A28-7C78-4160-8BCF-99605285C0EE"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.3:alpha:*:*:*:*:*:*","matchCriteriaId":"76159C25-0760-47CB-AFCE-28306CDEA830"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.4:*:*:*:*:*:*:*","matchCriteriaId":"7786607A-362E-4817-A17E-C76D6A1F737D"}]}]}],"references":[{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_47.html","source":"cve@mitre.org"},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_47.html","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0303","sourceIdentifier":"cve@mitre.org","published":"2000-05-03T04:00:00.000","lastModified":"2026-06-16T21:51:26.143","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Quake3 Arena allows malicious server operators to read or modify files on a client via a dot dot (..) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:N","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:id_software:quake_3_arena:1.16n:*:*:*:*:*:*:*","matchCriteriaId":"61EE121C-3B3C-4AD3-8B23-4401A97979A6"}]}]}],"references":[{"url":"http://www.osvdb.org/7531","source":"cve@mitre.org"},{"url":"http://www.quake3arena.com/news/index.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1169","source":"cve@mitre.org"},{"url":"http://xforce.iss.net/alerts/advise50.php3","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/7531","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.quake3arena.com/news/index.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1169","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://xforce.iss.net/alerts/advise50.php3","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0332","sourceIdentifier":"cve@mitre.org","published":"2000-05-03T04:00:00.000","lastModified":"2026-06-16T21:51:29.747","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"UltraBoard.pl or UltraBoard.cgi CGI scripts in UltraBoard 1.6 allows remote attackers to read arbitrary files via a pathname string that includes a dot dot (..) and ends with a null byte."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ultrascripts:ultraboard:1.6:*:*:*:*:*:*:*","matchCriteriaId":"FE904F8B-7BC2-4E57-B528-327A45AE24CA"}]}]}],"references":[{"url":"http://www.osvdb.org/1309","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/4065","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1164","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000503091316.99073.qmail%40hotmail.com","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1309","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/4065","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1164","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000503091316.99073.qmail%40hotmail.com","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0335","sourceIdentifier":"cve@mitre.org","published":"2000-05-03T04:00:00.000","lastModified":"2026-06-16T21:51:30.143","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The resolver in glibc 2.1.3 uses predictable IDs, which allows a local attacker to spoof DNS query results."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:glibc:2.0:*:*:*:*:*:*:*","matchCriteriaId":"E5C0577C-6BC7-418F-B2C5-B74800D43418"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:glibc:2.1:*:*:*:*:*:*:*","matchCriteriaId":"4E2A0F12-FD00-40B9-86AD-7D082385E5DB"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:glibc:2.1.1:*:*:*:*:*:*:*","matchCriteriaId":"8ED8F0E8-A969-4F7F-A100-662F4A5426FD"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:glibc:2.1.2:*:*:*:*:*:*:*","matchCriteriaId":"AE582B8F-4E31-4D0F-B2F9-AC83C855F751"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:glibc:2.1.3:*:*:*:*:*:*:*","matchCriteriaId":"DB56D9C9-13B3-418C-B06C-0997E165F1C7"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2:*:*:*:*:*:*:*","matchCriteriaId":"52D1DAE0-DB4D-475F-B11B-29AA3A00DB60"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.1:*:*:*:*:*:*:*","matchCriteriaId":"93BB48F5-A635-402E-AE7F-B8AB90ED0C70"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.2:*:*:*:*:*:*:*","matchCriteriaId":"C5FE281A-610F-42CA-B741-53F2D70A3F38"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1166","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1166","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0345","sourceIdentifier":"cve@mitre.org","published":"2000-05-03T04:00:00.000","lastModified":"2026-06-16T21:51:31.413","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The on-line help system options in Cisco routers allows non-privileged users without \"enabled\" access to obtain sensitive information via the show command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:9.14:*:*:*:*:*:*:*","matchCriteriaId":"327028C0-D9F3-46A3-B2CC-4630FE18C43E"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.1:*:*:*:*:*:*:*","matchCriteriaId":"82B6315D-7BEF-419F-9B93-3CF669E986D1"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.1\\(13\\):*:*:*:*:*:*:*","matchCriteriaId":"B36FF40E-EF0A-4149-A35D-8D765EBFFAE2"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.1\\(13\\)aa:*:*:*:*:*:*:*","matchCriteriaId":"51382DA5-4EBC-44DC-951F-32FC7AA719A7"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.1\\(13\\)ca:*:*:*:*:*:*:*","matchCriteriaId":"5BA2A1FD-11A3-403A-B5A6-0220CA18EC99"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.1\\(13\\)ia:*:*:*:*:*:*:*","matchCriteriaId":"3493F361-0C8A-4B66-AF6B-926E2D66BBEE"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.1\\(15\\)ca:*:*:*:*:*:*:*","matchCriteriaId":"841513AE-7521-4670-8438-AE5EB70F3A48"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.1\\(16\\):*:*:*:*:*:*:*","matchCriteriaId":"FF3E8F79-6177-453C-99B5-BC9BC7670869"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.1\\(16\\)aa:*:*:*:*:*:*:*","matchCriteriaId":"4B244655-A6A5-40D0-A0D1-34C814DA9389"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.1\\(16\\)ia:*:*:*:*:*:*:*","matchCriteriaId":"CA064273-1A6E-4303-BAAB-F585691EF9BA"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.1\\(17\\)cc:*:*:*:*:*:*:*","matchCriteriaId":"0A8158E2-0DFE-479B-B085-9775FF700C85"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.1\\(17\\)ct:*:*:*:*:*:*:*","matchCriteriaId":"29CA3070-B75D-4E56-A338-E10F5509394E"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.2:*:*:*:*:*:*:*","matchCriteriaId":"E8026B11-6144-467F-8094-F4F73CD37526"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.2\\(4\\)f1:*:*:*:*:*:*:*","matchCriteriaId":"17DE2319-19D9-4C02-80B4-0A6AAD853867"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.2\\(8\\):*:*:*:*:*:*:*","matchCriteriaId":"82BFEABB-6E90-4A24-BBE3-2BDB524028A0"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.2\\(8\\)p:*:*:*:*:*:*:*","matchCriteriaId":"F169E322-3D72-4F86-BD5F-74589E5DD823"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.2\\(8\\)sa1:*:*:*:*:*:*:*","matchCriteriaId":"DBA5D334-6DB8-44B0-92EF-8694BBE79A9D"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.2\\(8\\)sa3:*:*:*:*:*:*:*","matchCriteriaId":"099CFED1-0E2F-46B2-8136-BFA146EB9A00"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.2\\(8\\)sa5:*:*:*:*:*:*:*","matchCriteriaId":"754F06BF-EB7D-4DAD-BF5D-7DF2619A7499"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.2\\(9\\)p:*:*:*:*:*:*:*","matchCriteriaId":"047F9781-38B8-488C-B999-A3CA6BDB639C"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.2\\(9\\)xa:*:*:*:*:*:*:*","matchCriteriaId":"3E3586C0-64AF-4584-8F56-7E0756B4A521"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.2\\(10\\):*:*:*:*:*:*:*","matchCriteriaId":"9B784C9F-79EE-4D08-9D03-985EC7E378FE"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.2\\(10\\)bc:*:*:*:*:*:*:*","matchCriteriaId":"FFBA8825-442E-4CAD-A9B2-4DD8546F35F9"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.2\\(17\\):*:*:*:*:*:*:*","matchCriteriaId":"F106D24F-7EDD-4A52-9A3A-F25E6EEC1870"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.2p:*:*:*:*:*:*:*","matchCriteriaId":"0DC1411B-4E7E-4F57-B025-9FE27B09C7AC"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0:*:*:*:*:*:*:*","matchCriteriaId":"8F86F790-6247-42F2-9487-3D60A2842F52"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(1\\)w:*:*:*:*:*:*:*","matchCriteriaId":"53D87AC5-0F63-4AE8-AC05-FCEC98D18BDC"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(1\\)xa3:*:*:*:*:*:*:*","matchCriteriaId":"AE210B04-7ECD-419C-9258-0F619A353A8A"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(1\\)xb:*:*:*:*:*:*:*","matchCriteriaId":"3B467741-B277-4128-9804-E13ED23FD310"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(1\\)xe:*:*:*:*:*:*:*","matchCriteriaId":"5E7EE856-9CE7-49FD-8ADC-05C580CD54A7"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(2\\):*:*:*:*:*:*:*","matchCriteriaId":"77DDC99D-8B73-452C-94A7-A9A48F2F379B"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(2\\)xc:*:*:*:*:*:*:*","matchCriteriaId":"5145C737-2D5E-4BD4-BA9F-66ED2887A4DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(2\\)xd:*:*:*:*:*:*:*","matchCriteriaId":"C48466C4-5A1E-4C71-8822-32D387B36B8B"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(2\\)xf:*:*:*:*:*:*:*","matchCriteriaId":"08E23131-D207-4D98-96D5-2B71FF792604"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(2\\)xg:*:*:*:*:*:*:*","matchCriteriaId":"1BFB5A8C-BF1B-4111-9E6A-F8D8FE1476AA"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(3\\)t2:*:*:*:*:*:*:*","matchCriteriaId":"E7109585-1433-4940-B7C9-C561DEAF1498"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(4\\):*:*:*:*:*:*:*","matchCriteriaId":"1A0D82E1-CCF7-429B-A637-479E839EAE3C"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(4\\)s:*:*:*:*:*:*:*","matchCriteriaId":"E9D1F7A6-6DB3-41D1-BD87-DE1898EC91A9"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(4\\)t:*:*:*:*:*:*:*","matchCriteriaId":"4F1B2747-4A9C-44FC-BBA8-39E338B30417"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(5\\):*:*:*:*:*:*:*","matchCriteriaId":"D5BB7513-C232-4B4F-BE68-972B05086ABD"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(5\\)t1:*:*:*:*:*:*:*","matchCriteriaId":"EA263B60-E7C0-4374-96DF-6E4EB9C16743"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(6\\):*:*:*:*:*:*:*","matchCriteriaId":"ECCE69A3-41C6-4893-86D4-7F264352C8A9"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(7\\)t:*:*:*:*:*:*:*","matchCriteriaId":"FA654CE6-82C3-43D0-BAED-70E88A740BF1"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(8\\):*:*:*:*:*:*:*","matchCriteriaId":"387FCCC1-B05D-4493-9F05-BAC5A0E57F15"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(9\\)s:*:*:*:*:*:*:*","matchCriteriaId":"C4EB360F-7BAE-4BB5-BB55-E3FFC567A1E4"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0db:*:*:*:*:*:*:*","matchCriteriaId":"4F7CF26C-AEAA-42D7-8136-56E77E73DCB2"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0s:*:*:*:*:*:*:*","matchCriteriaId":"2C398460-3F38-4AA7-A4B1-FD8A01588DB5"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0t:*:*:*:*:*:*:*","matchCriteriaId":"CA7F94E8-86FC-456B-A7BB-57953F67F754"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:router_2500:*:*:*:*:*:*:*:*","matchCriteriaId":"317EF7FA-B744-487C-AEB6-4516CF03F9B3"},{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:router_2600:*:*:*:*:*:*:*:*","matchCriteriaId":"C3B03AEF-EACD-4B3D-AA1E-EADC344C02BE"},{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:router_3600:*:*:*:*:*:*:*:*","matchCriteriaId":"B0460513-094F-4F99-B0EB-7AA484D21920"},{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:router_4000:*:*:*:*:*:*:*:*","matchCriteriaId":"446980C5-E512-475C-B255-86A8726A67D2"},{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:router_7200:*:*:*:*:*:*:*:*","matchCriteriaId":"637F3047-DF5B-481D-8595-B54B076A5CD7"},{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:router_7500:*:*:*:*:*:*:*:*","matchCriteriaId":"CA7F3C4B-378B-4431-B4AF-09D95354363E"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1161","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000502222246.28423.qmail%40securityfocus.com","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1161","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000502222246.28423.qmail%40securityfocus.com","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0378","sourceIdentifier":"cve@mitre.org","published":"2000-05-03T04:00:00.000","lastModified":"2026-06-16T21:51:35.513","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The pam_console PAM module in Linux systems performs a chown on various devices upon a user login, but an open file descriptor for those devices can be maintained after the user logs out, which allows that user to sniff activity on these devices when subsequent users log in."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"2DFA94D5-0139-490C-8257-0751FE9FBAE4"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"2EC4D3AB-38FA-4D44-AF5C-2DCD15994E76"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:*:*:*:*:*:*","matchCriteriaId":"0633B5A6-7A88-4A96-9462-4C09D124ED36"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0023.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1176","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0023.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1176","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0425","sourceIdentifier":"cve@mitre.org","published":"2000-05-03T04:00:00.000","lastModified":"2026-06-16T21:51:42.320","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the Web Archives component of L-Soft LISTSERV 1.8 allows remote attackers to execute arbitrary commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:lsoft:listserv:1.8:*:*:*:*:*:*:*","matchCriteriaId":"B0D4962F-C7E7-4EE2-880C-0E58D7E6B9D5"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0048.html","source":"cve@mitre.org"},{"url":"http://www.lsoft.com/news/default.asp?item=Advisory0","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1167","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0048.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.lsoft.com/news/default.asp?item=Advisory0","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1167","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0430","sourceIdentifier":"cve@mitre.org","published":"2000-05-03T04:00:00.000","lastModified":"2026-06-16T21:51:42.967","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Cart32 allows remote attackers to access sensitive debugging information by appending /expdate to the URL request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mcmurtrey_whitaker_and_associates:cart32:3.0:*:*:*:*:*:*:*","matchCriteriaId":"6CF765E6-54DC-42DE-A853-2170F4F8A91E"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=95738697301956&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1358","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=95738697301956&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1358","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0414","sourceIdentifier":"cve@mitre.org","published":"2000-05-04T04:00:00.000","lastModified":"2026-06-16T21:51:39.947","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in shutdown command for HP-UX 11.X and 10.X allows allows local users to gain privileges via malformed input variables."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.10:*:*:*:*:*:*:*","matchCriteriaId":"38BFA923-7D80-4F01-AF9F-6F13209948AC"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.20:*:*:*:*:*:*:*","matchCriteriaId":"EDE44C49-172C-4899-8CC8-29AA99A7CD2F"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:11.00:*:*:*:*:*:*:*","matchCriteriaId":"771931F7-9180-4EBD-8627-E1CF17D24647"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:vvos:10.24:*:*:*:*:*:*:*","matchCriteriaId":"D9B7C178-4BE6-4397-A4E2-01375E4CA978"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:vvos:11.04:*:*:*:*:*:*:*","matchCriteriaId":"1D462D6F-EB68-4E31-87FD-D918F5DEF3FB"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0047.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1214","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0047.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1214","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0422","sourceIdentifier":"cve@mitre.org","published":"2000-05-04T04:00:00.000","lastModified":"2026-06-16T21:51:41.950","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Netwin DMailWeb CGI program allows remote attackers to execute arbitrary commands via a long utoken parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netwin:dmail:2.5d:*:*:*:*:*:*:*","matchCriteriaId":"EF456029-C817-4FC5-AFE2-9637219E220C"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=95749276827558&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1171","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=95749276827558&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1171","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0427","sourceIdentifier":"cve@mitre.org","published":"2000-05-04T04:00:00.000","lastModified":"2026-06-16T21:51:42.583","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Aladdin Knowledge Systems eToken device allows attackers with physical access to the device to obtain sensitive information without knowing the PIN of the owner by resetting the PIN in the EEPROM."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:aladdin_knowledge_systems:etoken:3.3.3:*:*:*:*:*:*:*","matchCriteriaId":"2433D9B8-4C1A-4873-9E9A-E640CF34A1DF"}]}]}],"references":[{"url":"http://www.l0pht.com/advisories/etoken-piepa.txt","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/3266","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1170","source":"cve@mitre.org"},{"url":"http://www.l0pht.com/advisories/etoken-piepa.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/3266","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1170","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0428","sourceIdentifier":"cve@mitre.org","published":"2000-05-04T04:00:00.000","lastModified":"2026-06-16T21:51:42.710","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the SMTP gateway for InterScan Virus Wall 3.32 and earlier allows a remote attacker to execute arbitrary commands via a long filename for a uuencoded attachment."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:trend_micro:interscan_viruswall:3.0.1:*:*:*:*:*:*:*","matchCriteriaId":"DEC14336-CD53-44F7-B271-3C98C016295B"},{"vulnerable":true,"criteria":"cpe:2.3:a:trend_micro:interscan_viruswall:3.2.3:*:*:*:*:*:*:*","matchCriteriaId":"D948171A-3B54-462A-8B2E-2C0266A37E94"},{"vulnerable":true,"criteria":"cpe:2.3:a:trend_micro:interscan_viruswall:3.3:*:*:*:*:*:*:*","matchCriteriaId":"7A9D4E2E-889B-4233-8887-9CF00A5023A7"},{"vulnerable":true,"criteria":"cpe:2.3:a:trend_micro:interscan_viruswall:3.32:*:*:*:*:*:*:*","matchCriteriaId":"2F72A6DE-BA1B-4907-B19D-D71B172BB249"}]}]}],"references":[{"url":"http://www.nai.com/nai_labs/asp_set/advisory/39_Trend.asp","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1168","source":"cve@mitre.org"},{"url":"http://www.nai.com/nai_labs/asp_set/advisory/39_Trend.asp","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1168","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0381","sourceIdentifier":"cve@mitre.org","published":"2000-05-05T04:00:00.000","lastModified":"2026-06-16T21:51:35.887","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Gossamer Threads DBMan db.cgi CGI script allows remote attackers to view environmental variables and setup information by referencing a non-existing database in the db parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:N","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gossamer_threads:dbman:2.0.4:*:*:*:*:*:*:*","matchCriteriaId":"F46D142E-0060-41CF-9F60-7C80F4FFE11F"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0067.html","source":"cve@mitre.org"},{"url":"http://www.perfectotech.com/blackwatchlabs/vul5_05.html","source":"cve@mitre.org","tags":["URL Repurposed"]},{"url":"http://www.securityfocus.com/bid/1178","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0067.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.perfectotech.com/blackwatchlabs/vul5_05.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["URL Repurposed"]},{"url":"http://www.securityfocus.com/bid/1178","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0423","sourceIdentifier":"cve@mitre.org","published":"2000-05-05T04:00:00.000","lastModified":"2026-06-16T21:51:42.067","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Netwin DNEWSWEB CGI program allows remote attackers to execute arbitrary commands via long parameters such as group, cmd, and utag."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netwin:dnews:5.3:*:*:*:*:*:*:*","matchCriteriaId":"042F5F6C-3F2F-4847-B94B-C38AD2E69D81"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=95764950403250&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1172","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=95764950403250&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1172","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0426","sourceIdentifier":"cve@mitre.org","published":"2000-05-05T04:00:00.000","lastModified":"2026-06-16T21:51:42.443","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"UltraBoard 1.6 and other versions allow remote attackers to cause a denial of service by referencing UltraBoard in the Session parameter, which causes UltraBoard to fork copies of itself."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ultrascripts:ultraboard:1.6:*:*:*:*:*:*:*","matchCriteriaId":"FE904F8B-7BC2-4E57-B528-327A45AE24CA"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0059.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1175","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0059.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1175","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0413","sourceIdentifier":"cve@mitre.org","published":"2000-05-06T04:00:00.000","lastModified":"2026-06-16T21:51:39.827","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The shtml.exe program in the FrontPage extensions package of IIS 4.0 and 5.0 allows remote attackers to determine the physical path of HTML, HTM, ASP, and SHTML files by requesting a file that does not exist, which generates an error message that reveals the path."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:frontpage:*:*:*:*:*:*:*:*","matchCriteriaId":"0951E183-2BFE-4B19-9F06-107B5E22DBC5"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_services:5.0:*:*:*:*:*:*:*","matchCriteriaId":"413C07EA-139F-4B7D-A58B-835BD2591FA0"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0084.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1174","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0084.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1174","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0382","sourceIdentifier":"cve@mitre.org","published":"2000-05-08T04:00:00.000","lastModified":"2026-06-16T21:51:36.003","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ColdFusion ClusterCATS appends stale query string arguments to a URL during HTML redirection, which may provide sensitive information to the redirected site."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:N/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:allaire:clustercats:1.0:*:*:*:*:*:*:*","matchCriteriaId":"5D6643CF-8F88-4168-8D43-B954B1E7CBD5"}]}]}],"references":[{"url":"http://www.allaire.com/handlers/index.cfm?ID=15697&Method=Full","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1179","source":"cve@mitre.org"},{"url":"http://www.allaire.com/handlers/index.cfm?ID=15697&Method=Full","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1179","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0383","sourceIdentifier":"cve@mitre.org","published":"2000-05-08T04:00:00.000","lastModified":"2026-06-16T21:51:36.130","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The file transfer component of AOL Instant Messenger (AIM) reveals the physical path of the transferred file to the remote recipient."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:aol:instant_messenger:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E00F0805-8C73-43B1-87AC-744434046E59"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1180","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=002401bfb918%247310d5a0%241ef084ce%40karemor.com","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1180","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=002401bfb918%247310d5a0%241ef084ce%40karemor.com","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0384","sourceIdentifier":"cve@mitre.org","published":"2000-05-08T04:00:00.000","lastModified":"2026-06-16T21:51:36.250","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"NetStructure 7110 and 7180 have undocumented accounts (servnow, root, and wizard) whose passwords are easily guessable from the NetStructure's MAC address, which could allow remote attackers to gain root access."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:intel:netstructure_7110:*:*:*:*:*:*:*:*","matchCriteriaId":"141BF9B0-29DC-42DC-A53E-96818BE1450F"},{"vulnerable":true,"criteria":"cpe:2.3:h:intel:netstructure_7180:*:*:*:*:*:*:*:*","matchCriteriaId":"9FEE7633-BA33-4D8B-B6B4-B914707666AB"}]}]}],"references":[{"url":"http://216.188.41.136/","source":"cve@mitre.org"},{"url":"http://www.l0pht.com/advisories/ipivot7180.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.lopht.com/advisories/ipivot7110.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1182","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1183","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://216.188.41.136/","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.l0pht.com/advisories/ipivot7180.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.lopht.com/advisories/ipivot7110.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1182","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1183","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0387","sourceIdentifier":"cve@mitre.org","published":"2000-05-09T04:00:00.000","lastModified":"2026-06-16T21:51:36.613","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The makelev program in the golddig game from the FreeBSD ports collection allows local users to overwrite arbitrary files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:alexander_siegel:golddig:2.0:*:*:*:*:*:*:*","matchCriteriaId":"B4F416BC-FB54-4CE1-86CA-931214005408"}]}]}],"references":[{"url":"ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:16.golddig.asc","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1184","source":"cve@mitre.org"},{"url":"ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:16.golddig.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1184","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0304","sourceIdentifier":"cve@mitre.org","published":"2000-05-10T04:00:00.000","lastModified":"2026-06-16T21:51:26.273","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft IIS 4.0 and 5.0 with the IISADMPWD virtual directory installed allows a remote attacker to cause a denial of service via a malformed request to the inetinfo.exe program, aka the \"Undelimited .HTR Request\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_services:5.0:*:*:*:*:*:*:*","matchCriteriaId":"413C07EA-139F-4B7D-A58B-835BD2591FA0"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1191","source":"cve@mitre.org"},{"url":"http://xforce.iss.net/alerts/advise52.php3","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-031","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1191","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://xforce.iss.net/alerts/advise52.php3","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-031","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0406","sourceIdentifier":"cve@mitre.org","published":"2000-05-10T04:00:00.000","lastModified":"2026-06-16T21:51:38.967","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Netscape Communicator before version 4.73 and Navigator 4.07 do not properly validate SSL certificates, which allows remote attackers to steal information by redirecting traffic from a legitimate web server to their own malicious server, aka the \"Acros-Suencksen SSL\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:N/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.0:*:*:*:*:*:*:*","matchCriteriaId":"209C7BB1-EFDF-43AB-9FB6-DF67465DEAEF"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.05:*:*:*:*:*:*:*","matchCriteriaId":"494AFC1E-67A3-41CA-B920-B8F778B68A99"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.5:*:*:*:*:*:*:*","matchCriteriaId":"4E9A5461-B0F2-49DB-A69C-3D2D27709647"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.5_beta:*:*:*:*:*:*:*","matchCriteriaId":"213EB326-33D1-4329-A6BB-B1AA1C626E44"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.06:*:*:*:*:*:*:*","matchCriteriaId":"34F6328B-44A8-4E45-918E-C54285040BFE"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.6:*:*:*:*:*:*:*","matchCriteriaId":"529E3F71-6016-461D-A162-0DBDD5505389"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.07:*:*:*:*:*:*:*","matchCriteriaId":"31D02C4D-3FD1-425F-B0DB-7808089BCD0B"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.7:*:*:*:*:*:*:*","matchCriteriaId":"38FD74F5-12ED-4049-B06F-0F22A0254C0F"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.51:*:*:*:*:*:*:*","matchCriteriaId":"918BE44C-8D64-4040-BC74-802AA3FA4E10"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.61:*:*:*:*:*:*:*","matchCriteriaId":"6AA534C4-9411-44EC-AA34-2287C79AD235"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.72:*:*:*:*:*:*:*","matchCriteriaId":"3A4E8588-A941-4759-B41C-00F193F2C63B"}]}]}],"references":[{"url":"http://www.acrossecurity.com/aspr/ASPR-2000-04-06-1-PUB.txt","source":"cve@mitre.org"},{"url":"http://www.cert.org/advisories/CA-2000-05.html","source":"cve@mitre.org","tags":["Third Party Advisory","US Government Resource"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-028.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1188","source":"cve@mitre.org"},{"url":"http://www.acrossecurity.com/aspr/ASPR-2000-04-06-1-PUB.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.cert.org/advisories/CA-2000-05.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","US Government Resource"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-028.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1188","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0409","sourceIdentifier":"cve@mitre.org","published":"2000-05-10T04:00:00.000","lastModified":"2026-06-16T21:51:39.343","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Netscape 4.73 and earlier follows symlinks when it imports a new certificate, which allows local users to overwrite files of the user importing the certificate."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:P/I:P/A:P","baseScore":3.7,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":1.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.5:*:*:*:*:*:*:*","matchCriteriaId":"4E9A5461-B0F2-49DB-A69C-3D2D27709647"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.6:*:*:*:*:*:*:*","matchCriteriaId":"529E3F71-6016-461D-A162-0DBDD5505389"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.7:*:*:*:*:*:*:*","matchCriteriaId":"38FD74F5-12ED-4049-B06F-0F22A0254C0F"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.51:*:*:*:*:*:*:*","matchCriteriaId":"918BE44C-8D64-4040-BC74-802AA3FA4E10"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.61:*:*:*:*:*:*:*","matchCriteriaId":"6AA534C4-9411-44EC-AA34-2287C79AD235"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.72:*:*:*:*:*:*:*","matchCriteriaId":"3A4E8588-A941-4759-B41C-00F193F2C63B"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.73:*:*:*:*:*:*:*","matchCriteriaId":"3E48C051-EB45-4262-86C2-2333FD5C7745"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0126.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1201","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0126.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1201","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0410","sourceIdentifier":"cve@mitre.org","published":"2000-05-10T04:00:00.000","lastModified":"2026-06-16T21:51:39.460","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ColdFusion Server 4.5.1 allows remote attackers to cause a denial of service by making repeated requests to a CFCACHE tagged cache file that is not stored in memory."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:allaire:coldfusion_server:4.5.1:*:*:*:*:*:*:*","matchCriteriaId":"5FA98847-8A14-409C-86E8-C7652E5ECF0C"}]}]}],"references":[{"url":"http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind0005&L=ntbugtraq&F=&S=&P=4843","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1192","source":"cve@mitre.org"},{"url":"http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind0005&L=ntbugtraq&F=&S=&P=4843","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1192","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0411","sourceIdentifier":"cve@mitre.org","published":"2000-05-10T04:00:00.000","lastModified":"2026-06-16T21:51:39.580","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Matt Wright's FormMail CGI script allows remote attackers to obtain environmental variables via the env_report parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:matt_wright:formmail:1.6:*:*:*:*:*:*:*","matchCriteriaId":"B565A52D-EA07-4603-91B7-0105E632A2EC"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0125.html","source":"cve@mitre.org"},{"url":"http://www.perfectotech.com/blackwatchlabs/vul5_10.html","source":"cve@mitre.org","tags":["URL Repurposed"]},{"url":"http://www.securityfocus.com/bid/1187","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0125.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.perfectotech.com/blackwatchlabs/vul5_10.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["URL Repurposed"]},{"url":"http://www.securityfocus.com/bid/1187","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0408","sourceIdentifier":"cve@mitre.org","published":"2000-05-11T04:00:00.000","lastModified":"2026-06-16T21:51:39.220","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IIS 4.05 and 5.0 allow remote attackers to cause a denial of service via a long, complex URL that appears to contain a large number of file extensions, aka the \"Malformed Extension Data in URL\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_services:5.0:*:*:*:*:*:*:*","matchCriteriaId":"413C07EA-139F-4B7D-A58B-835BD2591FA0"}]}]}],"references":[{"url":"http://www.microsoft.com/technet/support/kb.asp?ID=260205","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1190","source":"cve@mitre.org"},{"url":"http://www.ussrback.com/labs40.html","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-030","source":"cve@mitre.org"},{"url":"http://www.microsoft.com/technet/support/kb.asp?ID=260205","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1190","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.ussrback.com/labs40.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-030","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0416","sourceIdentifier":"cve@mitre.org","published":"2000-05-11T04:00:00.000","lastModified":"2026-06-16T21:51:40.200","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"NTMail 5.x allows network users to bypass the NTMail proxy restrictions by redirecting their requests to NTMail's web configuration server."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"}]}]}],"references":[{"url":"http://www.gordano.com/support/archives/ntmail/2000-05/00001114.htm","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1196","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=NABBJLKKPKIHDIMKFKGCMEFANMAB.georger%40nls.net","source":"cve@mitre.org"},{"url":"http://www.gordano.com/support/archives/ntmail/2000-05/00001114.htm","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1196","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=NABBJLKKPKIHDIMKFKGCMEFANMAB.georger%40nls.net","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0419","sourceIdentifier":"cve@mitre.org","published":"2000-05-11T04:00:00.000","lastModified":"2026-06-16T21:51:41.587","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Office 2000 UA ActiveX Control is marked as \"safe for scripting,\" which allows remote attackers to conduct unauthorized activities via the \"Show Me\" function in Office Help, aka the \"Office 2000 UA Control\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:access:2000:*:*:*:*:*:*:*","matchCriteriaId":"90D7BA07-3BCA-41CF-B5D3-341E912650A2"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:excel:2000:*:*:*:*:*:*:*","matchCriteriaId":"F55D42D5-7371-47C2-BF55-B7F51C19B61E"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:frontpage:2000:*:*:*:*:*:*:*","matchCriteriaId":"D2C6629C-BF53-49A1-B32C-A828CA0A0500"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:office:2000:*:*:*:*:*:*:*","matchCriteriaId":"A9A82D13-513C-46FA-AF51-0582233E230A"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook:2000:*:*:*:*:*:*:*","matchCriteriaId":"D52F17AB-2C87-4C1A-91B5-267ABBCF5844"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:photodraw_2000:1.0:*:*:*:*:*:*:*","matchCriteriaId":"FFE1D04D-8B79-4401-9225-F15EDEBDDFC4"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:powerpoint:2000:*:*:*:*:*:*:*","matchCriteriaId":"3E392539-ABF6-4B5C-AEC3-C54B51E0DB70"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:project:2000:*:*:*:*:*:*:*","matchCriteriaId":"3F09162C-01F0-4056-94D3-995713F92AE9"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:word:2000:*:*:*:*:*:*:*","matchCriteriaId":"AEBFF713-0884-43BF-9AB8-777664FD64AF"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:works:2000:*:*:*:*:*:*:*","matchCriteriaId":"78389936-D2E5-4A3A-8E7A-AA42FFAD832B"}]}]}],"references":[{"url":"http://www.cert.org/advisories/CA-2000-07.html","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://www.microsoft.com/technet/support/kb.asp?ID=262767","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1197","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-034","source":"cve@mitre.org"},{"url":"http://www.cert.org/advisories/CA-2000-07.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"http://www.microsoft.com/technet/support/kb.asp?ID=262767","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1197","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-034","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0420","sourceIdentifier":"cve@mitre.org","published":"2000-05-11T04:00:00.000","lastModified":"2026-06-16T21:51:41.713","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default configuration of SYSKEY in Windows 2000 stores the startup key in the registry, which could allow an attacker tor ecover it and use it to decrypt Encrypted File System (EFS) data."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q2/0112.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1198","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q2/0112.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1198","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0421","sourceIdentifier":"cve@mitre.org","published":"2000-05-11T04:00:00.000","lastModified":"2026-06-16T21:51:41.833","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The process_bug.cgi script in Bugzilla allows remote attackers to execute arbitrary commands via shell metacharacters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mozilla:bugzilla:2.8:*:*:*:*:*:*:*","matchCriteriaId":"F6E5E379-D475-42F3-B0DC-3D04C1D25566"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0128.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1199","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0128.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1199","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0439","sourceIdentifier":"cve@mitre.org","published":"2000-05-11T04:00:00.000","lastModified":"2026-06-16T21:51:44.173","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internet Explorer 4.0 and 5.0 allows a malicious web site to obtain client cookies from another domain by including that domain name and escaped characters in a URL, aka the \"Unauthorized Cookie Access\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:N/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:3.0:*:*:*:*:*:*:*","matchCriteriaId":"1BBF9241-A175-438C-A793-3D245BE2AE35"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:3.2:*:*:*:*:*:*:*","matchCriteriaId":"8873A08F-D4C7-46FC-8FE5-972644F85ADA"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0:*:*:*:*:*:*:*","matchCriteriaId":"A5B815D9-BC21-4A17-AF00-B8AD181027D7"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0.1:*:*:*:*:*:*:*","matchCriteriaId":"42502347-DD40-4F8C-9861-C0A88A3F8608"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.1:*:*:*:*:*:*:*","matchCriteriaId":"44FF4E47-AD75-42C7-BB84-42BBA46A58B2"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"}]}]}],"references":[{"url":"http://www.osvdb.org/1326","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1194","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000511135609.D7774%40securityfocus.com","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=NDBBKGHPMKBKDDGLDEEHAEHMDIAA.rms2000%40bellatlantic.net","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-033","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4447","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1326","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1194","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000511135609.D7774%40securityfocus.com","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=NDBBKGHPMKBKDDGLDEEHAEHMDIAA.rms2000%40bellatlantic.net","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-033","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4447","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0457","sourceIdentifier":"cve@mitre.org","published":"2000-05-11T04:00:00.000","lastModified":"2026-06-16T21:51:46.553","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ISM.DLL in IIS 4.0 and 5.0 allows remote attackers to read file contents by requesting the file and appending a large number of encoded spaces (%20) and terminated with a .htr extension, aka the \".HTR File Fragment Reading\" or \"File Fragment Reading via .HTR\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_services:5.0:*:*:*:*:*:*:*","matchCriteriaId":"413C07EA-139F-4B7D-A58B-835BD2591FA0"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=95810120719608&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1193","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-031","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4448","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=95810120719608&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1193","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-031","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4448","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0407","sourceIdentifier":"cve@mitre.org","published":"2000-05-12T04:00:00.000","lastModified":"2026-06-16T21:51:39.103","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Solaris netpr program allows local users to execute arbitrary commands via a long -p option."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.6:*:*:*:*:*:*:*","matchCriteriaId":"34EBF074-78C8-41AF-88F1-DA6726E56F8B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:7.0:*:x86:*:*:*:*:*","matchCriteriaId":"8F1F312C-413F-4DB4-ABF4-48E33F6FECF2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:8.0:*:x86:*:*:*:*:*","matchCriteriaId":"1894C542-AA81-40A9-BF47-AE24C93C1ACB"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:-:*:*:*:*:*:*:*","matchCriteriaId":"369207B4-96FA-4324-9445-98FAE8ECF5DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.8:*:*:*:*:*:*:*","matchCriteriaId":"A2475113-CFE4-41C8-A86F-F2DA6548D224"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0141.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1200","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0141.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1200","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0415","sourceIdentifier":"cve@mitre.org","published":"2000-05-12T04:00:00.000","lastModified":"2026-06-16T21:51:40.063","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Outlook Express 4.x allows attackers to cause a denial of service via a mail or news message that has a .jpg or .bmp attachment with a long file name."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook:98:*:*:*:*:*:*:*","matchCriteriaId":"52970A43-173E-477B-80BF-6FDBB6B0EECD"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook_express:4.0:*:*:*:*:*:*:*","matchCriteriaId":"6764F97F-6906-4953-BB1C-AA6345FA8FBE"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook_express:4.01:*:*:*:*:*:*:*","matchCriteriaId":"BA267F42-5A1F-4663-9D4D-AF5DD64FD2DF"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook_express:4.27.3110.1:*:*:*:*:*:*:*","matchCriteriaId":"6BAE90D0-1637-49F4-8453-5E9959B55002"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook_express:4.72.2106.4:*:*:*:*:*:*:*","matchCriteriaId":"D707B4FB-4BB2-4C84-851B-A8926AC26B7A"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook_express:4.72.3120.0:*:*:*:*:*:*:*","matchCriteriaId":"7769EE2E-A740-4AE8-B1B1-A5256C12601D"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook_express:4.72.3612.1700:*:*:*:*:*:*:*","matchCriteriaId":"14B52779-4A43-4507-988F-5B5A81658FF5"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0140.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1195","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0140.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1195","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0400","sourceIdentifier":"cve@mitre.org","published":"2000-05-13T04:00:00.000","lastModified":"2026-06-16T21:51:38.210","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Microsoft Active Movie ActiveX Control in Internet Explorer 5 does not restrict which file types can be downloaded, which allows an attacker to download any type of file to a user's system by encoding it within an email message or news post."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-20"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5:*:*:*:*:*:*:*","matchCriteriaId":"B4071D03-D955-4C1B-ACD8-A864F7D0FA02"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=95868514521257&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1221","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=95868514521257&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1221","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0434","sourceIdentifier":"cve@mitre.org","published":"2000-05-13T04:00:00.000","lastModified":"2026-06-16T21:51:43.500","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The administrative password for the Allmanage web site administration software is stored in plaintext in a file which could be accessed by remote attackers."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:matthew_redman:allmanage:2.6:*:*:*:*:*:*:*","matchCriteriaId":"625922AE-179F-494E-89ED-C9DB478E69C5"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0167.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1217","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0167.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1217","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0435","sourceIdentifier":"cve@mitre.org","published":"2000-05-13T04:00:00.000","lastModified":"2026-06-16T21:51:43.620","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The allmanageup.pl file upload CGI script in the Allmanage Website administration software 2.6 can be called directly by remote attackers, which allows them to modify user accounts or web pages."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:matthew_redman:allmanage:2.6:*:*:*:*:*:*:*","matchCriteriaId":"625922AE-179F-494E-89ED-C9DB478E69C5"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0167.html","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1337","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1217","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0167.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1337","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1217","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0397","sourceIdentifier":"cve@mitre.org","published":"2000-05-15T04:00:00.000","lastModified":"2026-06-16T21:51:37.840","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The EMURL web-based email account software encodes predictable identifiers in user session URLs, which allows a remote attacker to access a user's email account."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:seattle_lab_software:emurl:2.0:*:*:*:*:*:*:*","matchCriteriaId":"D31CABA9-4306-4EA7-A3C7-5DCC38B7EC43"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0160.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1203","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0160.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1203","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0424","sourceIdentifier":"cve@mitre.org","published":"2000-05-15T04:00:00.000","lastModified":"2026-06-16T21:51:42.193","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The CGI counter 4.0.7 by George Burgyan allows remote attackers to execute arbitrary commands via shell metacharacters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:george_burgyan:cgi_counter:4.0.2:*:*:*:*:*:*:*","matchCriteriaId":"1AA621CE-EA92-4BCA-A588-1F8FB8B5F9C1"},{"vulnerable":true,"criteria":"cpe:2.3:a:george_burgyan:cgi_counter:4.0.7:*:*:*:*:*:*:*","matchCriteriaId":"0DC7B0FA-174C-42D1-A43F-1F250BCB0C92"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1202","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200005151024.aa01811%40blaze.arl.mil","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1202","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200005151024.aa01811%40blaze.arl.mil","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0980","sourceIdentifier":"cve@mitre.org","published":"2000-05-16T04:00:00.000","lastModified":"2026-06-16T21:49:27.227","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Windows NT Service Control Manager (SCM) allows remote attackers to cause a denial of service via a malformed argument in a resource enumeration request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:server:*:*:*:*:*","matchCriteriaId":"7C5FCE82-1E2F-49B9-B504-8C03F2BCF296"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:terminal_server:*:*:*:*:*","matchCriteriaId":"6E7E6AD3-5418-4FEA-84B5-833059CA880D"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp1:enterprise:*:*:*:*:*","matchCriteriaId":"BBD9C514-5AF7-4849-A535-F0F3C9339051"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ246045","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-055","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ246045","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-055","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0379","sourceIdentifier":"cve@mitre.org","published":"2000-05-16T04:00:00.000","lastModified":"2026-06-16T21:51:35.633","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Netopia R9100 router does not prevent authenticated users from modifying SNMP tables, even if the administrator has configured it to do so."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:N","baseScore":3.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:netopia:r-series_routers:4.6.2:*:*:*:*:*:*:*","matchCriteriaId":"2E769B01-CD4A-4307-A647-70F7476C3F58"}]}]}],"references":[{"url":"http://www.netopia.com/equipment/purchase/fmw_update.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1177","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200005082054.NAA32590%40linux.mtndew.com","source":"cve@mitre.org"},{"url":"http://www.netopia.com/equipment/purchase/fmw_update.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1177","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200005082054.NAA32590%40linux.mtndew.com","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0389","sourceIdentifier":"cve@mitre.org","published":"2000-05-16T04:00:00.000","lastModified":"2026-06-16T21:51:36.847","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in krb_rd_req function in Kerberos 4 and 5 allows remote attackers to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cygnus:cygnus_network_security:4.0:*:*:*:*:*:*:*","matchCriteriaId":"05857121-8827-45FD-886F-4269E0336036"},{"vulnerable":true,"criteria":"cpe:2.3:a:cygnus:kerbnet:5.0:*:*:*:*:*:*:*","matchCriteriaId":"EE1B0821-64F1-46E3-8DD3-12FFD1B037F5"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos:4.0:*:*:*:*:*:*:*","matchCriteriaId":"AFB8BD89-F049-4C3B-8744-E8D00D752DE0"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:1.0:*:*:*:*:*:*:*","matchCriteriaId":"08FA60A9-10E1-4ACD-819C-17801FAD7671"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:1.1.1:*:*:*:*:*:*:*","matchCriteriaId":"E47F0770-67D7-42EE-A1AD-9D5B5E83BF2B"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:alpha:*:*:*:*:*","matchCriteriaId":"344610A8-DB6D-4407-9304-916C419F648C"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:i386:*:*:*:*:*","matchCriteriaId":"B7EC2B95-4715-4EC9-A10A-2542501F8A61"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:sparc:*:*:*:*:*","matchCriteriaId":"64775BEF-2E53-43CA-8639-A7E54F6F4222"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0184.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/freebsd/2000-05/0295.html","source":"cve@mitre.org"},{"url":"http://www.cert.org/advisories/CA-2000-06.html","source":"cve@mitre.org","tags":["Third Party Advisory","US Government Resource"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-025.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1220","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0184.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/freebsd/2000-05/0295.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.cert.org/advisories/CA-2000-06.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","US Government Resource"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-025.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1220","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0390","sourceIdentifier":"cve@mitre.org","published":"2000-05-16T04:00:00.000","lastModified":"2026-06-16T21:51:36.973","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in krb425_conv_principal function in Kerberos 5 allows remote attackers to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cygnus:cygnus_network_security:4.0:*:*:*:*:*:*:*","matchCriteriaId":"05857121-8827-45FD-886F-4269E0336036"},{"vulnerable":true,"criteria":"cpe:2.3:a:cygnus:kerbnet:5.0:*:*:*:*:*:*:*","matchCriteriaId":"EE1B0821-64F1-46E3-8DD3-12FFD1B037F5"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos:4.0:*:*:*:*:*:*:*","matchCriteriaId":"AFB8BD89-F049-4C3B-8744-E8D00D752DE0"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:1.0:*:*:*:*:*:*:*","matchCriteriaId":"08FA60A9-10E1-4ACD-819C-17801FAD7671"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:1.1.1:*:*:*:*:*:*:*","matchCriteriaId":"E47F0770-67D7-42EE-A1AD-9D5B5E83BF2B"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:alpha:*:*:*:*:*","matchCriteriaId":"344610A8-DB6D-4407-9304-916C419F648C"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:i386:*:*:*:*:*","matchCriteriaId":"B7EC2B95-4715-4EC9-A10A-2542501F8A61"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:sparc:*:*:*:*:*","matchCriteriaId":"64775BEF-2E53-43CA-8639-A7E54F6F4222"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0184.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/freebsd/2000-05/0295.html","source":"cve@mitre.org"},{"url":"http://www.cert.org/advisories/CA-2000-06.html","source":"cve@mitre.org","tags":["Third Party Advisory","US Government Resource"]},{"url":"http://www.osvdb.org/4884","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-025.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1220","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0184.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/freebsd/2000-05/0295.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.cert.org/advisories/CA-2000-06.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","US Government Resource"]},{"url":"http://www.osvdb.org/4884","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-025.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1220","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0391","sourceIdentifier":"cve@mitre.org","published":"2000-05-16T04:00:00.000","lastModified":"2026-06-16T21:51:37.100","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in krshd in Kerberos 5 allows remote attackers to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cygnus:cygnus_network_security:4.0:*:*:*:*:*:*:*","matchCriteriaId":"05857121-8827-45FD-886F-4269E0336036"},{"vulnerable":true,"criteria":"cpe:2.3:a:cygnus:kerbnet:5.0:*:*:*:*:*:*:*","matchCriteriaId":"EE1B0821-64F1-46E3-8DD3-12FFD1B037F5"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos:4.0:*:*:*:*:*:*:*","matchCriteriaId":"AFB8BD89-F049-4C3B-8744-E8D00D752DE0"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:1.0:*:*:*:*:*:*:*","matchCriteriaId":"08FA60A9-10E1-4ACD-819C-17801FAD7671"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:1.1.1:*:*:*:*:*:*:*","matchCriteriaId":"E47F0770-67D7-42EE-A1AD-9D5B5E83BF2B"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:alpha:*:*:*:*:*","matchCriteriaId":"344610A8-DB6D-4407-9304-916C419F648C"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:i386:*:*:*:*:*","matchCriteriaId":"B7EC2B95-4715-4EC9-A10A-2542501F8A61"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:sparc:*:*:*:*:*","matchCriteriaId":"64775BEF-2E53-43CA-8639-A7E54F6F4222"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0184.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/freebsd/2000-05/0295.html","source":"cve@mitre.org"},{"url":"http://www.cert.org/advisories/CA-2000-06.html","source":"cve@mitre.org","tags":["Third Party Advisory","US Government Resource"]},{"url":"http://www.osvdb.org/4876","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-025.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1220","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0184.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/freebsd/2000-05/0295.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.cert.org/advisories/CA-2000-06.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","US Government Resource"]},{"url":"http://www.osvdb.org/4876","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-025.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1220","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0392","sourceIdentifier":"cve@mitre.org","published":"2000-05-16T04:00:00.000","lastModified":"2026-06-16T21:51:37.220","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in ksu in Kerberos 5 allows local users to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cygnus:cygnus_network_security:4.0:*:*:*:*:*:*:*","matchCriteriaId":"05857121-8827-45FD-886F-4269E0336036"},{"vulnerable":true,"criteria":"cpe:2.3:a:cygnus:kerbnet:5.0:*:*:*:*:*:*:*","matchCriteriaId":"EE1B0821-64F1-46E3-8DD3-12FFD1B037F5"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos:4.0:*:*:*:*:*:*:*","matchCriteriaId":"AFB8BD89-F049-4C3B-8744-E8D00D752DE0"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:1.0:*:*:*:*:*:*:*","matchCriteriaId":"08FA60A9-10E1-4ACD-819C-17801FAD7671"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:1.1.1:*:*:*:*:*:*:*","matchCriteriaId":"E47F0770-67D7-42EE-A1AD-9D5B5E83BF2B"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:alpha:*:*:*:*:*","matchCriteriaId":"344610A8-DB6D-4407-9304-916C419F648C"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:i386:*:*:*:*:*","matchCriteriaId":"B7EC2B95-4715-4EC9-A10A-2542501F8A61"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:sparc:*:*:*:*:*","matchCriteriaId":"64775BEF-2E53-43CA-8639-A7E54F6F4222"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0184.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/freebsd/2000-05/0295.html","source":"cve@mitre.org"},{"url":"http://www.cert.org/advisories/CA-2000-06.html","source":"cve@mitre.org","tags":["Third Party Advisory","US Government Resource"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-025.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1220","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0184.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/freebsd/2000-05/0295.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.cert.org/advisories/CA-2000-06.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","US Government Resource"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-025.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1220","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0393","sourceIdentifier":"cve@mitre.org","published":"2000-05-16T04:00:00.000","lastModified":"2026-06-16T21:51:37.347","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The KDE kscd program does not drop privileges when executing a program specified in a user's SHELL environmental variable, which allows the user to gain privileges by specifying an alternate program to execute."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:kde:kde:1.1:*:*:*:*:*:*:*","matchCriteriaId":"55B38F8C-9451-441B-BCD8-E41C1A2231DD"},{"vulnerable":true,"criteria":"cpe:2.3:o:kde:kde:1.1.1:*:*:*:*:*:*:*","matchCriteriaId":"D04A4717-229D-4E20-8FD2-DC13757B0AC5"},{"vulnerable":true,"criteria":"cpe:2.3:o:kde:kde:1.2:*:*:*:*:*:*:*","matchCriteriaId":"D6767505-CFD5-4C66-A67A-4740E2994CC8"},{"vulnerable":true,"criteria":"cpe:2.3:o:kde:kde:2.0_beta:*:*:*:*:*:*:*","matchCriteriaId":"FC14C38A-AAA8-463E-AA7C-F16C6CB3A3EE"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0172.html","source":"cve@mitre.org"},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_50.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1206","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0172.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_50.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1206","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0395","sourceIdentifier":"cve@mitre.org","published":"2000-05-16T04:00:00.000","lastModified":"2026-06-16T21:51:37.593","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in CProxy 3.3 allows remote users to cause a denial of service via a long HTTP request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:computalynx:cproxy_server:3.3sp2:*:*:*:*:*:*:*","matchCriteriaId":"3861E18D-7B9F-4249-9900-2382F08C7346"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1213","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=007d01bfbf48%24e44f0e40%2401dc11ac%40peopletel.org","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1213","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=007d01bfbf48%24e44f0e40%2401dc11ac%40peopletel.org","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0405","sourceIdentifier":"cve@mitre.org","published":"2000-05-16T04:00:00.000","lastModified":"2026-06-16T21:51:38.847","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in L0pht AntiSniff allows remote attackers to execute arbitrary commands via a malformed DNS response packet."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:atstake:antisniff:1.0:*:researchers:*:*:*:*:*","matchCriteriaId":"AC219D32-93D7-4292-AF1A-4A0DB386AB1E"},{"vulnerable":true,"criteria":"cpe:2.3:a:atstake:antisniff:1.0.1:*:*:*:*:*:*:*","matchCriteriaId":"10624CE0-7BDC-4057-BD49-E6CCE5DC366B"}]}]}],"references":[{"url":"http://www.l0pht.com/advisories/asniff_advisory.txt","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/3179","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1207","source":"cve@mitre.org"},{"url":"http://www.l0pht.com/advisories/asniff_advisory.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/3179","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1207","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0432","sourceIdentifier":"cve@mitre.org","published":"2000-05-16T04:00:00.000","lastModified":"2026-06-16T21:51:43.250","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The calender.pl and the calendar_admin.pl calendar scripts by Matt Kruse allow remote attackers to execute arbitrary commands via shell metacharacters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:matt_kruse:calendar_script:2.2:*:*:*:*:*:*:*","matchCriteriaId":"E08A53C7-6E35-4ED3-8428-91A16664556B"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0173.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1215","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0173.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1215","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1008","sourceIdentifier":"cve@mitre.org","published":"2000-05-17T04:00:00.000","lastModified":"2026-06-16T21:49:30.753","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"xsoldier program allows local users to gain root access via a long argument."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.3:*:*:*:*:*:*:*","matchCriteriaId":"C3518628-08E5-4AD7-AAF6-A4E38F1CDE2C"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"E4853E92-5E0A-47B9-A343-D5BEE87D2C27"}]}]}],"references":[{"url":"http://marc.info/?l=freebsd-security&m=94531826621620&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/871","source":"cve@mitre.org"},{"url":"http://marc.info/?l=freebsd-security&m=94531826621620&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/871","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0350","sourceIdentifier":"cve@mitre.org","published":"2000-05-17T04:00:00.000","lastModified":"2026-06-16T21:51:32.053","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A debugging feature in NetworkICE ICEcap 2.0.23 and earlier is enabled, which allows a remote attacker to bypass the weak authentication and post unencrypted events."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:networkice:icecap_manager:*:*:*:*:*:*:*:*","versionEndIncluding":"2.0.23","matchCriteriaId":"01583654-7EDC-468F-B284-A4EE70304534"}]}]}],"references":[{"url":"http://advice.networkice.com/advice/Support/KB/q000166/","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/312","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1216","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/advisory.html?id=2220","source":"cve@mitre.org"},{"url":"http://advice.networkice.com/advice/Support/KB/q000166/","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/312","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1216","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/advisory.html?id=2220","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0417","sourceIdentifier":"cve@mitre.org","published":"2000-05-17T04:00:00.000","lastModified":"2026-06-16T21:51:40.330","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The HTTP administration interface to the Cayman 3220-H DSL router allows remote attackers to cause a denial of service via a long username or password."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:cayman:3220-h_dsl_router:1.0:*:*:*:*:*:*:*","matchCriteriaId":"F0C4894F-C634-4830-B0D8-F6158C074A89"},{"vulnerable":true,"criteria":"cpe:2.3:h:cayman:gatorsurf:5.3build_r1:*:*:*:*:*:*:*","matchCriteriaId":"3E87B9E4-3AF8-46D3-B2EF-23F22DBE77AA"},{"vulnerable":true,"criteria":"cpe:2.3:h:cayman:gatorsurf:5.3build_r2:*:*:*:*:*:*:*","matchCriteriaId":"9E294847-D685-4D03-B92B-D78C3B4FDFC8"},{"vulnerable":true,"criteria":"cpe:2.3:h:cayman:gatorsurf:5.5build_r0:*:*:*:*:*:*:*","matchCriteriaId":"DF8ECB8A-EDFF-461D-9F6A-80EB8DE9EDEB"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0075.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0280.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1219","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0075.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0280.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1219","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0464","sourceIdentifier":"cve@mitre.org","published":"2000-05-17T04:00:00.000","lastModified":"2026-06-16T21:51:47.443","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internet Explorer 4.x and 5.x allows remote attackers to execute arbitrary commands via a buffer overflow in the ActiveX parameter parsing capability, aka the \"Malformed Component Attribute\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:C/I:C/A:C","baseScore":7.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":4.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0:*:*:*:*:*:*:*","matchCriteriaId":"A5B815D9-BC21-4A17-AF00-B8AD181027D7"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0.1:*:*:*:*:*:*:*","matchCriteriaId":"42502347-DD40-4F8C-9861-C0A88A3F8608"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.01:*:*:*:*:*:*:*","matchCriteriaId":"6219D36E-9E2C-4DC7-8FD5-FAD144A333F6"}]}]}],"references":[{"url":"http://www.microsoft.com/technet/support/kb.asp?ID=261257","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1223","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-033","source":"cve@mitre.org"},{"url":"http://www.microsoft.com/technet/support/kb.asp?ID=261257","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1223","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-033","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0465","sourceIdentifier":"cve@mitre.org","published":"2000-05-17T04:00:00.000","lastModified":"2026-06-16T21:51:47.567","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internet Explorer 4.x and 5.x does not properly verify the domain of a  frame within a browser window, which allows a remote attacker to read client files via the frame, aka the \"Frame Domain Verification\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0:*:*:*:*:*:*:*","matchCriteriaId":"A5B815D9-BC21-4A17-AF00-B8AD181027D7"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.01:*:*:*:*:*:*:*","matchCriteriaId":"6219D36E-9E2C-4DC7-8FD5-FAD144A333F6"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.5:preview:*:*:*:*:*:*","matchCriteriaId":"8E93C22E-812E-4CDA-9850-2386CE1E817A"}]}]}],"references":[{"url":"http://www.microsoft.com/technet/support/kb.asp?ID=251108","source":"cve@mitre.org"},{"url":"http://www.microsoft.com/technet/support/kb.asp?ID=255676","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1224","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-033","source":"cve@mitre.org"},{"url":"http://www.microsoft.com/technet/support/kb.asp?ID=251108","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.microsoft.com/technet/support/kb.asp?ID=255676","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1224","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-033","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0394","sourceIdentifier":"cve@mitre.org","published":"2000-05-18T04:00:00.000","lastModified":"2026-06-16T21:51:37.467","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"NetProwler 3.0 allows remote attackers to cause a denial of service by sending malformed IP packets that trigger NetProwler's Man-in-the-Middle signature."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:axent:netprowler:3.0:*:*:*:*:*:*:*","matchCriteriaId":"B2EFBF71-2A4B-4714-A129-AA9D278A9E4A"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=95878603510835&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1225","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=392AD3B3.3E9BE3EA%40axent.com","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=95878603510835&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1225","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=392AD3B3.3E9BE3EA%40axent.com","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0437","sourceIdentifier":"cve@mitre.org","published":"2000-05-18T04:00:00.000","lastModified":"2026-06-16T21:51:43.900","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the CyberPatrol daemon \"cyberdaemon\" used in gauntlet and WebShield allows remote attackers to cause a denial of service or execute arbitrary commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:network_associates:gauntlet_firewall:4.1:*:*:*:*:*:*:*","matchCriteriaId":"1635EFBA-AD1C-4C02-B714-A11E78600703"},{"vulnerable":true,"criteria":"cpe:2.3:a:network_associates:gauntlet_firewall:4.2:*:*:*:*:*:*:*","matchCriteriaId":"342EA025-24C8-440F-9D63-B6808198C444"},{"vulnerable":true,"criteria":"cpe:2.3:a:network_associates:gauntlet_firewall:5.0:*:*:*:*:*:*:*","matchCriteriaId":"7A91D5DB-D09F-4CF6-99B2-B444FAD91A4B"},{"vulnerable":true,"criteria":"cpe:2.3:a:network_associates:gauntlet_firewall:5.5:*:*:*:*:*:*:*","matchCriteriaId":"E0B3829B-8730-47B8-BB3F-7D9EF10A7886"},{"vulnerable":true,"criteria":"cpe:2.3:a:network_associates:webshield:4.0:*:solaris:*:*:*:*:*","matchCriteriaId":"07C41A94-7162-4866-8B3E-B3D23380095E"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:network_associates:webshield_e-ppliance:100.0:*:*:*:*:*:*:*","matchCriteriaId":"140F366D-B19D-4BEC-8211-894FA2ADA381"},{"vulnerable":true,"criteria":"cpe:2.3:h:network_associates:webshield_e-ppliance:300.0:*:*:*:*:*:*:*","matchCriteriaId":"2AC41A6A-E973-4C18-A481-0D29349ECB3E"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0249.html","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/322","source":"cve@mitre.org"},{"url":"http://www.pgp.com/jump/gauntlet_advisory.asp","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1234","source":"cve@mitre.org"},{"url":"http://www.tis.com/support/cyberadvisory.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0249.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/322","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.pgp.com/jump/gauntlet_advisory.asp","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1234","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.tis.com/support/cyberadvisory.html","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0450","sourceIdentifier":"cve@mitre.org","published":"2000-05-18T04:00:00.000","lastModified":"2026-06-16T21:51:45.600","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in bbd server in Big Brother System and Network Monitor allows an attacker to execute arbitrary commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sean_macguire:big_brother:1.3b:*:*:*:*:*:*:*","matchCriteriaId":"073613CC-638B-46A9-8BBD-A1D313864BD2"},{"vulnerable":true,"criteria":"cpe:2.3:a:sean_macguire:big_brother:1.4:*:*:*:*:*:*:*","matchCriteriaId":"D29324C9-7C4A-4A5A-A595-A0666498AC88"},{"vulnerable":true,"criteria":"cpe:2.3:a:sean_macguire:big_brother:1.4g:*:*:*:*:*:*:*","matchCriteriaId":"9FDEC456-9591-4195-A251-2196F3049A22"},{"vulnerable":true,"criteria":"cpe:2.3:a:sean_macguire:big_brother:1.4h1:*:*:*:*:*:*:*","matchCriteriaId":"3A6B2570-E8A4-41C8-A5AD-D64333A133E6"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0216.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1257","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0216.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1257","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0452","sourceIdentifier":"cve@mitre.org","published":"2000-05-18T04:00:00.000","lastModified":"2026-06-16T21:51:45.880","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the ESMTP service of Lotus Domino Server 5.0.1 allows remote attackers to cause a denial of service via a long MAIL FROM command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:lotus:domino_enterprise_server:5.0.1:*:*:*:*:*:*:*","matchCriteriaId":"6256A050-8C38-4CC2-86F2-3364FAABDE59"},{"vulnerable":true,"criteria":"cpe:2.3:a:lotus:domino_enterprise_server:5.0.2:*:*:*:*:*:*:*","matchCriteriaId":"C0A1146D-E261-4AE9-8852-5988B3AB5865"},{"vulnerable":true,"criteria":"cpe:2.3:a:lotus:domino_enterprise_server:5.0.3:*:*:*:*:*:*:*","matchCriteriaId":"E5FD1CC4-DFD4-4A32-AD45-353583463916"},{"vulnerable":true,"criteria":"cpe:2.3:a:lotus:domino_mail_server:5.0.1:*:*:*:*:*:*:*","matchCriteriaId":"EF6E13D4-7764-4A02-B599-B68BB45F4AD3"},{"vulnerable":true,"criteria":"cpe:2.3:a:lotus:domino_mail_server:5.0.2:*:*:*:*:*:*:*","matchCriteriaId":"55BC4294-9363-406C-8C64-964A95DA2052"},{"vulnerable":true,"criteria":"cpe:2.3:a:lotus:domino_mail_server:5.0.3:*:*:*:*:*:*:*","matchCriteriaId":"DB86430D-3A2D-4A07-A94B-731640E24269"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0219.html","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/321","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1229","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0219.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/321","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1229","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0453","sourceIdentifier":"cve@mitre.org","published":"2000-05-18T04:00:00.000","lastModified":"2026-06-16T21:51:46.020","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"XFree86 3.3.x and 4.0 allows a user to cause a denial of service via a negative counter value in a malformed TCP packet that is sent to port 6000."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:xfree86_project:x11r6:3.3.5:*:*:*:*:*:*:*","matchCriteriaId":"B43D5F86-97B2-4175-8ED7-1F937850F9DB"},{"vulnerable":true,"criteria":"cpe:2.3:a:xfree86_project:x11r6:3.3.6:*:*:*:*:*:*:*","matchCriteriaId":"0946A224-6A0C-4DE3-89F9-200682431737"},{"vulnerable":true,"criteria":"cpe:2.3:a:xfree86_project:x11r6:4.0:*:*:*:*:*:*:*","matchCriteriaId":"F33E5444-E178-4F49-BDA1-DE576D8526EE"}]}]}],"references":[{"url":"ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2000-012.0.txt","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0223.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1235","source":"cve@mitre.org"},{"url":"ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2000-012.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0223.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1235","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0463","sourceIdentifier":"cve@mitre.org","published":"2000-05-18T04:00:00.000","lastModified":"2026-06-16T21:51:47.320","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"BeOS 5.0 allows remote attackers to cause a denial of service via fragmented TCP packets."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:be:beos:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6EBFAEE-C1D9-48AE-AFE3-2C44CAC74616"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0197.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1222","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0197.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1222","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0305","sourceIdentifier":"cve@mitre.org","published":"2000-05-19T04:00:00.000","lastModified":"2026-06-16T21:51:26.387","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Windows 95, Windows 98, Windows 2000, Windows NT 4.0, and Terminal Server systems allow a remote attacker to cause a denial of service by sending a large number of identical fragmented IP packets, aka jolt2 or the \"IP Fragment Reassembly\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:C","baseScore":7.8,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-399"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:be:beos:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6EBFAEE-C1D9-48AE-AFE3-2C44CAC74616"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_95:*:*:*:*:*:*:*:*","matchCriteriaId":"82F7322B-8022-4D0B-ADB3-D0F5B6F20309"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98:*:gold:*:*:*:*:*:*","matchCriteriaId":"2D3B703C-79B2-4FA2-9E12-713AB977A880"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:terminal_server:*:*:*:*:*:*:*:*","matchCriteriaId":"40242161-D5AD-4314-AB95-E61292C49DF2"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1236","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://www.securityfocus.com/templates/advisory.html?id=2240","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-029","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1236","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://www.securityfocus.com/templates/advisory.html?id=2240","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-029","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0436","sourceIdentifier":"cve@mitre.org","published":"2000-05-19T04:00:00.000","lastModified":"2026-06-16T21:51:43.747","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"MetaProducts Offline Explorer 1.2 and earlier allows remote attackers to access arbitrary files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:metaproducts:offline_explorer:1.0:*:*:*:*:*:*:*","matchCriteriaId":"5C98E0B7-075B-47BC-8D33-D4A9F86FFA1C"},{"vulnerable":true,"criteria":"cpe:2.3:a:metaproducts:offline_explorer:1.1:*:*:*:*:*:*:*","matchCriteriaId":"01BA0C6F-7853-4CDE-8F38-4C2D81234BB7"},{"vulnerable":true,"criteria":"cpe:2.3:a:metaproducts:offline_explorer:1.2:*:*:*:*:*:*:*","matchCriteriaId":"26C7E0F0-0035-4BCF-ACB4-CF32F43753A4"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0254.html","source":"cve@mitre.org"},{"url":"http://www.metaproducts.com/mpOE-HY.html","source":"cve@mitre.org","tags":["Patch"]},{"url":"http://www.securityfocus.com/bid/1231","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0254.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.metaproducts.com/mpOE-HY.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"http://www.securityfocus.com/bid/1231","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0451","sourceIdentifier":"cve@mitre.org","published":"2000-05-19T04:00:00.000","lastModified":"2026-06-16T21:51:45.740","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Intel express 8100 ISDN router allows remote attackers to cause a denial of service via oversized or fragmented ICMP packets."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:intel:express_8100:*:*:*:*:*:*:*:*","matchCriteriaId":"3218FE18-1E23-43F6-930D-8889EB1F845F"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0229.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1228","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0229.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1228","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0431","sourceIdentifier":"cve@mitre.org","published":"2000-05-22T04:00:00.000","lastModified":"2026-06-16T21:51:43.107","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Cobalt RaQ2 and RaQ3 does not properly set the access permissions and ownership for files that are uploaded via FrontPage, which allows attackers to bypass cgiwrap and modify files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:sun:cobalt_raq_2:*:*:*:*:*:*:*:*","matchCriteriaId":"0F6DDD9F-5C58-4092-BF3D-332E2E566182"},{"vulnerable":true,"criteria":"cpe:2.3:h:sun:cobalt_raq_3i:*:*:*:*:*:*:*:*","matchCriteriaId":"0C1E1872-D16C-4848-800C-32B80DD59494"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0305.html","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1346","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1238","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000523100045.B11049%40HiWAAY.net","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0305.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1346","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1238","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000523100045.B11049%40HiWAAY.net","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0438","sourceIdentifier":"cve@mitre.org","published":"2000-05-22T04:00:00.000","lastModified":"2026-06-16T21:51:44.043","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in fdmount on Linux systems allows local users in the \"floppy\" group to execute arbitrary commands via a long mountpoint parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"5B4C973D-1172-4D4C-AF96-9968ED317D36"},{"vulnerable":true,"criteria":"cpe:2.3:o:slackware:slackware_linux:3.3:*:*:*:*:*:*:*","matchCriteriaId":"06F2131E-F9F2-4E65-B95C-B52DB25C69F5"},{"vulnerable":true,"criteria":"cpe:2.3:o:slackware:slackware_linux:3.4:*:*:*:*:*:*:*","matchCriteriaId":"E6732144-10D4-4114-A7DA-32157EE3EF38"},{"vulnerable":true,"criteria":"cpe:2.3:o:slackware:slackware_linux:3.5:*:*:*:*:*:*:*","matchCriteriaId":"125918E7-53BB-407A-8D95-5D95CDF39A88"},{"vulnerable":true,"criteria":"cpe:2.3:o:slackware:slackware_linux:3.6:*:*:*:*:*:*:*","matchCriteriaId":"CE0BBA4F-C61A-4A8E-A7E2-CE0DF76DF592"},{"vulnerable":true,"criteria":"cpe:2.3:o:slackware:slackware_linux:3.9:*:*:*:*:*:*:*","matchCriteriaId":"15CB96AA-7CC1-4F01-8E9A-F85CD851594A"},{"vulnerable":true,"criteria":"cpe:2.3:o:slackware:slackware_linux:4.0:*:*:*:*:*:*:*","matchCriteriaId":"CC3B1DD9-10B5-40FE-AE56-D068C41653DE"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:4.2:*:*:*:*:*:*:*","matchCriteriaId":"451453AC-65FF-4E3B-9AC1-2DDB2E2182E4"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:4.3:*:*:*:*:*:*:*","matchCriteriaId":"7716120D-5110-42B0-A574-9AA2AC8D3C32"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:4.4:*:*:*:*:*:*:*","matchCriteriaId":"CB4C8426-CAF2-4366-94C0-1BA1C544FB6F"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:4.4.1:*:*:*:*:*:*:*","matchCriteriaId":"5CC7D746-B98B-4FAF-B816-57222759A344"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:5.0:*:*:*:*:*:*:*","matchCriteriaId":"830D48B8-D21D-4D31-99A1-20C231804DBE"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:5.1:*:*:*:*:*:*:*","matchCriteriaId":"5C0BBDD2-9FF9-4CB7-BCAF-D4AF15DC2C7C"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:5.2:*:*:*:*:*:*:*","matchCriteriaId":"D1C826AA-6E2F-4DAC-A7A2-9F47729B5DA5"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:5.3:*:*:*:*:*:*:*","matchCriteriaId":"BCC94EF9-5872-402F-B2FC-06331A924BB2"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"F163E145-09F7-4BE2-9B46-5B6713070BAB"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"124E1802-7984-45ED-8A92-393FC20662FD"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.2:*:*:*:*:*:*:*","matchCriteriaId":"1B67020A-6942-4478-B501-764147C4970D"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.3:*:*:*:*:*:*:*","matchCriteriaId":"0AD0FF64-05DF-48C2-9BB5-FD993121FB2E"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.4:*:*:*:*:*:*:*","matchCriteriaId":"7786607A-362E-4817-A17E-C76D6A1F737D"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"C9E7D75A-333E-4C63-9593-F64ABA5D1CE3"},{"vulnerable":true,"criteria":"cpe:2.3:o:turbolinux:turbolinux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"981A0654-C17D-48BB-A8B3-A728CB159C33"},{"vulnerable":true,"criteria":"cpe:2.3:o:turbolinux:turbolinux:6.0.1:*:*:*:*:*:*:*","matchCriteriaId":"2AA8956D-F533-42BA-A06B-7CDB0A267B2F"},{"vulnerable":true,"criteria":"cpe:2.3:o:turbolinux:turbolinux:6.0.2:*:*:*:*:*:*:*","matchCriteriaId":"C6619B49-8A89-4600-A47F-A39C8BF54259"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0245.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1239","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0245.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1239","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0418","sourceIdentifier":"cve@mitre.org","published":"2000-05-23T04:00:00.000","lastModified":"2026-06-16T21:51:40.560","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Cayman 3220-H DSL router allows remote attackers to cause a denial of service via oversized ICMP echo (ping) requests."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:cayman:3220-h_dsl_router:1.0:*:*:*:*:*:*:*","matchCriteriaId":"F0C4894F-C634-4830-B0D8-F6158C074A89"},{"vulnerable":true,"criteria":"cpe:2.3:h:cayman:gatorsurf:5.3:*:*:*:*:*:*:*","matchCriteriaId":"6894F902-4173-4A61-A836-39FC875A0C1D"},{"vulnerable":true,"criteria":"cpe:2.3:h:cayman:gatorsurf:5.3build_r1:*:*:*:*:*:*:*","matchCriteriaId":"3E87B9E4-3AF8-46D3-B2EF-23F22DBE77AA"},{"vulnerable":true,"criteria":"cpe:2.3:h:cayman:gatorsurf:5.3build_r2:*:*:*:*:*:*:*","matchCriteriaId":"9E294847-D685-4D03-B92B-D78C3B4FDFC8"},{"vulnerable":true,"criteria":"cpe:2.3:h:cayman:gatorsurf:5.5build_r0:*:*:*:*:*:*:*","matchCriteriaId":"DF8ECB8A-EDFF-461D-9F6A-80EB8DE9EDEB"},{"vulnerable":true,"criteria":"cpe:2.3:h:cayman:gatorsurf:5.5build_r1:*:*:*:*:*:*:*","matchCriteriaId":"075DC008-B7E8-4707-BB69-BBC63E03C736"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0280.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1240","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0280.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1240","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0551","sourceIdentifier":"cve@mitre.org","published":"2000-05-23T04:00:00.000","lastModified":"2026-06-16T21:51:58.853","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The file transfer mechanism in Danware NetOp 6.0 does not provide authentication, which allows remote attackers to access and modify arbitrary files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:danware_data:netop:6.0:*:*:*:*:*:*:*","matchCriteriaId":"11D50435-13B0-4823-97FF-E7740C616101"},{"vulnerable":true,"criteria":"cpe:2.3:a:danware_data:netop:6.50:*:*:*:*:*:*:*","matchCriteriaId":"6C8A7924-FFE7-45E7-8D72-02790A3662E6"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0339.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1263","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4569","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0339.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1263","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4569","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0396","sourceIdentifier":"cve@mitre.org","published":"2000-05-24T04:00:00.000","lastModified":"2026-06-16T21:51:37.720","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The add.exe program in the Carello shopping cart software allows remote attackers to duplicate files on the server, which could allow the attacker to read source code for web scripts such as .ASP files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:pacific_software:carello:1.2.1:*:*:*:*:*:*:*","matchCriteriaId":"888076E8-B384-467E-9F6E-5FA517DAA4D9"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0285.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1245","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0285.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1245","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0398","sourceIdentifier":"cve@mitre.org","published":"2000-05-24T04:00:00.000","lastModified":"2026-06-16T21:51:37.960","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in wconsole.dll in Rockliffe MailSite Management Agent allows remote attackers to execute arbitrary commands via a long query_string parameter in the HTTP GET request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:rockliffe:mailsite:4.2.10:*:*:*:*:*:*:*","matchCriteriaId":"DEDA707F-1198-4978-96A3-15FFC9D1BA28"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0286.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1244","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0286.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1244","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0399","sourceIdentifier":"cve@mitre.org","published":"2000-05-24T04:00:00.000","lastModified":"2026-06-16T21:51:38.083","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in MDaemon POP server allows remote attackers to cause a denial of service via a long user name."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:alt-n:mdaemon:3.0.3:*:*:*:*:*:*:*","matchCriteriaId":"74E791DD-1376-4E77-9D7B-C66E88146248"},{"vulnerable":true,"criteria":"cpe:2.3:a:alt-n:mdaemon:3.1_beta:*:*:*:*:*:*:*","matchCriteriaId":"6906B4D1-9336-4E52-A1D4-1402F5EF2BBA"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0301.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1250","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0301.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1250","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0441","sourceIdentifier":"cve@mitre.org","published":"2000-05-24T04:00:00.000","lastModified":"2026-06-16T21:51:44.430","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in AIX 3.2.x and 4.x allows local users to gain write access to files on locally or remotely mounted AIX filesystems."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:3.2:*:*:*:*:*:*:*","matchCriteriaId":"DD5E0678-45C7-492A-963C-897494D6878F"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:3.2.4:*:*:*:*:*:*:*","matchCriteriaId":"E55C28A7-CD21-47CD-AA50-E8B2D89A18E8"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:3.2.5:*:*:*:*:*:*:*","matchCriteriaId":"D3C00FC9-AD97-4226-A0EA-7DB14AA592DE"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1:*:*:*:*:*:*:*","matchCriteriaId":"FBF25306-E7C2-4F9A-A809-4779A6C0A079"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1.1:*:*:*:*:*:*:*","matchCriteriaId":"B3BA7775-30F2-4CA0-BA6E-70ED12A48D90"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1.2:*:*:*:*:*:*:*","matchCriteriaId":"FB038A89-1CA6-4313-B7CE-56C894945FFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1.3:*:*:*:*:*:*:*","matchCriteriaId":"2B3BC86F-5718-4232-BFFF-6244A7C09B8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1.4:*:*:*:*:*:*:*","matchCriteriaId":"E6118CC1-6E51-4E1B-8F58-43B337515222"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1.5:*:*:*:*:*:*:*","matchCriteriaId":"F3D3B348-270F-4209-B31A-2B40F5E4A601"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.2:*:*:*:*:*:*:*","matchCriteriaId":"05F20EC2-ADE6-4F96-A2E7-1DCCA819D657"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.2.1:*:*:*:*:*:*:*","matchCriteriaId":"91D7C561-4D23-430B-A7D8-137E52B08FF5"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3:*:*:*:*:*:*:*","matchCriteriaId":"11ACD012-F05F-45CD-A170-96CBAA42FFE4"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.1:*:*:*:*:*:*:*","matchCriteriaId":"55919E74-09E7-44BA-9941-D1B69BB1692F"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.2:*:*:*:*:*:*:*","matchCriteriaId":"45F3C5D8-8BC3-44EB-917A-D0BA051D3D9D"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0275.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1241","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0275.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1241","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0442","sourceIdentifier":"cve@mitre.org","published":"2000-05-24T04:00:00.000","lastModified":"2026-06-16T21:51:44.560","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Qpopper 2.53 and earlier allows local users to gain privileges via a formatting string in the From: header, which is processed by the euidl command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:2.52:*:*:*:*:*:*:*","matchCriteriaId":"D691E685-7C2D-4EB8-9088-7F9D0E905F31"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:qpopper:2.53:*:*:*:*:*:*:*","matchCriteriaId":"B223F362-D00F-4D93-8328-33FF1CE331EA"},{"vulnerable":true,"criteria":"cpe:2.3:h:sun:cobalt_raq_2:*:*:*:*:*:*:*:*","matchCriteriaId":"0F6DDD9F-5C58-4092-BF3D-332E2E566182"},{"vulnerable":true,"criteria":"cpe:2.3:h:sun:cobalt_raq_3i:*:*:*:*:*:*:*:*","matchCriteriaId":"0C1E1872-D16C-4848-800C-32B80DD59494"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0267.html","source":"cve@mitre.org"},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_51.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1242","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0267.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_51.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1242","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0443","sourceIdentifier":"cve@mitre.org","published":"2000-05-24T04:00:00.000","lastModified":"2026-06-16T21:51:44.673","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The web interface server in HP Web JetAdmin 5.6 allows remote attackers to read arbitrary files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:hp:jetadmin:6.0:*:*:*:*:*:*:*","matchCriteriaId":"17A6954A-D8E0-4ADF-BB64-329D7589F38A"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0281.html","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1350","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1243","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0281.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1350","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1243","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0444","sourceIdentifier":"cve@mitre.org","published":"2000-05-24T04:00:00.000","lastModified":"2026-06-16T21:51:44.803","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"HP Web JetAdmin 6.0 allows remote attackers to cause a denial of service via a malformed URL to port 8000."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:hp:jetadmin:6.0:*:*:*:*:*:*:*","matchCriteriaId":"17A6954A-D8E0-4ADF-BB64-329D7589F38A"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0277.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1246","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0277.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1246","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0445","sourceIdentifier":"cve@mitre.org","published":"2000-05-24T04:00:00.000","lastModified":"2026-06-16T21:51:44.950","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The pgpk command in PGP 5.x on Unix systems uses an insufficiently random data source for non-interactive key pair generation, which may produce predictable keys."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:pgp:pgp:5.0_linux:*:*:*:*:*:*:*","matchCriteriaId":"C0A66DFA-F3E7-46DA-9D14-9F7E6AE434C8"},{"vulnerable":true,"criteria":"cpe:2.3:a:pgp:pgp:5.0i:*:*:*:*:*:*:*","matchCriteriaId":"E8B8CF74-2F7D-418A-B271-07A39A267C1F"},{"vulnerable":true,"criteria":"cpe:2.3:a:pgp:pgp:6.5_linux:*:*:*:*:*:*:*","matchCriteriaId":"39EE190C-D0F1-41E4-8A27-B399760A2797"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0273.html","source":"cve@mitre.org"},{"url":"http://www.cert.org/advisories/CA-2000-09.html","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://www.osvdb.org/1355","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1251","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0273.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.cert.org/advisories/CA-2000-09.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"http://www.osvdb.org/1355","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1251","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0446","sourceIdentifier":"cve@mitre.org","published":"2000-05-24T04:00:00.000","lastModified":"2026-06-16T21:51:45.073","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in MDBMS database server allows remote attackers to execute arbitrary commands via a long string."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:marty_bochane:mdbms:0.9_xbx:*:*:*:*:*:*:*","matchCriteriaId":"15002E13-4631-42A0-9AF4-64BD1B020A08"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0274.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1252","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0274.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1252","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0491","sourceIdentifier":"cve@mitre.org","published":"2000-05-24T04:00:00.000","lastModified":"2026-06-16T21:51:50.913","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the XDMCP parsing code of GNOME gdm, KDE kdm, and wdm allows remote attackers to execute arbitrary commands or cause a denial of service via a long FORWARD_QUERY request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gnome:gdm:1.0:*:*:*:*:*:*:*","matchCriteriaId":"E2D650E6-F568-4B7F-8913-3DC10E8F4201"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux:*:*:*:*:*:*:*:*","matchCriteriaId":"4EC3F7E5-5D49-471B-A705-ADD2642E5B46"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.2:*:*:*:*:*:*:*","matchCriteriaId":"1B67020A-6942-4478-B501-764147C4970D"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.4:*:*:*:*:*:*:*","matchCriteriaId":"7786607A-362E-4817-A17E-C76D6A1F737D"}]}]}],"references":[{"url":"ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-2000-013.0.txt","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0241.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0025.html","source":"cve@mitre.org"},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_49.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1233","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1279","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1370","source":"cve@mitre.org"},{"url":"ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-2000-013.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0241.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0025.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_49.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1233","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1279","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1370","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0403","sourceIdentifier":"cve@mitre.org","published":"2000-05-25T04:00:00.000","lastModified":"2026-06-16T21:51:38.590","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The CIFS Computer Browser service on Windows NT 4.0 allows a remote attacker to cause a denial of service by sending a large number of host announcement requests to the master browse tables, aka the \"HostAnnouncement Flooding\" or \"HostAnnouncement Frame\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"http://www.microsoft.com/technet/support/kb.asp?ID=263307","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1261","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-036","source":"cve@mitre.org"},{"url":"http://www.microsoft.com/technet/support/kb.asp?ID=263307","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1261","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-036","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0404","sourceIdentifier":"cve@mitre.org","published":"2000-05-25T04:00:00.000","lastModified":"2026-06-16T21:51:38.717","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The CIFS Computer Browser service allows remote attackers to cause a denial of service by sending a ResetBrowser frame to the Master Browser, aka the \"ResetBrowser Frame\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:terminal_server:*:*:*:*:*:*:*:*","matchCriteriaId":"40242161-D5AD-4314-AB95-E61292C49DF2"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_95:*:*:*:*:*:*:*:*","matchCriteriaId":"82F7322B-8022-4D0B-ADB3-D0F5B6F20309"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98:*:gold:*:*:*:*:*:*","matchCriteriaId":"2D3B703C-79B2-4FA2-9E12-713AB977A880"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"http://www.microsoft.com/technet/support/kb.asp?ID=262694","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1262","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-036","source":"cve@mitre.org"},{"url":"http://www.microsoft.com/technet/support/kb.asp?ID=262694","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1262","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-036","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0517","sourceIdentifier":"cve@mitre.org","published":"2000-05-26T04:00:00.000","lastModified":"2026-06-16T21:51:54.310","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Netscape 4.73 and earlier does not properly warn users about a potentially invalid certificate if the user has previously accepted the certificate for a different web site, which could allow remote attackers to spoof a legitimate web site by compromising that site's DNS information."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.0:*:*:*:*:*:*:*","matchCriteriaId":"209C7BB1-EFDF-43AB-9FB6-DF67465DEAEF"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.5:*:*:*:*:*:*:*","matchCriteriaId":"4E9A5461-B0F2-49DB-A69C-3D2D27709647"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.6:*:*:*:*:*:*:*","matchCriteriaId":"529E3F71-6016-461D-A162-0DBDD5505389"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.7:*:*:*:*:*:*:*","matchCriteriaId":"38FD74F5-12ED-4049-B06F-0F22A0254C0F"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.51:*:*:*:*:*:*:*","matchCriteriaId":"918BE44C-8D64-4040-BC74-802AA3FA4E10"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.61:*:*:*:*:*:*:*","matchCriteriaId":"6AA534C4-9411-44EC-AA34-2287C79AD235"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.72:*:*:*:*:*:*:*","matchCriteriaId":"3A4E8588-A941-4759-B41C-00F193F2C63B"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.73:*:*:*:*:*:*:*","matchCriteriaId":"3E48C051-EB45-4262-86C2-2333FD5C7745"}]}]}],"references":[{"url":"http://www.cert.org/advisories/CA-2000-08.html","source":"cve@mitre.org","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.securityfocus.com/bid/1260","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4550","source":"cve@mitre.org"},{"url":"http://www.cert.org/advisories/CA-2000-08.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.securityfocus.com/bid/1260","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4550","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0553","sourceIdentifier":"cve@mitre.org","published":"2000-05-26T04:00:00.000","lastModified":"2026-06-16T21:51:59.123","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Race condition in IPFilter firewall 3.4.3 and earlier, when configured with overlapping \"return-rst\" and \"keep state\" rules, allows remote attackers to bypass access restrictions."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:N/I:P/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:darren_reed:ipfilter:3.3.15:*:*:*:*:*:*:*","matchCriteriaId":"5D5F9210-DD20-4D86-B4F0-74F60A263F5E"},{"vulnerable":true,"criteria":"cpe:2.3:a:darren_reed:ipfilter:3.4.3:*:*:*:*:*:*:*","matchCriteriaId":"ACB9F76C-D145-4347-9A4C-1BD243AE68FB"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0326.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1377","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1308","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4994","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0326.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1377","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1308","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4994","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0460","sourceIdentifier":"cve@mitre.org","published":"2000-05-27T04:00:00.000","lastModified":"2026-06-16T21:51:46.943","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in KDE kdesud on Linux allows local uses to gain privileges via a long DISPLAY environmental variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:kde:kde:1.1:*:*:*:*:*:*:*","matchCriteriaId":"55B38F8C-9451-441B-BCD8-E41C1A2231DD"},{"vulnerable":true,"criteria":"cpe:2.3:o:kde:kde:1.1.1:*:*:*:*:*:*:*","matchCriteriaId":"D04A4717-229D-4E20-8FD2-DC13757B0AC5"},{"vulnerable":true,"criteria":"cpe:2.3:o:kde:kde:1.1.2:*:*:*:*:*:*:*","matchCriteriaId":"F472ECE0-821E-4A20-B6FC-CC4FC5D1BA36"},{"vulnerable":true,"criteria":"cpe:2.3:o:kde:kde:1.2:*:*:*:*:*:*:*","matchCriteriaId":"D6767505-CFD5-4C66-A67A-4740E2994CC8"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0353.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1274","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0353.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1274","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0456","sourceIdentifier":"cve@mitre.org","published":"2000-05-28T04:00:00.000","lastModified":"2026-06-16T21:51:46.423","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"NetBSD 1.4.2 and earlier allows local users to cause a denial of service by repeatedly running certain system calls in the kernel which do not yield the CPU, aka \"cpu-hog\"."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.1:*:alpha:*:*:*:*:*","matchCriteriaId":"247ABD95-74CA-45B8-8729-3C35C9E11186"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.1:*:arm32:*:*:*:*:*","matchCriteriaId":"1D4C44E8-075A-4B48-88DA-2CAC25CDF159"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.1:*:sparc:*:*:*:*:*","matchCriteriaId":"19D1E7AC-79B6-4136-ADB2-06BEE9773795"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.1:*:x86:*:*:*:*:*","matchCriteriaId":"E2EE8A19-8AB1-4283-95EA-9EE3C7E5DED7"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.2:*:alpha:*:*:*:*:*","matchCriteriaId":"6FA1C84C-6624-4032-8D0E-5EBB054F5224"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.2:*:arm32:*:*:*:*:*","matchCriteriaId":"06B9ADAD-ADDC-47AC-9924-B31B17DDF163"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.2:*:sparc:*:*:*:*:*","matchCriteriaId":"6DC0D30E-DBF1-4FDB-80C0-80DB50D9E77A"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.2:*:x86:*:*:*:*:*","matchCriteriaId":"537FD523-1D44-4D85-AED1-C092E0155CF2"}]}]}],"references":[{"url":"ftp://ftp.netbsd.org/pub/NetBSD/misc/security/advisories/NetBSD-SA2000-005.txt.asc","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1365","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1272","source":"cve@mitre.org"},{"url":"ftp://ftp.netbsd.org/pub/NetBSD/misc/security/advisories/NetBSD-SA2000-005.txt.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1365","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1272","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0462","sourceIdentifier":"cve@mitre.org","published":"2000-05-28T04:00:00.000","lastModified":"2026-06-16T21:51:47.193","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ftpd in NetBSD 1.4.2 does not properly parse entries in /etc/ftpchroot and does not chroot the specified users, which allows those users to access other files outside of their home directory."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.2:*:alpha:*:*:*:*:*","matchCriteriaId":"6FA1C84C-6624-4032-8D0E-5EBB054F5224"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.2:*:arm32:*:*:*:*:*","matchCriteriaId":"06B9ADAD-ADDC-47AC-9924-B31B17DDF163"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.2:*:sparc:*:*:*:*:*","matchCriteriaId":"6DC0D30E-DBF1-4FDB-80C0-80DB50D9E77A"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.2:*:x86:*:*:*:*:*","matchCriteriaId":"537FD523-1D44-4D85-AED1-C092E0155CF2"}]}]}],"references":[{"url":"ftp://ftp.netbsd.org/pub/NetBSD/misc/security/advisories/NetBSD-SA2000-006.txt.asc","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1366","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1273","source":"cve@mitre.org"},{"url":"ftp://ftp.netbsd.org/pub/NetBSD/misc/security/advisories/NetBSD-SA2000-006.txt.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1366","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1273","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0454","sourceIdentifier":"cve@mitre.org","published":"2000-05-29T04:00:00.000","lastModified":"2026-06-16T21:51:46.153","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Linux cdrecord allows local users to gain privileges via the dev parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"E4853E92-5E0A-47B9-A343-D5BEE87D2C27"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0367.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0434.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0019.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1265","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0367.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0434.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0019.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1265","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0455","sourceIdentifier":"cve@mitre.org","published":"2000-05-29T04:00:00.000","lastModified":"2026-06-16T21:51:46.287","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in xlockmore xlock program version 4.16 and earlier allows local users to read sensitive data from memory via a long -mode option."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:david_bagley:xlock:4.16:*:*:*:*:*:*:*","matchCriteriaId":"DE36D516-F942-4398-BEFE-9C7E28CCE2DA"}]}]}],"references":[{"url":"ftp://ftp.netbsd.org/pub/NetBSD/misc/security/advisories/NetBSD-SA2000-003.txt.asc","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0375.html","source":"cve@mitre.org"},{"url":"http://www.nai.com/nai_labs/asp_set/advisory/41initialized.asp","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1267","source":"cve@mitre.org"},{"url":"ftp://ftp.netbsd.org/pub/NetBSD/misc/security/advisories/NetBSD-SA2000-003.txt.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0375.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.nai.com/nai_labs/asp_set/advisory/41initialized.asp","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1267","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0461","sourceIdentifier":"cve@mitre.org","published":"2000-05-29T04:00:00.000","lastModified":"2026-06-16T21:51:47.067","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The undocumented semconfig system call in BSD freezes the state of semaphores, which allows local users to cause a denial of service of the semaphore system by using the semconfig call."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:1.1.5.1:*:*:*:*:*:*:*","matchCriteriaId":"C496B665-70DA-4B98-A5D1-E2935C0CE840"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.0:*:*:*:*:*:*:*","matchCriteriaId":"F1F098C1-D09E-49B4-9B51-E84B6C4EA6CD"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.0.5:*:*:*:*:*:*:*","matchCriteriaId":"34797660-41F5-4358-B70F-2A40DE48F182"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.1.0:*:*:*:*:*:*:*","matchCriteriaId":"27C9E23D-AB82-4AE1-873E-C5493BB96AA1"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.1.5:*:*:*:*:*:*:*","matchCriteriaId":"4054D69F-596F-4EB4-BE9A-E2478343F55A"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.1.6:*:*:*:*:*:*:*","matchCriteriaId":"CA26ABBE-9973-45FA-9E9B-82170B751219"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.1.6.1:*:*:*:*:*:*:*","matchCriteriaId":"7891202C-62AF-4590-9E5F-3514FDA2B38E"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.1.7.1:*:*:*:*:*:*:*","matchCriteriaId":"BF8F9B2F-E898-4F87-A245-32A41748587B"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2:*:*:*:*:*:*:*","matchCriteriaId":"183667CA-6DF1-4BFB-AE32-9ABF55B7283A"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2.2:*:*:*:*:*:*:*","matchCriteriaId":"EBDDEC3F-52EB-4E1E-84C4-B472600059EC"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2.3:*:*:*:*:*:*:*","matchCriteriaId":"B58E02AE-38B4-466E-BF73-2F0B80AF7BA5"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2.4:*:*:*:*:*:*:*","matchCriteriaId":"3928D5CF-6FC0-434C-8A80-ABDBF346C2C9"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2.5:*:*:*:*:*:*:*","matchCriteriaId":"314BA420-4C74-4060-8ACE-D7A7C041CF2B"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2.6:*:*:*:*:*:*:*","matchCriteriaId":"2EAD7613-A5B3-4621-B981-290C7C6B8BA0"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2.8:*:*:*:*:*:*:*","matchCriteriaId":"D1CA3337-9BEE-49C5-9EDE-8CDBE5580537"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.0:*:*:*:*:*:*:*","matchCriteriaId":"EE38C50A-81FE-412E-9717-3672FAE6A6F4"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.1:*:*:*:*:*:*:*","matchCriteriaId":"263F3734-7076-4EA8-B4C0-F37CFC4E979E"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.2:*:*:*:*:*:*:*","matchCriteriaId":"0419DD66-FF66-48BC-AD3B-F6AFD0551E36"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.3:*:*:*:*:*:*:*","matchCriteriaId":"C3518628-08E5-4AD7-AAF6-A4E38F1CDE2C"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.4:*:*:*:*:*:*:*","matchCriteriaId":"B982342C-1981-4C55-8044-AFE4D87623DF"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.0:*:*:*:*:*:*:*","matchCriteriaId":"D0A585A1-FF82-418F-90F8-072458DB7816"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.0:alpha:*:*:*:*:*:*","matchCriteriaId":"E3F7EB61-55A5-4776-B0E7-3508920A6CEA"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:5.0:*:*:*:*:*:*:*","matchCriteriaId":"61EBA52A-2D8B-4FB5-866E-AE67CE1842E7"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:5.0:alpha:*:*:*:*:*:*","matchCriteriaId":"3B13D898-C1B6-44B9-8432-7DDB8A380E9E"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.1:*:alpha:*:*:*:*:*","matchCriteriaId":"247ABD95-74CA-45B8-8729-3C35C9E11186"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.1:*:arm32:*:*:*:*:*","matchCriteriaId":"1D4C44E8-075A-4B48-88DA-2CAC25CDF159"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.1:*:sparc:*:*:*:*:*","matchCriteriaId":"19D1E7AC-79B6-4136-ADB2-06BEE9773795"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.2:*:alpha:*:*:*:*:*","matchCriteriaId":"6FA1C84C-6624-4032-8D0E-5EBB054F5224"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.2:*:arm32:*:*:*:*:*","matchCriteriaId":"06B9ADAD-ADDC-47AC-9924-B31B17DDF163"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.2:*:sparc:*:*:*:*:*","matchCriteriaId":"6DC0D30E-DBF1-4FDB-80C0-80DB50D9E77A"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.2:*:x86:*:*:*:*:*","matchCriteriaId":"537FD523-1D44-4D85-AED1-C092E0155CF2"}]}]}],"references":[{"url":"ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:19.semconfig.asc","source":"cve@mitre.org"},{"url":"ftp://ftp.netbsd.org/pub/NetBSD/misc/security/advisories/NetBSD-SA2000-004.txt.asc","source":"cve@mitre.org"},{"url":"http://www.openbsd.org/errata26.html#semconfig","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1270","source":"cve@mitre.org"},{"url":"ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:19.semconfig.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"ftp://ftp.netbsd.org/pub/NetBSD/misc/security/advisories/NetBSD-SA2000-004.txt.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.openbsd.org/errata26.html#semconfig","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1270","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0564","sourceIdentifier":"cve@mitre.org","published":"2000-05-29T04:00:00.000","lastModified":"2026-06-16T21:52:00.420","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The guestbook CGI program in ICQ Web Front service for ICQ 2000a, 99b, and others allows remote attackers to cause a denial of service via a URL with a long name parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mirabilis:icq:0.99b_1.1.1.1:*:*:*:*:*:*:*","matchCriteriaId":"55BF15F6-FFF7-4A0D-A2FF-8160AB3D70C5"},{"vulnerable":true,"criteria":"cpe:2.3:a:mirabilis:icq:0.99b_v.3.19:*:*:*:*:*:*:*","matchCriteriaId":"6A5D8068-55DF-4008-98CC-4ABEED68260D"},{"vulnerable":true,"criteria":"cpe:2.3:a:mirabilis:icq:98.0a:*:*:*:*:*:*:*","matchCriteriaId":"F2CBBD4E-4E3D-4441-88B0-24A6566CCB93"},{"vulnerable":true,"criteria":"cpe:2.3:a:mirabilis:icq:99a_2.15build1701:*:*:*:*:*:*:*","matchCriteriaId":"B9CB6B89-E3B1-4096-AF07-C9E74BFCABDC"},{"vulnerable":true,"criteria":"cpe:2.3:a:mirabilis:icq:99a_2.21build1800:*:*:*:*:*:*:*","matchCriteriaId":"7181BF12-E9B6-4F8E-B1D0-3251007389D8"},{"vulnerable":true,"criteria":"cpe:2.3:a:mirabilis:icq:2000.0a:*:*:*:*:*:*:*","matchCriteriaId":"1C7B95B0-8CCB-4561-B354-80925B9769D6"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q2/0218.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q2/0218.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0402","sourceIdentifier":"cve@mitre.org","published":"2000-05-30T04:00:00.000","lastModified":"2026-06-16T21:51:38.473","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Mixed Mode authentication capability in Microsoft SQL Server 7.0 stores the System Administrator (sa) account in plaintext in a log file which is readable by any user, aka the \"SQL Server 7.0 Service Pack Password\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:sql_server:7.0:*:*:*:*:*:*:*","matchCriteriaId":"A2AB95D7-394E-423B-884C-87A9960682EE"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:sql_server:7.0:sp1:*:*:*:*:*:*","matchCriteriaId":"4355BA3D-B985-4DC7-AD9D-21B64652CC19"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:sql_server:7.0:sp2:*:*:*:*:*:*","matchCriteriaId":"D590A237-1587-4FF2-BEEA-F96B1C08F84C"}]}]}],"references":[{"url":"http://www.microsoft.com/technet/support/kb.asp?ID=263968","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1281","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-035","source":"cve@mitre.org"},{"url":"http://www.microsoft.com/technet/support/kb.asp?ID=263968","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1281","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-035","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0485","sourceIdentifier":"cve@mitre.org","published":"2000-05-30T04:00:00.000","lastModified":"2026-06-16T21:51:50.143","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft SQL Server allows local users to obtain database passwords via the Data Transformation Service (DTS) package Properties dialog, aka the \"DTS Password\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:sql_server:6.5:*:*:*:*:*:*:*","matchCriteriaId":"08CB788D-CFEC-4F8B-9158-8A15319FAB49"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:sql_server:7.0:*:*:*:*:*:*:*","matchCriteriaId":"A2AB95D7-394E-423B-884C-87A9960682EE"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/62771","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1292","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-041","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4582","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/62771","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1292","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-041","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4582","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0486","sourceIdentifier":"cve@mitre.org","published":"2000-05-30T04:00:00.000","lastModified":"2026-06-16T21:51:50.270","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Cisco TACACS+ tac_plus server allows remote attackers to cause a denial of service via a malformed packet with a long length field."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:*:*:*:*:*:*:*:*","matchCriteriaId":"5802E2D8-7069-474C-826F-AEE7B50BFE34"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:tacacs\\+:f4.0.2alpha:*:*:*:*:*:*:*","matchCriteriaId":"87DF1CE3-048E-49E4-86F0-FBC92BB81901"},{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:tacacs\\+:f4.0.3alpha:*:*:*:*:*:*:*","matchCriteriaId":"D28D4B48-AF91-48B0-97D3-876E8E52D7D0"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0369.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0370.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1293","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4985","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0369.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0370.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1293","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4985","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0488","sourceIdentifier":"cve@mitre.org","published":"2000-05-30T04:00:00.000","lastModified":"2026-06-16T21:51:50.513","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in ITHouse mail server 1.04 allows remote attackers to execute arbitrary commands via a long RCPT TO mail command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ithouse:ithouse_mail_server:1.0.4:*:*:*:*:*:*:*","matchCriteriaId":"2BA425A2-D094-414D-B954-D8D7E9BEFE48"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/win2ksecadvice/2000-q2/0148.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1285","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4580","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/win2ksecadvice/2000-q2/0148.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1285","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4580","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0495","sourceIdentifier":"cve@mitre.org","published":"2000-05-30T04:00:00.000","lastModified":"2026-06-16T21:51:51.460","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Windows Media Encoder allows remote attackers to cause a denial of service via a malformed request, aka the \"Malformed Windows Media Encoder Request\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:windows_media_services:4.0:*:*:*:*:*:*:*","matchCriteriaId":"D073958F-0428-4E15-97B0-8EDAD0E80632"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:windows_media_services:4.1:*:*:*:*:*:*:*","matchCriteriaId":"AA3DDE73-E623-45A3-AA49-17BAFB89A2CC"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1282","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-038","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4585","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1282","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-038","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4585","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0505","sourceIdentifier":"cve@mitre.org","published":"2000-05-31T04:00:00.000","lastModified":"2026-06-16T21:51:52.680","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Apache 1.3.x HTTP server for Windows platforms allows remote attackers to list directory contents by requesting a URL containing a large number of / characters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.3.6:*:win32:*:*:*:*:*","matchCriteriaId":"15B826BC-04A7-4696-85A1-6FDD2805709F"},{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.3.9:*:win32:*:*:*:*:*","matchCriteriaId":"392AB96B-598D-44E7-894D-FDFAFDC83DAD"},{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.3.11:*:win32:*:*:*:*:*","matchCriteriaId":"5E3B21AE-B167-4E49-AC32-537DCAABAB33"},{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.3.12:*:win32:*:*:*:*:*","matchCriteriaId":"F9778DCA-00B3-4C15-B1B7-05738CD61E62"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:http_server:1.3.3:*:win32:*:*:*:*:*","matchCriteriaId":"47BB20AB-148E-407E-8A0D-DBCB91A0B129"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:http_server:1.3.6.2:*:win32:*:*:*:*:*","matchCriteriaId":"A9CFC56F-FC11-49F9-B5BB-C0C9603DD292"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1284","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.BSF.4.20.0006031912360.45740-100000%40alive.znep.com","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4575","source":"cve@mitre.org"},{"url":"https://lists.apache.org/thread.html/r5419c9ba0951ef73a655362403d12bb8d10fab38274deb3f005816f5%40%3Ccvs.httpd.apache.org%3E","source":"cve@mitre.org"},{"url":"https://lists.apache.org/thread.html/r5f9c22f9c28adbd9f00556059edc7b03a5d5bb71d4bb80257c0d34e4%40%3Ccvs.httpd.apache.org%3E","source":"cve@mitre.org"},{"url":"https://lists.apache.org/thread.html/r9f93cf6dde308d42a9c807784e8102600d0397f5f834890708bf6920%40%3Ccvs.httpd.apache.org%3E","source":"cve@mitre.org"},{"url":"https://lists.apache.org/thread.html/rb9c9f42dafa25d2f669dac2a536a03f2575bc5ec1be6f480618aee10%40%3Ccvs.httpd.apache.org%3E","source":"cve@mitre.org"},{"url":"https://lists.apache.org/thread.html/rf2f0f3611f937cf6cfb3b4fe4a67f69885855126110e1e3f2fb2728e%40%3Ccvs.httpd.apache.org%3E","source":"cve@mitre.org"},{"url":"https://lists.apache.org/thread.html/rf6449464fd8b7437704c55f88361b66f12d5b5f90bcce66af4be4ba9%40%3Ccvs.httpd.apache.org%3E","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1284","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.BSF.4.20.0006031912360.45740-100000%40alive.znep.com","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4575","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://lists.apache.org/thread.html/r5419c9ba0951ef73a655362403d12bb8d10fab38274deb3f005816f5%40%3Ccvs.httpd.apache.org%3E","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://lists.apache.org/thread.html/r5f9c22f9c28adbd9f00556059edc7b03a5d5bb71d4bb80257c0d34e4%40%3Ccvs.httpd.apache.org%3E","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://lists.apache.org/thread.html/r9f93cf6dde308d42a9c807784e8102600d0397f5f834890708bf6920%40%3Ccvs.httpd.apache.org%3E","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://lists.apache.org/thread.html/rb9c9f42dafa25d2f669dac2a536a03f2575bc5ec1be6f480618aee10%40%3Ccvs.httpd.apache.org%3E","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://lists.apache.org/thread.html/rf2f0f3611f937cf6cfb3b4fe4a67f69885855126110e1e3f2fb2728e%40%3Ccvs.httpd.apache.org%3E","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://lists.apache.org/thread.html/rf6449464fd8b7437704c55f88361b66f12d5b5f90bcce66af4be4ba9%40%3Ccvs.httpd.apache.org%3E","source":"af854a3a-2127-422b-91ae-364da2661108"}],"vendorComments":[{"organization":"Apache","comment":"Fixed in Apache HTTP Server 1.3.14:\nhttp://httpd.apache.org/security/vulnerabilities_13.html","lastModified":"2008-07-02T00:00:00"}]}},{"cve":{"id":"CVE-2000-0530","sourceIdentifier":"cve@mitre.org","published":"2000-05-31T04:00:00.000","lastModified":"2026-06-16T21:51:55.997","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The KApplication class in the KDE 1.1.2 configuration file management capability allows local users to overwrite arbitrary files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux:2.4:*:*:*:*:*:*:*","matchCriteriaId":"A63714ED-A697-4AC3-AF13-3B028F9A87EF"},{"vulnerable":true,"criteria":"cpe:2.3:o:kde:kde:1.1.2:*:*:*:*:*:*:*","matchCriteriaId":"F472ECE0-821E-4A20-B6FC-CC4FC5D1BA36"}]}]}],"references":[{"url":"ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-2000-015.0.txt","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0387.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-032.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1291","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4583","source":"cve@mitre.org"},{"url":"ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-2000-015.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0387.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-032.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1291","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4583","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0590","sourceIdentifier":"cve@mitre.org","published":"2000-06-01T04:00:00.000","lastModified":"2026-06-16T21:48:41.527","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A system does not present an appropriate legal message or warning to a user who is accessing it."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*","matchCriteriaId":"4C56F007-5F8E-4BDD-A803-C907BCC0AF55"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.6.20.1:*:*:*:*:*:*:*","matchCriteriaId":"1E3313D5-52E8-49B3-B145-170D9A26DA43"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_95:*:*:*:*:*:*:*:*","matchCriteriaId":"82F7322B-8022-4D0B-ADB3-D0F5B6F20309"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98:*:gold:*:*:*:*:*:*","matchCriteriaId":"2D3B703C-79B2-4FA2-9E12-713AB977A880"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:3.5.1:*:*:*:*:*:*:*","matchCriteriaId":"D0D4EAC2-A948-461F-B5DD-0AE73CF05D29"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:3.5.1:sp1:*:*:*:*:*:*","matchCriteriaId":"EF8BECF6-3C33-4D8C-B54E-A0D2F3295E81"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:3.5.1:sp2:*:*:*:*:*:*","matchCriteriaId":"828B4519-24D8-45A7-8448-D5FF6C83A2C3"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:3.5.1:sp3:*:*:*:*:*:*","matchCriteriaId":"F495AF7A-CC31-4045-BACC-902950C80ABF"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:3.5.1:sp5:*:*:*:*:*:*","matchCriteriaId":"55A2AC4C-6B85-4B60-BFE1-C9588C5973B0"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"http://ciac.llnl.gov/ciac/bulletins/j-043.shtml","source":"cve@mitre.org"},{"url":"http://ciac.llnl.gov/ciac/bulletins/j-043.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0467","sourceIdentifier":"cve@mitre.org","published":"2000-06-01T04:00:00.000","lastModified":"2026-06-16T21:51:47.820","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Linux splitvt 1.6.3 and earlier allows local users to gain root privileges via a long password in the screen locking function."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sam_lantinga:splitvt:1.6.3:*:*:*:*:*:*:*","matchCriteriaId":"652F40A9-B1B1-4B39-8C97-1CA42E2C2858"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0125.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1346","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0125.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1346","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0470","sourceIdentifier":"cve@mitre.org","published":"2000-06-01T04:00:00.000","lastModified":"2026-06-16T21:51:48.193","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Allegro RomPager HTTP server allows remote attackers to cause a denial of service via a malformed authentication request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:allegro:rom_pager:2.10:*:*:*:*:*:*:*","matchCriteriaId":"5BBAF70C-7F61-4408-8812-959FB991C5A4"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0398.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1290","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4588","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0398.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1290","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4588","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0474","sourceIdentifier":"cve@mitre.org","published":"2000-06-01T04:00:00.000","lastModified":"2026-06-16T21:51:48.737","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Real Networks RealServer 7.x allows remote attackers to cause a denial of service via a malformed request for a page in the viewsource directory."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:C","baseScore":7.8,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:realnetworks:realserver:7.0:*:*:*:*:*:*:*","matchCriteriaId":"9392C48A-A1AB-43F7-8374-02BDCE6589AC"},{"vulnerable":true,"criteria":"cpe:2.3:a:realnetworks:realserver:7.0.1:*:*:*:*:*:*:*","matchCriteriaId":"80676193-A0EE-42EE-8DB4-BFF680A05603"},{"vulnerable":true,"criteria":"cpe:2.3:a:realnetworks:realserver:8.0_beta:*:*:*:*:*:*:*","matchCriteriaId":"78E05F93-842F-4146-971D-CE507A1C55F7"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0410.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0427.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1288","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4587","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0410.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0427.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1288","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4587","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0476","sourceIdentifier":"cve@mitre.org","published":"2000-06-01T04:00:00.000","lastModified":"2026-06-16T21:51:48.990","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"xterm, Eterm, and rxvt allow an attacker to cause a denial of service by embedding certain escape characters which force the window to be resized."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:michael_jennings:eterm:0.8.10:*:*:*:*:*:*:*","matchCriteriaId":"B33FE201-759E-4EE4-B19E-A25E6FBD711B"},{"vulnerable":true,"criteria":"cpe:2.3:a:putty:putty:0.48:*:*:*:*:*:*:*","matchCriteriaId":"1283B462-042C-4857-A700-4179AAE20E2F"},{"vulnerable":true,"criteria":"cpe:2.3:a:rxvt:rxvt:2.6.1:*:*:*:*:*:*:*","matchCriteriaId":"E5CE4F28-5C30-4A54-8A4B-3FA6B01F1467"},{"vulnerable":true,"criteria":"cpe:2.3:a:xfree86_project:x11r6:3.3.3:*:*:*:*:*:*:*","matchCriteriaId":"C104B02C-3F3B-4DB4-8A1D-65A7DAA380EB"},{"vulnerable":true,"criteria":"cpe:2.3:a:xfree86_project:x11r6:4.0:*:*:*:*:*:*:*","matchCriteriaId":"F33E5444-E178-4F49-BDA1-DE576D8526EE"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0409.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0420.html","source":"cve@mitre.org"},{"url":"http://www.openwall.com/lists/oss-security/2024/06/09/1","source":"cve@mitre.org"},{"url":"http://www.openwall.com/lists/oss-security/2024/06/09/2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1298","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0409.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0420.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.openwall.com/lists/oss-security/2024/06/09/1","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.openwall.com/lists/oss-security/2024/06/09/2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1298","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0487","sourceIdentifier":"cve@mitre.org","published":"2000-06-01T04:00:00.000","lastModified":"2026-06-16T21:51:50.390","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Protected Store in Windows 2000 does not properly select the strongest encryption when available, which causes it to use a default of 40-bit encryption instead of 56-bit DES encryption, aka the \"Protected Store Key Length\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:N","baseScore":3.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1295","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-032","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1295","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-032","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0490","sourceIdentifier":"cve@mitre.org","published":"2000-06-01T04:00:00.000","lastModified":"2026-06-16T21:51:50.777","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the NetWin DSMTP 2.7q in the NetWin dmail package allows remote attackers to execute arbitrary commands via a long ETRN request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netwin:dmail:2.7:*:*:*:*:*:*:*","matchCriteriaId":"60C72EA3-5D19-44B7-AB3D-99122A470205"},{"vulnerable":true,"criteria":"cpe:2.3:a:netwin:dmail:2.7q:*:*:*:*:*:*:*","matchCriteriaId":"316BCDB3-3762-436F-91B2-41231A55CB96"},{"vulnerable":true,"criteria":"cpe:2.3:a:netwin:dmail:2.8e:*:*:*:*:*:*:*","matchCriteriaId":"A5BD3CC6-5E2C-4534-925E-B81D92F18A1F"},{"vulnerable":true,"criteria":"cpe:2.3:a:netwin:dmail:2.8f:*:*:*:*:*:*:*","matchCriteriaId":"C25AB545-FCF5-42FB-801E-07DF0ADC4865"},{"vulnerable":true,"criteria":"cpe:2.3:a:netwin:dmail:2.8g:*:*:*:*:*:*:*","matchCriteriaId":"EF6F3B04-6DA7-42F8-8873-7625B93523ED"},{"vulnerable":true,"criteria":"cpe:2.3:a:netwin:dmail:2.8h:*:*:*:*:*:*:*","matchCriteriaId":"F44C662D-58ED-41E0-8718-259321F9F9E9"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0407.html","source":"cve@mitre.org"},{"url":"http://netwinsite.com/dmail/security.htm","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1297","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4579","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0407.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://netwinsite.com/dmail/security.htm","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1297","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4579","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0493","sourceIdentifier":"cve@mitre.org","published":"2000-06-01T04:00:00.000","lastModified":"2026-06-16T21:51:51.177","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Simple Network Time Sync (SMTS) daemon allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long string."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:atrius_trivalie_sn:time_sync:1.0.1:*:*:*:*:*:*:*","matchCriteriaId":"65385E8D-48D9-48E5-80FA-17F7CAC78124"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/vuln-dev/2000-q2/0843.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1289","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4602","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/vuln-dev/2000-q2/0843.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1289","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4602","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0507","sourceIdentifier":"cve@mitre.org","published":"2000-06-01T04:00:00.000","lastModified":"2026-06-16T21:51:53.020","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Imate Webmail Server 2.5 allows remote attackers to cause a denial of service via a long HELO command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:concatus:imate_webmail_server:2.5:*:*:*:*:*:*:*","matchCriteriaId":"C331735A-71F7-48EC-8AD8-7393712E0DCD"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=95990195708509&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1286","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4586","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=95990195708509&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1286","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4586","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0509","sourceIdentifier":"cve@mitre.org","published":"2000-06-01T04:00:00.000","lastModified":"2026-06-16T21:51:53.260","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflows in the finger and whois demonstration scripts in Sambar Server 4.3 allow remote attackers to execute arbitrary commands via a long hostname."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sambar:sambar_server:*:beta9:*:*:*:*:*:*","versionEndIncluding":"4.3","matchCriteriaId":"D06A6D8D-2B28-42F7-84B4-887329A5219B"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=95990103207665&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1287","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=95990103207665&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1287","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0468","sourceIdentifier":"cve@mitre.org","published":"2000-06-02T04:00:00.000","lastModified":"2026-06-16T21:51:47.947","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"man in HP-UX 10.20 and 11 allows local attackers to overwrite files via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.20:*:*:*:*:*:*:*","matchCriteriaId":"EDE44C49-172C-4899-8CC8-29AA99A7CD2F"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:11.00:*:*:*:*:*:*:*","matchCriteriaId":"771931F7-9180-4EBD-8627-E1CF17D24647"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1302","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.SOL.4.02.10006021014400.4779-100000%40nofud.nwest.attws.com","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1302","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.SOL.4.02.10006021014400.4779-100000%40nofud.nwest.attws.com","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0492","sourceIdentifier":"cve@mitre.org","published":"2000-06-04T04:00:00.000","lastModified":"2026-06-16T21:51:51.047","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"PassWD 1.2 uses weak encryption (trivial encoding) to store passwords, which allows an attacker who can read the password file to easliy decrypt the passwords."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:passwd:passwd:1.2:*:*:*:*:*:*:*","matchCriteriaId":"19609425-63F4-40C2-A999-2F85FC1F60B3"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0450.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1300","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0450.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1300","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0536","sourceIdentifier":"cve@mitre.org","published":"2000-06-04T04:00:00.000","lastModified":"2026-06-16T21:51:56.867","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"xinetd 2.1.8.x does not properly restrict connections if hostnames are used for access control and the connecting host does not have a reverse DNS entry."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:xinetd:xinetd:2.1.87:*:*:*:*:*:*:*","matchCriteriaId":"B53D978C-62C3-4C46-8ACA-5D06899A6D76"},{"vulnerable":true,"criteria":"cpe:2.3:a:xinetd:xinetd:2.1.88:*:*:*:*:*:*:*","matchCriteriaId":"3AC105CC-6E52-475A-95E4-591A66CE2259"},{"vulnerable":true,"criteria":"cpe:2.3:a:xinetd:xinetd:2.1.88_pre1:*:*:*:*:*:*:*","matchCriteriaId":"5C958EBF-21EF-464A-B29B-A0CA65845A12"},{"vulnerable":true,"criteria":"cpe:2.3:a:xinetd:xinetd:2.1.88_pre2:*:*:*:*:*:*:*","matchCriteriaId":"2E7333CF-980A-4F17-A833-521792072807"},{"vulnerable":true,"criteria":"cpe:2.3:a:xinetd:xinetd:2.1.89_pre1:*:*:*:*:*:*:*","matchCriteriaId":"29B5FEFE-773A-45EE-BD3F-E843ECF16205"},{"vulnerable":true,"criteria":"cpe:2.3:a:xinetd:xinetd:2.1.89_pre2:*:*:*:*:*:*:*","matchCriteriaId":"EEC5DB98-DF04-4EAC-B0AE-C64F31B0E44E"},{"vulnerable":true,"criteria":"cpe:2.3:a:xinetd:xinetd:2.1.89_pre3:*:*:*:*:*:*:*","matchCriteriaId":"D88CE5BA-89B6-4205-A4EA-D69CFA1796E6"},{"vulnerable":true,"criteria":"cpe:2.3:a:xinetd:xinetd:2.1.89_pre4:*:*:*:*:*:*:*","matchCriteriaId":"99C84214-B2AE-484E-B166-F93CAA07C83C"},{"vulnerable":true,"criteria":"cpe:2.3:a:xinetd:xinetd:2.1.89_pre5:*:*:*:*:*:*:*","matchCriteriaId":"E0F67EC0-9AD8-407A-ACB7-AE1CF6F93D32"}]}]}],"references":[{"url":"http://www.debian.org/security/2000/20000619","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1381","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.synack.net/xinetd/","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4986","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/2000/20000619","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1381","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.synack.net/xinetd/","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4986","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0518","sourceIdentifier":"cve@mitre.org","published":"2000-06-05T04:00:00.000","lastModified":"2026-06-16T21:51:54.443","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internet Explorer 4.x and 5.x does not properly verify all contents of an SSL certificate if a connection is made to the server via an image or a frame, aka one of two different \"SSL Certificate Validation\" vulnerabilities."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:N/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:4.0:*:windows_98:*:*:*:*:*","matchCriteriaId":"D0BDA2A8-EBB9-47AB-9DA0-5C24527F7210"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:4.0:*:windows_nt:*:*:*:*:*","matchCriteriaId":"077B638C-F14D-4048-86C8-B62517C5182F"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:4.0.1:*:windows_95:*:*:*:*:*","matchCriteriaId":"5680FE7F-95EE-46B2-B930-4A3DC27FD1A1"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:4.0.1:*:windows_98:*:*:*:*:*","matchCriteriaId":"ACC3A8B3-4E8C-46BD-965C-4EF655B9018D"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:4.0.1:*:windows_nt:*:*:*:*:*","matchCriteriaId":"F7739338-DAE1-403F-B22C-2CFAC884E09A"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5:*:windows_nt_4.0:*:*:*:*:*","matchCriteriaId":"7AAA310C-7DED-40B3-B5EF-80C7407BB01A"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5.0:*:windows_2000:*:*:*:*:*","matchCriteriaId":"A7B6FB02-F15F-486D-8E7C-40830ABDB62F"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5.0:*:windows_95:*:*:*:*:*","matchCriteriaId":"0CE25503-0EDA-4AFA-A4B8-36396BB4A4E9"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5.0:*:windows_98:*:*:*:*:*","matchCriteriaId":"376DA3A6-FAB8-4B18-B9D9-C176675C7671"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5.0.1:*:windows_2000:*:*:*:*:*","matchCriteriaId":"9F9AE3DB-EB7C-4B17-AF7A-CD8FC3C77070"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5.0.1:*:windows_95:*:*:*:*:*","matchCriteriaId":"151FE30E-9320-495C-84AD-60893FAED223"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5.0.1:*:windows_98:*:*:*:*:*","matchCriteriaId":"5805FB74-2AD6-4919-BAAE-D995CA2650A7"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5.0.1:*:windows_nt_4.0:*:*:*:*:*","matchCriteriaId":"0D328337-A2FE-4E2E-8A8D-C170DC0A88E6"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0:*:*:*:*:*:*:*","matchCriteriaId":"A5B815D9-BC21-4A17-AF00-B8AD181027D7"}]}]}],"references":[{"url":"http://www.acrossecurity.com/aspr/ASPR-1999-12-15-1-PUB.txt","source":"cve@mitre.org"},{"url":"http://www.cert.org/advisories/CA-2000-10.html","source":"cve@mitre.org","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.securityfocus.com/bid/1309","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-039","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4624","source":"cve@mitre.org"},{"url":"http://www.acrossecurity.com/aspr/ASPR-1999-12-15-1-PUB.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.cert.org/advisories/CA-2000-10.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.securityfocus.com/bid/1309","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-039","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4624","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0519","sourceIdentifier":"cve@mitre.org","published":"2000-06-05T04:00:00.000","lastModified":"2026-06-16T21:51:54.587","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internet Explorer 4.x and 5.x does not properly re-validate an SSL certificate if the user establishes a new SSL session with the same server during the same Internet Explorer session, aka one of two different \"SSL Certificate Validation\" vulnerabilities."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:N/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:4.0:*:windows_98:*:*:*:*:*","matchCriteriaId":"D0BDA2A8-EBB9-47AB-9DA0-5C24527F7210"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:4.0:*:windows_nt:*:*:*:*:*","matchCriteriaId":"077B638C-F14D-4048-86C8-B62517C5182F"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:4.0.1:*:windows_95:*:*:*:*:*","matchCriteriaId":"5680FE7F-95EE-46B2-B930-4A3DC27FD1A1"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:4.0.1:*:windows_98:*:*:*:*:*","matchCriteriaId":"ACC3A8B3-4E8C-46BD-965C-4EF655B9018D"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:4.0.1:*:windows_nt:*:*:*:*:*","matchCriteriaId":"F7739338-DAE1-403F-B22C-2CFAC884E09A"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5.0:*:windows_2000:*:*:*:*:*","matchCriteriaId":"A7B6FB02-F15F-486D-8E7C-40830ABDB62F"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5.0:*:windows_95:*:*:*:*:*","matchCriteriaId":"0CE25503-0EDA-4AFA-A4B8-36396BB4A4E9"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5.0:*:windows_98:*:*:*:*:*","matchCriteriaId":"376DA3A6-FAB8-4B18-B9D9-C176675C7671"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5.0:*:windows_nt_4.0:*:*:*:*:*","matchCriteriaId":"9CD5EAB0-B400-41C6-B96E-B7594DB0226F"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5.0.1:*:windows_2000:*:*:*:*:*","matchCriteriaId":"9F9AE3DB-EB7C-4B17-AF7A-CD8FC3C77070"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5.0.1:*:windows_95:*:*:*:*:*","matchCriteriaId":"151FE30E-9320-495C-84AD-60893FAED223"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5.0.1:*:windows_98:*:*:*:*:*","matchCriteriaId":"5805FB74-2AD6-4919-BAAE-D995CA2650A7"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5.0.1:*:windows_nt_4.0:*:*:*:*:*","matchCriteriaId":"0D328337-A2FE-4E2E-8A8D-C170DC0A88E6"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0:*:*:*:*:*:*:*","matchCriteriaId":"A5B815D9-BC21-4A17-AF00-B8AD181027D7"}]}]}],"references":[{"url":"http://www.acrossecurity.com/aspr/ASPR-1999-12-15-1-PUB.txt","source":"cve@mitre.org"},{"url":"http://www.cert.org/advisories/CA-2000-10.html","source":"cve@mitre.org","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.securityfocus.com/bid/1309","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-039","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4627","source":"cve@mitre.org"},{"url":"http://www.acrossecurity.com/aspr/ASPR-1999-12-15-1-PUB.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.cert.org/advisories/CA-2000-10.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.securityfocus.com/bid/1309","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-039","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4627","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0521","sourceIdentifier":"cve@mitre.org","published":"2000-06-05T04:00:00.000","lastModified":"2026-06-16T21:51:54.847","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Savant web server allows remote attackers to read source code of CGI scripts via a GET request that does not include the HTTP version number."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:michael_lamont:savant_webserver:2.1:*:*:*:*:*:*:*","matchCriteriaId":"3712C895-76D6-4C74-8A60-59696433313F"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0469.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1313","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4616","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0469.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1313","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4616","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0524","sourceIdentifier":"cve@mitre.org","published":"2000-06-05T04:00:00.000","lastModified":"2026-06-16T21:51:55.220","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Outlook and Outlook Express allow remote attackers to cause a denial of service by sending email messages with blank fields such as BCC, Reply-To, Return-Path, or From."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-noinfo"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:exchange_server:4.0:-:*:*:*:*:*:*","matchCriteriaId":"1122C21D-C67C-4702-A084-A0DFBA03A761"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:exchange_server:5.0:-:*:*:*:*:*:*","matchCriteriaId":"D823C88E-8560-469B-8655-4755E0484F14"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook:97:*:*:*:*:*:*:*","matchCriteriaId":"D1D5CC3A-E880-4727-AEBE-1E4FE5A43AF8"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0045.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1333","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0045.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1333","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0537","sourceIdentifier":"cve@mitre.org","published":"2000-06-05T04:00:00.000","lastModified":"2026-06-16T21:51:57.010","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"BRU backup software allows local users to append data to arbitrary files by specifying an alternate configuration file with the BRUEXECLOG environmental variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:tolis_group:bru:15.1:*:*:*:*:*:*:*","matchCriteriaId":"CB05E0F5-BDBB-4459-8AA6-D2EC5451F8B4"},{"vulnerable":true,"criteria":"cpe:2.3:a:tolis_group:bru:16.0:*:*:*:*:*:*:*","matchCriteriaId":"E893023A-9862-4871-B812-60AEE643E6B6"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0013.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-018.0.txt","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1321","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4644","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0013.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-018.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1321","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4644","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0544","sourceIdentifier":"cve@mitre.org","published":"2000-06-05T04:00:00.000","lastModified":"2026-06-16T21:51:57.897","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Windows NT and Windows 2000 hosts allow a remote attacker to cause a denial of service via malformed DCE/RPC SMBwriteX requests that contain an invalid data length."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q2/0231.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1304","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q2/0231.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1304","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0556","sourceIdentifier":"cve@mitre.org","published":"2000-06-05T04:00:00.000","lastModified":"2026-06-16T21:51:59.517","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the web interface for Cmail 2.4.7 allows remote attackers to cause a denial of service by sending a large user name to the user dialog running on port 8002."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:computalynx:cmail:2.4.7:*:*:*:*:*:*:*","matchCriteriaId":"E5AE8A35-03D4-4CB0-9E78-F9C25541C1A2"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q2/0248.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.computalynx.net/news/Jun2000/news0806200001.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1319","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4625","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q2/0248.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.computalynx.net/news/Jun2000/news0806200001.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1319","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4625","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0557","sourceIdentifier":"cve@mitre.org","published":"2000-06-05T04:00:00.000","lastModified":"2026-06-16T21:51:59.647","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the web interface for Cmail 2.4.7 allows remote attackers to execute arbitrary commands via a long GET request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:computalynx:cmail:2.4.7:*:*:*:*:*:*:*","matchCriteriaId":"E5AE8A35-03D4-4CB0-9E78-F9C25541C1A2"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q2/0248.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1318","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4626","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q2/0248.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1318","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4626","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0482","sourceIdentifier":"cve@mitre.org","published":"2000-06-06T04:00:00.000","lastModified":"2026-06-16T21:51:49.747","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Check Point Firewall-1 allows remote attackers to cause a denial of service by sending a large number of malformed fragmented IP packets."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:4.0:*:*:*:*:*:*:*","matchCriteriaId":"0F543272-8C7E-4326-BA97-142FBEA641E5"},{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:4.1:*:*:*:*:*:*:*","matchCriteriaId":"100F03E3-1538-47AF-9CA6-E9E5C1DF05D4"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0473.html","source":"cve@mitre.org"},{"url":"http://www.checkpoint.com/techsupport/alerts/list_vun.html#IP_Fragmentation","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1379","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1312","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4609","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0473.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.checkpoint.com/techsupport/alerts/list_vun.html#IP_Fragmentation","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1379","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1312","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4609","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0503","sourceIdentifier":"cve@mitre.org","published":"2000-06-06T04:00:00.000","lastModified":"2026-06-16T21:51:52.427","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The IFRAME of the WebBrowser control in Internet Explorer 5.01 allows a remote attacker to violate the cross frame security policy via the NavigateComplete2 event."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:N/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0:*:*:*:*:*:*:*","matchCriteriaId":"A5B815D9-BC21-4A17-AF00-B8AD181027D7"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.01:*:*:*:*:*:*:*","matchCriteriaId":"6219D36E-9E2C-4DC7-8FD5-FAD144A333F6"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.5:preview:*:*:*:*:*:*","matchCriteriaId":"8E93C22E-812E-4CDA-9850-2386CE1E817A"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/win2ksecadvice/2000-q2/0154.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1311","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/win2ksecadvice/2000-q2/0154.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1311","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0516","sourceIdentifier":"cve@mitre.org","published":"2000-06-06T04:00:00.000","lastModified":"2026-06-16T21:51:54.187","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"When configured to store configuration information in an LDAP directory, Shiva Access Manager 5.0.0 stores the root DN (Distinguished Name) name and password in cleartext in a file that is world readable, which allows local users to compromise the LDAP server."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:intel:shiva_access_manager:5.0:*:solaris:*:*:*:*:*","matchCriteriaId":"E8CF76E6-F8B2-4E36-BBC4-9DBBBE7AE56C"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0008.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1329","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4612","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0008.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1329","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4612","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0523","sourceIdentifier":"cve@mitre.org","published":"2000-06-06T04:00:00.000","lastModified":"2026-06-16T21:51:55.100","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the logging feature of EServ 2.9.2 and earlier allows an attacker to execute arbitrary commands via a long MKD command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:etype:eserv:2.9.2:*:*:*:*:*:*:*","matchCriteriaId":"F72D6E62-C38A-4833-8D1F-64CAF7DBF8BE"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0009.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1315","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4614","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0009.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1315","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4614","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0552","sourceIdentifier":"cve@mitre.org","published":"2000-06-06T04:00:00.000","lastModified":"2026-06-16T21:51:58.990","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ICQwebmail client for ICQ 2000A creates a world readable temporary file during login and does not delete it, which allows local users to obtain sensitive information."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N","baseScore":5.5,"baseSeverity":"MEDIUM","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"NONE","availabilityImpact":"NONE"},"exploitabilityScore":1.8,"impactScore":3.6}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-459"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:icq:icq:2000a:*:*:*:*:*:*:*","matchCriteriaId":"419A7941-2E5A-42E8-A3CA-E6020B4A9388"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q2/0237.html","source":"cve@mitre.org","tags":["Broken Link","Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1307","source":"cve@mitre.org","tags":["Broken Link","Patch","Third Party Advisory","VDB Entry","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4607","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q2/0237.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1307","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Patch","Third Party Advisory","VDB Entry","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4607","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]}]}},{"cve":{"id":"CVE-2000-0558","sourceIdentifier":"cve@mitre.org","published":"2000-06-06T04:00:00.000","lastModified":"2026-06-16T21:51:59.787","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in HP Openview Network Node Manager 6.1 allows remote attackers to execute arbitrary commands via the Alarm service (OVALARMSRV) on port 2345."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:hp:openview_network_node_manager:6.1:*:*:*:*:*:*:*","matchCriteriaId":"39C1B197-F043-4FB7-AFB3-AFC8B8B5B051"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q2/0249.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1317","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q2/0249.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1317","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0376","sourceIdentifier":"cve@mitre.org","published":"2000-06-07T04:00:00.000","lastModified":"2026-06-16T21:51:35.267","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the HTTP proxy server for the i-drive Filo software allows remote attackers to execute arbitrary commands via a long HTTP GET request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:i-drive:filo:1.01:*:*:*:*:*:*:*","matchCriteriaId":"E44E96D5-DA23-48D3-A02B-C0827DF24EF5"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1324","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1324","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0515","sourceIdentifier":"cve@mitre.org","published":"2000-06-07T04:00:00.000","lastModified":"2026-06-16T21:51:54.047","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The snmpd.conf configuration file for the SNMP daemon (snmpd) in HP-UX 11.0 is world writable, which allows local users to modify SNMP configuration or gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.20:*:*:*:*:*:*:*","matchCriteriaId":"EDE44C49-172C-4899-8CC8-29AA99A7CD2F"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:11.00:*:*:*:*:*:*:*","matchCriteriaId":"771931F7-9180-4EBD-8627-E1CF17D24647"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1327","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200006070511.OAA05492%40dogfoot.hackerslab.org","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200006090640.XAA00779%40hpchs.cup.hp.com","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4643","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1327","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200006070511.OAA05492%40dogfoot.hackerslab.org","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200006090640.XAA00779%40hpchs.cup.hp.com","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4643","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0520","sourceIdentifier":"cve@mitre.org","published":"2000-06-07T04:00:00.000","lastModified":"2026-06-16T21:51:54.720","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in restore program 0.4b17 and earlier in dump package allows local users to execute arbitrary commands via a long tape name."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:stelian:pop_dump:0.4b9.0:*:*:*:*:*:*:*","matchCriteriaId":"B0313570-D717-4BB7-BD5E-EDC97CFFEBA8"},{"vulnerable":true,"criteria":"cpe:2.3:a:stelian:pop_dump:0.4b9.9:*:*:*:*:*:*:*","matchCriteriaId":"C18EEA9A-F841-46B7-BD19-52FA486CBD42"},{"vulnerable":true,"criteria":"cpe:2.3:a:stelian:pop_dump:0.4b15.1:*:*:*:*:*:*:*","matchCriteriaId":"043F63EB-05B6-4CB7-A0B7-606828970168"},{"vulnerable":true,"criteria":"cpe:2.3:a:stelian:pop_dump:0.4b15.30:*:*:*:*:*:*:*","matchCriteriaId":"5E5337F2-668A-4901-AE1B-9048D1195919"},{"vulnerable":true,"criteria":"cpe:2.3:a:stelian:pop_dump:0.4b16.0:*:*:*:*:*:*:*","matchCriteriaId":"7C010635-BBA5-4D7D-BF81-DA882F8E05CF"},{"vulnerable":true,"criteria":"cpe:2.3:a:stelian:pop_dump:0.4b17.0:*:*:*:*:*:*:*","matchCriteriaId":"7A760E5C-D7D8-4937-A96E-1724CE3FAE6F"}]}]}],"references":[{"url":"http://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=11880","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=96240393814071&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1330","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=11880","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=96240393814071&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1330","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0532","sourceIdentifier":"cve@mitre.org","published":"2000-06-07T04:00:00.000","lastModified":"2026-06-16T21:51:56.300","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A FreeBSD patch for SSH on 2000-01-14 configures ssh to listen on port 722 as well as port 22, which might allow remote attackers to access SSH through port 722 even if port 22 is otherwise filtered."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.0:*:*:*:*:*:*:*","matchCriteriaId":"D0A585A1-FF82-418F-90F8-072458DB7816"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/freebsd/2000-06/0031.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1387","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1323","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4638","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/freebsd/2000-06/0031.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1387","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1323","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4638","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0534","sourceIdentifier":"cve@mitre.org","published":"2000-06-07T04:00:00.000","lastModified":"2026-06-16T21:51:56.567","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The apsfilter software in the FreeBSD ports package does not properly read user filter configurations, which allows local users to execute commands as the lpd user."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:aps_filter_development_team:apsfilter:5.4:*:*:*:*:*:*:*","matchCriteriaId":"94CE83DF-386E-4E13-8E41-911BD6B78E3D"}]}]}],"references":[{"url":"http://www.osvdb.org/1389","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1325","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4617","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1389","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1325","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4617","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0538","sourceIdentifier":"cve@mitre.org","published":"2000-06-07T04:00:00.000","lastModified":"2026-06-16T21:51:57.143","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ColdFusion Administrator for ColdFusion 4.5.1 and earlier allows remote attackers to cause a denial of service via a long login password."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:allaire:coldfusion_server:2.0:*:*:*:*:*:*:*","matchCriteriaId":"EE00F45E-C410-4268-B0EC-18B4043E6631"},{"vulnerable":true,"criteria":"cpe:2.3:a:allaire:coldfusion_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"7BB5B124-A5C2-4B24-8091-FF9863D17BF2"},{"vulnerable":true,"criteria":"cpe:2.3:a:allaire:coldfusion_server:3.01:*:*:*:*:*:*:*","matchCriteriaId":"A32F27D3-0ECD-49BB-B32F-2F531DE6836D"},{"vulnerable":true,"criteria":"cpe:2.3:a:allaire:coldfusion_server:3.1:*:*:*:*:*:*:*","matchCriteriaId":"DC21856A-F57F-4C34-8276-5880B57A2DD0"},{"vulnerable":true,"criteria":"cpe:2.3:a:allaire:coldfusion_server:3.11:*:*:*:*:*:*:*","matchCriteriaId":"9646F809-1016-49AD-B60A-481CDB7D5ECF"},{"vulnerable":true,"criteria":"cpe:2.3:a:allaire:coldfusion_server:3.12:*:*:*:*:*:*:*","matchCriteriaId":"926AAAD1-68C5-4816-B387-8B1BB4E9E1C0"},{"vulnerable":true,"criteria":"cpe:2.3:a:allaire:coldfusion_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"C334CA02-D4EC-40D0-B75F-AFBC0F3903E8"},{"vulnerable":true,"criteria":"cpe:2.3:a:allaire:coldfusion_server:4.0.1:*:*:*:*:*:*:*","matchCriteriaId":"3630623B-468C-4E71-9C57-EFF83E5EFA4A"},{"vulnerable":true,"criteria":"cpe:2.3:a:allaire:coldfusion_server:4.5:*:*:*:*:*:*:*","matchCriteriaId":"292DA1C8-5B98-4552-B51B-B0C3F230321F"},{"vulnerable":true,"criteria":"cpe:2.3:a:allaire:coldfusion_server:4.5.1:*:*:*:*:*:*:*","matchCriteriaId":"5FA98847-8A14-409C-86E8-C7652E5ECF0C"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=96045469627806&w=2","source":"cve@mitre.org"},{"url":"http://www.allaire.com/handlers/index.cfm?ID=16122&Method=Full","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/3399","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1314","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4611","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=96045469627806&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.allaire.com/handlers/index.cfm?ID=16122&Method=Full","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/3399","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1314","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4611","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0559","sourceIdentifier":"cve@mitre.org","published":"2000-06-07T04:00:00.000","lastModified":"2026-06-16T21:51:59.910","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"eTrust Intrusion Detection System (formerly SessionWall-3) uses weak encryption (XOR) to store administrative passwords in the registry, which allows local users to easily decrypt the passwords."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:broadcom:etrust_intrusion_detection:*:*:*:*:*:*:*:*","versionEndIncluding":"1.4.1.13","matchCriteriaId":"0530ACE0-AFE2-4A51-B40A-0D9366C32187"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1341","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.BSO.4.21.0006072124320.28062-100000%40bearclaw.bogus.net","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1341","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.BSO.4.21.0006072124320.28062-100000%40bearclaw.bogus.net","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0377","sourceIdentifier":"cve@mitre.org","published":"2000-06-08T04:00:00.000","lastModified":"2026-06-16T21:51:35.390","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Remote Registry server in Windows NT 4.0 allows local authenticated users to cause a denial of service via a malformed request, which causes the winlogon process to fail, aka the \"Remote Registry Access Authentication\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"http://www.microsoft.com/technet/support/kb.asp?ID=264684","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1331","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-040","source":"cve@mitre.org"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1021","source":"cve@mitre.org"},{"url":"http://www.microsoft.com/technet/support/kb.asp?ID=264684","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1331","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-040","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1021","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0497","sourceIdentifier":"cve@mitre.org","published":"2000-06-08T04:00:00.000","lastModified":"2026-06-16T21:51:51.583","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IBM WebSphere server 3.0.2 allows a remote attacker to view source code of a JSP program by requesting a URL which provides the JSP extension in upper case."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","baseScore":7.5,"baseSeverity":"HIGH","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"NONE","availabilityImpact":"NONE"},"exploitabilityScore":3.9,"impactScore":3.6}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-178"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:3.0.2:*:*:*:*:*:*:*","matchCriteriaId":"6FC25AE4-76D2-4FE6-8B33-7069322EBC5D"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q2/0263.html","source":"cve@mitre.org","tags":["Broken Link","Patch","Vendor Advisory"]},{"url":"http://www-4.ibm.com/software/webservers/appserv/efix.html","source":"cve@mitre.org","tags":["Product"]},{"url":"http://www.securityfocus.com/bid/1328","source":"cve@mitre.org","tags":["Broken Link","Third Party Advisory","VDB Entry"]},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q2/0263.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Patch","Vendor Advisory"]},{"url":"http://www-4.ibm.com/software/webservers/appserv/efix.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Product"]},{"url":"http://www.securityfocus.com/bid/1328","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Third Party Advisory","VDB Entry"]}]}},{"cve":{"id":"CVE-2000-0498","sourceIdentifier":"cve@mitre.org","published":"2000-06-08T04:00:00.000","lastModified":"2026-06-16T21:51:51.720","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Unify eWave ServletExec allows a remote attacker to view source code of a JSP program by requesting a URL which provides the JSP extension in upper case."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","baseScore":7.5,"baseSeverity":"HIGH","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"NONE","availabilityImpact":"NONE"},"exploitabilityScore":3.9,"impactScore":3.6}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-178"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:unify:ewave_servletexec:-:*:*:*:*:*:*:*","matchCriteriaId":"A0D9FD66-0B60-4A14-92FD-4BB37126395D"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q2/0250.html","source":"cve@mitre.org","tags":["Broken Link","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1328","source":"cve@mitre.org","tags":["Broken Link","Third Party Advisory","VDB Entry"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4649","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q2/0250.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1328","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Third Party Advisory","VDB Entry"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4649","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]}]}},{"cve":{"id":"CVE-2000-0499","sourceIdentifier":"cve@mitre.org","published":"2000-06-08T04:00:00.000","lastModified":"2026-06-16T21:51:51.860","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default configuration of BEA WebLogic 3.1.8 through 4.5.1 allows a remote attacker to view source code of a JSP program by requesting a URL which provides the JSP extension in upper case."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","baseScore":7.5,"baseSeverity":"HIGH","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"NONE","availabilityImpact":"NONE"},"exploitabilityScore":3.9,"impactScore":3.6}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-178"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:*:*:express:*:*:*:*:*","matchCriteriaId":"5B0C63A5-F105-4D03-BD2E-B3AAD120A4BD"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:*:*:*:*:*:*:*:*","versionStartIncluding":"3.1.8","versionEndIncluding":"4.5.1","matchCriteriaId":"2664DE74-15B5-4502-AD51-FCB1C54A1B6B"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q2/0262.htm","source":"cve@mitre.org","tags":["Broken Link"]},{"url":"http://developer.bea.com/alerts/security_000612.html","source":"cve@mitre.org","tags":["Broken Link"]},{"url":"http://www.securityfocus.com/bid/1328","source":"cve@mitre.org","tags":["Broken Link","Exploit","Patch","Third Party Advisory","VDB Entry","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4694","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q2/0262.htm","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"]},{"url":"http://developer.bea.com/alerts/security_000612.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"]},{"url":"http://www.securityfocus.com/bid/1328","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Exploit","Patch","Third Party Advisory","VDB Entry","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4694","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]}]}},{"cve":{"id":"CVE-2000-0502","sourceIdentifier":"cve@mitre.org","published":"2000-06-08T04:00:00.000","lastModified":"2026-06-16T21:51:52.287","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Mcafee VirusScan 4.03 does not properly restrict access to the alert text file before it is sent to the Central Alert Server, which allows local users to modify alerts in an arbitrary fashion."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mcafee:virusscan:4.0.3:*:*:*:*:*:*:*","matchCriteriaId":"A562D4A2-1E7E-4A43-8634-B8721DA8A9F8"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0038.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.osvdb.org/6287","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1326","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4641","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0038.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.osvdb.org/6287","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1326","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4641","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0522","sourceIdentifier":"cve@mitre.org","published":"2000-06-08T04:00:00.000","lastModified":"2026-06-16T21:51:54.970","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"RSA ACE/Server allows remote attackers to cause a denial of service by flooding the server's authentication request port with UDP packets, which causes the server to crash."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:rsa:ace_server:3.1:*:*:*:*:*:*:*","matchCriteriaId":"8922276B-000C-4DC7-9643-1E28297B0A79"},{"vulnerable":true,"criteria":"cpe:2.3:a:rsa:ace_server:3.3:*:*:*:*:*:*:*","matchCriteriaId":"56E44AAC-12C7-4038-8B2D-173E501DE1A2"},{"vulnerable":true,"criteria":"cpe:2.3:a:rsa:ace_server:3.3.1:*:*:*:*:*:*:*","matchCriteriaId":"3E027709-E230-4BE6-9564-3F61755CAE30"},{"vulnerable":true,"criteria":"cpe:2.3:a:rsa:ace_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"B1E29AE7-23B3-4731-965A-E27032572FF0"},{"vulnerable":true,"criteria":"cpe:2.3:a:rsa:ace_server:4.1:*:*:*:*:*:*:*","matchCriteriaId":"49544415-BF93-4D48-B80A-584C008BFB58"}]}]}],"references":[{"url":"ftp://ftp.securid.com/support/outgoing/dos/readme.txt","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0197.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1332","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=011a01bfd14c%243c206960%24050010ac%40xtranet.co.uk","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5053","source":"cve@mitre.org"},{"url":"ftp://ftp.securid.com/support/outgoing/dos/readme.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0197.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1332","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=011a01bfd14c%243c206960%24050010ac%40xtranet.co.uk","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5053","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0525","sourceIdentifier":"cve@mitre.org","published":"2000-06-08T04:00:00.000","lastModified":"2026-06-16T21:51:55.343","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"OpenSSH does not properly drop privileges when the UseLogin option is enabled, which allows local users to execute arbitrary commands by providing the command to the ssh daemon."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:openbsd:openssh:1.2:*:*:*:*:*:*:*","matchCriteriaId":"316C8534-9CE3-456C-A04E-5D2B789FBE31"},{"vulnerable":true,"criteria":"cpe:2.3:a:openbsd:openssh:1.2.3:*:*:*:*:*:*:*","matchCriteriaId":"CA997F5E-29FE-454A-9006-001D732CD4B1"},{"vulnerable":true,"criteria":"cpe:2.3:a:openbsd:openssh:2.1:*:*:*:*:*:*:*","matchCriteriaId":"EED5E506-9D2B-4CAF-8455-B9BE7696E49C"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0065.html","source":"cve@mitre.org"},{"url":"http://www.openbsd.org/errata.html#uselogin","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/341","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1334","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4646","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0065.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.openbsd.org/errata.html#uselogin","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/341","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1334","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4646","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0554","sourceIdentifier":"cve@mitre.org","published":"2000-06-08T04:00:00.000","lastModified":"2026-06-16T21:51:59.260","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Ceilidh allows remote attackers to obtain the real path of the Ceilidh directory via the translated_path hidden form field."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:lilikoi:ceilidh:2.60:*:*:*:*:*:*:*","matchCriteriaId":"86541AF7-DADD-4A71-B685-14B8F6610813"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q2/0246.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1320","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q2/0246.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1320","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0506","sourceIdentifier":"cve@mitre.org","published":"2000-06-09T04:00:00.000","lastModified":"2026-06-16T21:51:52.870","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The \"capabilities\" feature in Linux before 2.2.16 allows local users to cause a denial of service or gain privileges by setting the capabilities to prevent a setuid program from dropping privileges, aka the \"Linux kernel setuid/setcap vulnerability.\""}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.0:*:*:*:*:*:*:*","matchCriteriaId":"96A6EE7E-C79C-4B25-AFF0-C6638CB3C99A"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.0.30:*:*:*:*:*:*:*","matchCriteriaId":"29AC849E-7D4E-4C00-8BD0-672F413A80B5"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.0.33:*:*:*:*:*:*:*","matchCriteriaId":"FC91B71A-2456-4410-9633-CF5870027D96"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.0.34:*:*:*:*:*:*:*","matchCriteriaId":"92555500-16EB-4F76-B2C7-61A00A1AC722"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.0.35:*:*:*:*:*:*:*","matchCriteriaId":"B03D22C9-94C6-4AC5-AAD0-15F06BCC5CA7"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.0.36:*:*:*:*:*:*:*","matchCriteriaId":"541B4ED8-E970-4C67-B5AF-7DE5B7F754D1"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.0.37:*:*:*:*:*:*:*","matchCriteriaId":"1E55F8A8-1ABD-4760-9074-353BBAEE005B"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.0.38:*:*:*:*:*:*:*","matchCriteriaId":"F873503F-C6E2-4AC2-859E-9431FE0FA0A3"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.1:*:*:*:*:*:*:*","matchCriteriaId":"5E4A2912-12AC-4DF1-8023-A0B7DBE9A866"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.2.0:*:*:*:*:*:*:*","matchCriteriaId":"146F7A77-A950-4CAD-BDA9-C239696F569D"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.2.10:*:*:*:*:*:*:*","matchCriteriaId":"AA3D3E03-0ABE-4325-AD67-BA8EA16B6DBE"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.2.12:*:*:*:*:*:*:*","matchCriteriaId":"0EEF4480-D50B-464C-AE39-A12455DBC99F"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.2.13:*:*:*:*:*:*:*","matchCriteriaId":"6BBFD0DB-0A18-4545-9B4B-697AAC11E9C5"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.2.14:*:*:*:*:*:*:*","matchCriteriaId":"15928E10-7D41-45B2-87D6-8AA10190A8EB"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.2.15:*:*:*:*:*:*:*","matchCriteriaId":"C18E13C4-F42D-4168-B25E-544E1549C46B"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.2.15:pre16:*:*:*:*:*:*","matchCriteriaId":"1C4B2ABB-0283-4532-9E29-B37BFF5FDFB7"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.2.15_pre20:*:*:*:*:*:*:*","matchCriteriaId":"C4DADA29-DCD3-44C4-9BDB-B881D6FCE3A3"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.2.16:*:*:*:*:*:*:*","matchCriteriaId":"F0DB9B7C-3608-44E3-AE47-D231D1F7B8EC"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:2.2.16:pre5:*:*:*:*:*:*","matchCriteriaId":"2C1A26C1-8FE6-4E4E-802E-C989D6823FB2"}]}]}],"references":[{"url":"ftp://sgigate.sgi.com/security/20000802-01-P","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0062.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0063.html","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-037.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1322","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.21.0006090852340.3475-300000%40alfa.elzabsoft.pl","source":"cve@mitre.org"},{"url":"ftp://sgigate.sgi.com/security/20000802-01-P","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0062.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0063.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-037.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1322","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.21.0006090852340.3475-300000%40alfa.elzabsoft.pl","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0526","sourceIdentifier":"cve@mitre.org","published":"2000-06-09T04:00:00.000","lastModified":"2026-06-16T21:51:55.467","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"mailview.cgi CGI program in MailStudio 2000 2.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:3r_soft:mailstudio_2000:2.0:*:*:*:*:*:*:*","matchCriteriaId":"67D4B662-D04C-4436-A39C-659CBBD12C34"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0081.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1335","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0081.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1335","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0527","sourceIdentifier":"cve@mitre.org","published":"2000-06-09T04:00:00.000","lastModified":"2026-06-16T21:51:55.630","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"userreg.cgi CGI program in MailStudio 2000 2.0 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:3r_soft:mailstudio_2000:2.0:*:*:*:*:*:*:*","matchCriteriaId":"67D4B662-D04C-4436-A39C-659CBBD12C34"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0081.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1335","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0081.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1335","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0546","sourceIdentifier":"cve@mitre.org","published":"2000-06-09T04:00:00.000","lastModified":"2026-06-16T21:51:58.157","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Kerberos 4 KDC program allows remote attackers to cause a denial of service via the lastrealm variable in the set_tgtkey function."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-120"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cygnus_network_security_project:cygnus_network_security:-:*:*:*:*:*:*:*","matchCriteriaId":"F324E654-8799-45DE-8ECA-779D33033CFE"},{"vulnerable":true,"criteria":"cpe:2.3:a:kerbnet_project:kerbnet:-:*:*:*:*:*:*:*","matchCriteriaId":"A69B5EEC-B360-4F74-839C-1E4909C71126"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos:*:*:*:*:*:*:*:*","versionEndExcluding":"4.0","matchCriteriaId":"83B5C118-EB9E-4CA1-B27A-5D245E334E27"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos:4.0:-:*:*:*:*:*:*","matchCriteriaId":"14393125-C495-47AF-ACC9-EF739A606DAB"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos:4.0:patch10:*:*:*:*:*:*","matchCriteriaId":"C7EDE7F6-5216-40F3-8C31-C3544CDFFBEF"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:*:*:*:*:*:*:*:*","versionStartIncluding":"1.0","versionEndIncluding":"1.0.7","matchCriteriaId":"EC79658F-1838-40CA-AFB1-3E2B43E339CB"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:1.1:*:*:*:*:*:*:*","matchCriteriaId":"7A37987D-22F9-47AC-A07A-380F7E509BFE"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:1.1.1:*:*:*:*:*:*:*","matchCriteriaId":"E47F0770-67D7-42EE-A1AD-9D5B5E83BF2B"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0064.html","source":"cve@mitre.org","tags":["Broken Link"]},{"url":"http://ciac.llnl.gov/ciac/bulletins/k-051.shtml","source":"cve@mitre.org","tags":["Broken Link"]},{"url":"http://web.mit.edu/kerberos/www/advisories/krb4kdc.txt","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.cert.org/advisories/CA-2000-11.html","source":"cve@mitre.org","tags":["Third Party Advisory","US Government Resource"]},{"url":"http://www.securityfocus.com/bid/1338","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0064.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"]},{"url":"http://ciac.llnl.gov/ciac/bulletins/k-051.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"]},{"url":"http://web.mit.edu/kerberos/www/advisories/krb4kdc.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.cert.org/advisories/CA-2000-11.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","US Government Resource"]},{"url":"http://www.securityfocus.com/bid/1338","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]}]}},{"cve":{"id":"CVE-2000-0547","sourceIdentifier":"cve@mitre.org","published":"2000-06-09T04:00:00.000","lastModified":"2026-06-16T21:51:58.287","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Kerberos 4 KDC program allows remote attackers to cause a denial of service via the localrealm variable in the process_v4 function."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-120"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cygnus_network_security_project:cygnus_network_security:-:*:*:*:*:*:*:*","matchCriteriaId":"F324E654-8799-45DE-8ECA-779D33033CFE"},{"vulnerable":true,"criteria":"cpe:2.3:a:kerbnet_project:kerbnet:-:*:*:*:*:*:*:*","matchCriteriaId":"A69B5EEC-B360-4F74-839C-1E4909C71126"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos:*:*:*:*:*:*:*:*","versionEndExcluding":"4.0","matchCriteriaId":"83B5C118-EB9E-4CA1-B27A-5D245E334E27"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos:4.0:-:*:*:*:*:*:*","matchCriteriaId":"14393125-C495-47AF-ACC9-EF739A606DAB"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos:4.0:patch10:*:*:*:*:*:*","matchCriteriaId":"C7EDE7F6-5216-40F3-8C31-C3544CDFFBEF"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:*:*:*:*:*:*:*:*","versionStartIncluding":"1.0","versionEndIncluding":"1.0.7","matchCriteriaId":"EC79658F-1838-40CA-AFB1-3E2B43E339CB"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:1.1:*:*:*:*:*:*:*","matchCriteriaId":"7A37987D-22F9-47AC-A07A-380F7E509BFE"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:1.1.1:*:*:*:*:*:*:*","matchCriteriaId":"E47F0770-67D7-42EE-A1AD-9D5B5E83BF2B"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0064.html","source":"cve@mitre.org","tags":["Broken Link"]},{"url":"http://ciac.llnl.gov/ciac/bulletins/k-051.shtml","source":"cve@mitre.org","tags":["Broken Link"]},{"url":"http://web.mit.edu/kerberos/www/advisories/krb4kdc.txt","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.cert.org/advisories/CA-2000-11.html","source":"cve@mitre.org","tags":["Third Party Advisory","US Government Resource"]},{"url":"http://www.securityfocus.com/bid/1338","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0064.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"]},{"url":"http://ciac.llnl.gov/ciac/bulletins/k-051.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"]},{"url":"http://web.mit.edu/kerberos/www/advisories/krb4kdc.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.cert.org/advisories/CA-2000-11.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","US Government Resource"]},{"url":"http://www.securityfocus.com/bid/1338","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]}]}},{"cve":{"id":"CVE-2000-0548","sourceIdentifier":"cve@mitre.org","published":"2000-06-09T04:00:00.000","lastModified":"2026-06-16T21:51:58.423","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Kerberos 4 KDC program allows remote attackers to cause a denial of service via the e_msg variable in the kerb_err_reply function."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-120"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cygnus_network_security_project:cygnus_network_security:-:*:*:*:*:*:*:*","matchCriteriaId":"F324E654-8799-45DE-8ECA-779D33033CFE"},{"vulnerable":true,"criteria":"cpe:2.3:a:kerbnet_project:kerbnet:-:*:*:*:*:*:*:*","matchCriteriaId":"A69B5EEC-B360-4F74-839C-1E4909C71126"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos:*:*:*:*:*:*:*:*","versionEndExcluding":"4.0","matchCriteriaId":"83B5C118-EB9E-4CA1-B27A-5D245E334E27"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos:4.0:-:*:*:*:*:*:*","matchCriteriaId":"14393125-C495-47AF-ACC9-EF739A606DAB"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos:4.0:patch10:*:*:*:*:*:*","matchCriteriaId":"C7EDE7F6-5216-40F3-8C31-C3544CDFFBEF"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:*:*:*:*:*:*:*:*","versionStartIncluding":"1.0","versionEndIncluding":"1.0.7","matchCriteriaId":"EC79658F-1838-40CA-AFB1-3E2B43E339CB"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:1.1:*:*:*:*:*:*:*","matchCriteriaId":"7A37987D-22F9-47AC-A07A-380F7E509BFE"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:1.1.1:*:*:*:*:*:*:*","matchCriteriaId":"E47F0770-67D7-42EE-A1AD-9D5B5E83BF2B"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0064.html","source":"cve@mitre.org","tags":["Broken Link"]},{"url":"http://ciac.llnl.gov/ciac/bulletins/k-051.shtml","source":"cve@mitre.org","tags":["Broken Link"]},{"url":"http://web.mit.edu/kerberos/www/advisories/krb4kdc.txt","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.cert.org/advisories/CA-2000-11.html","source":"cve@mitre.org","tags":["Third Party Advisory","US Government Resource"]},{"url":"http://www.osvdb.org/4875","source":"cve@mitre.org","tags":["Broken Link"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-031.html","source":"cve@mitre.org","tags":["Third Party Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0064.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"]},{"url":"http://ciac.llnl.gov/ciac/bulletins/k-051.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"]},{"url":"http://web.mit.edu/kerberos/www/advisories/krb4kdc.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.cert.org/advisories/CA-2000-11.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","US Government Resource"]},{"url":"http://www.osvdb.org/4875","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-031.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"]}]}},{"cve":{"id":"CVE-2000-0549","sourceIdentifier":"cve@mitre.org","published":"2000-06-09T04:00:00.000","lastModified":"2026-06-16T21:51:58.560","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Kerberos 4 KDC program does not properly check for null termination of AUTH_MSG_KDC_REQUEST requests, which allows remote attackers to cause a denial of service via a malformed request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cygnus:cygnus_network_security:4.0:*:*:*:*:*:*:*","matchCriteriaId":"05857121-8827-45FD-886F-4269E0336036"},{"vulnerable":true,"criteria":"cpe:2.3:a:cygnus:kerbnet:5.0:*:*:*:*:*:*:*","matchCriteriaId":"EE1B0821-64F1-46E3-8DD3-12FFD1B037F5"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos:4.0:*:*:*:*:*:*:*","matchCriteriaId":"AFB8BD89-F049-4C3B-8744-E8D00D752DE0"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:1.0:*:*:*:*:*:*:*","matchCriteriaId":"08FA60A9-10E1-4ACD-819C-17801FAD7671"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:1.1:*:*:*:*:*:*:*","matchCriteriaId":"7A37987D-22F9-47AC-A07A-380F7E509BFE"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:1.1.1:*:*:*:*:*:*:*","matchCriteriaId":"E47F0770-67D7-42EE-A1AD-9D5B5E83BF2B"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0064.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://ciac.llnl.gov/ciac/bulletins/k-051.shtml","source":"cve@mitre.org"},{"url":"http://web.mit.edu/kerberos/www/advisories/krb4kdc.txt","source":"cve@mitre.org"},{"url":"http://www.cert.org/advisories/CA-2000-11.html","source":"cve@mitre.org","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-031.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0064.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://ciac.llnl.gov/ciac/bulletins/k-051.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://web.mit.edu/kerberos/www/advisories/krb4kdc.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.cert.org/advisories/CA-2000-11.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-031.html","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0550","sourceIdentifier":"cve@mitre.org","published":"2000-06-09T04:00:00.000","lastModified":"2026-06-16T21:51:58.693","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Kerberos 4 KDC program improperly frees memory twice (aka \"double-free\"), which allows remote attackers to cause a denial of service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cygnus:cygnus_network_security:4.0:*:*:*:*:*:*:*","matchCriteriaId":"05857121-8827-45FD-886F-4269E0336036"},{"vulnerable":true,"criteria":"cpe:2.3:a:cygnus:kerbnet:5.0:*:*:*:*:*:*:*","matchCriteriaId":"EE1B0821-64F1-46E3-8DD3-12FFD1B037F5"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos:4.0:*:*:*:*:*:*:*","matchCriteriaId":"AFB8BD89-F049-4C3B-8744-E8D00D752DE0"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:1.0:*:*:*:*:*:*:*","matchCriteriaId":"08FA60A9-10E1-4ACD-819C-17801FAD7671"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:1.1:*:*:*:*:*:*:*","matchCriteriaId":"7A37987D-22F9-47AC-A07A-380F7E509BFE"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:1.1.1:*:*:*:*:*:*:*","matchCriteriaId":"E47F0770-67D7-42EE-A1AD-9D5B5E83BF2B"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0064.html","source":"cve@mitre.org"},{"url":"http://ciac.llnl.gov/ciac/bulletins/k-051.shtml","source":"cve@mitre.org"},{"url":"http://web.mit.edu/kerberos/www/advisories/krb4kdc.txt","source":"cve@mitre.org"},{"url":"http://www.cert.org/advisories/CA-2000-11.html","source":"cve@mitre.org","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-031.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1465","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0064.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://ciac.llnl.gov/ciac/bulletins/k-051.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://web.mit.edu/kerberos/www/advisories/krb4kdc.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.cert.org/advisories/CA-2000-11.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-031.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1465","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0555","sourceIdentifier":"cve@mitre.org","published":"2000-06-09T04:00:00.000","lastModified":"2026-06-16T21:51:59.390","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Ceilidh allows remote attackers to cause a denial of service via a large number of POST requests."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:lilikoi:ceilidh:2.60:*:*:*:*:*:*:*","matchCriteriaId":"86541AF7-DADD-4A71-B685-14B8F6610813"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q2/0246.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1320","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4622","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q2/0246.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1320","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4622","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0639","sourceIdentifier":"cve@mitre.org","published":"2000-06-11T04:00:00.000","lastModified":"2026-06-16T21:52:09.987","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default configuration of Big Brother 1.4h2 and earlier does not include proper access restrictions, which allows remote attackers to execute arbitrary commands by using bbd to upload a file whose extension will cause it to be executed as a CGI script by the web server."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sean_macguire:big_brother:1.0:*:*:*:*:*:*:*","matchCriteriaId":"3B040ABE-485E-4118-989B-6618062A62E7"},{"vulnerable":true,"criteria":"cpe:2.3:a:sean_macguire:big_brother:1.1:*:*:*:*:*:*:*","matchCriteriaId":"D2D180EE-6ACC-4F1F-8FEE-3CC790AEC74A"},{"vulnerable":true,"criteria":"cpe:2.3:a:sean_macguire:big_brother:1.2:*:*:*:*:*:*:*","matchCriteriaId":"3435B00B-59AB-4F7F-8936-4DB44581C2E9"},{"vulnerable":true,"criteria":"cpe:2.3:a:sean_macguire:big_brother:1.3:*:*:*:*:*:*:*","matchCriteriaId":"B4F30DBF-78E2-4E6C-BCBF-4E43D0207B69"},{"vulnerable":true,"criteria":"cpe:2.3:a:sean_macguire:big_brother:1.3b:*:*:*:*:*:*:*","matchCriteriaId":"073613CC-638B-46A9-8BBD-A1D313864BD2"},{"vulnerable":true,"criteria":"cpe:2.3:a:sean_macguire:big_brother:1.4:*:*:*:*:*:*:*","matchCriteriaId":"D29324C9-7C4A-4A5A-A595-A0666498AC88"},{"vulnerable":true,"criteria":"cpe:2.3:a:sean_macguire:big_brother:1.4g:*:*:*:*:*:*:*","matchCriteriaId":"9FDEC456-9591-4195-A251-2196F3049A22"},{"vulnerable":true,"criteria":"cpe:2.3:a:sean_macguire:big_brother:1.4h:*:*:*:*:*:*:*","matchCriteriaId":"D7CCF8C5-927E-4D94-9D8D-631134CCF51F"},{"vulnerable":true,"criteria":"cpe:2.3:a:sean_macguire:big_brother:1.4h1:*:*:*:*:*:*:*","matchCriteriaId":"3A6B2570-E8A4-41C8-A5AD-D64333A133E6"},{"vulnerable":true,"criteria":"cpe:2.3:a:sean_macguire:big_brother:1.09b:*:*:*:*:*:*:*","matchCriteriaId":"69480B13-B4AA-4224-8775-507B4971089D"},{"vulnerable":true,"criteria":"cpe:2.3:a:sean_macguire:big_brother:1.09c:*:*:*:*:*:*:*","matchCriteriaId":"FD961EAE-09E4-4574-BDF2-DAA0CB830247"},{"vulnerable":true,"criteria":"cpe:2.3:a:sean_macguire:big_brother:1.09d:*:*:*:*:*:*:*","matchCriteriaId":"B508CE19-E1B7-4240-A86F-D751F40066F6"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0171.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1472","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1494","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5103","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0171.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1472","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1494","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5103","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0535","sourceIdentifier":"cve@mitre.org","published":"2000-06-12T04:00:00.000","lastModified":"2026-06-16T21:51:56.717","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"OpenSSL 0.9.4 and OpenSSH for FreeBSD do not properly check for the existence of the /dev/random or /dev/urandom devices, which are absent on FreeBSD Alpha systems, which causes them to produce weak keys which may be more easily broken."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:openssl:openssl:0.9.4:*:*:*:*:*:*:*","matchCriteriaId":"8847BD34-BDE6-4AE9-96D9-75B9CF93A6A8"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.0:alpha:*:*:*:*:*:*","matchCriteriaId":"E3F7EB61-55A5-4776-B0E7-3508920A6CEA"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:5.0:alpha:*:*:*:*:*:*","matchCriteriaId":"3B13D898-C1B6-44B9-8432-7DDB8A380E9E"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/freebsd/2000-06/0083.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1340","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/freebsd/2000-06/0083.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1340","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0542","sourceIdentifier":"cve@mitre.org","published":"2000-06-13T04:00:00.000","lastModified":"2026-06-16T21:51:57.653","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Tigris remote access server before 11.5.4.22 does not properly record Radius accounting information when a user fails the initial login authentication but subsequently succeeds."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ericsson:axc_tigris_multiservice_access_platform:623.0:*:*:*:*:*:*:*","matchCriteriaId":"BBDDD377-7044-4F81-9C07-45BE845C42B4"},{"vulnerable":true,"criteria":"cpe:2.3:a:ericsson:axc_tigris_multiservice_access_platform:627.0:*:*:*:*:*:*:*","matchCriteriaId":"E54E4638-E388-40A0-80BC-78286C9860EB"},{"vulnerable":true,"criteria":"cpe:2.3:a:ericsson:axc_tigris_multiservice_access_platform:711.0:*:*:*:*:*:*:*","matchCriteriaId":"9A9BC46B-C83E-492B-9427-2D70467A123A"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0104.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1345","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4705","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0104.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1345","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4705","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0565","sourceIdentifier":"cve@mitre.org","published":"2000-06-13T04:00:00.000","lastModified":"2026-06-16T21:52:00.553","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"SmartFTP Daemon 0.2 allows a local user to access arbitrary files by uploading and specifying an alternate user configuration file via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mindstorm:smartftp_daemon:0.2:*:*:*:*:*:*:*","matchCriteriaId":"1C6AD932-4CFE-462D-9CDA-3846DDF34C4E"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0100.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1394","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1344","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4706","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0100.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1394","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1344","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4706","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0471","sourceIdentifier":"cve@mitre.org","published":"2000-06-14T04:00:00.000","lastModified":"2026-06-16T21:51:48.330","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in ufsrestore in Solaris 8 and earlier allows local users to gain root privileges via a long pathname."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:*:*:x86:*:*:*:*:*","matchCriteriaId":"FEEC0C5A-4A6E-403C-B929-D1EC8B0FE2A8"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:1.1.3:u1:*:*:*:*:*:*","matchCriteriaId":"D3373737-C6FC-4D19-845C-B0382AE1DC48"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:1.1.4:*:jl:*:*:*:*:*","matchCriteriaId":"10EC0267-500D-496F-9D88-7F93F7D4A88B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.4:*:x86:*:*:*:*:*","matchCriteriaId":"1F881110-7B54-49DA-B23A-710273430C44"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5:*:x86:*:*:*:*:*","matchCriteriaId":"200D8CB2-0D52-40A8-9CD9-6E4513605201"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5.1:*:ppc:*:*:*:*:*","matchCriteriaId":"54AF87E4-52A4-44CA-B48E-A5BB139E6410"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.5.1:*:x86:*:*:*:*:*","matchCriteriaId":"F66BAF35-A8B9-4E95-B270-444206FDD35B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.6:*:*:*:*:*:*:*","matchCriteriaId":"34EBF074-78C8-41AF-88F1-DA6726E56F8B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:5.4:*:x86:*:*:*:*:*","matchCriteriaId":"2BD151A2-C664-4B41-B237-9A1FA5DBEEF6"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:5.5:*:x86:*:*:*:*:*","matchCriteriaId":"C724C637-BF31-414D-8D1A-AD1AFB6A2AA4"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:5.5.1:*:x86:*:*:*:*:*","matchCriteriaId":"6CF9FAD7-B1C3-4367-956B-93C4F3929039"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:5.6:*:x86:*:*:*:*:*","matchCriteriaId":"E6E2C6C2-24B4-4A1D-BF80-A54013B4D159"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:7.0:*:x86:*:*:*:*:*","matchCriteriaId":"8F1F312C-413F-4DB4-ABF4-48E33F6FECF2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:-:*:*:*:*:*:*:*","matchCriteriaId":"369207B4-96FA-4324-9445-98FAE8ECF5DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:4.1.3:*:*:*:*:*:*:*","matchCriteriaId":"615FA6E4-4DE0-422A-9220-F747D95192C9"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:4.1.4:*:*:*:*:*:*:*","matchCriteriaId":"1070749A-65E9-439A-A7CC-3CE529A5D5E7"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.0:*:*:*:*:*:*:*","matchCriteriaId":"C1370216-93EB-400F-9AA6-CB2DC316DAA7"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.1:*:*:*:*:*:*:*","matchCriteriaId":"5FF2C7C4-6F8D-40DB-9FBC-E7E4D76A2B23"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.2:*:*:*:*:*:*:*","matchCriteriaId":"84523B48-218B-45F4-9C04-2C103612DCB2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.3:*:*:*:*:*:*:*","matchCriteriaId":"C7A22D21-E0A9-4B56-86C7-805AD1A610D6"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.4:*:*:*:*:*:*:*","matchCriteriaId":"7AAC8954-74A8-4FE3-ABE7-57DA041D9D8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5:*:*:*:*:*:*:*","matchCriteriaId":"5B72953B-E873-4E44-A3CF-12D770A0D416"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5.1:*:*:*:*:*:*:*","matchCriteriaId":"39F847DB-65A9-47DA-BCFA-A179E5E2301A"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.6:*:*:*:*:*:*:*","matchCriteriaId":"C1A13A9E-E24A-4AEE-AD42-2BCA5990E4B9"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.8:*:*:*:*:*:*:*","matchCriteriaId":"A2475113-CFE4-41C8-A86F-F2DA6548D224"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0114.html","source":"cve@mitre.org"},{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/210","source":"cve@mitre.org"},{"url":"http://www.kb.cert.org/vuls/id/36866","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://www.osvdb.org/1398","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1348","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4711","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0114.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/210","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.kb.cert.org/vuls/id/36866","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"http://www.osvdb.org/1398","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1348","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4711","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0477","sourceIdentifier":"cve@mitre.org","published":"2000-06-14T04:00:00.000","lastModified":"2026-06-16T21:51:49.120","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Norton Antivirus for Exchange (NavExchange) allows remote attackers to cause a denial of service via a .zip file that contains long file names."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:symantec:norton_antivirus:1.5:*:ms_exchange:*:*:*:*:*","matchCriteriaId":"6A5103FB-8987-4580-B5DF-C4144CA3B7EC"},{"vulnerable":true,"criteria":"cpe:2.3:a:symantec:norton_antivirus:2.0:*:ms_exchange:*:*:*:*:*","matchCriteriaId":"6086F800-7CE6-44C3-8FDB-2CE6EE4EE467"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0136.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1351","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4710","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0136.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1351","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4710","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0478","sourceIdentifier":"cve@mitre.org","published":"2000-06-14T04:00:00.000","lastModified":"2026-06-16T21:51:49.250","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"In some cases, Norton Antivirus for Exchange (NavExchange) enters a \"fail-open\" state which allows viruses to pass through the server."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:symantec:norton_antivirus:1.5:*:ms_exchange:*:*:*:*:*","matchCriteriaId":"6A5103FB-8987-4580-B5DF-C4144CA3B7EC"},{"vulnerable":true,"criteria":"cpe:2.3:a:symantec:norton_antivirus:2.0:*:ms_exchange:*:*:*:*:*","matchCriteriaId":"6086F800-7CE6-44C3-8FDB-2CE6EE4EE467"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0136.html","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/6266","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1351","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4709","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0136.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/6266","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1351","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4709","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0514","sourceIdentifier":"cve@mitre.org","published":"2000-06-14T04:00:00.000","lastModified":"2026-06-16T21:51:53.917","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"GSSFTP FTP daemon in Kerberos 5 1.1.x does not properly restrict access to some FTP commands, which allows remote attackers to cause a denial of service, and local users to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:1.1:*:*:*:*:*:*:*","matchCriteriaId":"7A37987D-22F9-47AC-A07A-380F7E509BFE"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:1.1.1:*:*:*:*:*:*:*","matchCriteriaId":"E47F0770-67D7-42EE-A1AD-9D5B5E83BF2B"}]}]}],"references":[{"url":"http://web.mit.edu/kerberos/www/advisories/ftp.txt","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/4885","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1374","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=ldvsnufao18.fsf%40saint-elmos-fire.mit.edu","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4734","source":"cve@mitre.org"},{"url":"http://web.mit.edu/kerberos/www/advisories/ftp.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/4885","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1374","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=ldvsnufao18.fsf%40saint-elmos-fire.mit.edu","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4734","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0543","sourceIdentifier":"cve@mitre.org","published":"2000-06-14T04:00:00.000","lastModified":"2026-06-16T21:51:57.777","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The command port for PGP Certificate Server 2.5.0 and 2.5.1 allows remote attackers to cause a denial of service if their hostname does not have a reverse DNS entry and they connect to port 4000."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:pgp:certificate_server:2.5:*:*:*:*:*:*:*","matchCriteriaId":"50D8B5F4-56F9-4E34-A525-491F010382BC"},{"vulnerable":true,"criteria":"cpe:2.3:a:pgp:certificate_server:2.5.1:*:*:*:*:*:*:*","matchCriteriaId":"BD48D4F5-15D5-44E8-A597-7327EB1BCBC9"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0107.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1343","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4695","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0107.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1343","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4695","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0473","sourceIdentifier":"cve@mitre.org","published":"2000-06-15T04:00:00.000","lastModified":"2026-06-16T21:51:48.603","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in AnalogX SimpleServer 1.05 allows a remote attacker to cause a denial of service via a long GET request for a program in the cgi-bin directory."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:analogx:simpleserver_www:1.01:*:*:*:*:*:*:*","matchCriteriaId":"92443A25-EE35-4340-A030-53486C85674C"},{"vulnerable":true,"criteria":"cpe:2.3:a:analogx:simpleserver_www:1.03:*:*:*:*:*:*:*","matchCriteriaId":"AF0B6506-E5BE-4C86-A2C5-B55ACA9004C4"},{"vulnerable":true,"criteria":"cpe:2.3:a:analogx:simpleserver_www:1.04:*:*:*:*:*:*:*","matchCriteriaId":"BF340D7A-0C81-4A97-A4CB-9F51D566B158"},{"vulnerable":true,"criteria":"cpe:2.3:a:analogx:simpleserver_www:1.05:*:*:*:*:*:*:*","matchCriteriaId":"72D12770-D4B3-448E-936A-D19BB1A59326"},{"vulnerable":true,"criteria":"cpe:2.3:a:analogx:simpleserver_www:1.06:*:*:*:*:*:*:*","matchCriteriaId":"E2B7590A-EFB1-4DED-9048-7B3DEED7F0FB"}]}]}],"references":[{"url":"http://www.analogx.com/contents/download/network/sswww.htm","source":"cve@mitre.org","tags":["Patch"]},{"url":"http://www.securityfocus.com/bid/1349","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.analogx.com/contents/download/network/sswww.htm","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"http://www.securityfocus.com/bid/1349","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0475","sourceIdentifier":"cve@mitre.org","published":"2000-06-15T04:00:00.000","lastModified":"2026-06-16T21:51:48.863","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Windows 2000 allows a local user process to access another user's desktop within the same windows station, aka the \"Desktop Separation\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1350","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-020","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4714","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1350","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-020","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4714","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0483","sourceIdentifier":"cve@mitre.org","published":"2000-06-15T04:00:00.000","lastModified":"2026-06-16T21:51:49.863","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The DocumentTemplate package in Zope 2.2 and earlier allows a remote attacker to modify DTMLDocuments or DTMLMethods without authorization."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:redhat:linux_powertools:6.1:*:*:*:*:*:*:*","matchCriteriaId":"BAEE3A85-0A4C-4763-A141-AC27ECFDC2AA"},{"vulnerable":true,"criteria":"cpe:2.3:a:redhat:linux_powertools:6.2:*:*:*:*:*:*:*","matchCriteriaId":"A5AE3BF4-237D-4D84-9753-512A642141A0"},{"vulnerable":true,"criteria":"cpe:2.3:a:zope:zope:1.10.3:*:*:*:*:*:*:*","matchCriteriaId":"46B2B101-676C-4EF3-90FB-7B5D36D1ADF0"},{"vulnerable":true,"criteria":"cpe:2.3:a:zope:zope:2.1.1:*:*:*:*:*:*:*","matchCriteriaId":"6C49596F-E215-4B70-8397-3C247F509D43"},{"vulnerable":true,"criteria":"cpe:2.3:a:zope:zope:2.1.7:*:*:*:*:*:*:*","matchCriteriaId":"23673C10-0D61-4835-A37C-9AAA00F1DA30"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00%3A38.zope.asc","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0144.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0412.html","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-038.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1354","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000616103807.A3768%40conectiva.com.br","source":"cve@mitre.org"},{"url":"http://www.zope.org/Products/Zope/Hotfix_06_16_2000/security_alert","source":"cve@mitre.org","tags":["Patch"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4716","source":"cve@mitre.org"},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00%3A38.zope.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0144.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0412.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-038.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1354","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000616103807.A3768%40conectiva.com.br","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.zope.org/Products/Zope/Hotfix_06_16_2000/security_alert","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4716","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0484","sourceIdentifier":"cve@mitre.org","published":"2000-06-15T04:00:00.000","lastModified":"2026-06-16T21:51:50.020","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Small HTTP Server ver 3.06 contains a memory corruption bug causing a memory overflow. The overflowed buffer crashes into a Structured Exception Handler resulting in a Denial of Service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:max_feoktistov:small_http_server:1.212:*:*:*:*:*:*:*","matchCriteriaId":"CE1E0EBE-710A-493A-98B1-D05B3CFD0007"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=96113651713414&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=96151775004229&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1355","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4692","source":"cve@mitre.org"},{"url":"https://gist.github.com/0xHop/66609ec1e243b913361e1acfa5253806","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=96113651713414&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=96151775004229&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1355","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4692","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://gist.github.com/0xHop/66609ec1e243b913361e1acfa5253806","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0479","sourceIdentifier":"cve@mitre.org","published":"2000-06-16T04:00:00.000","lastModified":"2026-06-16T21:51:49.370","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Dragon FTP server allows remote attackers to cause a denial of service via a long USER command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:shadow_op_software:dragon_server:1.0:*:*:*:*:*:*:*","matchCriteriaId":"1C8EFC21-9825-4404-9C8A-17BD51A53E53"},{"vulnerable":true,"criteria":"cpe:2.3:a:shadow_op_software:dragon_server:2.0:*:*:*:*:*:*:*","matchCriteriaId":"610126B3-718D-439A-9A09-9FAF764D31E5"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=96113734714517&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1352","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=96113734714517&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1352","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0480","sourceIdentifier":"cve@mitre.org","published":"2000-06-16T04:00:00.000","lastModified":"2026-06-16T21:51:49.493","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Dragon telnet server allows remote attackers to cause a denial of service via a long username."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:shadow_op_software:dragon_server:1.0:*:*:*:*:*:*:*","matchCriteriaId":"1C8EFC21-9825-4404-9C8A-17BD51A53E53"},{"vulnerable":true,"criteria":"cpe:2.3:a:shadow_op_software:dragon_server:2.0:*:*:*:*:*:*:*","matchCriteriaId":"610126B3-718D-439A-9A09-9FAF764D31E5"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=96113734714517&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1352","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=96113734714517&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1352","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0494","sourceIdentifier":"cve@mitre.org","published":"2000-06-16T04:00:00.000","lastModified":"2026-06-16T21:51:51.310","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Veritas Volume Manager creates a world writable .server_pids file, which allows local users to add arbitrary commands into the file, which is then executed by the vmsa_server script."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:symantec_veritas:volume_manager:3.0.2:*:*:*:*:*:*:*","matchCriteriaId":"8B779D14-4F10-44D1-A107-4B4D516DAD15"},{"vulnerable":true,"criteria":"cpe:2.3:a:symantec_veritas:volume_manager:3.0.3:*:*:*:*:*:*:*","matchCriteriaId":"5AD91F09-82F0-4EB7-836F-EA0879E59771"},{"vulnerable":true,"criteria":"cpe:2.3:a:symantec_veritas:volume_manager:3.0.4:*:*:*:*:*:*:*","matchCriteriaId":"B7E2DA89-8203-4C25-8B16-34A3594C2229"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0151.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://seer.support.veritas.com/tnotes/volumeman/230053.htm","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1356","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0151.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://seer.support.veritas.com/tnotes/volumeman/230053.htm","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1356","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0501","sourceIdentifier":"cve@mitre.org","published":"2000-06-16T04:00:00.000","lastModified":"2026-06-16T21:51:52.157","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Race condition in MDaemon 2.8.5.0 POP server allows local users to cause a denial of service by entering a UIDL command and quickly exiting the server."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:N/I:N/A:P","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:alt-n:mdaemon:2.8.5.0:*:*:*:*:*:*:*","matchCriteriaId":"C6727183-BD1B-4816-A0B0-3CA24B1F41D1"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q2/0277.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1366","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4745","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q2/0277.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1366","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4745","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0512","sourceIdentifier":"cve@mitre.org","published":"2000-06-16T04:00:00.000","lastModified":"2026-06-16T21:51:53.657","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"CUPS (Common Unix Printing System) 1.04 and earlier does not properly delete request files, which allows a remote attacker to cause a denial of service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.2:*:*:*:*:*:*:*","matchCriteriaId":"58B90124-0543-4226-BFF4-13CCCBCCB243"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.3:*:*:*:*:*:*:*","matchCriteriaId":"618111F3-6608-47F0-AB0D-21547E342871"}]}]}],"references":[{"url":"ftp://ftp.easysw.com/pub/cups/1.0.5/cups-DoS.patch","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0188.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1373","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4846","source":"cve@mitre.org"},{"url":"ftp://ftp.easysw.com/pub/cups/1.0.5/cups-DoS.patch","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0188.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1373","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4846","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0541","sourceIdentifier":"cve@mitre.org","published":"2000-06-17T04:00:00.000","lastModified":"2026-06-16T21:51:57.520","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Panda Antivirus console on port 2001 allows local users to execute arbitrary commands without authentication via the CMD command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:panda:panda_antivirus:2.0:*:netware:*:*:*:*:*","matchCriteriaId":"60F7F210-A968-4B87-A170-0E18DBC72F4B"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0164.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1359","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4707","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0164.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1359","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4707","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0504","sourceIdentifier":"cve@mitre.org","published":"2000-06-19T04:00:00.000","lastModified":"2026-06-16T21:51:52.550","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"libICE in XFree86 allows remote attackers to cause a denial of service by specifying a large value which is not properly checked by the SKIP_STRING macro."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gnome:gdm:1.0:*:*:*:*:*:*:*","matchCriteriaId":"E2D650E6-F568-4B7F-8913-3DC10E8F4201"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnome:gdm:1.1:*:*:*:*:*:*:*","matchCriteriaId":"37AB5A38-A7C4-4016-8628-27AA0EC7E401"},{"vulnerable":true,"criteria":"cpe:2.3:a:open_group:x:11.0r5:*:*:*:*:*:*:*","matchCriteriaId":"A6BF5526-54BA-411B-8C18-BAD8801EEF18"},{"vulnerable":true,"criteria":"cpe:2.3:a:open_group:x:11.0r6:*:*:*:*:*:*:*","matchCriteriaId":"341C2874-4A2A-4ECD-A243-10EF6F2588BE"},{"vulnerable":true,"criteria":"cpe:2.3:a:open_group:x:11.0r6.1:*:*:*:*:*:*:*","matchCriteriaId":"97B9657E-D7CE-496F-AE51-8AFA1CCA49CD"},{"vulnerable":true,"criteria":"cpe:2.3:a:open_group:x:11.0r6.2:*:*:*:*:*:*:*","matchCriteriaId":"5A2B4032-71E6-4731-B829-DD8F004B20BD"},{"vulnerable":true,"criteria":"cpe:2.3:a:open_group:x:11.0r6.3:*:*:*:*:*:*:*","matchCriteriaId":"E1DA55DC-E2A9-44B4-84D6-BE9F84898430"},{"vulnerable":true,"criteria":"cpe:2.3:a:open_group:x:11.0r6.4:*:*:*:*:*:*:*","matchCriteriaId":"2A3657FA-0841-487B-9650-FC06A4E2A88B"},{"vulnerable":true,"criteria":"cpe:2.3:a:xfree86_project:x11r6:3.3.3:*:*:*:*:*:*:*","matchCriteriaId":"C104B02C-3F3B-4DB4-8A1D-65A7DAA380EB"},{"vulnerable":true,"criteria":"cpe:2.3:a:xfree86_project:x11r6:3.3.4:*:*:*:*:*:*:*","matchCriteriaId":"BEECB0ED-A5C9-4675-9CEB-AD6C19EDA7D1"},{"vulnerable":true,"criteria":"cpe:2.3:a:xfree86_project:x11r6:3.3.5:*:*:*:*:*:*:*","matchCriteriaId":"B43D5F86-97B2-4175-8ED7-1F937850F9DB"},{"vulnerable":true,"criteria":"cpe:2.3:a:xfree86_project:x11r6:3.3.6:*:*:*:*:*:*:*","matchCriteriaId":"0946A224-6A0C-4DE3-89F9-200682431737"},{"vulnerable":true,"criteria":"cpe:2.3:a:xfree86_project:x11r6:4.0:*:*:*:*:*:*:*","matchCriteriaId":"F33E5444-E178-4F49-BDA1-DE576D8526EE"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0170.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1369","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.xfree86.org/security/","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0170.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1369","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.xfree86.org/security/","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0528","sourceIdentifier":"cve@mitre.org","published":"2000-06-19T04:00:00.000","lastModified":"2026-06-16T21:51:55.743","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Net Tools PKI Server does not properly restrict access to remote attackers when the XUDA template files do not contain absolute pathnames for other files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:network_associates:net_tools_pki_server:1.0:*:*:*:*:*:*:*","matchCriteriaId":"E9B0AA86-A1A2-4154-8F93-CD40F4A4D820"}]}]}],"references":[{"url":"ftp://ftp.tis.com/gauntlet/hide/pki/hotfix.txt","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0166.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/4353","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1364","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4743","source":"cve@mitre.org"},{"url":"ftp://ftp.tis.com/gauntlet/hide/pki/hotfix.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0166.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/4353","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1364","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4743","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0529","sourceIdentifier":"cve@mitre.org","published":"2000-06-19T04:00:00.000","lastModified":"2026-06-16T21:51:55.870","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Net Tools PKI Server allows remote attackers to cause a denial of service via a long HTTP request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:network_associates:net_tools_pki_server:1.0:*:*:*:*:*:*:*","matchCriteriaId":"E9B0AA86-A1A2-4154-8F93-CD40F4A4D820"}]}]}],"references":[{"url":"ftp://ftp.tis.com/gauntlet/hide/pki/hotfix.txt","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0166.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/4352","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1363","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4744","source":"cve@mitre.org"},{"url":"ftp://ftp.tis.com/gauntlet/hide/pki/hotfix.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0166.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/4352","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1363","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4744","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0561","sourceIdentifier":"cve@mitre.org","published":"2000-06-19T04:00:00.000","lastModified":"2026-06-16T21:52:00.050","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in WebBBS 1.15 allows remote attackers to execute arbitrary commands via a long HTTP GET request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:international_telecommunications:international_telecommunications_webbbs:1.1.5:*:*:*:*:*:*:*","matchCriteriaId":"6B5EDDDA-C9CE-46F7-8B7E-16ED0ECB2D5C"},{"vulnerable":true,"criteria":"cpe:2.3:a:international_telecommunications:international_telecommunications_webbbs:1.17:*:*:*:*:*:*:*","matchCriteriaId":"9540867F-66E7-406F-A4D2-6FDEF1ACEA50"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0175.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/3544","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1365","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4742","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0175.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/3544","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1365","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4742","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0620","sourceIdentifier":"cve@mitre.org","published":"2000-06-19T04:00:00.000","lastModified":"2026-06-16T21:52:07.550","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"libX11 X library allows remote attackers to cause a denial of service via a resource mask of 0, which causes libX11 to go into an infinite loop."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:open_group:x:11.0r6:*:*:*:*:*:*:*","matchCriteriaId":"341C2874-4A2A-4ECD-A243-10EF6F2588BE"},{"vulnerable":true,"criteria":"cpe:2.3:a:open_group:x:11.0r6.1:*:*:*:*:*:*:*","matchCriteriaId":"97B9657E-D7CE-496F-AE51-8AFA1CCA49CD"},{"vulnerable":true,"criteria":"cpe:2.3:a:open_group:x:11.0r6.2:*:*:*:*:*:*:*","matchCriteriaId":"5A2B4032-71E6-4731-B829-DD8F004B20BD"},{"vulnerable":true,"criteria":"cpe:2.3:a:open_group:x:11.0r6.3:*:*:*:*:*:*:*","matchCriteriaId":"E1DA55DC-E2A9-44B4-84D6-BE9F84898430"},{"vulnerable":true,"criteria":"cpe:2.3:a:open_group:x:11.0r6.4:*:*:*:*:*:*:*","matchCriteriaId":"2A3657FA-0841-487B-9650-FC06A4E2A88B"},{"vulnerable":true,"criteria":"cpe:2.3:a:xfree86_project:x11r6:3.3.3:*:*:*:*:*:*:*","matchCriteriaId":"C104B02C-3F3B-4DB4-8A1D-65A7DAA380EB"},{"vulnerable":true,"criteria":"cpe:2.3:a:xfree86_project:x11r6:3.3.4:*:*:*:*:*:*:*","matchCriteriaId":"BEECB0ED-A5C9-4675-9CEB-AD6C19EDA7D1"},{"vulnerable":true,"criteria":"cpe:2.3:a:xfree86_project:x11r6:3.3.5:*:*:*:*:*:*:*","matchCriteriaId":"B43D5F86-97B2-4175-8ED7-1F937850F9DB"},{"vulnerable":true,"criteria":"cpe:2.3:a:xfree86_project:x11r6:3.3.6:*:*:*:*:*:*:*","matchCriteriaId":"0946A224-6A0C-4DE3-89F9-200682431737"},{"vulnerable":true,"criteria":"cpe:2.3:a:xfree86_project:x11r6:4.0:*:*:*:*:*:*:*","matchCriteriaId":"F33E5444-E178-4F49-BDA1-DE576D8526EE"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=96146116627474&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1409","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4996","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=96146116627474&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1409","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4996","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0466","sourceIdentifier":"cve@mitre.org","published":"2000-06-20T04:00:00.000","lastModified":"2026-06-16T21:51:47.697","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"AIX cdmount allows local users to gain root privileges via shell metacharacters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3:*:*:*:*:*:*:*","matchCriteriaId":"11ACD012-F05F-45CD-A170-96CBAA42FFE4"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.1:*:*:*:*:*:*:*","matchCriteriaId":"55919E74-09E7-44BA-9941-D1B69BB1692F"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.2:*:*:*:*:*:*:*","matchCriteriaId":"45F3C5D8-8BC3-44EB-917A-D0BA051D3D9D"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1384","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://xforce.iss.net/alerts/advise55.php","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1384","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://xforce.iss.net/alerts/advise55.php","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0533","sourceIdentifier":"cve@mitre.org","published":"2000-06-20T04:00:00.000","lastModified":"2026-06-16T21:51:56.420","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in cvconnect in SGI IRIX WorkShop allows local users to overwrite arbitrary files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sgi:workshop_debugger_and_performance_tools:2.6:*:*:*:*:*:*:*","matchCriteriaId":"3E4AAD2F-8AD4-4B40-8125-D170F91C200B"}]}]}],"references":[{"url":"ftp://sgigate.sgi.com/security/20000601-01-P","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1379","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4725","source":"cve@mitre.org"},{"url":"ftp://sgigate.sgi.com/security/20000601-01-P","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1379","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4725","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0500","sourceIdentifier":"cve@mitre.org","published":"2000-06-21T04:00:00.000","lastModified":"2026-06-16T21:51:52.023","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default configuration of BEA WebLogic 5.1.0 allows a remote attacker to view source code of programs by requesting a URL beginning with /file/, which causes the default servlet to display the file without further processing."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:3.1.8:*:*:*:*:*:*:*","matchCriteriaId":"742DCC2D-B4AD-4D16-8338-21E258C4FD17"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:3.1.8:*:express:*:*:*:*:*","matchCriteriaId":"E8E13F70-AE6E-4443-B414-DAACD3F14355"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"3FED57A9-CD22-48C6-AF7B-C361CA843283"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:4.0:*:express:*:*:*:*:*","matchCriteriaId":"292C88E7-3CD1-4D87-91B1-5E170A358E4D"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:4.5:*:*:*:*:*:*:*","matchCriteriaId":"9500F620-FEFE-4CB7-A733-65E7372BD8D4"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:4.5:*:express:*:*:*:*:*","matchCriteriaId":"3AB46979-F303-4CAD-AF0F-997BD7CE724F"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:*:*:*:*:*:*:*","matchCriteriaId":"CCD5D4AD-0BA3-42F7-852F-524488D74A96"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:*:express:*:*:*:*:*","matchCriteriaId":"A8F69E7A-8BBB-4D20-AEE9-F37155AD5C3F"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=96161462915381&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1378","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.weblogic.com/docs51/admindocs/http.html#file","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4775","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=96161462915381&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1378","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.weblogic.com/docs51/admindocs/http.html#file","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4775","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0510","sourceIdentifier":"cve@mitre.org","published":"2000-06-21T04:00:00.000","lastModified":"2026-06-16T21:51:53.397","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"CUPS (Common Unix Printing System) 1.04 and earlier allows remote attackers to cause a denial of service via a malformed IPP request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.2:*:*:*:*:*:*:*","matchCriteriaId":"58B90124-0543-4226-BFF4-13CCCBCCB243"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.3:*:*:*:*:*:*:*","matchCriteriaId":"618111F3-6608-47F0-AB0D-21547E342871"}]}]}],"references":[{"url":"ftp://ftp.easysw.com/pub/cups/1.0.5/cups-DoS.patch","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0188.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1373","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4846","source":"cve@mitre.org"},{"url":"ftp://ftp.easysw.com/pub/cups/1.0.5/cups-DoS.patch","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0188.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1373","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4846","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0511","sourceIdentifier":"cve@mitre.org","published":"2000-06-21T04:00:00.000","lastModified":"2026-06-16T21:51:53.533","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"CUPS (Common Unix Printing System) 1.04 and earlier allows remote attackers to cause a denial of service via a CGI POST request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.2:*:*:*:*:*:*:*","matchCriteriaId":"58B90124-0543-4226-BFF4-13CCCBCCB243"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.3:*:*:*:*:*:*:*","matchCriteriaId":"618111F3-6608-47F0-AB0D-21547E342871"}]}]}],"references":[{"url":"ftp://ftp.easysw.com/pub/cups/1.0.5/cups-DoS.patch","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0188.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1373","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4846","source":"cve@mitre.org"},{"url":"ftp://ftp.easysw.com/pub/cups/1.0.5/cups-DoS.patch","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0188.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1373","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4846","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0513","sourceIdentifier":"cve@mitre.org","published":"2000-06-21T04:00:00.000","lastModified":"2026-06-16T21:51:53.787","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"CUPS (Common Unix Printing System) 1.04 and earlier allows remote attackers to cause a denial of service by authenticating with a user name that does not exist or does not have a shadow password."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.2:*:*:*:*:*:*:*","matchCriteriaId":"58B90124-0543-4226-BFF4-13CCCBCCB243"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.3:*:*:*:*:*:*:*","matchCriteriaId":"618111F3-6608-47F0-AB0D-21547E342871"}]}]}],"references":[{"url":"ftp://ftp.easysw.com/pub/cups/1.0.5/cups-DoS.patch","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0188.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1373","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4846","source":"cve@mitre.org"},{"url":"ftp://ftp.easysw.com/pub/cups/1.0.5/cups-DoS.patch","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0188.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1373","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4846","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0577","sourceIdentifier":"cve@mitre.org","published":"2000-06-21T04:00:00.000","lastModified":"2026-06-16T21:52:02.193","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Netscape Professional Services FTP Server 1.3.6 allows remote attackers to read arbitrary files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:professional_services_ftpserver:1.3.6:*:*:*:*:*:*:*","matchCriteriaId":"F579D691-9D70-46D8-9B53-A069AD92B00F"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0345.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1411","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.21.0006211351280.23780-100000%40nimue.tpi.pl","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0345.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1411","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.21.0006211351280.23780-100000%40nimue.tpi.pl","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0578","sourceIdentifier":"cve@mitre.org","published":"2000-06-21T04:00:00.000","lastModified":"2026-06-16T21:52:02.313","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"SGI MIPSPro compilers C, C++, F77 and F90 generate temporary files in /tmp with predictable file names, which could allow local users to insert malicious contents into these files as they are being compiled by another user."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:P/I:P/A:P","baseScore":3.7,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":1.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sgi:mipspro_compilers:7.1:*:*:*:*:*:*:*","matchCriteriaId":"3A05CA1F-14A4-47C3-85A8-32A72BF39B56"},{"vulnerable":true,"criteria":"cpe:2.3:a:sgi:mipspro_compilers:7.2.1:*:*:*:*:*:*:*","matchCriteriaId":"5C0A4F3F-36F2-4AF9-842B-E80599A4DCE5"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0204.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1412","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0204.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1412","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0579","sourceIdentifier":"cve@mitre.org","published":"2000-06-21T04:00:00.000","lastModified":"2026-06-16T21:52:02.440","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IRIX crontab creates temporary files with predictable file names and with the umask of the user, which could allow local users to modify another user's crontab file as it is being edited."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:P/I:P/A:P","baseScore":3.7,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":1.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.3:*:*:*:*:*:*:*","matchCriteriaId":"B2D59247-56FA-46B4-BB51-2DAE71AFC145"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5:*:*:*:*:*:*:*","matchCriteriaId":"C30D6962-3DBB-4DF8-A04F-8E47AFEDCF99"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0204.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1413","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0204.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1413","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0602","sourceIdentifier":"cve@mitre.org","published":"2000-06-21T04:00:00.000","lastModified":"2026-06-16T21:52:05.363","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Secure Locate (slocate) in Red Hat Linux allows local users to gain privileges via a malformed configuration file that is specified in the LOCATE_PATH environmental variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:kevin_lindsay:secure_locate:2.0:*:*:*:*:*:*:*","matchCriteriaId":"E521E9F0-2391-4DCD-9B3B-CFC3C6CC0441"},{"vulnerable":true,"criteria":"cpe:2.3:a:kevin_lindsay:secure_locate:2.1:*:*:*:*:*:*:*","matchCriteriaId":"6BB6C6D8-087A-490B-AC34-75C248DE2FB2"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1385","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.21.0006211209500.22969-100000%40nimue.tpi.pl","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1385","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.21.0006211209500.22969-100000%40nimue.tpi.pl","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0604","sourceIdentifier":"cve@mitre.org","published":"2000-06-21T04:00:00.000","lastModified":"2026-06-16T21:52:05.607","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"gkermit in Red Hat Linux is improperly installed with setgid uucp, which allows local users to modify files owned by uucp."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:*:*:*:*:*:*","matchCriteriaId":"0633B5A6-7A88-4A96-9462-4C09D124ED36"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1383","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.21.0006211209500.22969-100000%40nimue.tpi.pl","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1383","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.21.0006211209500.22969-100000%40nimue.tpi.pl","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0606","sourceIdentifier":"cve@mitre.org","published":"2000-06-21T04:00:00.000","lastModified":"2026-06-16T21:52:05.847","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in kon program in Kanji on Console (KON) package on Linux may allow local users to gain root privileges via a long -StartupMessage parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.0:*:*:*:*:*:*:*","matchCriteriaId":"203BDD63-2FA5-42FD-A9CD-6BDBB41A63C4"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.1:*:*:*:*:*:*:*","matchCriteriaId":"3C67BDA1-9451-4026-AC6D-E912C882A757"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.2:*:*:*:*:*:*:*","matchCriteriaId":"58B90124-0543-4226-BFF4-13CCCBCCB243"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.3:*:*:*:*:*:*:*","matchCriteriaId":"618111F3-6608-47F0-AB0D-21547E342871"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"ACAAD334-2CA7-4B3B-BA25-302E7610BC2A"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"E4853E92-5E0A-47B9-A343-D5BEE87D2C27"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:7.1:*:*:*:*:*:*:*","matchCriteriaId":"3EC1FF5D-5EAB-44D5-B281-770547C70D68"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.0:*:*:*:*:*:*:*","matchCriteriaId":"4BF54738-3C44-4FD4-AA9C-CAB2E86B1DC1"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.1:*:*:*:*:*:*:*","matchCriteriaId":"4EF44364-0F57-4B74-81B0-501EA6B58501"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:*:*:*:*:*:*","matchCriteriaId":"A8EED385-8C39-4A40-A507-2EFE7652FB35"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"2EC4D3AB-38FA-4D44-AF5C-2DCD15994E76"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:*:*:*:*:*:*","matchCriteriaId":"0633B5A6-7A88-4A96-9462-4C09D124ED36"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1371","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.21.0006192340340.19998-100000%40ferret.lmh.ox.ac.uk","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1371","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.21.0006192340340.19998-100000%40ferret.lmh.ox.ac.uk","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0607","sourceIdentifier":"cve@mitre.org","published":"2000-06-21T04:00:00.000","lastModified":"2026-06-16T21:52:05.970","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in fld program in Kanji on Console (KON) package on Linux may allow local users to gain root privileges via an input file containing long CHARSET_REGISTRY or CHARSET_ENCODING settings."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.0:*:*:*:*:*:*:*","matchCriteriaId":"203BDD63-2FA5-42FD-A9CD-6BDBB41A63C4"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.1:*:*:*:*:*:*:*","matchCriteriaId":"3C67BDA1-9451-4026-AC6D-E912C882A757"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.2:*:*:*:*:*:*:*","matchCriteriaId":"58B90124-0543-4226-BFF4-13CCCBCCB243"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.3:*:*:*:*:*:*:*","matchCriteriaId":"618111F3-6608-47F0-AB0D-21547E342871"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"ACAAD334-2CA7-4B3B-BA25-302E7610BC2A"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"E4853E92-5E0A-47B9-A343-D5BEE87D2C27"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:7.1:*:*:*:*:*:*:*","matchCriteriaId":"3EC1FF5D-5EAB-44D5-B281-770547C70D68"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.0:*:*:*:*:*:*:*","matchCriteriaId":"4BF54738-3C44-4FD4-AA9C-CAB2E86B1DC1"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.1:*:*:*:*:*:*:*","matchCriteriaId":"4EF44364-0F57-4B74-81B0-501EA6B58501"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:*:*:*:*:*:*","matchCriteriaId":"A8EED385-8C39-4A40-A507-2EFE7652FB35"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"2EC4D3AB-38FA-4D44-AF5C-2DCD15994E76"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:*:*:*:*:*:*","matchCriteriaId":"0633B5A6-7A88-4A96-9462-4C09D124ED36"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1371","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.21.0006192340340.19998-100000%40ferret.lmh.ox.ac.uk","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1371","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.21.0006192340340.19998-100000%40ferret.lmh.ox.ac.uk","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0608","sourceIdentifier":"cve@mitre.org","published":"2000-06-21T04:00:00.000","lastModified":"2026-06-16T21:52:06.090","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"NetWin dMailWeb and cwMail 2.6i and earlier allows remote attackers to cause a denial of service via a long POP parameter (pophost)."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netwin:cwmail:2.5e:*:*:*:*:*:*:*","matchCriteriaId":"CA46F08C-C959-4239-B5D0-4B0854924CE0"},{"vulnerable":true,"criteria":"cpe:2.3:a:netwin:cwmail:2.6g:*:*:*:*:*:*:*","matchCriteriaId":"DF772BD1-22F1-4AEA-970B-562C6FD38362"},{"vulnerable":true,"criteria":"cpe:2.3:a:netwin:cwmail:2.6i:*:*:*:*:*:*:*","matchCriteriaId":"2FEE5850-8115-47EC-ACA5-31ACF7F794A6"},{"vulnerable":true,"criteria":"cpe:2.3:a:netwin:cwmail:2.6j:*:*:*:*:*:*:*","matchCriteriaId":"B2945BC5-C501-49C2-AE58-3D2672DB800C"},{"vulnerable":true,"criteria":"cpe:2.3:a:netwin:dmailweb:2.5e:*:*:*:*:*:*:*","matchCriteriaId":"348B4CF8-84FD-4F42-B59A-D00A2C355ABD"},{"vulnerable":true,"criteria":"cpe:2.3:a:netwin:dmailweb:2.6g:*:*:*:*:*:*:*","matchCriteriaId":"986015E2-61D6-4CE0-91BD-B7EB55A99248"},{"vulnerable":true,"criteria":"cpe:2.3:a:netwin:dmailweb:2.6i:*:*:*:*:*:*:*","matchCriteriaId":"C7449E62-15E5-4AC0-9914-D874AC8CB2B6"},{"vulnerable":true,"criteria":"cpe:2.3:a:netwin:dmailweb:2.6j:*:*:*:*:*:*:*","matchCriteriaId":"FC0C7706-812E-4616-AC82-062208753FE2"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1376","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-06-15&msg=4.1.20000621113334.00996820%40qlink.queensu.ca","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1376","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-06-15&msg=4.1.20000621113334.00996820%40qlink.queensu.ca","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0609","sourceIdentifier":"cve@mitre.org","published":"2000-06-21T04:00:00.000","lastModified":"2026-06-16T21:52:06.220","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"NetWin dMailWeb and cwMail 2.6g and earlier allows remote attackers to cause a denial of service via a long username parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netwin:cwmail:2.5e:*:*:*:*:*:*:*","matchCriteriaId":"CA46F08C-C959-4239-B5D0-4B0854924CE0"},{"vulnerable":true,"criteria":"cpe:2.3:a:netwin:cwmail:2.6g:*:*:*:*:*:*:*","matchCriteriaId":"DF772BD1-22F1-4AEA-970B-562C6FD38362"},{"vulnerable":true,"criteria":"cpe:2.3:a:netwin:cwmail:2.6i:*:*:*:*:*:*:*","matchCriteriaId":"2FEE5850-8115-47EC-ACA5-31ACF7F794A6"},{"vulnerable":true,"criteria":"cpe:2.3:a:netwin:cwmail:2.6j:*:*:*:*:*:*:*","matchCriteriaId":"B2945BC5-C501-49C2-AE58-3D2672DB800C"},{"vulnerable":true,"criteria":"cpe:2.3:a:netwin:dmailweb:2.5e:*:*:*:*:*:*:*","matchCriteriaId":"348B4CF8-84FD-4F42-B59A-D00A2C355ABD"},{"vulnerable":true,"criteria":"cpe:2.3:a:netwin:dmailweb:2.6g:*:*:*:*:*:*:*","matchCriteriaId":"986015E2-61D6-4CE0-91BD-B7EB55A99248"},{"vulnerable":true,"criteria":"cpe:2.3:a:netwin:dmailweb:2.6i:*:*:*:*:*:*:*","matchCriteriaId":"C7449E62-15E5-4AC0-9914-D874AC8CB2B6"},{"vulnerable":true,"criteria":"cpe:2.3:a:netwin:dmailweb:2.6j:*:*:*:*:*:*:*","matchCriteriaId":"FC0C7706-812E-4616-AC82-062208753FE2"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1376","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-06-15&msg=4.1.20000621113334.00996820%40qlink.queensu.ca","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1376","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-06-15&msg=4.1.20000621113334.00996820%40qlink.queensu.ca","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0539","sourceIdentifier":"cve@mitre.org","published":"2000-06-22T04:00:00.000","lastModified":"2026-06-16T21:51:57.270","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Servlet examples in Allaire JRun 2.3.x allow remote attackers to obtain sensitive information, e.g. listing HttpSession ID's via the SessionServlet servlet."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:N","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:macromedia:jrun:2.3:*:*:*:*:*:*:*","matchCriteriaId":"8587E5C8-193F-4A2B-965D-0ACC7429C7D7"}]}]}],"references":[{"url":"http://www.allaire.com/handlers/index.cfm?ID=16290&Method=Full","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/818","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1386","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4774","source":"cve@mitre.org"},{"url":"http://www.allaire.com/handlers/index.cfm?ID=16290&Method=Full","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/818","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1386","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4774","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0540","sourceIdentifier":"cve@mitre.org","published":"2000-06-22T04:00:00.000","lastModified":"2026-06-16T21:51:57.397","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"JSP sample files in Allaire JRun 2.3.x allow remote attackers to access arbitrary files (e.g. via viewsource.jsp) or obtain configuration information."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:macromedia:jrun:2.3:*:*:*:*:*:*:*","matchCriteriaId":"8587E5C8-193F-4A2B-965D-0ACC7429C7D7"}]}]}],"references":[{"url":"http://www.allaire.com/handlers/index.cfm?ID=16290&Method=Full","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/2713","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1386","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4774","source":"cve@mitre.org"},{"url":"http://www.allaire.com/handlers/index.cfm?ID=16290&Method=Full","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/2713","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1386","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4774","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0562","sourceIdentifier":"cve@mitre.org","published":"2000-06-22T04:00:00.000","lastModified":"2026-06-16T21:52:00.177","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"BlackIce Defender 2.1 and earlier, and BlackIce Pro 2.0.23 and earlier, do not properly block Back Orifice traffic when the security setting is Nervous or lower."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:iss:blackice_agent:*:*:*:*:*:*:*:*","versionEndIncluding":"2.0.23","matchCriteriaId":"0276FA59-5E4A-4EDC-99D4-4B4CEDDC04A1"},{"vulnerable":true,"criteria":"cpe:2.3:a:iss:blackice_defender:*:*:*:*:*:*:*:*","versionEndIncluding":"2.1","matchCriteriaId":"74AC949D-F84C-44F7-83D2-D230F943AF06"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0190.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0190.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0617","sourceIdentifier":"cve@mitre.org","published":"2000-06-22T04:00:00.000","lastModified":"2026-06-16T21:52:07.173","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in xconq and cconq game programs on Red Hat Linux allows local users to gain additional privileges via long USER environmental variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:stanley_t._shebs:xconq:7.2.2:*:*:*:*:*:*:*","matchCriteriaId":"B4BDC70D-D229-4C72-9F54-68EF2F4B9B6E"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0222.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0222.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0618","sourceIdentifier":"cve@mitre.org","published":"2000-06-22T04:00:00.000","lastModified":"2026-06-16T21:52:07.303","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in xconq and cconq game programs on Red Hat Linux allows local users to gain additional privileges via long DISPLAY environmental variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:stanley_t._shebs:xconq:7.2.2:*:*:*:*:*:*:*","matchCriteriaId":"B4BDC70D-D229-4C72-9F54-68EF2F4B9B6E"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0222.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0222.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0610","sourceIdentifier":"cve@mitre.org","published":"2000-06-23T04:00:00.000","lastModified":"2026-06-16T21:52:06.333","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"NetWin dMailWeb and cwMail 2.6g and earlier allows remote attackers to bypass authentication and use the server for mail relay via a username that contains a carriage return."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netwin:cwmail:2.6g:*:*:*:*:*:*:*","matchCriteriaId":"DF772BD1-22F1-4AEA-970B-562C6FD38362"},{"vulnerable":true,"criteria":"cpe:2.3:a:netwin:dmailweb:2.6g:*:*:*:*:*:*:*","matchCriteriaId":"986015E2-61D6-4CE0-91BD-B7EB55A99248"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0243.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1390","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4770","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0243.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1390","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4770","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0611","sourceIdentifier":"cve@mitre.org","published":"2000-06-23T04:00:00.000","lastModified":"2026-06-16T21:52:06.450","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default configuration of NetWin dMailWeb and cwMail trusts all POP servers, which allows attackers to bypass normal authentication and cause a denial of service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netwin:cwmail:2.6g:*:*:*:*:*:*:*","matchCriteriaId":"DF772BD1-22F1-4AEA-970B-562C6FD38362"},{"vulnerable":true,"criteria":"cpe:2.3:a:netwin:dmailweb:2.6g:*:*:*:*:*:*:*","matchCriteriaId":"986015E2-61D6-4CE0-91BD-B7EB55A99248"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0243.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1391","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4771","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0243.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1391","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4771","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0585","sourceIdentifier":"cve@mitre.org","published":"2000-06-24T04:00:00.000","lastModified":"2026-06-16T21:52:03.183","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ISC DHCP client program dhclient allows remote attackers to execute arbitrary commands via shell metacharacters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:isc:dhcp_client:2.0:*:*:*:*:*:*:*","matchCriteriaId":"AEB862F1-3C18-42AA-9E7A-1BEF321618AE"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:dhcp_client:3.0b1:*:*:*:*:*:*:*","matchCriteriaId":"C795F0C4-FDE0-463E-8F04-A2CA341679CE"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:34.dhclient.asc","source":"cve@mitre.org"},{"url":"ftp://ftp.NetBSD.ORG/pub/NetBSD/misc/security/advisories/NetBSD-SA2000-008.txt.asc","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0247.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0014.html","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/2000/20000628","source":"cve@mitre.org"},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_56.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1388","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4772","source":"cve@mitre.org"},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:34.dhclient.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"ftp://ftp.NetBSD.ORG/pub/NetBSD/misc/security/advisories/NetBSD-SA2000-008.txt.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0247.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0014.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.debian.org/security/2000/20000628","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_56.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1388","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4772","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0601","sourceIdentifier":"cve@mitre.org","published":"2000-06-25T04:00:00.000","lastModified":"2026-06-16T21:52:05.243","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"LeafChat 1.7 IRC client allows a remote IRC server to cause a denial of service by rapidly sending a large amount of error messages."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:leafdigital:leafchat:1.7:*:*:*:*:*:*:*","matchCriteriaId":"5D9E0D78-B27E-4E6A-88A5-20E7464D2C11"}]}]}],"references":[{"url":"http://www.leafdigital.com/Software/leafChat/history.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1396","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.BSF.4.10.10006252056110.74551-100000%40unix.za.net","source":"cve@mitre.org"},{"url":"http://www.leafdigital.com/Software/leafChat/history.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1396","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.BSF.4.10.10006252056110.74551-100000%40unix.za.net","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0587","sourceIdentifier":"cve@mitre.org","published":"2000-06-26T04:00:00.000","lastModified":"2026-06-16T21:52:03.443","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The privpath directive in glftpd 1.18 allows remote attackers to bypass access restrictions for directories by using the file name completion capability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:glftpd:glftpd:1.18:*:*:*:*:*:*:*","matchCriteriaId":"4E50A926-D68F-4B1E-A009-0808611885B7"},{"vulnerable":true,"criteria":"cpe:2.3:a:glftpd:glftpd:1.19:*:*:*:*:*:*:*","matchCriteriaId":"2EC24C84-A059-4F09-AE7D-1F077AE8F291"},{"vulnerable":true,"criteria":"cpe:2.3:a:glftpd:glftpd:1.20:*:*:*:*:*:*:*","matchCriteriaId":"1B8C2E9C-2305-4DAD-8406-D5BFAFBBEEC3"},{"vulnerable":true,"criteria":"cpe:2.3:a:glftpd:glftpd:1.21b1:*:*:*:*:*:*:*","matchCriteriaId":"CF143A96-B3A2-4876-8B50-C583B891752D"},{"vulnerable":true,"criteria":"cpe:2.3:a:glftpd:glftpd:1.21b2:*:*:*:*:*:*:*","matchCriteriaId":"3031BA2A-5FEC-425E-AA1E-DA39FD9CF94E"},{"vulnerable":true,"criteria":"cpe:2.3:a:glftpd:glftpd:1.21b3:*:*:*:*:*:*:*","matchCriteriaId":"6A877D2D-854A-4614-931B-BC42E70CEE8A"},{"vulnerable":true,"criteria":"cpe:2.3:a:glftpd:glftpd:1.21b4:*:*:*:*:*:*:*","matchCriteriaId":"070A2213-B877-42DE-9112-7A90E13778C7"},{"vulnerable":true,"criteria":"cpe:2.3:a:glftpd:glftpd:1.21b5:*:*:*:*:*:*:*","matchCriteriaId":"53DC7530-D9CC-4E1B-A96D-505CE0005192"},{"vulnerable":true,"criteria":"cpe:2.3:a:glftpd:glftpd:1.21b6:*:*:*:*:*:*:*","matchCriteriaId":"6DAF880E-B556-465A-8CB8-47196EF0D9B1"},{"vulnerable":true,"criteria":"cpe:2.3:a:glftpd:glftpd:1.21b7:*:*:*:*:*:*:*","matchCriteriaId":"34704098-AD9F-405B-AB35-923546A8B7D9"},{"vulnerable":true,"criteria":"cpe:2.3:a:glftpd:glftpd:1.21b8:*:*:*:*:*:*:*","matchCriteriaId":"33E8DEBD-42E4-4EBF-87BF-7F620584BA9B"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0317.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1401","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.10.10006261041360.31907-200000%40twix.thrijswijk.nl","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0317.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1401","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.10.10006261041360.31907-200000%40twix.thrijswijk.nl","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0588","sourceIdentifier":"cve@mitre.org","published":"2000-06-26T04:00:00.000","lastModified":"2026-06-16T21:52:03.573","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"SawMill 5.0.21 CGI program allows remote attackers to read the first line of arbitrary files by listing the file in the rfcf parameter, whose contents SawMill attempts to parse as configuration commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-200"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sawmill:sawmill:5.0.21:*:*:*:*:*:*:*","matchCriteriaId":"4673D2AA-E1BE-4809-94BE-7C6951E9D2D4"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0271.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0080.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1402","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0271.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0080.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1402","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0589","sourceIdentifier":"cve@mitre.org","published":"2000-06-26T04:00:00.000","lastModified":"2026-06-16T21:52:03.697","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"SawMill 5.0.21 uses weak encryption to store passwords, which allows attackers to easily decrypt the password and modify the SawMill configuration."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-310"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sawmill:sawmill:5.0.21:*:*:*:*:*:*:*","matchCriteriaId":"4673D2AA-E1BE-4809-94BE-7C6951E9D2D4"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0271.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0080.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1403","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0271.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0080.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1403","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0598","sourceIdentifier":"cve@mitre.org","published":"2000-06-26T04:00:00.000","lastModified":"2026-06-16T21:52:04.870","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Fortech Proxy+ allows remote attackers to bypass access restrictions for to the administration service by redirecting their connections through the telnet proxy."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:fortech:proxy\\+:2.40:*:*:*:*:*:*:*","matchCriteriaId":"35776A0E-D203-482F-B6FE-EB2BAB2FBAC2"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0268.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.proxyplus.cz/faq/articles/EN/art01002.htm","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1395","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0268.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.proxyplus.cz/faq/articles/EN/art01002.htm","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1395","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0600","sourceIdentifier":"cve@mitre.org","published":"2000-06-26T04:00:00.000","lastModified":"2026-06-16T21:52:05.120","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Netscape Enterprise Server in NetWare 5.1 allows remote attackers to cause a denial of service or execute arbitrary commands via a malformed URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:enterprise_server:4.1.1:*:netware:*:*:*:*:*","matchCriteriaId":"B708CDB3-0BF9-4FE4-855F-DB6E1FE5A319"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:enterprise_server:5.0:*:netware:*:*:*:*:*","matchCriteriaId":"DA8D4321-3683-460F-AFAA-1D31E9B16818"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:novell:netware:5.0:*:*:*:*:*:*:*","matchCriteriaId":"471D1E06-05B5-4844-A384-19271CAD743C"},{"vulnerable":true,"criteria":"cpe:2.3:o:novell:netware:5.1:*:*:*:*:*:*:*","matchCriteriaId":"455ED4E4-8033-4043-BF10-20188BF0B8B6"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0264.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1393","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4780","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0264.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1393","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4780","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0616","sourceIdentifier":"cve@mitre.org","published":"2000-06-26T04:00:00.000","lastModified":"2026-06-16T21:52:07.057","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in HP TurboIMAGE DBUTIL allows local users to gain additional privileges via DBUTIL.PUB.SYS."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:mpe_ix:4.5:*:*:*:*:*:*:*","matchCriteriaId":"393B794E-E9FA-43B0-A3F6-E30A233CC923"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:mpe_ix:5.0:*:*:*:*:*:*:*","matchCriteriaId":"529F6FE1-96F5-47C3-8E0D-22A461002A55"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:mpe_ix:5.5:*:*:*:*:*:*:*","matchCriteriaId":"85A265C6-10F3-430A-BD67-D3DAA9460CC7"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:mpe_ix:6.0:*:*:*:*:*:*:*","matchCriteriaId":"BE46649B-4577-4DEF-BB79-71E0B96260BA"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:mpe_ix:6.5:*:*:*:*:*:*:*","matchCriteriaId":"3A239948-8AF4-430D-85DD-4DEF1C44CE6D"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0294.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1405","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0294.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1405","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0570","sourceIdentifier":"cve@mitre.org","published":"2000-06-27T04:00:00.000","lastModified":"2026-06-16T21:52:01.190","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"FirstClass Internet Services server 5.770, and other versions before 6.1, allows remote attackers to cause a denial of service by sending an email with a long To: mail header."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:centrinity:firstclass_intranet_server:5.770:*:*:*:*:*:*:*","matchCriteriaId":"0EDA5954-66F7-43A3-9892-0C4EEA9AF7A7"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0295.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.osvdb.org/5718","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1421","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4843","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0295.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.osvdb.org/5718","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1421","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4843","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0592","sourceIdentifier":"cve@mitre.org","published":"2000-06-27T04:00:00.000","lastModified":"2026-06-16T21:52:04.063","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflows in POP3 service in WinProxy 2.0 and 2.0.1 allow remote attackers to execute arbitrary commands via long USER, PASS, LIST, RETR, or DELE commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sapporoworks:sapporoworks_winproxy:2.0:*:*:*:*:*:*:*","matchCriteriaId":"BC2BEE44-5F58-41F0-985F-0791A967BE38"},{"vulnerable":true,"criteria":"cpe:2.3:a:sapporoworks:sapporoworks_winproxy:2.0.1:*:*:*:*:*:*:*","matchCriteriaId":"7702391A-E631-4720-B417-1B1FEDFA525A"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1400","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200006271417.GFE84146.-BJXON%40lac.co.jp","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1400","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200006271417.GFE84146.-BJXON%40lac.co.jp","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0593","sourceIdentifier":"cve@mitre.org","published":"2000-06-27T04:00:00.000","lastModified":"2026-06-16T21:52:04.187","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WinProxy 2.0 and 2.0.1 allows remote attackers to cause a denial of service by sending an HTTP GET request without listing an HTTP version number."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sapporoworks:sapporoworks_winproxy:2.0:*:*:*:*:*:*:*","matchCriteriaId":"BC2BEE44-5F58-41F0-985F-0791A967BE38"},{"vulnerable":true,"criteria":"cpe:2.3:a:sapporoworks:sapporoworks_winproxy:2.0.1:*:*:*:*:*:*:*","matchCriteriaId":"7702391A-E631-4720-B417-1B1FEDFA525A"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1400","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200006271417.GFE84146.-BJXON%40lac.co.jp","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4831","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1400","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200006271417.GFE84146.-BJXON%40lac.co.jp","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4831","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0596","sourceIdentifier":"cve@mitre.org","published":"2000-06-27T04:00:00.000","lastModified":"2026-06-16T21:52:04.603","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internet Explorer 5.x does not warn a user before opening a Microsoft Access database file that is referenced within ActiveX OBJECT tags in an HTML document, which could allow remote attackers to execute arbitrary commands, aka the \"IE Script\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0.1:sp2:*:*:*:*:*:*","matchCriteriaId":"C375A9AA-505B-444C-A45F-2BAAD0B2CD0D"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5:*:*:*:*:*:*:*","matchCriteriaId":"B4071D03-D955-4C1B-ACD8-A864F7D0FA02"}]}]}],"references":[{"url":"http://www.cert.org/advisories/CA-2000-16.html","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://www.securityfocus.com/bid/1398","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=000d01bfe0fb%24418f59b0%2496217aa8%40src.bu.edu","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=39589359.762392DB%40nat.bg","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-049","source":"cve@mitre.org"},{"url":"http://www.cert.org/advisories/CA-2000-16.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"http://www.securityfocus.com/bid/1398","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=000d01bfe0fb%24418f59b0%2496217aa8%40src.bu.edu","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=39589359.762392DB%40nat.bg","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-049","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0597","sourceIdentifier":"cve@mitre.org","published":"2000-06-27T04:00:00.000","lastModified":"2026-06-16T21:52:04.747","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Office 2000 (Excel and PowerPoint) and PowerPoint 97 are marked as safe for scripting, which allows remote attackers to force Internet Explorer or some email clients to save files to arbitrary locations via the Visual Basic for Applications (VBA) SaveAs function, aka the \"Office HTML Script\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:excel:2000:*:*:*:*:*:*:*","matchCriteriaId":"F55D42D5-7371-47C2-BF55-B7F51C19B61E"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:powerpoint:97:*:*:*:*:*:*:*","matchCriteriaId":"3FFA2986-0E47-43C0-938E-65FC15F13C53"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:powerpoint:2000:*:*:*:*:*:*:*","matchCriteriaId":"3E392539-ABF6-4B5C-AEC3-C54B51E0DB70"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1399","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=39589349.ED9DBCAB%40nat.bg","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-049","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1399","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=39589349.ED9DBCAB%40nat.bg","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-049","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0586","sourceIdentifier":"cve@mitre.org","published":"2000-06-29T04:00:00.000","lastModified":"2026-06-16T21:52:03.320","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Dalnet IRC server 4.6.5 allows remote attackers to cause a denial of service or execute arbitrary commands via the SUMMON command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:dalnet:ircd:4.6.5:*:*:*:*:*:*:*","matchCriteriaId":"13CB5F6F-EDC3-483F-B2CC-044E26DC56FF"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/vuln-dev/2000-q2/1092.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1404","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/vuln-dev/2000-q2/1092.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1404","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0599","sourceIdentifier":"cve@mitre.org","published":"2000-06-29T04:00:00.000","lastModified":"2026-06-16T21:52:05.000","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in iMesh 1.02 allows remote attackers to execute arbitrary commands via a long string to the iMesh port."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:imesh.com:imesh:*:*:*:*:*:*:*:*","versionEndIncluding":"1.02","matchCriteriaId":"611DE3FB-88E3-4DB4-9742-DDD0602F9DA2"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0335.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.imesh.com/download/download.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1407","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0335.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.imesh.com/download/download.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1407","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0612","sourceIdentifier":"cve@mitre.org","published":"2000-06-29T04:00:00.000","lastModified":"2026-06-16T21:52:06.560","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Windows 95 and Windows 98 do not properly process spoofed ARP packets, which allows remote attackers to overwrite static entries in the cache table."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_95:*:*:*:*:*:*:*:*","matchCriteriaId":"82F7322B-8022-4D0B-ADB3-D0F5B6F20309"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98:*:gold:*:*:*:*:*:*","matchCriteriaId":"2D3B703C-79B2-4FA2-9E12-713AB977A880"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1406","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=395B7E64.9FB3D4DB%40starzetz.de","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1406","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=395B7E64.9FB3D4DB%40starzetz.de","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0568","sourceIdentifier":"cve@mitre.org","published":"2000-06-30T04:00:00.000","lastModified":"2026-06-16T21:52:00.940","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Sybergen Secure Desktop 2.1 does not properly protect against false router advertisements (ICMP type 9), which allows remote attackers to modify default routes."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sybergen:secure_desktop:2.1:*:*:*:*:*:*:*","matchCriteriaId":"B11EDF36-73D7-4B0D-B968-FEE9878690E6"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1417","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=4125690E.00524395.00%40guardianit.se","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1417","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=4125690E.00524395.00%40guardianit.se","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0569","sourceIdentifier":"cve@mitre.org","published":"2000-06-30T04:00:00.000","lastModified":"2026-06-16T21:52:01.067","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Sybergen Sygate allows remote attackers to cause a denial of service by sending a malformed DNS UDP packet to its internal interface."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sybergen:sygate:2.0:*:*:*:*:*:*:*","matchCriteriaId":"64CE9873-D031-4DC9-8FCA-7AF2E7ADBF82"},{"vulnerable":true,"criteria":"cpe:2.3:a:sybergen:sygate:3.11:*:*:*:*:*:*:*","matchCriteriaId":"51E74011-4542-4818-AAF6-2AC5682D244D"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/win2ksecadvice/2000-q2/0189.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1420","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5049","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/win2ksecadvice/2000-q2/0189.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1420","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5049","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0580","sourceIdentifier":"cve@mitre.org","published":"2000-06-30T04:00:00.000","lastModified":"2026-06-16T21:52:02.560","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Windows 2000 Server allows remote attackers to cause a denial of service by sending a continuous stream of binary zeros to various TCP and UDP ports, which significantly increases the CPU utilization."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:2000.0.2195:*:*:*:*:*:*:*","matchCriteriaId":"E187D128-E640-48F9-89C9-2E4DE31DCD1D"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:2000.2072:*:*:*:*:*:*:*","matchCriteriaId":"500125B2-3376-4035-A1F4-93794C0FF980"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1415","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.3.96.1000630161935.4619B-100000%40fjord.fscinternet.com","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1415","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.3.96.1000630161935.4619B-100000%40fjord.fscinternet.com","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0581","sourceIdentifier":"cve@mitre.org","published":"2000-06-30T04:00:00.000","lastModified":"2026-06-16T21:52:02.687","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Windows 2000 Telnet Server allows remote attackers to cause a denial of service by sending a continuous stream of binary zeros, which causes the server to crash."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:2000.0.2195:*:*:*:*:*:*:*","matchCriteriaId":"E187D128-E640-48F9-89C9-2E4DE31DCD1D"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:2000.2031:*:*:*:*:*:*:*","matchCriteriaId":"78610E18-E6C4-4F56-9DD3-C56752968D42"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:2000.2072:*:*:*:*:*:*:*","matchCriteriaId":"500125B2-3376-4035-A1F4-93794C0FF980"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1414","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.3.96.1000630161841.4619A-100000%40fjord.fscinternet.com","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1414","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.3.96.1000630161841.4619A-100000%40fjord.fscinternet.com","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0582","sourceIdentifier":"cve@mitre.org","published":"2000-06-30T04:00:00.000","lastModified":"2026-06-16T21:52:02.813","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Check Point FireWall-1 4.0 and 4.1 allows remote attackers to cause a denial of service by sending a stream of invalid commands (such as binary zeros) to the SMTP Security Server proxy."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:4.0:*:*:*:*:*:*:*","matchCriteriaId":"0F543272-8C7E-4326-BA97-142FBEA641E5"},{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:4.1:*:*:*:*:*:*:*","matchCriteriaId":"100F03E3-1538-47AF-9CA6-E9E5C1DF05D4"}]}]}],"references":[{"url":"http://www.checkpoint.com/techsupport/alerts/list_vun.html#SMTP_Security","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1438","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1416","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.3.96.1000630162106.4619C-100000%40fjord.fscinternet.com","source":"cve@mitre.org"},{"url":"http://www.checkpoint.com/techsupport/alerts/list_vun.html#SMTP_Security","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1438","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1416","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.3.96.1000630162106.4619C-100000%40fjord.fscinternet.com","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0583","sourceIdentifier":"cve@mitre.org","published":"2000-06-30T04:00:00.000","lastModified":"2026-06-16T21:52:02.937","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"vchkpw program in vpopmail before version 4.8 does not properly cleanse an untrusted format string used in a call to syslog, which allows remote attackers to cause a denial of service via a USER or PASS command that contains arbitrary formatting directives."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:inter7:vpopmail_vchkpw:4.5:*:*:*:*:*:*:*","matchCriteriaId":"F8FAEA52-FF70-405C-AB1D-2916EE57C72F"},{"vulnerable":true,"criteria":"cpe:2.3:a:inter7:vpopmail_vchkpw:4.7:*:*:*:*:*:*:*","matchCriteriaId":"4DDE8768-67FA-43F3-BE26-AB02D2BF5B5D"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1418","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=395BD2A8.5D3396A7%40secureaustin.com","source":"cve@mitre.org"},{"url":"http://www.vpopmail.cx/vpopmail-ChangeLog","source":"cve@mitre.org","tags":["URL Repurposed"]},{"url":"http://www.securityfocus.com/bid/1418","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=395BD2A8.5D3396A7%40secureaustin.com","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.vpopmail.cx/vpopmail-ChangeLog","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["URL Repurposed"]}]}},{"cve":{"id":"CVE-1999-0585","sourceIdentifier":"cve@mitre.org","published":"2000-07-01T04:00:00.000","lastModified":"2026-06-16T21:48:40.933","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A Windows NT administrator account has the default name of Administrator."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:3.5.1:*:*:*:*:*:*:*","matchCriteriaId":"D0D4EAC2-A948-461F-B5DD-0AE73CF05D29"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:3.5.1:sp1:*:*:*:*:*:*","matchCriteriaId":"EF8BECF6-3C33-4D8C-B54E-A0D2F3295E81"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:3.5.1:sp2:*:*:*:*:*:*","matchCriteriaId":"828B4519-24D8-45A7-8448-D5FF6C83A2C3"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:3.5.1:sp3:*:*:*:*:*:*","matchCriteriaId":"F495AF7A-CC31-4045-BACC-902950C80ABF"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:3.5.1:sp5:*:*:*:*:*:*","matchCriteriaId":"55A2AC4C-6B85-4B60-BFE1-C9588C5973B0"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"https://www.cve.org/CVERecord?id=CVE-1999-0585","source":"cve@mitre.org"},{"url":"https://www.cve.org/CVERecord?id=CVE-1999-0585","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0584","sourceIdentifier":"cve@mitre.org","published":"2000-07-02T04:00:00.000","lastModified":"2026-06-16T21:52:03.060","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Canna input system allows remote attackers to execute arbitrary commands via an SR_INIT command with a long user name or group name."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.1:*:*:*:*:*:*:*","matchCriteriaId":"3C67BDA1-9451-4026-AC6D-E912C882A757"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.5:*:*:*:*:*:*:*","matchCriteriaId":"47E02BE6-4800-4940-B269-385B66AC5077"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:31.canna.asc.v1.1","source":"cve@mitre.org"},{"url":"http://shadowpenguin.backsection.net/advisories/advisory038.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1445","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4912","source":"cve@mitre.org"},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:31.canna.asc.v1.1","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://shadowpenguin.backsection.net/advisories/advisory038.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1445","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4912","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0566","sourceIdentifier":"cve@mitre.org","published":"2000-07-03T04:00:00.000","lastModified":"2026-06-16T21:52:00.680","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"makewhatis in Linux man package allows local users to overwrite files via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux:2.3:*:*:*:*:*:*:*","matchCriteriaId":"23B38FCC-2C86-4E84-860B-EBAE0FA123B6"},{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux:2.4:*:*:*:*:*:*:*","matchCriteriaId":"A63714ED-A697-4AC3-AF13-3B028F9A87EF"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"D323A6B7-2741-4F31-B0D6-5D6FB738A2A1"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"ACAAD334-2CA7-4B3B-BA25-302E7610BC2A"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"E4853E92-5E0A-47B9-A343-D5BEE87D2C27"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:7.1:*:*:*:*:*:*:*","matchCriteriaId":"3EC1FF5D-5EAB-44D5-B281-770547C70D68"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:alpha:*:*:*:*:*","matchCriteriaId":"07396B95-E434-46C9-A345-27C9EA9BEA26"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:i386:*:*:*:*:*","matchCriteriaId":"363AB7DB-A8BA-4D58-97C4-1DF1F0F43E07"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:sparc:*:*:*:*:*","matchCriteriaId":"0775CE08-C5AD-4FF7-AEA9-537B1EAE3BDE"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:alpha:*:*:*:*:*","matchCriteriaId":"6931FB54-A163-4CE3-BBD9-D345AA0977A6"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:i386:*:*:*:*:*","matchCriteriaId":"89F65C9D-BD68-4A86-BFDC-E7CE76F13948"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:sparc:*:*:*:*:*","matchCriteriaId":"5ABD1331-277C-4C31-8186-978243C62255"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:alpha:*:*:*:*:*","matchCriteriaId":"C89454B9-4F45-4A42-A06D-ED42D893C544"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:i386:*:*:*:*:*","matchCriteriaId":"B72D6205-DFA4-41D9-B3B6-0B7DA756CD8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:sparc:*:*:*:*:*","matchCriteriaId":"1E64093E-7D53-4238-95C3-48ED5A0FFD97"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:alpha:*:*:*:*:*","matchCriteriaId":"344610A8-DB6D-4407-9304-916C419F648C"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:i386:*:*:*:*:*","matchCriteriaId":"B7EC2B95-4715-4EC9-A10A-2542501F8A61"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:sparc:*:*:*:*:*","matchCriteriaId":"64775BEF-2E53-43CA-8639-A7E54F6F4222"}]}]}],"references":[{"url":"ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2000-021.0.txt","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0390.html","source":"cve@mitre.org"},{"url":"http://frontal2.mandriva.com/security/advisories?name=MDKSA-2000:015","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-041.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1434","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4900","source":"cve@mitre.org"},{"url":"ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2000-021.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0390.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://frontal2.mandriva.com/security/advisories?name=MDKSA-2000:015","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-041.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1434","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4900","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0590","sourceIdentifier":"cve@mitre.org","published":"2000-07-04T04:00:00.000","lastModified":"2026-06-16T21:52:03.820","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Poll It 2.0 CGI script allows remote attackers to read arbitrary files by specifying the file name in the data_dir parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cgi-world:poll_it:2.0:*:*:*:*:*:*:*","matchCriteriaId":"8DEBB723-06DF-4368-AF20-DC0840FA8556"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0076.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1431","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4878","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0076.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1431","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4878","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0594","sourceIdentifier":"cve@mitre.org","published":"2000-07-04T04:00:00.000","lastModified":"2026-06-16T21:52:04.317","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"BitchX IRC client does not properly cleanse an untrusted format string, which allows remote attackers to cause a denial of service via an invite to a channel whose name includes special formatting characters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:caldera:openlinux_desktop:2.3:*:*:*:*:*:*:*","matchCriteriaId":"39CEEC92-B7FE-4E41-9966-DDA9EDF943C1"},{"vulnerable":true,"criteria":"cpe:2.3:a:caldera:openlinux_ebuilder:2.3:*:*:*:*:*:*:*","matchCriteriaId":"A4B1F951-6F13-4FFF-84F7-0E65A689DB64"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux_edesktop:2.4:*:*:*:*:*:*:*","matchCriteriaId":"B211BCBF-CB17-4D32-B6FE-A34D86C4FBF9"},{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux_eserver:2.3:*:*:*:*:*:*:*","matchCriteriaId":"3BE526D3-4CD8-423C-81FA-65B92F862A5E"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.5:*:*:*:*:*:*:*","matchCriteriaId":"47E02BE6-4800-4940-B269-385B66AC5077"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.0:*:*:*:*:*:*:*","matchCriteriaId":"D0A585A1-FF82-418F-90F8-072458DB7816"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:2007:*:*:*:*:*:*:*","matchCriteriaId":"02362C25-B373-4FB1-AF4A-2AFC7F7D4387"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0026.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0098.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0105.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/freebsd/2000-07/0042.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/vuln-dev/2000-q3/0018.html","source":"cve@mitre.org"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-022.0.txt","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-042.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1436","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4897","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0026.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0098.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0105.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/freebsd/2000-07/0042.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/vuln-dev/2000-q3/0018.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-022.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-042.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1436","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4897","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0571","sourceIdentifier":"cve@mitre.org","published":"2000-07-05T04:00:00.000","lastModified":"2026-06-16T21:52:01.340","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"LocalWEB HTTP server 1.2.0 allows remote attackers to cause a denial of service via a long GET request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:P","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:west_street_software:localweb_http_server:1.2:*:*:*:*:*:*:*","matchCriteriaId":"E2AD66FE-175E-41FB-940F-6E72B15360FD"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1423","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-07-8&msg=NCBBKFKDOLAGKIAPMILPCEIHCFAA.labs%40ussrback.com","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4896","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1423","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-07-8&msg=NCBBKFKDOLAGKIAPMILPCEIHCFAA.labs%40ussrback.com","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4896","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0572","sourceIdentifier":"cve@mitre.org","published":"2000-07-05T04:00:00.000","lastModified":"2026-06-16T21:52:01.463","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Razor configuration management tool uses weak encryption for its password file, which allows local users to gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:visible_systems:razor:4.1:*:*:*:*:*:*:*","matchCriteriaId":"D706F22A-65ED-4893-B4B3-2594316F18B2"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1424","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-07-8&msg=613309F30B6DD2118C020000F809376C05CABD49%40emss03m09.orl.lmco.com","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1424","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-07-8&msg=613309F30B6DD2118C020000F809376C05CABD49%40emss03m09.orl.lmco.com","source":"af854a3a-2127-422b-91ae-364da2661108"}],"vendorComments":[{"organization":"Razor","comment":"Subsequent releases of Razor address this issue and utilize a more robust encryption mechanism for the Razor password. If you are under maintenance, you have the option of upgrading to a more recent release of Razor at no cost.  If you are not under maintenance and want to upgrade then you will need to contact Jennifer Stone at jstone@visible.com.\n\nSome additional notes ...\n\n- With version 4.1 and above, administrators of Razor may switch and use the local OS authentication instead of Razor’s authentication method.\n\n- OS permissions and protections always apply to the artifacts stored in the database.\n\n- This notice applies to users that have already logged into the supporting system.  This primary means of defense is intact inspite of this particular vulnerability.\n\n- The next Razor release (due out in mid-2007) will allow remote UNIX clients to utilize SSH to authenticate the remote user.  More information on this release and others may be found on the Visible Systems web site:\n\nhttp://www.visible.com/Products/Razor\n\nPlease contact Visible Systems Corporation at 1-800-6-VISIBLE if you have additional questions.","lastModified":"2007-02-22T00:00:00"}]}},{"cve":{"id":"CVE-2000-0575","sourceIdentifier":"cve@mitre.org","published":"2000-07-05T04:00:00.000","lastModified":"2026-06-16T21:52:01.930","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"SSH 1.2.27 with Kerberos authentication support stores Kerberos tickets in a file which is created in the current directory of the user who is logging in, which could allow remote attackers to sniff the ticket cache if the home directory is installed on NFS."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.27:*:*:*:*:*:*:*","matchCriteriaId":"338EDA76-05D6-48C0-952E-6244A5F206F3"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=96256265914116&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1426","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4903","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=96256265914116&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1426","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4903","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0576","sourceIdentifier":"cve@mitre.org","published":"2000-07-05T04:00:00.000","lastModified":"2026-06-16T21:52:02.060","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Oracle Web Listener for AIX versions 4.0.7.0.0 and 4.0.8.1.0 allows remote attackers to cause a denial of service via a malformed URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:web_listener:4.0.7:*:aix:*:*:*:*:*","matchCriteriaId":"553889DA-409F-463B-AF7B-FF1B90118987"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:web_listener:4.0.8:*:aix:*:*:*:*:*","matchCriteriaId":"EC108E3B-D849-4191-B330-5BC2DAC20A0E"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0027.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1427","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0027.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1427","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0591","sourceIdentifier":"cve@mitre.org","published":"2000-07-05T04:00:00.000","lastModified":"2026-06-16T21:52:03.947","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Novell BorderManager 3.0 and 3.5 allows remote attackers to bypass URL filtering by encoding characters in the requested URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:novell:bordermanager:3.0:*:*:*:*:*:*:*","matchCriteriaId":"690D90A8-E5F4-492D-A338-222CBEB5819A"},{"vulnerable":true,"criteria":"cpe:2.3:a:novell:bordermanager:3.5:*:*:*:*:*:*:*","matchCriteriaId":"3DCB9A5D-862A-4266-94D3-385B611A7960"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0038.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1432","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0038.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1432","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0595","sourceIdentifier":"cve@mitre.org","published":"2000-07-05T04:00:00.000","lastModified":"2026-06-16T21:52:04.467","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"libedit searches for the .editrc file in the current directory instead of the user's home directory, which may allow local users to execute arbitrary commands by installing a modified .editrc in another directory."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.0:*:*:*:*:*:*:*","matchCriteriaId":"EE38C50A-81FE-412E-9717-3672FAE6A6F4"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.1:*:*:*:*:*:*:*","matchCriteriaId":"263F3734-7076-4EA8-B4C0-F37CFC4E979E"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.2:*:*:*:*:*:*:*","matchCriteriaId":"0419DD66-FF66-48BC-AD3B-F6AFD0551E36"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.3:*:*:*:*:*:*:*","matchCriteriaId":"C3518628-08E5-4AD7-AAF6-A4E38F1CDE2C"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.4:*:*:*:*:*:*:*","matchCriteriaId":"B982342C-1981-4C55-8044-AFE4D87623DF"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.0:*:*:*:*:*:*:*","matchCriteriaId":"D0A585A1-FF82-418F-90F8-072458DB7816"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/freebsd/2000-07/0035.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1446","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1437","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/freebsd/2000-07/0035.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1446","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1437","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0573","sourceIdentifier":"cve@mitre.org","published":"2000-07-07T04:00:00.000","lastModified":"2026-06-16T21:52:01.597","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The lreply function in wu-ftpd 2.6.0 and earlier does not properly cleanse an untrusted format string, which allows remote attackers to execute arbitrary commands via the SITE EXEC command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:11.00:*:*:*:*:*:*:*","matchCriteriaId":"771931F7-9180-4EBD-8627-E1CF17D24647"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:29.wu-ftpd.asc.v1.1","source":"cve@mitre.org"},{"url":"ftp://ftp.auscert.org.au/pub/auscert/advisory/AA-2000.02","source":"cve@mitre.org"},{"url":"ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2000-009.txt.asc","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0244.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0017.html","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=96171893218000&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=96179429114160&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=96299933720862&w=2","source":"cve@mitre.org"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-020.0.txt","source":"cve@mitre.org"},{"url":"http://www.cert.org/advisories/CA-2000-13.html","source":"cve@mitre.org","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-039.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1387","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000623091822.3321.qmail%40fiver.freemessage.com","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4773","source":"cve@mitre.org"},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:29.wu-ftpd.asc.v1.1","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"ftp://ftp.auscert.org.au/pub/auscert/advisory/AA-2000.02","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2000-009.txt.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0244.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0017.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=96171893218000&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=96179429114160&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=96299933720862&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-020.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.cert.org/advisories/CA-2000-13.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-039.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1387","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000623091822.3321.qmail%40fiver.freemessage.com","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4773","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0574","sourceIdentifier":"cve@mitre.org","published":"2000-07-07T04:00:00.000","lastModified":"2026-06-16T21:52:01.777","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"FTP servers such as OpenBSD ftpd, NetBSD ftpd, ProFTPd and Opieftpd do not properly cleanse untrusted format strings that are used in the setproctitle function (sometimes called by set_proc_title), which allows remote attackers to cause a denial of service or execute arbitrary commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:openbsd:ftpd:5.51:*:*:*:*:*:*:*","matchCriteriaId":"C2F2A623-1D9D-4656-9D09-07CA0BFBBBB2"},{"vulnerable":true,"criteria":"cpe:2.3:a:openbsd:ftpd:5.60:*:*:*:*:*:*:*","matchCriteriaId":"797AE65F-8A84-4211-9FB4-42D098F31D32"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.4.2_beta1:*:academ:*:*:*:*:*","matchCriteriaId":"7BFD083F-3B2C-4343-950F-3062670AB73B"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.4.2_beta18:*:academ:*:*:*:*:*","matchCriteriaId":"C63ACBE3-5BB2-483E-A5FE-87698E98354A"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.4.2_beta18_vr4:*:*:*:*:*:*:*","matchCriteriaId":"B39D46C4-B153-4301-AE9C-57FB6BA64CD9"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.4.2_beta18_vr5:*:*:*:*:*:*:*","matchCriteriaId":"E55582DD-DEF7-4BF8-950C-E7E58BD29DE5"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.4.2_beta18_vr6:*:*:*:*:*:*:*","matchCriteriaId":"FF9B9132-19A1-4242-A129-E5A49F466EA2"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.4.2_beta18_vr7:*:*:*:*:*:*:*","matchCriteriaId":"4B9E32F3-06CF-482D-8313-3D098CDE8B6B"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.4.2_beta18_vr8:*:*:*:*:*:*:*","matchCriteriaId":"0A096214-84AD-44F5-BBEF-F9F17B9B0C43"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.4.2_beta18_vr9:*:*:*:*:*:*:*","matchCriteriaId":"4989799F-143A-45E5-A30C-9E3203649770"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.4.2_beta18_vr10:*:*:*:*:*:*:*","matchCriteriaId":"1E3D0CC6-D1A0-4784-BE93-319C7EE59134"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.4.2_beta18_vr11:*:*:*:*:*:*:*","matchCriteriaId":"4FA32489-F098-43D2-80B7-89CFE0BE9A3A"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.4.2_beta18_vr12:*:*:*:*:*:*:*","matchCriteriaId":"91C6388E-464B-4562-BC7B-7B4A66387B30"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.4.2_beta18_vr13:*:*:*:*:*:*:*","matchCriteriaId":"923B5711-853D-4A77-8FB3-D5C3D449518D"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.4.2_beta18_vr14:*:*:*:*:*:*:*","matchCriteriaId":"9BB1B136-F90E-426B-8010-F2D059E89DBE"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.4.2_beta18_vr15:*:*:*:*:*:*:*","matchCriteriaId":"CD9EFCD7-2A13-420E-B6A0-C1248B2E6E2F"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.4.2_vr16:*:*:*:*:*:*:*","matchCriteriaId":"573486C8-0349-4BC9-AD7D-3FBF93DDB6AF"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.4.2_vr17:*:*:*:*:*:*:*","matchCriteriaId":"CAD81A30-9C35-4EEA-B6FE-A4AC76893AC6"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.5:*:*:*:*:*:*:*","matchCriteriaId":"6AFFA39F-9072-4F19-A695-F383EA61D55D"},{"vulnerable":true,"criteria":"cpe:2.3:a:washington_university:wu-ftpd:2.6:*:*:*:*:*:*:*","matchCriteriaId":"0A5D6359-4E6D-4563-8251-F1719D45E20E"}]}]}],"references":[{"url":"ftp://ftp.NetBSD.ORG/pub/NetBSD/misc/security/advisories/NetBSD-SA2000-009.txt.asc","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0031.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0061.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0121.html","source":"cve@mitre.org"},{"url":"http://www.cert.org/advisories/CA-2000-13.html","source":"cve@mitre.org","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.securityfocus.com/bid/1425","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1438","source":"cve@mitre.org"},{"url":"ftp://ftp.NetBSD.ORG/pub/NetBSD/misc/security/advisories/NetBSD-SA2000-009.txt.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0031.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0061.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0121.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.cert.org/advisories/CA-2000-13.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.securityfocus.com/bid/1425","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1438","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0603","sourceIdentifier":"cve@mitre.org","published":"2000-07-07T04:00:00.000","lastModified":"2026-06-16T21:52:05.487","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft SQL Server 7.0 allows a local user to bypass permissions for stored procedures by referencing them via a temporary stored procedure, aka the \"Stored Procedure Permissions\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:sql_server:7.0:*:*:*:*:*:*:*","matchCriteriaId":"A2AB95D7-394E-423B-884C-87A9960682EE"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1444","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-048","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4921","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1444","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-048","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4921","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0651","sourceIdentifier":"cve@mitre.org","published":"2000-07-07T04:00:00.000","lastModified":"2026-06-16T21:52:11.513","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The ClientTrust program in Novell BorderManager does not properly verify the origin of authentication requests, which could allow remote attackers to impersonate another user by replaying the authentication requests and responses from port 3024 of the victim's machine."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:novell:bordermanager:3.0:*:*:*:*:*:*:*","matchCriteriaId":"690D90A8-E5F4-492D-A338-222CBEB5819A"},{"vulnerable":true,"criteria":"cpe:2.3:a:novell:bordermanager:3.5:*:*:*:*:*:*:*","matchCriteriaId":"3DCB9A5D-862A-4266-94D3-385B611A7960"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1440","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=06256915.00591E18.00%40uprrsmtp2.notes.up.com","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5186","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1440","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=06256915.00591E18.00%40uprrsmtp2.notes.up.com","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5186","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0640","sourceIdentifier":"cve@mitre.org","published":"2000-07-08T04:00:00.000","lastModified":"2026-06-16T21:52:10.107","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Guild FTPd allows remote attackers to determine the existence of files outside the FTP root via a .. (dot dot) attack, which provides different error messages depending on whether the file exists or not."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:steve_poulsen:guildftpd:0.9.7:*:*:*:*:*:*:*","matchCriteriaId":"CACDEBBB-1D5F-49C3-A778-830DF5B2C4A1"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0114.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/573","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1452","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4922","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0114.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/573","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1452","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4922","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0641","sourceIdentifier":"cve@mitre.org","published":"2000-07-08T04:00:00.000","lastModified":"2026-06-16T21:52:10.233","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Savant web server allows remote attackers to execute arbitrary commands via a long GET request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:michael_lamont:savant_webserver:2.1:*:*:*:*:*:*:*","matchCriteriaId":"3712C895-76D6-4C74-8A60-59696433313F"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0114.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1453","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4901","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0114.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1453","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4901","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0605","sourceIdentifier":"cve@mitre.org","published":"2000-07-10T04:00:00.000","lastModified":"2026-06-16T21:52:05.730","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Blackboard CourseInfo 4.0 stores the local and SQL administrator user names and passwords in cleartext in a registry key whose access control allows users to access the passwords."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:blackboard:courseinfo:4.0:*:*:*:*:*:*:*","matchCriteriaId":"F0007561-D81E-472F-A306-AE336A7B2C2F"}]}]}],"references":[{"url":"http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind0007&L=NTBUGTRAQ&P=R1647","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1460","source":"cve@mitre.org"},{"url":"http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind0007&L=NTBUGTRAQ&P=R1647","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1460","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0614","sourceIdentifier":"cve@mitre.org","published":"2000-07-10T04:00:00.000","lastModified":"2026-06-16T21:52:06.793","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Tnef program in Linux systems allows remote attackers to overwrite arbitrary files via TNEF encoded compressed attachments which specify absolute path names for the decompressed output."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.3:*:*:*:*:*:*:*","matchCriteriaId":"0AD0FF64-05DF-48C2-9BB5-FD993121FB2E"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.3:*:ppc:*:*:*:*:*","matchCriteriaId":"E74E0A28-7C78-4160-8BCF-99605285C0EE"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.3:alpha:*:*:*:*:*:*","matchCriteriaId":"76159C25-0760-47CB-AFCE-28306CDEA830"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.4:*:*:*:*:*:*:*","matchCriteriaId":"7786607A-362E-4817-A17E-C76D6A1F737D"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/vendor/2000-q3/0002.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1450","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/vendor/2000-q3/0002.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1450","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0635","sourceIdentifier":"cve@mitre.org","published":"2000-07-10T04:00:00.000","lastModified":"2026-06-16T21:52:09.450","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The view_page.html sample page in the MiniVend shopping cart program allows remote attackers to execute arbitrary commands via shell metacharacters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:akopia:minivend:3.0:*:*:*:*:*:*:*","matchCriteriaId":"6C00576E-C134-4EA3-85E3-448A89DD2F64"},{"vulnerable":true,"criteria":"cpe:2.3:a:akopia:minivend:4.0:*:*:*:*:*:*:*","matchCriteriaId":"A9375BDE-C486-420A-941A-8E6FDC44603D"},{"vulnerable":true,"criteria":"cpe:2.3:a:akopia:minivend:4.0.4:*:*:*:*:*:*:*","matchCriteriaId":"FB59460C-BD8F-453C-80AD-B0001AF1531C"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0150.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1449","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.zdnet.com/zdnn/stories/news/0%2C4586%2C2600258%2C00.html","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4880","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0150.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1449","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.zdnet.com/zdnn/stories/news/0%2C4586%2C2600258%2C00.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4880","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0661","sourceIdentifier":"cve@mitre.org","published":"2000-07-10T04:00:00.000","lastModified":"2026-06-16T21:52:12.800","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WircSrv IRC Server 5.07s allows remote attackers to cause a denial of service via a long string to the server port."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:wircsrv:irc_server:5.0.7s:*:*:*:*:*:*:*","matchCriteriaId":"F7DE5E55-1B57-40FC-AC20-E016046A90F1"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0120.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1448","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4914","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0120.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1448","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4914","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0628","sourceIdentifier":"cve@mitre.org","published":"2000-07-11T04:00:00.000","lastModified":"2026-06-16T21:52:08.580","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The source.asp example script in the Apache ASP module Apache::ASP 1.93 and earlier allows remote attackers to modify files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:joshua_chamas:apache_asp:0.16:*:*:*:*:*:*:*","matchCriteriaId":"4F7572B7-3072-4A9A-AD17-DF1B037680AA"},{"vulnerable":true,"criteria":"cpe:2.3:a:joshua_chamas:apache_asp:0.17:*:*:*:*:*:*:*","matchCriteriaId":"7633EABF-1700-432E-9FE2-295F4FDD2F8D"},{"vulnerable":true,"criteria":"cpe:2.3:a:joshua_chamas:apache_asp:0.18:*:*:*:*:*:*:*","matchCriteriaId":"7E868058-355F-4CAC-82E2-795AD52B31FD"},{"vulnerable":true,"criteria":"cpe:2.3:a:joshua_chamas:apache_asp:1.93:*:*:*:*:*:*:*","matchCriteriaId":"1E758633-F991-424C-B044-3E47D7FF76E1"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0142.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.nodeworks.com/asp/changes.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1457","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4931","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0142.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.nodeworks.com/asp/changes.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1457","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4931","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0638","sourceIdentifier":"cve@mitre.org","published":"2000-07-11T04:00:00.000","lastModified":"2026-06-16T21:52:09.860","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"bb-hostsvc.sh in Big Brother 1.4h1 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack on the HOSTSVC parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sean_macguire:big_brother:1.0:*:*:*:*:*:*:*","matchCriteriaId":"3B040ABE-485E-4118-989B-6618062A62E7"},{"vulnerable":true,"criteria":"cpe:2.3:a:sean_macguire:big_brother:1.1:*:*:*:*:*:*:*","matchCriteriaId":"D2D180EE-6ACC-4F1F-8FEE-3CC790AEC74A"},{"vulnerable":true,"criteria":"cpe:2.3:a:sean_macguire:big_brother:1.2:*:*:*:*:*:*:*","matchCriteriaId":"3435B00B-59AB-4F7F-8936-4DB44581C2E9"},{"vulnerable":true,"criteria":"cpe:2.3:a:sean_macguire:big_brother:1.3:*:*:*:*:*:*:*","matchCriteriaId":"B4F30DBF-78E2-4E6C-BCBF-4E43D0207B69"},{"vulnerable":true,"criteria":"cpe:2.3:a:sean_macguire:big_brother:1.3b:*:*:*:*:*:*:*","matchCriteriaId":"073613CC-638B-46A9-8BBD-A1D313864BD2"},{"vulnerable":true,"criteria":"cpe:2.3:a:sean_macguire:big_brother:1.4:*:*:*:*:*:*:*","matchCriteriaId":"D29324C9-7C4A-4A5A-A595-A0666498AC88"},{"vulnerable":true,"criteria":"cpe:2.3:a:sean_macguire:big_brother:1.4g:*:*:*:*:*:*:*","matchCriteriaId":"9FDEC456-9591-4195-A251-2196F3049A22"},{"vulnerable":true,"criteria":"cpe:2.3:a:sean_macguire:big_brother:1.4h:*:*:*:*:*:*:*","matchCriteriaId":"D7CCF8C5-927E-4D94-9D8D-631134CCF51F"},{"vulnerable":true,"criteria":"cpe:2.3:a:sean_macguire:big_brother:1.4h1:*:*:*:*:*:*:*","matchCriteriaId":"3A6B2570-E8A4-41C8-A5AD-D64333A133E6"},{"vulnerable":true,"criteria":"cpe:2.3:a:sean_macguire:big_brother:1.09b:*:*:*:*:*:*:*","matchCriteriaId":"69480B13-B4AA-4224-8775-507B4971089D"},{"vulnerable":true,"criteria":"cpe:2.3:a:sean_macguire:big_brother:1.09c:*:*:*:*:*:*:*","matchCriteriaId":"FD961EAE-09E4-4574-BDF2-DAA0CB830247"},{"vulnerable":true,"criteria":"cpe:2.3:a:sean_macguire:big_brother:1.09d:*:*:*:*:*:*:*","matchCriteriaId":"B508CE19-E1B7-4240-A86F-D751F40066F6"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0146.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0147.html","source":"cve@mitre.org"},{"url":"http://bb4.com/README.CHANGES","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1455","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4879","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0146.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0147.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://bb4.com/README.CHANGES","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1455","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4879","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0648","sourceIdentifier":"cve@mitre.org","published":"2000-07-11T04:00:00.000","lastModified":"2026-06-16T21:52:11.140","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WFTPD and WFTPD Pro 2.41 allows local users to cause a denial of service by executing the RENAME TO (RNTO) command before a RENAME FROM (RNFR) command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd:2.4.1:*:*:*:*:*:*:*","matchCriteriaId":"BE581DA0-0DEC-4C2D-B2CA-FFBDC39FAF95"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1456","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=E13BvU6-0007d8-00%40dwarf.box.sk","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1456","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=E13BvU6-0007d8-00%40dwarf.box.sk","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0650","sourceIdentifier":"cve@mitre.org","published":"2000-07-11T04:00:00.000","lastModified":"2026-06-16T21:52:11.383","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default installation of VirusScan 4.5 and NetShield 4.5 has insecure permissions for the registry key that identifies the AutoUpgrade directory, which allows local users to execute arbitrary commands by replacing SETUP.EXE in that directory with a Trojan Horse."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:network_associates:netshield:4.5:*:*:*:*:*:*:*","matchCriteriaId":"AE266076-85EF-4240-811D-FCC90970728A"},{"vulnerable":true,"criteria":"cpe:2.3:a:network_associates:virusscan:4.5:*:windows_nt:*:*:*:*:*","matchCriteriaId":"3F370D4D-5702-46B1-90C5-9D328B24ED55"}]}]}],"references":[{"url":"http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind0007&L=ntbugtraq&F=&S=&P=2753","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1458","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/4200","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1458","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5177","source":"cve@mitre.org"},{"url":"http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind0007&L=ntbugtraq&F=&S=&P=2753","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1458","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/4200","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1458","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5177","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0654","sourceIdentifier":"cve@mitre.org","published":"2000-07-11T04:00:00.000","lastModified":"2026-06-16T21:52:11.880","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Enterprise Manager allows local users to obtain database passwords via the Data Transformation Service (DTS) package Registered Servers Dialog dialog, aka a variant of the \"DTS Password\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:sql_server:7.0:*:*:*:*:*:*:*","matchCriteriaId":"A2AB95D7-394E-423B-884C-87A9960682EE"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1466","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-041","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4582","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1466","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-041","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4582","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0669","sourceIdentifier":"cve@mitre.org","published":"2000-07-11T04:00:00.000","lastModified":"2026-06-16T21:52:13.830","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Novell NetWare 5.0 allows remote attackers to cause a denial of service by flooding port 40193 with random data."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:novell:netware:5.0:sp5:*:*:*:*:*:*","matchCriteriaId":"D6002095-9692-4B60-800E-B85A0BA7A9D6"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1467","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=000501bfeab5%249330c3d0%24d801a8c0%40dimuthu.baysidegrp.com.au","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1467","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=000501bfeab5%249330c3d0%24d801a8c0%40dimuthu.baysidegrp.com.au","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0812","sourceIdentifier":"cve@mitre.org","published":"2000-07-12T04:00:00.000","lastModified":"2026-06-16T21:49:06.467","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Race condition in Samba smbmnt allows local users to mount file systems in arbitrary locations."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:C/I:C/A:C","baseScore":7.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":4.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:samba:samba:2.0.5:*:*:*:*:*:*:*","matchCriteriaId":"93AF43FA-9947-4F26-96E8-1D77BF909AA0"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0812","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0812","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0372","sourceIdentifier":"cve@mitre.org","published":"2000-07-12T04:00:00.000","lastModified":"2026-06-16T21:51:34.767","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in Caldera rmt command in the dump package 0.4b4 allows a local user to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux:*:*:*:*:*:*:*:*","matchCriteriaId":"4EC3F7E5-5D49-471B-A705-ADD2642E5B46"}]}]}],"references":[{"url":"ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-1999-014.0.txt","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/7940","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2268","source":"cve@mitre.org"},{"url":"ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-1999-014.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/7940","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/2268","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0629","sourceIdentifier":"cve@mitre.org","published":"2000-07-12T04:00:00.000","lastModified":"2026-06-16T21:52:08.707","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default configuration of the Sun Java web server 2.0 and earlier allows remote attackers to execute arbitrary commands by uploading Java code to the server via board.html, then directly calling the JSP compiler servlet."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sun:java_system_web_server:1.1.3:*:*:*:*:*:*:*","matchCriteriaId":"8812EC0B-E426-43D7-9E2B-542CAAAB0D30"},{"vulnerable":true,"criteria":"cpe:2.3:a:sun:java_system_web_server:2.0:*:*:*:*:*:*:*","matchCriteriaId":"6E8894D1-5147-4065-AA67-ECFE676ED899"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0163.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1459","source":"cve@mitre.org"},{"url":"http://www.sun.com/software/jwebserver/faq/jwsca-2000-02.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0163.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1459","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.sun.com/software/jwebserver/faq/jwsca-2000-02.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0642","sourceIdentifier":"cve@mitre.org","published":"2000-07-12T04:00:00.000","lastModified":"2026-06-16T21:52:10.350","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default configuration of WebActive HTTP Server 1.00 stores the web access log active.log in the document root, which allows remote attackers to view the logs by directly requesting the page."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:itafrica:webactive:1.0:*:*:*:*:*:*:*","matchCriteriaId":"2DDF8C55-A416-4D20-86A0-F86875E60C12"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1497","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200007130827.BAA32671%40Rage.Resentment.org","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5184","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1497","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200007130827.BAA32671%40Rage.Resentment.org","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5184","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0643","sourceIdentifier":"cve@mitre.org","published":"2000-07-12T04:00:00.000","lastModified":"2026-06-16T21:52:10.477","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in WebActive HTTP Server 1.00 allows remote attackers to cause a denial of service via a long URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:itafrica:webactive:1.0:*:*:*:*:*:*:*","matchCriteriaId":"2DDF8C55-A416-4D20-86A0-F86875E60C12"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1470","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200007130827.BAA32671%40Rage.Resentment.org","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4949","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1470","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200007130827.BAA32671%40Rage.Resentment.org","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4949","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0660","sourceIdentifier":"cve@mitre.org","published":"2000-07-12T04:00:00.000","lastModified":"2026-06-16T21:52:12.680","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The WDaemon web server for WorldClient 2.1 allows remote attackers to read arbitrary files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:alt-n:worldclient:2.1:*:standard:*:*:*:*:*","matchCriteriaId":"27A288FA-8810-4615-B2AD-E595FEDA3A66"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0173.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.altn.com/Downloads/WorldClient/Release/RelNotes.txt","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1459","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1462","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4913","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0173.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.altn.com/Downloads/WorldClient/Release/RelNotes.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1459","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1462","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4913","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0670","sourceIdentifier":"cve@mitre.org","published":"2000-07-12T04:00:00.000","lastModified":"2026-06-16T21:52:13.950","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The cvsweb CGI script in CVSWeb 1.80 allows remote attackers with write access to a CVS repository to execute arbitrary commands via shell metacharacters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cvsweb_developer:cvsweb:1.80:*:*:*:*:*:*:*","matchCriteriaId":"C515B653-AF7E-43A6-82CE-8727C3341631"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:37.cvsweb.asc","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0178.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0196.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1469","source":"cve@mitre.org"},{"url":"http://www.turbolinux.com/pipermail/tl-security-announce/2000-August/000015.html","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4925","source":"cve@mitre.org"},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:37.cvsweb.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0178.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0196.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1469","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.turbolinux.com/pipermail/tl-security-announce/2000-August/000015.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4925","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0674","sourceIdentifier":"cve@mitre.org","published":"2000-07-12T04:00:00.000","lastModified":"2026-06-16T21:52:14.467","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ftp.pl CGI program for Virtual Visions FTP browser allows remote attackers to read directories outside of the document root via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:virtual_vision:ftp_browser:1.0:*:*:*:*:*:*:*","matchCriteriaId":"3B813D1F-D579-4764-8C72-E7BFA1B594F3"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0177.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1471","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5187","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0177.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1471","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5187","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0649","sourceIdentifier":"cve@mitre.org","published":"2000-07-13T04:00:00.000","lastModified":"2026-06-16T21:52:11.267","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IIS 4.0 allows remote attackers to obtain the internal IP address of the server via an HTTP 1.0 request for a web page which is protected by basic authentication and has no realm defined."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:N/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-200"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"547AB6E2-4E9F-4783-8BB4-0AE297A38C9C"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_services:2.0:*:*:*:*:*:*:*","matchCriteriaId":"E701AB0D-E335-47DF-A0CA-607D5C6E9255"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_services:5.0:*:*:*:*:*:*:*","matchCriteriaId":"413C07EA-139F-4B7D-A58B-835BD2591FA0"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q3/0025.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1499","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q3/0025.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1499","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0675","sourceIdentifier":"cve@mitre.org","published":"2000-07-13T04:00:00.000","lastModified":"2026-06-16T21:52:14.593","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Infopulse Gatekeeper 3.5 and earlier allows remote attackers to execute arbitrary commands via a long string."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:infopulse:gatekeeper:*:*:*:*:*:*:*:*","versionEndIncluding":"3.5","matchCriteriaId":"9ED9FD73-52D1-4BAC-9915-AA550398B85A"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1477","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=00af01bfece2%24a52cbd80%24367e1ec4%40kungphusion","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4948","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1477","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=00af01bfece2%24a52cbd80%24367e1ec4%40kungphusion","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4948","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0631","sourceIdentifier":"cve@mitre.org","published":"2000-07-14T04:00:00.000","lastModified":"2026-06-16T21:52:08.957","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"An administrative script from IIS 3.0, later included in IIS 4.0 and 5.0, allows remote attackers to cause a denial of service by accessing the script without a particular argument, aka the \"Absent Directory Browser Argument\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"547AB6E2-4E9F-4783-8BB4-0AE297A38C9C"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_services:5.0:*:*:*:*:*:*:*","matchCriteriaId":"413C07EA-139F-4B7D-A58B-835BD2591FA0"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=96390444022878&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1476","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-044","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4951","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=96390444022878&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1476","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-044","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4951","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0662","sourceIdentifier":"cve@mitre.org","published":"2000-07-14T04:00:00.000","lastModified":"2026-06-16T21:52:12.913","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internet Explorer 5.x and Microsoft Outlook allows remote attackers to read arbitrary files by redirecting the contents of an IFRAME using the DHTML Edit Control (DHTMLED)."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.01:*:*:*:*:*:*:*","matchCriteriaId":"6219D36E-9E2C-4DC7-8FD5-FAD144A333F6"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.5:*:*:*:*:*:*:*","matchCriteriaId":"40F8042F-C621-45AE-9F8C-70469579643A"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1474","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=396EF9D5.62EEC625%40nat.bg","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5107","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1474","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=396EF9D5.62EEC625%40nat.bg","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5107","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0666","sourceIdentifier":"cve@mitre.org","published":"2000-07-16T04:00:00.000","lastModified":"2026-06-16T21:52:13.413","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"rpc.statd in the nfs-utils package in various Linux distributions does not properly cleanse untrusted format strings, which allows remote attackers to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:4.0:*:*:*:*:*:*:*","matchCriteriaId":"48F068BE-F5B3-4E43-8E6A-24AB4D2DEDF0"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:4.0es:*:*:*:*:*:*:*","matchCriteriaId":"6529EC98-7CF7-47A1-95BB-2F34066FE95D"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:4.1:*:*:*:*:*:*:*","matchCriteriaId":"FFDAB801-AAA0-4B3B-B488-52E7BA8650C5"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:4.2:*:*:*:*:*:*:*","matchCriteriaId":"612AC3B1-8E55-437F-9600-67EA1A8BAD48"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:5.0:*:*:*:*:*:*:*","matchCriteriaId":"537A5C29-D770-4755-A6AB-8916754E14DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:5.1:*:*:*:*:*:*:*","matchCriteriaId":"E3AC05A9-04DA-4ED3-94D8-3254384CB724"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.2:*:*:*:*:*:*:*","matchCriteriaId":"58B90124-0543-4226-BFF4-13CCCBCCB243"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.2:*:alpha:*:*:*:*:*","matchCriteriaId":"CE1C944A-E5F1-49DE-B069-2A358123B535"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.2:*:powerpc:*:*:*:*:*","matchCriteriaId":"2A32E486-2598-41B3-B6DB-3CC46D239AFC"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.2:*:sparc:*:*:*:*:*","matchCriteriaId":"AAEE18D8-AA3B-47A3-AA7C-AAFF7591F391"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.3:*:*:*:*:*:*:*","matchCriteriaId":"618111F3-6608-47F0-AB0D-21547E342871"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.3:*:alpha:*:*:*:*:*","matchCriteriaId":"33E4AFED-E180-429F-AEAB-E9FC311319E5"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.3:*:powerpc:*:*:*:*:*","matchCriteriaId":"FD8008FD-421F-4650-8C42-848B95689CF6"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.3:*:sparc:*:*:*:*:*","matchCriteriaId":"1BAEA161-4A19-4B28-97D0-B741D2BBF7FF"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:alpha:*:*:*:*:*","matchCriteriaId":"6931FB54-A163-4CE3-BBD9-D345AA0977A6"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:i386:*:*:*:*:*","matchCriteriaId":"89F65C9D-BD68-4A86-BFDC-E7CE76F13948"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:sparc:*:*:*:*:*","matchCriteriaId":"5ABD1331-277C-4C31-8186-978243C62255"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:alpha:*:*:*:*:*","matchCriteriaId":"C89454B9-4F45-4A42-A06D-ED42D893C544"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:i386:*:*:*:*:*","matchCriteriaId":"B72D6205-DFA4-41D9-B3B6-0B7DA756CD8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:sparc:*:*:*:*:*","matchCriteriaId":"1E64093E-7D53-4238-95C3-48ED5A0FFD97"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:alpha:*:*:*:*:*","matchCriteriaId":"344610A8-DB6D-4407-9304-916C419F648C"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:i386:*:*:*:*:*","matchCriteriaId":"B7EC2B95-4715-4EC9-A10A-2542501F8A61"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:sparc:*:*:*:*:*","matchCriteriaId":"64775BEF-2E53-43CA-8639-A7E54F6F4222"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.3:*:*:*:*:*:*:*","matchCriteriaId":"0AD0FF64-05DF-48C2-9BB5-FD993121FB2E"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.3:*:ppc:*:*:*:*:*","matchCriteriaId":"E74E0A28-7C78-4160-8BCF-99605285C0EE"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.3:alpha:*:*:*:*:*:*","matchCriteriaId":"76159C25-0760-47CB-AFCE-28306CDEA830"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.4:*:*:*:*:*:*:*","matchCriteriaId":"7786607A-362E-4817-A17E-C76D6A1F737D"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.4:*:ppc:*:*:*:*:*","matchCriteriaId":"6E2FE291-1142-4627-A497-C0BB0D934A0B"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.4:alpha:*:*:*:*:*:*","matchCriteriaId":"49BC7C7E-046C-4186-822E-9F3A2AD3577B"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"C9E7D75A-333E-4C63-9593-F64ABA5D1CE3"},{"vulnerable":true,"criteria":"cpe:2.3:o:trustix:secure_linux:1.0:*:*:*:*:*:*:*","matchCriteriaId":"8DF1A678-FEF1-4549-8EDC-518444CFC57F"},{"vulnerable":true,"criteria":"cpe:2.3:o:trustix:secure_linux:1.1:*:*:*:*:*:*:*","matchCriteriaId":"9D0DFB12-B43F-4207-A900-464A97F5124D"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0206.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0230.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0236.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0260.html","source":"cve@mitre.org"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-025.0.txt","source":"cve@mitre.org"},{"url":"http://www.cert.org/advisories/CA-2000-17.html","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-043.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1480","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4939","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0206.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0230.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0236.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0260.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-025.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.cert.org/advisories/CA-2000-17.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-043.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1480","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4939","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0623","sourceIdentifier":"cve@mitre.org","published":"2000-07-17T04:00:00.000","lastModified":"2026-06-16T21:52:07.947","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in O'Reilly WebSite Professional web server 2.4 and earlier allows remote attackers to execute arbitrary commands via a long GET request or Referrer header."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oreilly:website_professional:2.3.18:*:*:*:*:*:*:*","matchCriteriaId":"C1D46829-3A28-49AC-9D19-7EFFAE6E55D2"},{"vulnerable":true,"criteria":"cpe:2.3:a:oreilly:website_professional:2.4:*:*:*:*:*:*:*","matchCriteriaId":"971D49D8-BDD1-4B56-830A-7816965069C3"},{"vulnerable":true,"criteria":"cpe:2.3:a:oreilly:website_professional:2.4.9:*:*:*:*:*:*:*","matchCriteriaId":"356B3E87-68AD-41F9-A008-D93FFEF536E0"}]}]}],"references":[{"url":"http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind0007&L=ntbugtraq&F=&S=&P=5946","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1492","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind0007&L=ntbugtraq&F=&S=&P=5946","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1492","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0630","sourceIdentifier":"cve@mitre.org","published":"2000-07-17T04:00:00.000","lastModified":"2026-06-16T21:52:08.837","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IIS 4.0 and 5.0 allows remote attackers to obtain fragments of source code by appending a +.htr to the URL, a variant of the \"File Fragment Reading via .HTR\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_services:5.0:*:*:*:*:*:*:*","matchCriteriaId":"413C07EA-139F-4B7D-A58B-835BD2591FA0"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1488","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-044","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5104","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1488","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-044","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5104","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0632","sourceIdentifier":"cve@mitre.org","published":"2000-07-17T04:00:00.000","lastModified":"2026-06-16T21:52:09.080","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the web archive component of L-Soft Listserv 1.8d and earlier allows remote attackers to execute arbitrary commands via a long query string."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:lsoft:listserv:1.8c:*:*:*:*:*:*:*","matchCriteriaId":"70AFE290-A340-4032-B094-4B7D44D6057E"},{"vulnerable":true,"criteria":"cpe:2.3:a:lsoft:listserv:1.8d:*:*:*:*:*:*:*","matchCriteriaId":"BFA3EAFF-68EC-4504-A73C-28AF55D5DB8C"}]}]}],"references":[{"url":"http://www.lsoft.com/news/default.asp?item=Advisory1","source":"cve@mitre.org"},{"url":"http://www.nai.com/nai_labs/asp_set/advisory/43_Advisory.asp","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1490","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4952","source":"cve@mitre.org"},{"url":"http://www.lsoft.com/news/default.asp?item=Advisory1","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.nai.com/nai_labs/asp_set/advisory/43_Advisory.asp","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1490","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4952","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0665","sourceIdentifier":"cve@mitre.org","published":"2000-07-17T04:00:00.000","lastModified":"2026-06-16T21:52:13.277","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"GAMSoft TelSrv telnet server 1.5 and earlier allows remote attackers to cause a denial of service via a long username."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gamsoft:telsrv:1.4:*:*:*:*:*:*:*","matchCriteriaId":"D8B9B04F-C089-40F7-B74B-7343377DD049"},{"vulnerable":true,"criteria":"cpe:2.3:a:gamsoft:telsrv:1.5:*:*:*:*:*:*:*","matchCriteriaId":"5F4743AA-82D5-4FB2-A170-AE0956324342"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q3/0031.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q3/0056.html","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/373","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1478","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4945","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q3/0031.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q3/0056.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/373","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1478","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4945","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0567","sourceIdentifier":"cve@mitre.org","published":"2000-07-18T04:00:00.000","lastModified":"2026-06-16T21:52:00.813","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Microsoft Outlook and Outlook Express allows remote attackers to execute arbitrary commands via a long Date field in an email header, aka the \"Malformed E-mail Header\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook:97:*:*:*:*:*:*:*","matchCriteriaId":"D1D5CC3A-E880-4727-AEBE-1E4FE5A43AF8"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook:98:*:*:*:*:*:*:*","matchCriteriaId":"52970A43-173E-477B-80BF-6FDBB6B0EECD"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook:2000:*:*:*:*:*:*:*","matchCriteriaId":"D52F17AB-2C87-4C1A-91B5-267ABBCF5844"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook_express:4.0:*:*:*:*:*:*:*","matchCriteriaId":"6764F97F-6906-4953-BB1C-AA6345FA8FBE"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook_express:4.01:*:*:*:*:*:*:*","matchCriteriaId":"BA267F42-5A1F-4663-9D4D-AF5DD64FD2DF"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook_express:5.0:*:*:*:*:*:*:*","matchCriteriaId":"1F71D6D7-6CB2-4BE9-839A-A5714144029C"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1481","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-043","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4953","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1481","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-043","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4953","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0625","sourceIdentifier":"cve@mitre.org","published":"2000-07-18T04:00:00.000","lastModified":"2026-06-16T21:52:08.213","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"NetZero 3.0 and earlier uses weak encryption for storing a user's login information, which allows a local user to decrypt the password."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netzero:zeroport:*:*:*:*:*:*:*:*","versionEndIncluding":"3.0","matchCriteriaId":"B56BDFB4-408D-493B-B3B6-E5680FA86D15"}]}]}],"references":[{"url":"http://www.l0pht.com/advisories/netzero.txt","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1483","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.l0pht.com/advisories/netzero.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1483","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0626","sourceIdentifier":"cve@mitre.org","published":"2000-07-18T04:00:00.000","lastModified":"2026-06-16T21:52:08.330","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Alibaba web server allows remote attackers to cause a denial of service via a long GET request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:computer_software_manufaktur:alibaba:2.0:*:*:*:*:*:*:*","matchCriteriaId":"8DD3CBF4-B593-4C4A-8B9C-D005846B4090"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0237.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1482","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0237.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1482","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0627","sourceIdentifier":"cve@mitre.org","published":"2000-07-18T04:00:00.000","lastModified":"2026-06-16T21:52:08.453","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"BlackBoard CourseInfo 4.0 does not properly authenticate users, which allows local users to modify CourseInfo database information and gain privileges by directly calling the supporting CGI programs such as user_update_passwd.pl and user_update_admin.pl."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:blackboard:courseinfo:4.0:*:*:*:*:*:*:*","matchCriteriaId":"F0007561-D81E-472F-A306-AE336A7B2C2F"},{"vulnerable":true,"criteria":"cpe:2.3:a:blackboard:courseinfo:unix:*:*:*:*:*:*:*","matchCriteriaId":"7DD858E2-BC6D-4BBF-A723-470ADC0B11EF"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0254.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1486","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/frames/?content=/templates/archive.pike%3Flist%3D1%26msg%3D20000719151904.I17986%40securityfocus.com","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4946","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0254.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1486","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/frames/?content=/templates/archive.pike%3Flist%3D1%26msg%3D20000719151904.I17986%40securityfocus.com","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4946","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0633","sourceIdentifier":"cve@mitre.org","published":"2000-07-18T04:00:00.000","lastModified":"2026-06-16T21:52:09.197","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in Mandrake Linux usermode package allows local users to to reboot or halt the system."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:4.0:*:*:*:*:*:*:*","matchCriteriaId":"48F068BE-F5B3-4E43-8E6A-24AB4D2DEDF0"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:4.0es:*:*:*:*:*:*:*","matchCriteriaId":"6529EC98-7CF7-47A1-95BB-2F34066FE95D"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:4.1:*:*:*:*:*:*:*","matchCriteriaId":"FFDAB801-AAA0-4B3B-B488-52E7BA8650C5"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:4.2:*:*:*:*:*:*:*","matchCriteriaId":"612AC3B1-8E55-437F-9600-67EA1A8BAD48"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:5.0:*:*:*:*:*:*:*","matchCriteriaId":"537A5C29-D770-4755-A6AB-8916754E14DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:5.1:*:*:*:*:*:*:*","matchCriteriaId":"E3AC05A9-04DA-4ED3-94D8-3254384CB724"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:7.1:*:*:*:*:*:*:*","matchCriteriaId":"3EC1FF5D-5EAB-44D5-B281-770547C70D68"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:alpha:*:*:*:*:*","matchCriteriaId":"6931FB54-A163-4CE3-BBD9-D345AA0977A6"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:i386:*:*:*:*:*","matchCriteriaId":"89F65C9D-BD68-4A86-BFDC-E7CE76F13948"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:alpha:*:*:*:*:*","matchCriteriaId":"C89454B9-4F45-4A42-A06D-ED42D893C544"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:i386:*:*:*:*:*","matchCriteriaId":"B72D6205-DFA4-41D9-B3B6-0B7DA756CD8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:sparc:*:*:*:*:*","matchCriteriaId":"1E64093E-7D53-4238-95C3-48ED5A0FFD97"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:alpha:*:*:*:*:*","matchCriteriaId":"344610A8-DB6D-4407-9304-916C419F648C"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:i386:*:*:*:*:*","matchCriteriaId":"B7EC2B95-4715-4EC9-A10A-2542501F8A61"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:sparc:*:*:*:*:*","matchCriteriaId":"64775BEF-2E53-43CA-8639-A7E54F6F4222"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2e:*:alpha:*:*:*:*:*","matchCriteriaId":"2A21DA48-A818-4745-8F58-2C17BFEF44CF"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2e:*:i386:*:*:*:*:*","matchCriteriaId":"58F0028D-D4BB-4EBC-A665-A4BA95BC29CF"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2e:*:sparc:*:*:*:*:*","matchCriteriaId":"25B6F37C-9ACD-49F7-9E55-E0FE0B10BBC3"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0251.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0117.html","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-053.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1489","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4944","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0251.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0117.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-053.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1489","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4944","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0615","sourceIdentifier":"cve@mitre.org","published":"2000-07-19T04:00:00.000","lastModified":"2026-06-16T21:52:06.920","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"LPRng 3.6.x improperly installs lpd as setuid root, which can allow local users to append lpd trace and logging messages to files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:astart_technologies:lprng:3.6.1:*:*:*:*:*:*:*","matchCriteriaId":"78D19CF2-C520-4856-901D-7D6FF6340971"},{"vulnerable":true,"criteria":"cpe:2.3:o:astart_technologies:lprng:3.6.2:*:*:*:*:*:*:*","matchCriteriaId":"DB4716C2-C1EC-4C11-976B-9162503293B2"},{"vulnerable":true,"criteria":"cpe:2.3:o:astart_technologies:lprng:3.6.3:*:*:*:*:*:*:*","matchCriteriaId":"16A777F4-896E-4BC8-BC73-784F840D81B6"},{"vulnerable":true,"criteria":"cpe:2.3:o:astart_technologies:lprng:3.6.4:*:*:*:*:*:*:*","matchCriteriaId":"06C0C5A4-9AC7-4E53-8FC3-5C6A5914DA17"},{"vulnerable":true,"criteria":"cpe:2.3:o:astart_technologies:lprng:3.6.5:*:*:*:*:*:*:*","matchCriteriaId":"2DC570FD-4F30-4509-B449-540CDFDFC719"},{"vulnerable":true,"criteria":"cpe:2.3:o:astart_technologies:lprng:3.6.6:*:*:*:*:*:*:*","matchCriteriaId":"1B045A1F-4566-4DAB-8A1A-86933F85B8B9"},{"vulnerable":true,"criteria":"cpe:2.3:o:astart_technologies:lprng:3.6.7:*:*:*:*:*:*:*","matchCriteriaId":"D20FC1D5-4CCA-456B-A152-29F0DA126CA2"},{"vulnerable":true,"criteria":"cpe:2.3:o:astart_technologies:lprng:3.6.8:*:*:*:*:*:*:*","matchCriteriaId":"16DF8D2B-FEF8-47C5-9DAA-8DB92AE4B992"},{"vulnerable":true,"criteria":"cpe:2.3:o:astart_technologies:lprng:3.6.9:*:*:*:*:*:*:*","matchCriteriaId":"03E4468F-44BC-47BC-AE2A-082C4D69136D"},{"vulnerable":true,"criteria":"cpe:2.3:o:astart_technologies:lprng:3.6.10:*:*:*:*:*:*:*","matchCriteriaId":"C9D03015-E0ED-4BF6-81C9-348A10693A34"},{"vulnerable":true,"criteria":"cpe:2.3:o:astart_technologies:lprng:3.6.11:*:*:*:*:*:*:*","matchCriteriaId":"36AB2CEF-2520-4B8B-9AEF-69DA08E38AE7"},{"vulnerable":true,"criteria":"cpe:2.3:o:astart_technologies:lprng:3.6.12:*:*:*:*:*:*:*","matchCriteriaId":"A4ECCF42-64C9-4D6D-8086-05952DD17847"},{"vulnerable":true,"criteria":"cpe:2.3:o:astart_technologies:lprng:3.6.13:*:*:*:*:*:*:*","matchCriteriaId":"9FC3298E-0FB4-49B8-8610-82CF90DAFE7D"},{"vulnerable":true,"criteria":"cpe:2.3:o:astart_technologies:lprng:3.6.14:*:*:*:*:*:*:*","matchCriteriaId":"14D76156-AC60-4669-8C3D-6CC8E7BE6900"},{"vulnerable":true,"criteria":"cpe:2.3:o:astart_technologies:lprng:3.6.15:*:*:*:*:*:*:*","matchCriteriaId":"1D812A04-02FA-4521-9DF3-96A1DB731498"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0117.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1447","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7361","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0117.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1447","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7361","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0619","sourceIdentifier":"cve@mitre.org","published":"2000-07-19T04:00:00.000","lastModified":"2026-06-16T21:52:07.427","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Top Layer AppSwitch 2500 allows remote attackers to cause a denial of service via malformed ICMP packets."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:toplayer:appswitch:2500.0:*:*:*:*:*:*:*","matchCriteriaId":"54039687-2F68-4734-AD40-760217CB8F46"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/vuln-dev/2000-q2/0680.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/vuln-dev/2000-q2/0921.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1258","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7364","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/vuln-dev/2000-q2/0680.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/vuln-dev/2000-q2/0921.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1258","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7364","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0622","sourceIdentifier":"cve@mitre.org","published":"2000-07-19T04:00:00.000","lastModified":"2026-06-16T21:52:07.803","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Webfind CGI program in O'Reilly WebSite Professional web server 2.x allows remote attackers to execute arbitrary commands via a URL containing a long \"keywords\" parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oreilly:website_professional:2.3.18:*:*:*:*:*:*:*","matchCriteriaId":"C1D46829-3A28-49AC-9D19-7EFFAE6E55D2"},{"vulnerable":true,"criteria":"cpe:2.3:a:oreilly:website_professional:2.4:*:*:*:*:*:*:*","matchCriteriaId":"971D49D8-BDD1-4B56-830A-7816965069C3"},{"vulnerable":true,"criteria":"cpe:2.3:a:oreilly:website_professional:2.4.9:*:*:*:*:*:*:*","matchCriteriaId":"356B3E87-68AD-41F9-A008-D93FFEF536E0"}]}]}],"references":[{"url":"http://website.oreilly.com/support/software/wspro25_releasenotes.txt","source":"cve@mitre.org"},{"url":"http://www.nai.com/research/covert/advisories/043.asp","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1487","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4962","source":"cve@mitre.org"},{"url":"http://website.oreilly.com/support/software/wspro25_releasenotes.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.nai.com/research/covert/advisories/043.asp","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1487","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4962","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0636","sourceIdentifier":"cve@mitre.org","published":"2000-07-19T04:00:00.000","lastModified":"2026-06-16T21:52:09.580","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"HP JetDirect printers versions G.08.20 and H.08.20 and earlier allow remote attackers to cause a denial of service via a malformed FTP quote command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:hp:jetdirect:j3111a_rev._a.08.06:*:*:*:*:*:*:*","matchCriteriaId":"643083B1-1762-4DCC-B69B-E1F88951BA22"},{"vulnerable":true,"criteria":"cpe:2.3:h:hp:jetdirect:j3111a_rev._g.05.35:*:*:*:*:*:*:*","matchCriteriaId":"110052A3-E546-4DD5-9739-FBFE2C377A8A"},{"vulnerable":true,"criteria":"cpe:2.3:h:hp:jetdirect:j3111a_rev._g.07.02:*:*:*:*:*:*:*","matchCriteriaId":"99DF94DF-9E8A-4DAB-A733-3A1B77075974"},{"vulnerable":true,"criteria":"cpe:2.3:h:hp:jetdirect:j3111a_rev._g.07.03:*:*:*:*:*:*:*","matchCriteriaId":"EE4C44BF-F626-47AE-86B6-95D14CA57D9F"},{"vulnerable":true,"criteria":"cpe:2.3:h:hp:jetdirect:j3111a_rev._g.07.17:*:*:*:*:*:*:*","matchCriteriaId":"E3CA4705-7978-4B42-824B-7696296C39D3"},{"vulnerable":true,"criteria":"cpe:2.3:h:hp:jetdirect:j3111a_rev._g.08.03:*:*:*:*:*:*:*","matchCriteriaId":"F1110261-8628-493F-8164-6A7DC478A45C"},{"vulnerable":true,"criteria":"cpe:2.3:h:hp:jetdirect:rev._g.08.04:*:*:*:*:*:*:*","matchCriteriaId":"0A62FF15-83E7-4AF0-BE4F-153330DCE5A1"},{"vulnerable":true,"criteria":"cpe:2.3:h:hp:jetdirect:rev._g.08.20:*:*:*:*:*:*:*","matchCriteriaId":"46BB32BD-8343-4059-A306-83B1DDD739D2"},{"vulnerable":true,"criteria":"cpe:2.3:h:hp:jetdirect:rev._h.08.05:*:*:*:*:*:*:*","matchCriteriaId":"EA79212A-F6D9-47D4-9BE2-82F380E43465"},{"vulnerable":true,"criteria":"cpe:2.3:h:hp:jetdirect:rev._h.08.20:*:*:*:*:*:*:*","matchCriteriaId":"D0F35B0A-A56F-4BD8-BD44-6B7298388067"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0265.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1491","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4947","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0265.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1491","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4947","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0621","sourceIdentifier":"cve@mitre.org","published":"2000-07-20T04:00:00.000","lastModified":"2026-06-16T21:52:07.677","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Outlook 98 and 2000, and Outlook Express 4.0x and 5.0x, allow remote attackers to read files on the client's system via a malformed HTML message that stores files outside of the cache, aka the \"Cache Bypass\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook:97:*:*:*:*:*:*:*","matchCriteriaId":"D1D5CC3A-E880-4727-AEBE-1E4FE5A43AF8"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook:98:*:*:*:*:*:*:*","matchCriteriaId":"52970A43-173E-477B-80BF-6FDBB6B0EECD"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook:2000:*:*:*:*:*:*:*","matchCriteriaId":"D52F17AB-2C87-4C1A-91B5-267ABBCF5844"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook_express:4.0:*:*:*:*:*:*:*","matchCriteriaId":"6764F97F-6906-4953-BB1C-AA6345FA8FBE"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook_express:4.01:*:*:*:*:*:*:*","matchCriteriaId":"BA267F42-5A1F-4663-9D4D-AF5DD64FD2DF"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook_express:5.0:*:*:*:*:*:*:*","matchCriteriaId":"1F71D6D7-6CB2-4BE9-839A-A5714144029C"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook_express:5.0.1:*:*:*:*:*:*:*","matchCriteriaId":"A72832FD-812D-4175-AA50-DC1DDAD5B954"}]}]}],"references":[{"url":"http://www.cert.org/advisories/CA-2000-14.html","source":"cve@mitre.org","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.securityfocus.com/bid/1501","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-046","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5013","source":"cve@mitre.org"},{"url":"http://www.cert.org/advisories/CA-2000-14.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.securityfocus.com/bid/1501","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-046","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5013","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0624","sourceIdentifier":"cve@mitre.org","published":"2000-07-20T04:00:00.000","lastModified":"2026-06-16T21:52:08.083","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Winamp 2.64 and earlier allows remote attackers to execute arbitrary commands via a long #EXTINF: extension in the M3U playlist."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:nullsoft:winamp:*:*:*:*:*:*:*:*","versionEndIncluding":"2.64","matchCriteriaId":"0DB469B7-3828-4AC5-925D-4C2117DA51C8"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0289.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1496","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.winamp.com/getwinamp/newfeatures.jhtml","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4956","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0289.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1496","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.winamp.com/getwinamp/newfeatures.jhtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4956","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0653","sourceIdentifier":"cve@mitre.org","published":"2000-07-20T04:00:00.000","lastModified":"2026-06-16T21:52:11.760","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Outlook Express allows remote attackers to monitor a user's email by creating a persistent browser link to the Outlook Express windows, aka the \"Persistent Mail-Browser Link\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook_express:4.0:*:*:*:*:*:*:*","matchCriteriaId":"6764F97F-6906-4953-BB1C-AA6345FA8FBE"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook_express:4.01:*:*:*:*:*:*:*","matchCriteriaId":"BA267F42-5A1F-4663-9D4D-AF5DD64FD2DF"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook_express:5.0:*:*:*:*:*:*:*","matchCriteriaId":"1F71D6D7-6CB2-4BE9-839A-A5714144029C"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook_express:5.0.1:*:*:*:*:*:*:*","matchCriteriaId":"A72832FD-812D-4175-AA50-DC1DDAD5B954"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1502","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-045","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1502","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-045","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0672","sourceIdentifier":"cve@mitre.org","published":"2000-07-20T04:00:00.000","lastModified":"2026-06-16T21:52:14.210","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default configuration of Jakarta Tomcat does not restrict access to the /admin context, which allows remote attackers to read arbitrary files by directly calling the administrative servlets to add a context for the root directory."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-noinfo"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:apache:tomcat:3.0:*:*:*:*:*:*:*","matchCriteriaId":"BAFF8D91-80A2-454A-8B44-A5A889002692"},{"vulnerable":true,"criteria":"cpe:2.3:a:apache:tomcat:3.1:*:*:*:*:*:*:*","matchCriteriaId":"FEC42876-65AD-476A-8B62-25D4E15D1BB6"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0309.html","source":"cve@mitre.org","tags":["Broken Link","Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1548","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5160","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0309.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1548","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5160","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]}]}},{"cve":{"id":"CVE-2000-0644","sourceIdentifier":"cve@mitre.org","published":"2000-07-21T04:00:00.000","lastModified":"2026-06-16T21:52:10.607","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WFTPD and WFTPD Pro 2.41 allows remote attackers to cause a denial of service by executing a STAT command while the LIST command is still executing."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd:2.4.1:*:*:*:*:*:*:*","matchCriteriaId":"BE581DA0-0DEC-4C2D-B2CA-FFBDC39FAF95"},{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd:2.4.1_rc11:*:*:*:*:*:*:*","matchCriteriaId":"0F0D720E-2C84-4AD8-8B2A-9F73E3396AB7"},{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd:2.34:*:*:*:*:*:*:*","matchCriteriaId":"2955B341-3B28-4474-96DD-AA11CD14E1A3"},{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd:2.40:*:*:*:*:*:*:*","matchCriteriaId":"B9B1592D-0D0E-4B03-9414-82AAD16B680E"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0295.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1477","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1506","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5003","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0295.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1477","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1506","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5003","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0645","sourceIdentifier":"cve@mitre.org","published":"2000-07-21T04:00:00.000","lastModified":"2026-06-16T21:52:10.753","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WFTPD and WFTPD Pro 2.41 allows remote attackers to cause a denial of service by using the RESTART (REST) command and writing beyond the end of a file, or writing to a file that does not exist, via commands such as STORE UNIQUE (STOU), STORE (STOR), or APPEND (APPE)."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:P","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd:2.4.1:*:*:*:*:*:*:*","matchCriteriaId":"BE581DA0-0DEC-4C2D-B2CA-FFBDC39FAF95"},{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd:2.4.1_rc11:*:*:*:*:*:*:*","matchCriteriaId":"0F0D720E-2C84-4AD8-8B2A-9F73E3396AB7"},{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd:2.34:*:*:*:*:*:*:*","matchCriteriaId":"2955B341-3B28-4474-96DD-AA11CD14E1A3"},{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd:2.40:*:*:*:*:*:*:*","matchCriteriaId":"B9B1592D-0D0E-4B03-9414-82AAD16B680E"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0295.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1506","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0295.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1506","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0646","sourceIdentifier":"cve@mitre.org","published":"2000-07-21T04:00:00.000","lastModified":"2026-06-16T21:52:10.887","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WFTPD and WFTPD Pro 2.41 allows remote attackers to obtain the real pathname for a file by executing a STATUS (STAT) command while the file is being transferred."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd:2.4.1:*:*:*:*:*:*:*","matchCriteriaId":"BE581DA0-0DEC-4C2D-B2CA-FFBDC39FAF95"},{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd:2.4.1_rc11:*:*:*:*:*:*:*","matchCriteriaId":"0F0D720E-2C84-4AD8-8B2A-9F73E3396AB7"},{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd:2.34:*:*:*:*:*:*:*","matchCriteriaId":"2955B341-3B28-4474-96DD-AA11CD14E1A3"},{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd:2.40:*:*:*:*:*:*:*","matchCriteriaId":"B9B1592D-0D0E-4B03-9414-82AAD16B680E"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0295.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1506","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0295.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1506","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0647","sourceIdentifier":"cve@mitre.org","published":"2000-07-21T04:00:00.000","lastModified":"2026-06-16T21:52:11.020","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WFTPD and WFTPD Pro 2.41 allows remote attackers to cause a denial of service by executing an MLST command before logging into the server."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd:2.4.1:*:*:*:*:*:*:*","matchCriteriaId":"BE581DA0-0DEC-4C2D-B2CA-FFBDC39FAF95"},{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd:2.4.1_rc11:*:*:*:*:*:*:*","matchCriteriaId":"0F0D720E-2C84-4AD8-8B2A-9F73E3396AB7"},{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd:2.34:*:*:*:*:*:*:*","matchCriteriaId":"2955B341-3B28-4474-96DD-AA11CD14E1A3"},{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd:2.40:*:*:*:*:*:*:*","matchCriteriaId":"B9B1592D-0D0E-4B03-9414-82AAD16B680E"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0295.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1506","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0295.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1506","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0671","sourceIdentifier":"cve@mitre.org","published":"2000-07-21T04:00:00.000","lastModified":"2026-06-16T21:52:14.087","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Roxen web server earlier than 2.0.69 allows allows remote attackers to bypass access restrictions, list directory contents, and read source code by inserting a null character (%00) to the URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:roxen:webserver:2.0.x:*:*:*:*:*:*:*","matchCriteriaId":"A5A2BA92-BA46-4CA9-8BBD-0FB1E0C9FECE"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0307.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0321.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1510","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4965","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0307.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0321.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1510","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4965","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0652","sourceIdentifier":"cve@mitre.org","published":"2000-07-24T04:00:00.000","lastModified":"2026-06-16T21:52:11.633","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IBM WebSphere allows remote attackers to read source code for executable web files by directly calling the default InvokerServlet using a URL which contains the \"/servlet/file\" string."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:2.0:*:*:*:*:*:*:*","matchCriteriaId":"64D02294-3244-4CB3-AC4A-5ACE510DCDDD"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"85D0DA05-D76A-4623-B7EC-07A9D06E6E9F"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:3.0.21:*:*:*:*:*:*:*","matchCriteriaId":"A0AA131F-93DA-481D-8823-0E9C81FCA89B"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0342.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1500","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5012","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0342.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1500","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5012","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0655","sourceIdentifier":"cve@mitre.org","published":"2000-07-25T04:00:00.000","lastModified":"2026-06-16T21:52:12.003","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Netscape Communicator 4.73 and earlier allows remote attackers to cause a denial of service or execute arbitrary commands via a JPEG image containing a comment with an illegal field length of 1."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mozilla:mozilla:m15:*:*:*:*:*:*:*","matchCriteriaId":"C85C3F06-8FFF-4A6F-BB86-B66A6031647E"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.0:*:*:*:*:*:*:*","matchCriteriaId":"209C7BB1-EFDF-43AB-9FB6-DF67465DEAEF"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.05:*:*:*:*:*:*:*","matchCriteriaId":"494AFC1E-67A3-41CA-B920-B8F778B68A99"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.5:*:*:*:*:*:*:*","matchCriteriaId":"4E9A5461-B0F2-49DB-A69C-3D2D27709647"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.5_beta:*:*:*:*:*:*:*","matchCriteriaId":"213EB326-33D1-4329-A6BB-B1AA1C626E44"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.06:*:*:*:*:*:*:*","matchCriteriaId":"34F6328B-44A8-4E45-918E-C54285040BFE"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.6:*:*:*:*:*:*:*","matchCriteriaId":"529E3F71-6016-461D-A162-0DBDD5505389"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.07:*:*:*:*:*:*:*","matchCriteriaId":"31D02C4D-3FD1-425F-B0DB-7808089BCD0B"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.7:*:*:*:*:*:*:*","matchCriteriaId":"38FD74F5-12ED-4049-B06F-0F22A0254C0F"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.08:*:*:*:*:*:*:*","matchCriteriaId":"61268CF9-E279-4F63-B228-F9ED4B93BB99"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.51:*:*:*:*:*:*:*","matchCriteriaId":"918BE44C-8D64-4040-BC74-802AA3FA4E10"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.61:*:*:*:*:*:*:*","matchCriteriaId":"6AA534C4-9411-44EC-AA34-2287C79AD235"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.72:*:*:*:*:*:*:*","matchCriteriaId":"3A4E8588-A941-4759-B41C-00F193F2C63B"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.73:*:*:*:*:*:*:*","matchCriteriaId":"3E48C051-EB45-4262-86C2-2333FD5C7745"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:39.netscape.asc","source":"cve@mitre.org"},{"url":"ftp://ftp.NetBSD.ORG/pub/NetBSD/misc/security/advisories/NetBSD-SA2000-011.txt.asc","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0456.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0116.html","source":"cve@mitre.org"},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_60.html","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-046.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1503","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/frames/?content=/templates/archive.pike%3Flist%3D1%26msg%3D200007242356.DAA01274%40false.com","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.turbolinux.com/pipermail/tl-security-announce/2000-August/000016.html","source":"cve@mitre.org"},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:39.netscape.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"ftp://ftp.NetBSD.ORG/pub/NetBSD/misc/security/advisories/NetBSD-SA2000-011.txt.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0456.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0116.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_60.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-046.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1503","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/frames/?content=/templates/archive.pike%3Flist%3D1%26msg%3D200007242356.DAA01274%40false.com","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.turbolinux.com/pipermail/tl-security-announce/2000-August/000016.html","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0656","sourceIdentifier":"cve@mitre.org","published":"2000-07-25T04:00:00.000","lastModified":"2026-06-16T21:52:12.183","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in AnalogX proxy server 4.04 and earlier allows remote attackers to cause a denial of service via a long USER command in the FTP protocol."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:analogx:proxy:4.4:*:*:*:*:*:*:*","matchCriteriaId":"623944AE-661A-429F-BCE4-8CB6691186CD"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0360.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.analogx.com/contents/download/network/proxy.htm","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1504","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0360.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.analogx.com/contents/download/network/proxy.htm","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1504","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0657","sourceIdentifier":"cve@mitre.org","published":"2000-07-25T04:00:00.000","lastModified":"2026-06-16T21:52:12.310","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in AnalogX proxy server 4.04 and earlier allows remote attackers to cause a denial of service via a long HELO command in the SMTP protocol."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:analogx:proxy:4.4:*:*:*:*:*:*:*","matchCriteriaId":"623944AE-661A-429F-BCE4-8CB6691186CD"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0360.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.analogx.com/contents/download/network/proxy.htm","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1504","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0360.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.analogx.com/contents/download/network/proxy.htm","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1504","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0658","sourceIdentifier":"cve@mitre.org","published":"2000-07-25T04:00:00.000","lastModified":"2026-06-16T21:52:12.437","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in AnalogX proxy server 4.04 and earlier allows remote attackers to cause a denial of service via a long USER command in the POP3 protocol."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:analogx:proxy:4.4:*:*:*:*:*:*:*","matchCriteriaId":"623944AE-661A-429F-BCE4-8CB6691186CD"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0360.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.analogx.com/contents/download/network/proxy.htm","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1504","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0360.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.analogx.com/contents/download/network/proxy.htm","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1504","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0659","sourceIdentifier":"cve@mitre.org","published":"2000-07-25T04:00:00.000","lastModified":"2026-06-16T21:52:12.557","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in AnalogX proxy server 4.04 and earlier allows remote attackers to cause a denial of service via a long user ID in a SOCKS4 CONNECT request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:analogx:proxy:4.4:*:*:*:*:*:*:*","matchCriteriaId":"623944AE-661A-429F-BCE4-8CB6691186CD"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0360.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1504","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0360.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1504","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0663","sourceIdentifier":"cve@mitre.org","published":"2000-07-25T04:00:00.000","lastModified":"2026-06-16T21:52:13.030","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The registry entry for the Windows Shell executable (Explorer.exe) in Windows NT and Windows 2000 uses a relative path name, which allows local users to execute arbitrary commands by inserting a Trojan Horse named Explorer.exe into the %Systemdrive% directory, aka the \"Relative Shell Path\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"http://www.microsoft.com/technet/support/kb.asp?ID=269049","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1507","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-052","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5040","source":"cve@mitre.org"},{"url":"http://www.microsoft.com/technet/support/kb.asp?ID=269049","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1507","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-052","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5040","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0637","sourceIdentifier":"cve@mitre.org","published":"2000-07-26T04:00:00.000","lastModified":"2026-06-16T21:52:09.710","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Excel 97 and 2000 allows an attacker to execute arbitrary commands by specifying a malicious .dll using the Register.ID function, aka the \"Excel REGISTER.ID Function\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:excel:97:*:*:*:*:*:*:*","matchCriteriaId":"A78536AA-8694-4E0E-B7C6-9E5C3787D849"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:excel:2000:*:*:*:*:*:*:*","matchCriteriaId":"F55D42D5-7371-47C2-BF55-B7F51C19B61E"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1451","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=396B3F8F.9244D290%40nat.bg","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-051","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5016","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1451","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=396B3F8F.9244D290%40nat.bg","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-051","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5016","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0664","sourceIdentifier":"cve@mitre.org","published":"2000-07-26T04:00:00.000","lastModified":"2026-06-16T21:52:13.153","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"AnalogX SimpleServer:WWW 1.06 and earlier allows remote attackers to read arbitrary files via a modified .. (dot dot) attack that uses the %2E URL encoding for the dots."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:analogx:simpleserver_www:1.0.6:*:*:*:*:*:*:*","matchCriteriaId":"DCFB725E-36DC-44BF-8642-42DA0DCFEF81"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0374.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.analogx.com/contents/download/network/sswww.htm","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/388","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1508","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4999","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0374.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.analogx.com/contents/download/network/sswww.htm","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/388","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1508","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4999","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0667","sourceIdentifier":"cve@mitre.org","published":"2000-07-27T04:00:00.000","lastModified":"2026-06-16T21:52:13.570","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in gpm in Caldera Linux allows local users to delete arbitrary files or conduct a denial of service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:P","baseScore":3.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:4.0:*:*:*:*:*:*:*","matchCriteriaId":"48F068BE-F5B3-4E43-8E6A-24AB4D2DEDF0"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:4.0es:*:*:*:*:*:*:*","matchCriteriaId":"6529EC98-7CF7-47A1-95BB-2F34066FE95D"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:4.1:*:*:*:*:*:*:*","matchCriteriaId":"FFDAB801-AAA0-4B3B-B488-52E7BA8650C5"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:4.2:*:*:*:*:*:*:*","matchCriteriaId":"612AC3B1-8E55-437F-9600-67EA1A8BAD48"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:5.0:*:*:*:*:*:*:*","matchCriteriaId":"537A5C29-D770-4755-A6AB-8916754E14DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:5.1:*:*:*:*:*:*:*","matchCriteriaId":"E3AC05A9-04DA-4ED3-94D8-3254384CB724"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0273.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1512","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0273.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1512","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0668","sourceIdentifier":"cve@mitre.org","published":"2000-07-27T04:00:00.000","lastModified":"2026-06-16T21:52:13.697","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"pam_console PAM module in Linux systems allows a user to access the system console and reboot the system when a display manager such as gdm or kdm has XDMCP enabled."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:michael_k._johnson:pam_console:0.66:*:*:*:*:*:*:*","matchCriteriaId":"0D11E305-8077-4210-9115-B5047AE8C25C"},{"vulnerable":true,"criteria":"cpe:2.3:a:michael_k._johnson:pam_console:0.72_unpatched:*:*:*:*:*:*:*","matchCriteriaId":"487A2F8B-E4FE-4181-9B6F-A99AE6850D1D"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:4.0:*:*:*:*:*:*:*","matchCriteriaId":"48F068BE-F5B3-4E43-8E6A-24AB4D2DEDF0"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:4.0es:*:*:*:*:*:*:*","matchCriteriaId":"6529EC98-7CF7-47A1-95BB-2F34066FE95D"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:4.1:*:*:*:*:*:*:*","matchCriteriaId":"FFDAB801-AAA0-4B3B-B488-52E7BA8650C5"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:4.2:*:*:*:*:*:*:*","matchCriteriaId":"612AC3B1-8E55-437F-9600-67EA1A8BAD48"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:5.0:*:*:*:*:*:*:*","matchCriteriaId":"537A5C29-D770-4755-A6AB-8916754E14DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:5.1:*:*:*:*:*:*:*","matchCriteriaId":"E3AC05A9-04DA-4ED3-94D8-3254384CB724"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:alpha:*:*:*:*:*","matchCriteriaId":"6931FB54-A163-4CE3-BBD9-D345AA0977A6"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:i386:*:*:*:*:*","matchCriteriaId":"89F65C9D-BD68-4A86-BFDC-E7CE76F13948"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:sparc:*:*:*:*:*","matchCriteriaId":"5ABD1331-277C-4C31-8186-978243C62255"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:alpha:*:*:*:*:*","matchCriteriaId":"C89454B9-4F45-4A42-A06D-ED42D893C544"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:i386:*:*:*:*:*","matchCriteriaId":"B72D6205-DFA4-41D9-B3B6-0B7DA756CD8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:sparc:*:*:*:*:*","matchCriteriaId":"1E64093E-7D53-4238-95C3-48ED5A0FFD97"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:alpha:*:*:*:*:*","matchCriteriaId":"344610A8-DB6D-4407-9304-916C419F648C"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:i386:*:*:*:*:*","matchCriteriaId":"B7EC2B95-4715-4EC9-A10A-2542501F8A61"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:sparc:*:*:*:*:*","matchCriteriaId":"64775BEF-2E53-43CA-8639-A7E54F6F4222"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0398.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0455.html","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-044.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1513","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5001","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0398.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0455.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-044.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1513","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5001","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0673","sourceIdentifier":"cve@mitre.org","published":"2000-07-27T04:00:00.000","lastModified":"2026-06-16T21:52:14.333","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The NetBIOS Name Server (NBNS) protocol does not perform authentication, which allows remote attackers to cause a denial of service by sending a spoofed Name Conflict or Name Release datagram, aka the \"NetBIOS Name Server Protocol Spoofing\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:terminal_server:*:*:*:*:*:*:*","matchCriteriaId":"22B1D814-7954-4E8B-B20C-410B53D9202A"}]}]}],"references":[{"url":"http://www.nai.com/research/covert/advisories/044.asp","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1514","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1515","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-047","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5035","source":"cve@mitre.org"},{"url":"http://www.nai.com/research/covert/advisories/044.asp","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1514","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1515","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-047","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5035","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0278","sourceIdentifier":"cve@mitre.org","published":"2000-08-03T04:00:00.000","lastModified":"2026-06-16T21:51:22.993","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The SalesLogix Eviewer allows remote attackers to cause a denial of service by accessing the URL for the slxweb.dll administration program, which does not authenticate the user."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:saleslogix:corporation_eviewer:1.0:*:*:*:*:*:*:*","matchCriteriaId":"0B32E9A3-E460-4A43-B942-0385B1C833BC"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/current/0006.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1089","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/current/0006.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1089","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0545","sourceIdentifier":"cve@mitre.org","published":"2000-08-08T04:00:00.000","lastModified":"2026-06-16T21:51:58.010","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in mailx mail command (aka Mail) on Linux systems allows local users to gain privileges via a long -c (carbon copy) parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sgi:mailx:3:*:*:*:*:*:*:*","matchCriteriaId":"10DE1A02-34EB-480A-B06B-F8B52B52FCD2"},{"vulnerable":true,"criteria":"cpe:2.3:a:sgi:mailx:4:*:*:*:*:*:*:*","matchCriteriaId":"381EDE3A-A7FF-4361-8975-7B7C2994C76D"},{"vulnerable":true,"criteria":"cpe:2.3:a:sgi:mailx:5:*:*:*:*:*:*:*","matchCriteriaId":"4636BBCA-45D5-425C-9FC7-7E67FA1A971F"},{"vulnerable":true,"criteria":"cpe:2.3:a:sgi:mailx:6.0.1:*:*:*:*:*:*:*","matchCriteriaId":"B3D02625-B61A-47B4-9403-2952DBAACF3A"},{"vulnerable":true,"criteria":"cpe:2.3:a:sgi:mailx:6.1:*:*:*:*:*:*:*","matchCriteriaId":"D90E2EEA-72B4-4AFD-A1D1-43841A91D497"},{"vulnerable":true,"criteria":"cpe:2.3:a:sgi:mailx:6.2:*:*:*:*:*:*:*","matchCriteriaId":"79812BC5-9FA0-4910-9F26-211C2D569567"},{"vulnerable":true,"criteria":"cpe:2.3:a:sgi:mailx:6.3:*:*:*:*:*:*:*","matchCriteriaId":"270D390B-6C70-49BE-BD22-FC52C536F005"},{"vulnerable":true,"criteria":"cpe:2.3:a:sgi:mailx:6.4:*:*:*:*:*:*:*","matchCriteriaId":"0E59C19E-22AE-498A-A6D9-B15E9598E5E9"},{"vulnerable":true,"criteria":"cpe:2.3:a:sgi:mailx:6.5:*:*:*:*:*:*:*","matchCriteriaId":"344E802C-72E8-49E9-B82B-4C18A13CE86C"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0435.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.debian.org/security/2000/20000605","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1305","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-05/0435.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.debian.org/security/2000/20000605","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1305","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1079","sourceIdentifier":"cve@mitre.org","published":"2000-08-29T04:00:00.000","lastModified":"2026-06-16T21:53:06.423","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Interactions between the CIFS Browser Protocol and NetBIOS as implemented in Microsoft Windows 95, 98, NT, and 2000 allow remote attackers to modify dynamic NetBIOS name cache entries via a spoofed Browse Frame Request in a unicast or UDP broadcast datagram."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_95:*:*:*:*:*:*:*:*","matchCriteriaId":"82F7322B-8022-4D0B-ADB3-D0F5B6F20309"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98:*:gold:*:*:*:*:*:*","matchCriteriaId":"2D3B703C-79B2-4FA2-9E12-713AB977A880"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q3/0116.html","source":"cve@mitre.org"},{"url":"http://www.nai.com/research/covert/advisories/045.asp","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1620","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5168","source":"cve@mitre.org"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1079","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q3/0116.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.nai.com/research/covert/advisories/045.asp","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1620","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5168","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1079","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0761","sourceIdentifier":"cve@mitre.org","published":"2000-09-16T04:00:00.000","lastModified":"2026-06-16T21:49:00.190","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in FreeBSD fts library routines allows local user to modify arbitrary files via the periodic program."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:1.1.5.1:*:*:*:*:*:*:*","matchCriteriaId":"C496B665-70DA-4B98-A5D1-E2935C0CE840"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.0:*:*:*:*:*:*:*","matchCriteriaId":"F1F098C1-D09E-49B4-9B51-E84B6C4EA6CD"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.0.5:*:*:*:*:*:*:*","matchCriteriaId":"34797660-41F5-4358-B70F-2A40DE48F182"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.1.0:*:*:*:*:*:*:*","matchCriteriaId":"27C9E23D-AB82-4AE1-873E-C5493BB96AA1"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.1.5:*:*:*:*:*:*:*","matchCriteriaId":"4054D69F-596F-4EB4-BE9A-E2478343F55A"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.1.7.1:*:*:*:*:*:*:*","matchCriteriaId":"BF8F9B2F-E898-4F87-A245-32A41748587B"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2.2:*:*:*:*:*:*:*","matchCriteriaId":"EBDDEC3F-52EB-4E1E-84C4-B472600059EC"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2.3:*:*:*:*:*:*:*","matchCriteriaId":"B58E02AE-38B4-466E-BF73-2F0B80AF7BA5"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2.4:*:*:*:*:*:*:*","matchCriteriaId":"3928D5CF-6FC0-434C-8A80-ABDBF346C2C9"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2.5:*:*:*:*:*:*:*","matchCriteriaId":"314BA420-4C74-4060-8ACE-D7A7C041CF2B"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2.6:*:*:*:*:*:*:*","matchCriteriaId":"2EAD7613-A5B3-4621-B981-290C7C6B8BA0"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.2.8:*:*:*:*:*:*:*","matchCriteriaId":"D1CA3337-9BEE-49C5-9EDE-8CDBE5580537"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.0:*:*:*:*:*:*:*","matchCriteriaId":"EE38C50A-81FE-412E-9717-3672FAE6A6F4"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.1:*:*:*:*:*:*:*","matchCriteriaId":"263F3734-7076-4EA8-B4C0-F37CFC4E979E"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.2:*:*:*:*:*:*:*","matchCriteriaId":"0419DD66-FF66-48BC-AD3B-F6AFD0551E36"}]}]}],"references":[{"url":"http://www.osvdb.org/1074","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/644","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1074","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/644","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0354","sourceIdentifier":"cve@mitre.org","published":"2000-09-28T04:00:00.000","lastModified":"2026-06-16T21:51:32.570","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"mirror 2.8.x in Linux systems allows remote attackers to create files one level above the local target directory."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:lee_mcloughlin:mirror:2.9:*:*:*:*:*:*:*","matchCriteriaId":"81C0BEE9-F8AE-429F-925D-4085440ACD3C"}]}]}],"references":[{"url":"http://www.debian.org/security/1999/19991018","source":"cve@mitre.org"},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_22.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/681","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=15769.990928%40tomcat.ru","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/1999/19991018","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_22.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/681","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=15769.990928%40tomcat.ru","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1207","sourceIdentifier":"cve@mitre.org","published":"2000-09-30T04:00:00.000","lastModified":"2026-06-16T21:53:22.973","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"userhelper in the usermode package on Red Hat Linux executes non-setuid programs as root, which does not activate the security measures in glibc and allows the programs to be exploited via format string vulnerabilities in glibc via the LANG or LC_ALL environment variables (CVE-2000-0844)."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:*:*:*:*:*:*:*:*","matchCriteriaId":"B133DAC8-2B0D-4F83-9025-AD071740187A"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97034397026473&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97063854808796&w=2","source":"cve@mitre.org"},{"url":"http://www.linux-mandrake.com/en/security/2000/MDKSA-2000-059.php3","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-075.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=97034397026473&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=97063854808796&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.linux-mandrake.com/en/security/2000/MDKSA-2000-059.php3","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-075.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0816","sourceIdentifier":"cve@mitre.org","published":"2000-10-06T04:00:00.000","lastModified":"2026-06-16T21:52:32.177","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Linux tmpwatch --fuser option allows local users to execute arbitrary commands by creating files whose names contain shell metacharacters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:alpha:*:*:*:*:*","matchCriteriaId":"344610A8-DB6D-4407-9304-916C419F648C"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:i386:*:*:*:*:*","matchCriteriaId":"B7EC2B95-4715-4EC9-A10A-2542501F8A61"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:sparc:*:*:*:*:*","matchCriteriaId":"64775BEF-2E53-43CA-8639-A7E54F6F4222"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"29B186E5-7C2F-466E-AA4A-8F2B618F8A14"}]}]}],"references":[{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-056.php3?dis=7.1","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-080.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1785","source":"cve@mitre.org"},{"url":"http://xforce.iss.net/alerts/advise64.php","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5320","source":"cve@mitre.org"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-056.php3?dis=7.1","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-080.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1785","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://xforce.iss.net/alerts/advise64.php","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5320","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1204","sourceIdentifier":"cve@mitre.org","published":"2000-10-13T04:00:00.000","lastModified":"2026-06-16T21:53:22.460","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in the mod_vhost_alias virtual hosting module for Apache 1.3.9, 1.3.11 and 1.3.12 allows remote attackers to obtain the source code for CGI programs if the cgi-bin directory is under the document root."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.3.9:*:*:*:*:*:*:*","matchCriteriaId":"19C8989C-D8A6-4AE9-99B6-F2DAE5999EB6"},{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.3.11:*:*:*:*:*:*:*","matchCriteriaId":"7B6EE0E2-D608-4E72-A0E5-F407511405C2"},{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.3.12:*:*:*:*:*:*:*","matchCriteriaId":"33FD6791-3B84-40CA-BCF4-B5637B172F2A"}]}]}],"references":[{"url":"http://www.apacheweek.com/issues/00-10-13","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://lists.apache.org/thread.html/r5419c9ba0951ef73a655362403d12bb8d10fab38274deb3f005816f5%40%3Ccvs.httpd.apache.org%3E","source":"cve@mitre.org"},{"url":"https://lists.apache.org/thread.html/r5f9c22f9c28adbd9f00556059edc7b03a5d5bb71d4bb80257c0d34e4%40%3Ccvs.httpd.apache.org%3E","source":"cve@mitre.org"},{"url":"https://lists.apache.org/thread.html/r9f93cf6dde308d42a9c807784e8102600d0397f5f834890708bf6920%40%3Ccvs.httpd.apache.org%3E","source":"cve@mitre.org"},{"url":"https://lists.apache.org/thread.html/rb9c9f42dafa25d2f669dac2a536a03f2575bc5ec1be6f480618aee10%40%3Ccvs.httpd.apache.org%3E","source":"cve@mitre.org"},{"url":"https://lists.apache.org/thread.html/rf2f0f3611f937cf6cfb3b4fe4a67f69885855126110e1e3f2fb2728e%40%3Ccvs.httpd.apache.org%3E","source":"cve@mitre.org"},{"url":"https://lists.apache.org/thread.html/rf6449464fd8b7437704c55f88361b66f12d5b5f90bcce66af4be4ba9%40%3Ccvs.httpd.apache.org%3E","source":"cve@mitre.org"},{"url":"http://www.apacheweek.com/issues/00-10-13","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://lists.apache.org/thread.html/r5419c9ba0951ef73a655362403d12bb8d10fab38274deb3f005816f5%40%3Ccvs.httpd.apache.org%3E","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://lists.apache.org/thread.html/r5f9c22f9c28adbd9f00556059edc7b03a5d5bb71d4bb80257c0d34e4%40%3Ccvs.httpd.apache.org%3E","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://lists.apache.org/thread.html/r9f93cf6dde308d42a9c807784e8102600d0397f5f834890708bf6920%40%3Ccvs.httpd.apache.org%3E","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://lists.apache.org/thread.html/rb9c9f42dafa25d2f669dac2a536a03f2575bc5ec1be6f480618aee10%40%3Ccvs.httpd.apache.org%3E","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://lists.apache.org/thread.html/rf2f0f3611f937cf6cfb3b4fe4a67f69885855126110e1e3f2fb2728e%40%3Ccvs.httpd.apache.org%3E","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://lists.apache.org/thread.html/rf6449464fd8b7437704c55f88361b66f12d5b5f90bcce66af4be4ba9%40%3Ccvs.httpd.apache.org%3E","source":"af854a3a-2127-422b-91ae-364da2661108"}],"vendorComments":[{"organization":"Apache","comment":"Fixed in Apache HTTP Server 1.3.14:\nhttp://httpd.apache.org/security/vulnerabilities_13.html","lastModified":"2008-07-02T00:00:00"}]}},{"cve":{"id":"CVE-1999-1563","sourceIdentifier":"cve@mitre.org","published":"2000-10-14T04:00:00.000","lastModified":"2026-06-16T21:50:43.477","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Nachuatec D435 and D445 printer allows remote attackers to cause a denial of service via ICMP redirect storm."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:nachuatec:d435:*:*:*:*:*:*:*:*","matchCriteriaId":"1A8CAB1E-A05C-4582-88F7-7E1937A0DBC5"},{"vulnerable":true,"criteria":"cpe:2.3:h:nachuatec:d445:*:*:*:*:*:*:*:*","matchCriteriaId":"08D17E58-ED9F-405F-AE82-4B53127E1766"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/30849","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/35075","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/30849","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/35075","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1213","sourceIdentifier":"cve@mitre.org","published":"2000-10-18T04:00:00.000","lastModified":"2026-06-16T21:53:23.697","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ping in iputils before 20001010, as distributed on Red Hat Linux 6.2 through 7J and other operating systems, does not drop privileges after acquiring a raw socket, which increases ping's exposure to bugs that otherwise would occur at lower privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:immunix:immunix:6.2:*:*:*:*:*:*:*","matchCriteriaId":"DB0F79BE-8EBF-44D8-83A1-9331669BED54"},{"vulnerable":true,"criteria":"cpe:2.3:a:iputils:iputils:*:*:*:*:*:*:*:*","versionEndIncluding":"2000-10-10","matchCriteriaId":"AD894839-1AD2-4707-B171-2CE7076D6446"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:alpha:*:*:*:*:*","matchCriteriaId":"344610A8-DB6D-4407-9304-916C419F648C"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:i386:*:*:*:*:*","matchCriteriaId":"B7EC2B95-4715-4EC9-A10A-2542501F8A61"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:sparc:*:*:*:*:*","matchCriteriaId":"64775BEF-2E53-43CA-8639-A7E54F6F4222"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"29B186E5-7C2F-466E-AA4A-8F2B618F8A14"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0429.html","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97249980727834&w=2","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-087.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0429.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=97249980727834&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-087.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1214","sourceIdentifier":"cve@mitre.org","published":"2000-10-18T04:00:00.000","lastModified":"2026-06-16T21:53:23.813","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflows in the (1) outpack or (2) buf variables of ping in iputils before 20001010, as distributed on Red Hat Linux 6.2 through 7J and other operating systems, may allow local users to gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:immunix:immunix:6.2:*:*:*:*:*:*:*","matchCriteriaId":"DB0F79BE-8EBF-44D8-83A1-9331669BED54"},{"vulnerable":true,"criteria":"cpe:2.3:a:iputils:iputils:*:*:*:*:*:*:*:*","versionEndIncluding":"2000-10-10","matchCriteriaId":"AD894839-1AD2-4707-B171-2CE7076D6446"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:alpha:*:*:*:*:*","matchCriteriaId":"344610A8-DB6D-4407-9304-916C419F648C"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:i386:*:*:*:*:*","matchCriteriaId":"B7EC2B95-4715-4EC9-A10A-2542501F8A61"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:sparc:*:*:*:*:*","matchCriteriaId":"64775BEF-2E53-43CA-8639-A7E54F6F4222"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"29B186E5-7C2F-466E-AA4A-8F2B618F8A14"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0429.html","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97208562830613&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97249980727834&w=2","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/5431.php","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-087.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1813","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0429.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=97208562830613&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=97249980727834&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.iss.net/security_center/static/5431.php","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-087.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1813","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0031","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:50:51.573","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The initscripts package in Red Hat Linux allows local users to gain privileges via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:C/I:C/A:C","baseScore":6.2,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"MEDIUM","exploitabilityScore":1.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"2DFA94D5-0139-490C-8257-0751FE9FBAE4"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"2EC4D3AB-38FA-4D44-AF5C-2DCD15994E76"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0031","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0031","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0359","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:51:33.177","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Trivial HTTP (THTTPd) allows remote attackers to cause a denial of service or execute arbitrary commands via a long If-Modified-Since header."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:acme_labs:thttpd:1.90a:*:*:*:*:*:*:*","matchCriteriaId":"A4F572AB-AD2F-4776-9A6C-9FADB1A6EFCB"},{"vulnerable":true,"criteria":"cpe:2.3:a:acme_labs:thttpd:1.95:*:*:*:*:*:*:*","matchCriteriaId":"0157CE22-BF31-4029-8844-7FF82F1C585F"},{"vulnerable":true,"criteria":"cpe:2.3:a:acme_labs:thttpd:2.0:*:*:*:*:*:*:*","matchCriteriaId":"6C579A5A-D0A0-4FED-B22D-ED1505C74C0E"},{"vulnerable":true,"criteria":"cpe:2.3:a:acme_labs:thttpd:2.0.1:*:*:*:*:*:*:*","matchCriteriaId":"A800C6BA-5141-448D-AD3F-70BAD5356057"},{"vulnerable":true,"criteria":"cpe:2.3:a:acme_labs:thttpd:2.0.2:*:*:*:*:*:*:*","matchCriteriaId":"CCACB48D-5C8E-444C-9923-A16A72E1A38B"},{"vulnerable":true,"criteria":"cpe:2.3:a:acme_labs:thttpd:2.0.3:*:*:*:*:*:*:*","matchCriteriaId":"45550CD8-4354-44F5-B4B3-300CA77E147F"},{"vulnerable":true,"criteria":"cpe:2.3:a:acme_labs:thttpd:2.0.4:*:*:*:*:*:*:*","matchCriteriaId":"05C9A190-3298-42CA-9EF8-4FE59EA5EC86"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/1626.html","source":"cve@mitre.org"},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_30.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1248","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/1626.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_30.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1248","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0360","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:51:33.303","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in INN 2.2.1 and earlier allows remote attackers to cause a denial of service via a maliciously formatted article."},{"lang":"es","value":"Desbordamiento de buffer en INN 2.2.1 y anteriores permite a un atacante remoto causar denegación de servicio mediante un articulo formateado maliciosamente."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:isc:inn:1.4sec:*:*:*:*:*:*:*","matchCriteriaId":"E5D0063D-01CE-49E2-A19A-FA861F3C40CB"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:inn:1.4sec2:*:*:*:*:*:*:*","matchCriteriaId":"967E86C5-3635-49FF-A98A-C9B2BC85A812"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:inn:1.4unoff3:*:*:*:*:*:*:*","matchCriteriaId":"14DBB010-4064-4B46-834C-6FD5F1FE78FE"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:inn:1.4unoff4:*:*:*:*:*:*:*","matchCriteriaId":"EEE0D317-4F02-4896-95FC-20B64EB3A91F"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:inn:1.5:*:*:*:*:*:*:*","matchCriteriaId":"9915A668-8E8C-4EC8-A72A-6937EC7D3496"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:inn:1.5.1:*:*:*:*:*:*:*","matchCriteriaId":"5658CF74-5AF1-4161-BF4C-6A394F2AA164"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:inn:1.7:*:*:*:*:*:*:*","matchCriteriaId":"62017AA2-B4DB-44AA-806C-6CFEC839E297"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:inn:1.7.2:*:*:*:*:*:*:*","matchCriteriaId":"E4F9A712-AF96-4A04-B547-F29094ACFE9B"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:inn:2.0:*:*:*:*:*:*:*","matchCriteriaId":"A2480B45-A626-49F5-A48B-BA6DFAA4411B"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:inn:2.1:*:*:*:*:*:*:*","matchCriteriaId":"21969A37-9F10-4D70-AC73-F3DB4D169AEB"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:inn:2.2:*:*:*:*:*:*:*","matchCriteriaId":"94FD2948-EF52-464B-A605-DA3806037762"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:inn:2.2.1:*:*:*:*:*:*:*","matchCriteriaId":"1CC41E6D-B892-4888-8AEE-12287935F570"}]}]}],"references":[{"url":"ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-1999-038.0.txt","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_34.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1249","source":"cve@mitre.org"},{"url":"ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-1999-038.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_34.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1249","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0563","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:00.303","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The URLConnection function in MacOS Runtime Java (MRJ) 2.1 and earlier and the Microsoft virtual machine (VM) for MacOS allows a malicious web site operator to connect to arbitrary hosts using a HTTP redirection, in violation of the Java security model."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:apple:mac_os_runtime_for_java:*:*:java:*:*:*:*:*","versionEndIncluding":"2.1","matchCriteriaId":"3D231336-32BE-47F1-A9E6-1D34CF1EFCC0"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0056.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1336","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-05-8&msg=391C95DE2DA.5E3BTAKAGI%40java-house.etl.go.jp","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0056.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1336","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-05-8&msg=391C95DE2DA.5E3BTAKAGI%40java-house.etl.go.jp","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0676","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:14.713","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Netscape Communicator and Navigator 4.04 through 4.74 allows remote attackers to read arbitrary files by using a Java applet to open a connection to a URL using the \"file\", \"http\", \"https\", and \"ftp\" protocols, as demonstrated by Brown Orifice."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.0:*:*:*:*:*:*:*","matchCriteriaId":"209C7BB1-EFDF-43AB-9FB6-DF67465DEAEF"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.04:*:*:*:*:*:*:*","matchCriteriaId":"94F9EFE4-7853-4809-8D94-03B3EFD739E5"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.05:*:*:*:*:*:*:*","matchCriteriaId":"494AFC1E-67A3-41CA-B920-B8F778B68A99"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.5:*:*:*:*:*:*:*","matchCriteriaId":"4E9A5461-B0F2-49DB-A69C-3D2D27709647"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.5_beta:*:*:*:*:*:*:*","matchCriteriaId":"213EB326-33D1-4329-A6BB-B1AA1C626E44"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.06:*:*:*:*:*:*:*","matchCriteriaId":"34F6328B-44A8-4E45-918E-C54285040BFE"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.6:*:*:*:*:*:*:*","matchCriteriaId":"529E3F71-6016-461D-A162-0DBDD5505389"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.07:*:*:*:*:*:*:*","matchCriteriaId":"31D02C4D-3FD1-425F-B0DB-7808089BCD0B"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.08:*:*:*:*:*:*:*","matchCriteriaId":"61268CF9-E279-4F63-B228-F9ED4B93BB99"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.51:*:*:*:*:*:*:*","matchCriteriaId":"918BE44C-8D64-4040-BC74-802AA3FA4E10"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.61:*:*:*:*:*:*:*","matchCriteriaId":"6AA534C4-9411-44EC-AA34-2287C79AD235"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.72:*:*:*:*:*:*:*","matchCriteriaId":"3A4E8588-A941-4759-B41C-00F193F2C63B"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.73:*:*:*:*:*:*:*","matchCriteriaId":"3E48C051-EB45-4262-86C2-2333FD5C7745"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.74:*:*:*:*:*:*:*","matchCriteriaId":"BA48AF1E-99EF-419C-B425-001C7134C6BB"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:39.netscape.asc","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0019.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0115.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0236.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0265.html","source":"cve@mitre.org"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-027.1.txt","source":"cve@mitre.org"},{"url":"http://www.cert.org/advisories/CA-2000-15.html","source":"cve@mitre.org","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_60.html","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-054.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1546","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:39.netscape.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0019.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0115.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0236.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0265.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-027.1.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.cert.org/advisories/CA-2000-15.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_60.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-054.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1546","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0677","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:14.877","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in IBM Net.Data db2www CGI program allows remote attackers to execute arbitrary commands via a long PATH_INFO environmental variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:net.data:*:*:*:*:*:*:*:*","matchCriteriaId":"43126EB5-E238-4512-85B9-1B3E3BA32066"}]}]}],"references":[{"url":"http://xforce.iss.net/alerts/advise60.php","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4976","source":"cve@mitre.org"},{"url":"http://xforce.iss.net/alerts/advise60.php","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/4976","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0678","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:15.010","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"PGP 5.5.x through 6.5.3 does not properly check if an Additional Decryption Key (ADK) is stored in the signed portion of a public certificate, which allows an attacker who can modify a victim's public certificate to decrypt any data that has been encrypted with the modified certificate."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:pgp:pgp:5.5.3i:*:*:*:*:*:*:*","matchCriteriaId":"FC04D2F4-263E-4ED3-B22A-6AEEB3E03B16"},{"vulnerable":true,"criteria":"cpe:2.3:a:pgp:pgp:6.5.1i:*:*:*:*:*:*:*","matchCriteriaId":"7FAE1A6C-DB2E-41BE-8497-2F71F79FB9B4"},{"vulnerable":true,"criteria":"cpe:2.3:a:pgp:pgp:6.5.3i:*:*:*:*:*:*:*","matchCriteriaId":"180A6E01-8D38-4938-BCC6-4A004A2A6BF8"}]}]}],"references":[{"url":"http://www.cert.org/advisories/CA-2000-18.html","source":"cve@mitre.org","tags":["Third Party Advisory","US Government Resource"]},{"url":"http://www.osvdb.org/4354","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1606","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.cert.org/advisories/CA-2000-18.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","US Government Resource"]},{"url":"http://www.osvdb.org/4354","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1606","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0679","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:15.130","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The CVS 1.10.8 client trusts pathnames that are provided by the CVS server, which allows the server to force the client to create arbitrary files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cvs:cvs:1.10.8:*:*:*:*:*:*:*","matchCriteriaId":"62135DD0-140D-42C2-9302-31B5E2DE1A4A"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1523","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/frames/?content=/templates/archive.pike%3Flist%3D1%26msg%3Dhvou2daoebb.fsf%40serein.m17n.org","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1523","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/frames/?content=/templates/archive.pike%3Flist%3D1%26msg%3Dhvou2daoebb.fsf%40serein.m17n.org","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0680","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:15.253","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The CVS 1.10.8 server does not properly restrict users from creating arbitrary Checkin.prog or Update.prog programs, which allows remote CVS committers to modify or create Trojan horse programs with the Checkin.prog or Update.prog names, then performing a CVS commit action."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cvs:cvs:1.10.8:*:*:*:*:*:*:*","matchCriteriaId":"62135DD0-140D-42C2-9302-31B5E2DE1A4A"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1524","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/frames/?content=/templates/archive.pike%3Flist%3D1%26msg%3Dhvou2daoebb.fsf%40serein.m17n.org","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1524","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/frames/?content=/templates/archive.pike%3Flist%3D1%26msg%3Dhvou2daoebb.fsf%40serein.m17n.org","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0681","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:15.377","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in BEA WebLogic server proxy plugin allows remote attackers to execute arbitrary commands via a long URL with a .JSP extension."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:*:sp2:*:*:*:*:*:*","versionEndIncluding":"4.5.2","matchCriteriaId":"E27911BD-A0AE-46F4-BF7D-842E466715FB"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0186.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1570","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0186.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1570","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0682","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:15.503","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"BEA WebLogic 5.1.x allows remote attackers to read source code for parsed pages by inserting /ConsoleHelp/ into the URL, which invokes the FileServlet."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:*:*:*:*:*:*:*","matchCriteriaId":"CCD5D4AD-0BA3-42F7-852F-524488D74A96"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:*:enterprise:*:*:*:*:*","matchCriteriaId":"AC966FC9-3ED4-4CCD-B1E6-74E8CC7CEBCD"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:*:express:*:*:*:*:*","matchCriteriaId":"A8F69E7A-8BBB-4D20-AEE9-F37155AD5C3F"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp1:express:*:*:*:*:*","matchCriteriaId":"0FAB4F19-EFE0-4860-B9E9-E3938A36AE17"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp10:express:*:*:*:*:*","matchCriteriaId":"16324B74-4143-473D-858F-B5B1899822B3"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp11:express:*:*:*:*:*","matchCriteriaId":"DFA4200B-3877-4FC9-B2AB-E51675CAD71F"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp12:express:*:*:*:*:*","matchCriteriaId":"B1C2B98A-EF68-4569-B50C-8F21D2298435"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp2:express:*:*:*:*:*","matchCriteriaId":"8B0B183B-95A3-463D-B76B-50640F554013"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp3:express:*:*:*:*:*","matchCriteriaId":"36A0EFDA-409E-44F0-9F8B-167A72D2361B"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp4:express:*:*:*:*:*","matchCriteriaId":"51A8AB95-FB23-4A7A-A6F5-EF442EAABD26"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp5:express:*:*:*:*:*","matchCriteriaId":"5F00947F-1804-41D5-8F2B-7E48C77B1306"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp6:express:*:*:*:*:*","matchCriteriaId":"114E5E3E-84B2-4DD3-98FC-2ABFFA41BAD4"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp7:express:*:*:*:*:*","matchCriteriaId":"9B6656CF-65ED-4F8E-B9F2-75A9DC1571D7"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp8:express:*:*:*:*:*","matchCriteriaId":"7C013AE2-4B06-437A-815F-FAADD28CFA85"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp9:express:*:*:*:*:*","matchCriteriaId":"D7306C09-BFBA-4DC0-8EA1-E5A5C0BC080F"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0410.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://developer.bea.com/alerts/security_000731.html","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1481","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1518","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0410.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://developer.bea.com/alerts/security_000731.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1481","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1518","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0683","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:15.643","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"BEA WebLogic 5.1.x allows remote attackers to read source code for parsed pages by inserting /*.shtml/ into the URL, which invokes the SSIServlet."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:*:*:*:*:*:*:*","matchCriteriaId":"CCD5D4AD-0BA3-42F7-852F-524488D74A96"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:*:enterprise:*:*:*:*:*","matchCriteriaId":"AC966FC9-3ED4-4CCD-B1E6-74E8CC7CEBCD"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:*:express:*:*:*:*:*","matchCriteriaId":"A8F69E7A-8BBB-4D20-AEE9-F37155AD5C3F"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp1:express:*:*:*:*:*","matchCriteriaId":"0FAB4F19-EFE0-4860-B9E9-E3938A36AE17"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp10:express:*:*:*:*:*","matchCriteriaId":"16324B74-4143-473D-858F-B5B1899822B3"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp11:express:*:*:*:*:*","matchCriteriaId":"DFA4200B-3877-4FC9-B2AB-E51675CAD71F"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp12:express:*:*:*:*:*","matchCriteriaId":"B1C2B98A-EF68-4569-B50C-8F21D2298435"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp2:express:*:*:*:*:*","matchCriteriaId":"8B0B183B-95A3-463D-B76B-50640F554013"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp3:express:*:*:*:*:*","matchCriteriaId":"36A0EFDA-409E-44F0-9F8B-167A72D2361B"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp4:express:*:*:*:*:*","matchCriteriaId":"51A8AB95-FB23-4A7A-A6F5-EF442EAABD26"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp5:express:*:*:*:*:*","matchCriteriaId":"5F00947F-1804-41D5-8F2B-7E48C77B1306"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp6:express:*:*:*:*:*","matchCriteriaId":"114E5E3E-84B2-4DD3-98FC-2ABFFA41BAD4"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp7:express:*:*:*:*:*","matchCriteriaId":"9B6656CF-65ED-4F8E-B9F2-75A9DC1571D7"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp8:express:*:*:*:*:*","matchCriteriaId":"7C013AE2-4B06-437A-815F-FAADD28CFA85"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp9:express:*:*:*:*:*","matchCriteriaId":"D7306C09-BFBA-4DC0-8EA1-E5A5C0BC080F"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0410.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://developer.bea.com/alerts/security_000728.html","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1480","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1517","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0410.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://developer.bea.com/alerts/security_000728.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1480","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1517","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0684","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:15.797","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"BEA WebLogic 5.1.x does not properly restrict access to the JSPServlet, which could allow remote attackers to compile and execute Java JSP code by directly invoking the servlet on any source file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:3.1.8:*:*:*:*:*:*:*","matchCriteriaId":"742DCC2D-B4AD-4D16-8338-21E258C4FD17"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:4.0.4:*:*:*:*:*:*:*","matchCriteriaId":"6E3A5C91-82C4-40B6-B8F2-C083AEF76723"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:4.5.1:*:*:*:*:*:*:*","matchCriteriaId":"76738B84-33DD-450B-90A2-B22B77D52857"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0434.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://developer.bea.com/alerts/security_000731.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1525","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0434.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://developer.bea.com/alerts/security_000731.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1525","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0685","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:15.920","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"BEA WebLogic 5.1.x does not properly restrict access to the PageCompileServlet, which could allow remote attackers to compile and execute Java JHTML code by directly invoking the servlet on any source file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:3.1.8:*:*:*:*:*:*:*","matchCriteriaId":"742DCC2D-B4AD-4D16-8338-21E258C4FD17"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:4.0.4:*:*:*:*:*:*:*","matchCriteriaId":"6E3A5C91-82C4-40B6-B8F2-C083AEF76723"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:4.5.1:*:*:*:*:*:*:*","matchCriteriaId":"76738B84-33DD-450B-90A2-B22B77D52857"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0434.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://developer.bea.com/alerts/security_000731.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1525","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0434.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://developer.bea.com/alerts/security_000731.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1525","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0686","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:16.047","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Auction Weaver CGI script 1.03 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack in the fromfile parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cgi_script_center:auction_weaver:*:*:*:*:*:*:*:*","versionEndIncluding":"1.02","matchCriteriaId":"E9B28CAE-05E4-48D0-AFBF-5E36D0ACC62C"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0310.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1630","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0310.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1630","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0687","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:16.160","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Auction Weaver CGI script 1.03 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack in the catdir parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cgi_script_center:auction_weaver:*:*:*:*:*:*:*:*","versionEndIncluding":"1.02","matchCriteriaId":"E9B28CAE-05E4-48D0-AFBF-5E36D0ACC62C"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0310.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1630","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0310.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1630","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0688","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:16.277","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Subscribe Me LITE does not properly authenticate attempts to change the administrator password, which allows remote attackers to gain privileges for the Account Manager by directly calling the subscribe.pl script with the setpwd parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cgi_script_center:subscribe_me_lite:2.0:*:*:*:*:*:*:*","matchCriteriaId":"40571E79-263F-41C4-A5E8-AB5EDC66A281"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0292.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=96722957421029&w=2","source":"cve@mitre.org"},{"url":"http://www.cgiscriptcenter.com/subscribe/","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1607","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0292.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=96722957421029&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.cgiscriptcenter.com/subscribe/","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1607","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0689","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:16.410","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Account Manager LITE does not properly authenticate attempts to change the administrator password, which allows remote attackers to gain privileges for the Account Manager by directly calling the amadmin.pl script with the setpasswd parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cgi_script_center:account_manager:lite_1.0:*:*:*:*:*:*:*","matchCriteriaId":"9138B699-ECC9-48AF-9EBA-9CE70D7C0A3F"},{"vulnerable":true,"criteria":"cpe:2.3:a:cgi_script_center:account_manager:pro_1.0:*:*:*:*:*:*:*","matchCriteriaId":"2322740D-1D73-408B-BFE8-BCC7AD0953E1"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0291.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.cgiscriptcenter.com/acctlite/","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/13341","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1604","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5125","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0291.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.cgiscriptcenter.com/acctlite/","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/13341","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1604","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5125","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0690","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:16.543","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Auction Weaver CGI script 1.02 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the fromfile parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cgi_script_center:auction_weaver:1.0:*:*:*:*:*:*:*","matchCriteriaId":"E97D1366-A8E7-42C7-B83A-B4BF58FC3F39"},{"vulnerable":true,"criteria":"cpe:2.3:a:cgi_script_center:auction_weaver:1.02:*:*:*:*:*:*:*","matchCriteriaId":"3A22F425-6EAB-4292-82BC-5B198DDE4E39"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0370.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0452.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0370.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0452.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0691","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:16.667","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The faxrunq and faxrunqd in the mgetty package allows local users to create or modify arbitrary files via a symlink attack which creates a symlink in from /var/spool/fax/outgoing/.last_run to the target file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gert_doering:mgetty:1.1.19:*:*:*:*:*:*:*","matchCriteriaId":"CB9DA80F-5D86-425B-BC06-1FEF1117D628"},{"vulnerable":true,"criteria":"cpe:2.3:a:gert_doering:mgetty:1.1.20:*:*:*:*:*:*:*","matchCriteriaId":"3E24C243-AA86-40A3-9DD3-A87859E25C40"},{"vulnerable":true,"criteria":"cpe:2.3:a:gert_doering:mgetty:1.1.21:*:*:*:*:*:*:*","matchCriteriaId":"C9508A8E-D4C1-4C21-B25F-E8145EC5F75B"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0329.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0330.html","source":"cve@mitre.org"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-029.0.txt","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1612","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0329.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0330.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-029.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1612","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0692","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:16.817","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ISS RealSecure 3.2.1 and 3.2.2 allows remote attackers to cause a denial of service via a flood of fragmented packets with the SYN flag set."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:iss:realsecure:3.2.1:*:*:*:*:*:*:*","matchCriteriaId":"CD0B7FE2-93BD-483D-9392-97858585B0DD"},{"vulnerable":true,"criteria":"cpe:2.3:a:iss:realsecure:3.2.2:*:*:*:*:*:*:*","matchCriteriaId":"A1BA78A3-0F0F-4082-938C-EF2265F1CD22"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0267.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1597","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0267.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1597","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0693","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:16.943","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"pgxconfig in the Raptor GFX configuration tool uses a relative path name for a system call to the \"cp\" program, which allows local users to execute arbitrary commands by modifying their path to point to an alternate \"cp\" program."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:tech-source:raptor_gfx_pgx32:2.3.1:*:*:*:*:*:*:*","matchCriteriaId":"10ADF855-F422-471E-B5B6-3E217C855D20"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0463.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.osvdb.org/1501","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1563","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0463.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.osvdb.org/1501","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1563","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0694","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:17.067","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"pgxconfig in the Raptor GFX configuration tool allows local users to gain privileges via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:tech-source:raptor_gfx_pgx32:2.3.1:*:*:*:*:*:*:*","matchCriteriaId":"10ADF855-F422-471E-B5B6-3E217C855D20"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0463.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.osvdb.org/5740","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0463.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.osvdb.org/5740","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0695","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:17.183","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflows in pgxconfig in the Raptor GFX configuration tool allow local users to gain privileges via command line options."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:tech-source:raptor_gfx_pgx32:2.3.1:*:*:*:*:*:*:*","matchCriteriaId":"10ADF855-F422-471E-B5B6-3E217C855D20"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0463.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0463.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0696","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:17.310","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The administration interface for the dwhttpd web server in Solaris AnswerBook2 does not properly authenticate requests to its supporting CGI scripts, which allows remote attackers to add user accounts to the interface by directly calling the admin CGI script."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sun:solaris_answerbook2:1.3:*:*:*:*:*:*:*","matchCriteriaId":"A70C7D11-5DEA-473C-AB5A-C3676EAAE668"},{"vulnerable":true,"criteria":"cpe:2.3:a:sun:solaris_answerbook2:1.4:*:*:*:*:*:*:*","matchCriteriaId":"09366485-E68C-4E5B-8C76-FD6D8CD48B67"},{"vulnerable":true,"criteria":"cpe:2.3:a:sun:solaris_answerbook2:1.4.1:*:*:*:*:*:*:*","matchCriteriaId":"1E03C0EB-3336-4CF9-8088-CD90E768B1A7"},{"vulnerable":true,"criteria":"cpe:2.3:a:sun:solaris_answerbook2:1.4.2:*:*:*:*:*:*:*","matchCriteriaId":"3D613BAC-1341-4B6D-971A-9CB9FE4342EF"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/sun/2000-q3/0001.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://seclists.org/bugtraq/2000/Aug/0105.html","source":"cve@mitre.org"},{"url":"http://www.s21sec.com/en/avisos/s21sec-004-en.txt","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1554","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5069","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/sun/2000-q3/0001.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://seclists.org/bugtraq/2000/Aug/0105.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.s21sec.com/en/avisos/s21sec-004-en.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1554","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5069","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0697","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:17.447","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The administration interface for the dwhttpd web server in Solaris AnswerBook2 allows interface users to remotely execute commands via shell metacharacters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sun:solaris_answerbook2:1.3:*:*:*:*:*:*:*","matchCriteriaId":"A70C7D11-5DEA-473C-AB5A-C3676EAAE668"},{"vulnerable":true,"criteria":"cpe:2.3:a:sun:solaris_answerbook2:1.4:*:*:*:*:*:*:*","matchCriteriaId":"09366485-E68C-4E5B-8C76-FD6D8CD48B67"},{"vulnerable":true,"criteria":"cpe:2.3:a:sun:solaris_answerbook2:1.4.1:*:*:*:*:*:*:*","matchCriteriaId":"1E03C0EB-3336-4CF9-8088-CD90E768B1A7"},{"vulnerable":true,"criteria":"cpe:2.3:a:sun:solaris_answerbook2:1.4.2:*:*:*:*:*:*:*","matchCriteriaId":"3D613BAC-1341-4B6D-971A-9CB9FE4342EF"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/sun/2000-q3/0001.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://seclists.org/bugtraq/2000/Aug/0105.html","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/5058.php","source":"cve@mitre.org"},{"url":"http://www.s21sec.com/en/avisos/s21sec-004-en.txt","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1556","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/sun/2000-q3/0001.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://seclists.org/bugtraq/2000/Aug/0105.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.iss.net/security_center/static/5058.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.s21sec.com/en/avisos/s21sec-004-en.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1556","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0698","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:17.570","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Minicom 1.82.1 and earlier on some Linux systems allows local users to create arbitrary files owned by the uucp user via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:minicom:minicom:1.82.0:*:*:*:*:*:*:*","matchCriteriaId":"446014BF-F292-4939-A21D-9C8D0C9B078C"},{"vulnerable":true,"criteria":"cpe:2.3:a:minicom:minicom:1.82.1:*:*:*:*:*:*:*","matchCriteriaId":"7B3AA40E-A4C2-4588-945E-FD7713B4E215"},{"vulnerable":true,"criteria":"cpe:2.3:a:minicom:minicom:1.83.0:*:*:*:*:*:*:*","matchCriteriaId":"5E362D61-1BA2-458C-BE54-67D96BA90062"},{"vulnerable":true,"criteria":"cpe:2.3:a:minicom:minicom:1.83.1:*:*:*:*:*:*:*","matchCriteriaId":"128737AC-4AB8-4132-BF18-7456C99931B6"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/77361","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1599","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5151","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/77361","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1599","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5151","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0699","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:17.697","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Format string vulnerability in ftpd in HP-UX 10.20 allows remote attackers to cause a denial of service or execute arbitrary commands via format strings in the PASS command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.20:*:*:*:*:*:*:*","matchCriteriaId":"EDE44C49-172C-4899-8CC8-29AA99A7CD2F"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:11.00:*:*:*:*:*:*:*","matchCriteriaId":"771931F7-9180-4EBD-8627-E1CF17D24647"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0028.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1560","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0028.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1560","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0700","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:17.820","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Cisco Gigabit Switch Routers (GSR) with Fast Ethernet / Gigabit Ethernet cards, from IOS versions 11.2(15)GS1A up to 11.2(19)GS0.2 and some versions of 12.0, do not properly handle line card failures, which allows remote attackers to bypass ACLs or force the interface to stop forwarding packets."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.2:*:*:*:*:*:*:*","matchCriteriaId":"E8026B11-6144-467F-8094-F4F73CD37526"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.2\\(8\\):*:*:*:*:*:*:*","matchCriteriaId":"82BFEABB-6E90-4A24-BBE3-2BDB524028A0"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.2\\(10\\):*:*:*:*:*:*:*","matchCriteriaId":"9B784C9F-79EE-4D08-9D03-985EC7E378FE"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.2p:*:*:*:*:*:*:*","matchCriteriaId":"0DC1411B-4E7E-4F57-B025-9FE27B09C7AC"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.3:*:*:*:*:*:*:*","matchCriteriaId":"33CCFFC6-9D26-4C39-AF76-0B8FCDE743CF"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.3\\(1\\):*:*:*:*:*:*:*","matchCriteriaId":"2A6F8329-15C7-4FED-A61D-5AF4F3A33976"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0:*:*:*:*:*:*:*","matchCriteriaId":"8F86F790-6247-42F2-9487-3D60A2842F52"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(1\\):*:*:*:*:*:*:*","matchCriteriaId":"5CFBBDA3-8A5E-407D-8608-45C1BD56BF58"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(2\\):*:*:*:*:*:*:*","matchCriteriaId":"77DDC99D-8B73-452C-94A7-A9A48F2F379B"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(3\\):*:*:*:*:*:*:*","matchCriteriaId":"FF2207E5-7458-40C5-AEF4-73B271EAB3C4"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(4\\):*:*:*:*:*:*:*","matchCriteriaId":"1A0D82E1-CCF7-429B-A637-479E839EAE3C"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(5\\):*:*:*:*:*:*:*","matchCriteriaId":"D5BB7513-C232-4B4F-BE68-972B05086ABD"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(6\\):*:*:*:*:*:*:*","matchCriteriaId":"ECCE69A3-41C6-4893-86D4-7F264352C8A9"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0\\(7\\)t:*:*:*:*:*:*:*","matchCriteriaId":"FA654CE6-82C3-43D0-BAED-70E88A740BF1"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.1:*:*:*:*:*:*:*","matchCriteriaId":"1F2F9EC5-EDA2-4C99-BBF1-2F2C92AACE95"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:gigabit_switch_router_12008:*:*:*:*:*:*:*:*","matchCriteriaId":"935E7463-DE83-4743-B51C-A8DB8433E371"},{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:gigabit_switch_router_12012:*:*:*:*:*:*:*:*","matchCriteriaId":"8FBF1961-42C5-4570-87A4-C0B962CA5DEF"},{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:gigabit_switch_router_12016:*:*:*:*:*:*:*:*","matchCriteriaId":"E75CA58A-9E97-462D-A745-B6927A350015"}]}]}],"references":[{"url":"http://www.cisco.com/warp/public/707/gsraclbypassdos-pub.shtml","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/793","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/798","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1541","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.cisco.com/warp/public/707/gsraclbypassdos-pub.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/793","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/798","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1541","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0701","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:17.943","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The wrapper program in mailman 2.0beta3 and 2.0beta4 does not properly cleanse untrusted format strings, which allows local users to gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:mailman:2.0:beta3:*:*:*:*:*:*","matchCriteriaId":"EC6B30F6-70A8-43C7-BA5C-6DD8A6ED829D"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:mailman:2.0:beta4:*:*:*:*:*:*","matchCriteriaId":"767101D3-ABB0-4D34-AA28-75F78A392F39"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:4.1:*:*:*:*:*:*:*","matchCriteriaId":"FFDAB801-AAA0-4B3B-B488-52E7BA8650C5"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:4.2:*:*:*:*:*:*:*","matchCriteriaId":"612AC3B1-8E55-437F-9600-67EA1A8BAD48"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:5.0:*:*:*:*:*:*:*","matchCriteriaId":"537A5C29-D770-4755-A6AB-8916754E14DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:5.1:*:*:*:*:*:*:*","matchCriteriaId":"E3AC05A9-04DA-4ED3-94D8-3254384CB724"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:*:*:*:*:*:*:*:*","matchCriteriaId":"B133DAC8-2B0D-4F83-9025-AD071740187A"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0474.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0479.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-030.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/73220","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1539","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000802105050.A11733%40rak.isternet.sk","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0474.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0479.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-030.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/73220","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1539","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000802105050.A11733%40rak.isternet.sk","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0702","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:18.083","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The net.init rc script in HP-UX 11.00 (S008net.init) allows local users to overwrite arbitrary files via a symlink attack that points from /tmp/stcp.conf to the targeted file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:11.00:*:*:*:*:*:*:*","matchCriteriaId":"771931F7-9180-4EBD-8627-E1CF17D24647"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0261.html","source":"cve@mitre.org","tags":["Exploit"]},{"url":"http://www.securityfocus.com/bid/1602","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5131","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0261.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]},{"url":"http://www.securityfocus.com/bid/1602","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5131","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0703","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:18.217","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"suidperl (aka sperl) does not properly cleanse the escape sequence \"~!\" before calling /bin/mail to send an error report, which allows local users to gain privileges by setting the \"interactive\" environmental variable and calling suidperl with a filename that contains the escape sequence."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:larry_wall:perl:5.4.5:*:*:*:*:*:*:*","matchCriteriaId":"C7EF5BB8-FFEA-4927-A289-3C9A7ADEC6BB"},{"vulnerable":true,"criteria":"cpe:2.3:a:larry_wall:perl:5.5:*:*:*:*:*:*:*","matchCriteriaId":"AB034FE1-9575-45B4-9E8F-1B068E3ED1CC"},{"vulnerable":true,"criteria":"cpe:2.3:a:larry_wall:perl:5.5.3:*:*:*:*:*:*:*","matchCriteriaId":"D6D7F3D2-FE93-4F2F-B8FB-F2A7869502FF"},{"vulnerable":true,"criteria":"cpe:2.3:a:larry_wall:perl:5.6:*:*:*:*:*:*:*","matchCriteriaId":"EA6112C9-0E67-47D3-94A7-0D0254ECF27F"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0022.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0086.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0113.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0153.html","source":"cve@mitre.org"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-026.0.txt","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_59.html","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-048.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1547","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.turbolinux.com/pipermail/tl-security-announce/2000-August/000017.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0022.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0086.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0113.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0153.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-026.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_59.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-048.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1547","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.turbolinux.com/pipermail/tl-security-announce/2000-August/000017.html","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0704","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:18.367","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in SGI Omron WorldView Wnn allows remote attackers to execute arbitrary commands via long JS_OPEN, JS_MKDIR, or JS_FILE_INFO commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:freewnn:freewnn:1.0:*:*:*:*:*:*:*","matchCriteriaId":"F70C9AEB-A7EC-437B-A8E6-8F51837C1C16"},{"vulnerable":true,"criteria":"cpe:2.3:a:freewnn:freewnn:1.1:*:*:*:*:*:*:*","matchCriteriaId":"8EEEDC3E-18E9-4E4D-A6B9-E6128DA8D21B"},{"vulnerable":true,"criteria":"cpe:2.3:a:freewnn:freewnn:1.1.1_axxx:*:*:*:*:*:*:*","matchCriteriaId":"160AC5B9-9953-4D42-9B1E-861684212BD7"},{"vulnerable":true,"criteria":"cpe:2.3:a:omron:worldview:6.5:*:*:*:*:*:*:*","matchCriteriaId":"E09A2D35-994C-4C62-8010-8340CE958128"},{"vulnerable":true,"criteria":"cpe:2.3:a:wnn:wnn4:4.2.2tl:*:*:*:*:*:*:*","matchCriteriaId":"EBDB0ACB-6D53-471E-AABD-99451747ACD2"},{"vulnerable":true,"criteria":"cpe:2.3:a:wnn:wnn4:4.2.5tl:*:*:*:*:*:*:*","matchCriteriaId":"BC53AB3A-7442-47DE-AAF6-16C1998746D2"},{"vulnerable":true,"criteria":"cpe:2.3:a:wnn:wnn4:4.2.8:*:*:*:*:*:*:*","matchCriteriaId":"D3D3BC05-E25A-47AE-93D2-AF695FD91266"}]}]}],"references":[{"url":"ftp://sgigate.sgi.com/security/20000803-01-A","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/11080","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1603","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5163","source":"cve@mitre.org"},{"url":"ftp://sgigate.sgi.com/security/20000803-01-A","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/11080","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1603","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5163","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0705","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:18.493","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ntop running in web mode allows remote attackers to read arbitrary files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:luca_deri:ntop:1.2a7_9:*:*:*:*:*:*:*","matchCriteriaId":"79299128-535E-4376-937F-28019654E77E"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0459.html","source":"cve@mitre.org","tags":["Exploit"]},{"url":"http://www.osvdb.org/1496","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-049.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1550","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0459.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]},{"url":"http://www.osvdb.org/1496","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-049.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1550","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0706","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:18.627","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflows in ntop running in web mode allows remote attackers to execute arbitrary commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:luca_deri:ntop:1.2a7_9:*:*:*:*:*:*:*","matchCriteriaId":"79299128-535E-4376-937F-28019654E77E"},{"vulnerable":true,"criteria":"cpe:2.3:a:luca_deri:ntop:1.3.1:*:*:*:*:*:*:*","matchCriteriaId":"AA98ACBB-664A-452D-818C-2E59593F390B"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:36.ntop.asc","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/2000/20000830","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.osvdb.org/1513","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1576","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:36.ntop.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.debian.org/security/2000/20000830","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.osvdb.org/1513","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1576","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0707","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:18.757","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"PCCS MySQLDatabase Admin Tool Manager 1.2.4 and earlier installs the file dbconnect.inc within the web root, which allows remote attackers to obtain sensitive information such as the administrative password."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:pccs-linux:mysqldatabase_admin_tool:1.2.3:*:*:*:*:*:*:*","matchCriteriaId":"EC4ADEBB-E37B-4572-9F0C-156BF9B0AEEE"},{"vulnerable":true,"criteria":"cpe:2.3:a:pccs-linux:mysqldatabase_admin_tool:1.2.4:*:*:*:*:*:*:*","matchCriteriaId":"FE096BF7-B9EE-4BB9-BEAA-0EC02665EAFA"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0015.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://pccs-linux.com/public/view.php3?bn=agora_pccslinux&key=965951324","source":"cve@mitre.org","tags":["URL Repurposed"]},{"url":"http://www.securityfocus.com/bid/1557","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0015.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://pccs-linux.com/public/view.php3?bn=agora_pccslinux&key=965951324","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["URL Repurposed"]},{"url":"http://www.securityfocus.com/bid/1557","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0708","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:18.880","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Pragma Systems TelnetServer 2000 version 4.0 allows remote attackers to cause a denial of service via a long series of null characters to the rexec port."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:pragma_systems:telnetserver:2000:*:*:*:*:*:*:*","matchCriteriaId":"5CED3EFE-3DFD-4C17-9F67-8FDE91A51845"}]}]}],"references":[{"url":"http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind0008&L=NTBUGTRAQ&P=R4247","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.pragmasys.com/TelnetServer/","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1605","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind0008&L=NTBUGTRAQ&P=R4247","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.pragmasys.com/TelnetServer/","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1605","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0709","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:19.003","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The shtml.exe component of Microsoft FrontPage 2000 Server Extensions 1.1 allows remote attackers to cause a denial of service in some components by requesting a URL whose name includes a standard DOS device name."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:frontpage:*:*:*:*:*:*:*:*","matchCriteriaId":"0951E183-2BFE-4B19-9F06-107B5E22DBC5"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0288.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://msdn.microsoft.com/workshop/languages/fp/2000/sr12.asp","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1608","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0288.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://msdn.microsoft.com/workshop/languages/fp/2000/sr12.asp","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1608","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0710","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:19.130","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The shtml.exe component of Microsoft FrontPage 2000 Server Extensions 1.1 allows remote attackers to determine the physical path of the server components by requesting an invalid URL whose name includes a standard DOS device name."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:frontpage:*:*:*:*:*:*:*:*","matchCriteriaId":"0951E183-2BFE-4B19-9F06-107B5E22DBC5"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0288.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://msdn.microsoft.com/workshop/languages/fp/2000/sr12.asp","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1608","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0288.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://msdn.microsoft.com/workshop/languages/fp/2000/sr12.asp","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1608","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0711","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:19.250","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Netscape Communicator does not properly prevent a ServerSocket object from being created by untrusted entities, which allows remote attackers to create a server on the victim's system via a malicious applet, as demonstrated by Brown Orifice."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:virtual_machine:2000:*:*:*:*:*:*:*","matchCriteriaId":"A299BA2B-FD34-4FD5-8A4B-EA99DA9BA3EE"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:virtual_machine:3100:*:*:*:*:*:*:*","matchCriteriaId":"CB67AEF8-DD02-4F20-B920-AC0B26D47C98"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:virtual_machine:3200:*:*:*:*:*:*:*","matchCriteriaId":"D133B730-EEDA-46E7-8CC4-4D0104D65C11"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:virtual_machine:3300:*:*:*:*:*:*:*","matchCriteriaId":"962D0B64-8EEE-4589-84B3-D504906AEEC2"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.0:*:*:*:*:*:*:*","matchCriteriaId":"209C7BB1-EFDF-43AB-9FB6-DF67465DEAEF"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.04:*:*:*:*:*:*:*","matchCriteriaId":"94F9EFE4-7853-4809-8D94-03B3EFD739E5"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.05:*:*:*:*:*:*:*","matchCriteriaId":"494AFC1E-67A3-41CA-B920-B8F778B68A99"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.5:*:*:*:*:*:*:*","matchCriteriaId":"4E9A5461-B0F2-49DB-A69C-3D2D27709647"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.06:*:*:*:*:*:*:*","matchCriteriaId":"34F6328B-44A8-4E45-918E-C54285040BFE"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.6:*:*:*:*:*:*:*","matchCriteriaId":"529E3F71-6016-461D-A162-0DBDD5505389"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.07:*:*:*:*:*:*:*","matchCriteriaId":"31D02C4D-3FD1-425F-B0DB-7808089BCD0B"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.7:*:*:*:*:*:*:*","matchCriteriaId":"38FD74F5-12ED-4049-B06F-0F22A0254C0F"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.08:*:*:*:*:*:*:*","matchCriteriaId":"61268CF9-E279-4F63-B228-F9ED4B93BB99"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.51:*:*:*:*:*:*:*","matchCriteriaId":"918BE44C-8D64-4040-BC74-802AA3FA4E10"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.61:*:*:*:*:*:*:*","matchCriteriaId":"6AA534C4-9411-44EC-AA34-2287C79AD235"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.72:*:*:*:*:*:*:*","matchCriteriaId":"3A4E8588-A941-4759-B41C-00F193F2C63B"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.73:*:*:*:*:*:*:*","matchCriteriaId":"3E48C051-EB45-4262-86C2-2333FD5C7745"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:4.74:*:*:*:*:*:*:*","matchCriteriaId":"BA48AF1E-99EF-419C-B425-001C7134C6BB"}]}]}],"references":[{"url":"http://www.cert.org/advisories/CA-2000-15.html","source":"cve@mitre.org","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.securityfocus.com/bid/1545","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000805020429.11774.qmail%40securityfocus.com","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=3999922128E.EE84TAKAGI%40java-house.etl.go.jp","source":"cve@mitre.org"},{"url":"http://www.cert.org/advisories/CA-2000-15.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.securityfocus.com/bid/1545","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000805020429.11774.qmail%40securityfocus.com","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=3999922128E.EE84TAKAGI%40java-house.etl.go.jp","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0712","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:19.387","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Linux Intrusion Detection System (LIDS) 0.9.7 allows local users to gain root privileges when LIDS is disabled via the security=0 boot option."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:lids:lids:0.9.7:*:*:*:*:*:*:*","matchCriteriaId":"4B60F7A3-13ED-4B0C-B5FD-4C99C2284198"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0486.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.egroups.com/message/lids/1038","source":"cve@mitre.org"},{"url":"http://www.lids.org/changelog.html","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1495","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1549","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0486.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.egroups.com/message/lids/1038","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.lids.org/changelog.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1495","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1549","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0713","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:19.503","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Adobe Acrobat 4.05, Reader, Business Tools, and Fill In products that handle PDF files allows attackers to execute arbitrary commands via a long /Registry or /Ordering specifier."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:C/I:C/A:C","baseScore":7.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":4.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:adobe:acrobat:3.0:*:*:*:*:*:*:*","matchCriteriaId":"465F9134-DD86-4F13-8C39-949BE6E7389A"},{"vulnerable":true,"criteria":"cpe:2.3:a:adobe:acrobat:4.0:*:*:*:*:*:*:*","matchCriteriaId":"4C05F6A5-0FB3-489B-9B8B-64C569C03D7A"},{"vulnerable":true,"criteria":"cpe:2.3:a:adobe:acrobat:4.0.5:*:*:*:*:*:*:*","matchCriteriaId":"AABA4FE3-662B-4956-904D-45086E000890"},{"vulnerable":true,"criteria":"cpe:2.3:a:adobe:acrobat_business_tools:4.0:*:*:*:*:*:*:*","matchCriteriaId":"36194C6A-7CA0-4AFF-A4E8-5B1A716F59F8"},{"vulnerable":true,"criteria":"cpe:2.3:a:adobe:acrobat_business_tools:4.05:*:*:*:*:*:*:*","matchCriteriaId":"13A1E8E4-FDF2-4972-9F29-64BDCA141178"},{"vulnerable":true,"criteria":"cpe:2.3:a:adobe:acrobat_reader:3.0:*:*:*:*:*:*:*","matchCriteriaId":"B1C92642-7C8D-411A-8726-06A8A6483D65"},{"vulnerable":true,"criteria":"cpe:2.3:a:adobe:acrobat_reader:4.0:*:*:*:*:*:*:*","matchCriteriaId":"F509566A-6D4A-40C0-8A16-F8765C5DCAAF"},{"vulnerable":true,"criteria":"cpe:2.3:a:adobe:acrobat_reader:4.0.5:*:*:*:*:*:*:*","matchCriteriaId":"707D7124-6063-4510-80B4-AD9675996F67"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0382.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.adobe.com/misc/pdfsecurity.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1509","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0382.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.adobe.com/misc/pdfsecurity.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1509","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0714","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:19.637","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"umb-scheme 3.2-11 for Red Hat Linux is installed with world-writeable files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:university_of_massachusetts:scheme:3.2.11:*:*:*:*:*:*:*","matchCriteriaId":"EAB6C95E-E1F1-4DAC-A452-C770E7CDAAB6"}]}]}],"references":[{"url":"http://www.redhat.com/support/errata/RHSA-2000-047.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1551","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-047.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1551","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0715","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:19.767","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"DiskCheck script diskcheck.pl in Red Hat Linux 6.2 allows local users to create or overwrite arbitrary files via a symlink attack on a temporary file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-59"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:kirk_bauer:diskcheck:3.1.1:*:*:*:*:*:*:*","matchCriteriaId":"B7D94EC1-0630-41DE-A6C9-D55480519BD4"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:5.0:*:*:*:*:*:*:*","matchCriteriaId":"537A5C29-D770-4755-A6AB-8916754E14DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:5.1:*:*:*:*:*:*:*","matchCriteriaId":"E3AC05A9-04DA-4ED3-94D8-3254384CB724"}]}]}],"references":[{"url":"http://seclists.org/bugtraq/2000/Aug/0082.html","source":"cve@mitre.org"},{"url":"http://seclists.org/bugtraq/2000/Aug/0096.html","source":"cve@mitre.org"},{"url":"http://seclists.org/bugtraq/2000/Jun/0298.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1552","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://seclists.org/bugtraq/2000/Aug/0082.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://seclists.org/bugtraq/2000/Aug/0096.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://seclists.org/bugtraq/2000/Jun/0298.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1552","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0716","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:19.890","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WorldClient email client in MDaemon 2.8 includes the session ID in the referer field of an HTTP request when the user clicks on a URL, which allows the visited web site to hijack the session ID and read the user's email."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:N/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:alt-n:mdaemon:2.8:*:*:*:*:*:*:*","matchCriteriaId":"63BE92A3-5320-4E68-89F7-BF977E602FB5"}]}]}],"references":[{"url":"http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind0008&L=ntbugtraq&F=&S=&P=459","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1553","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5070","source":"cve@mitre.org"},{"url":"http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind0008&L=ntbugtraq&F=&S=&P=459","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1553","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5070","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0717","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:20.007","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"GoodTech FTP server allows remote attackers to cause a denial of service via a large number of RNTO commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:goodtech:ftp_server_95_98:3.0:*:*:*:*:*:*:*","matchCriteriaId":"9BBC9344-4655-4231-94E5-AC41D7E30BBD"},{"vulnerable":true,"criteria":"cpe:2.3:a:goodtech:ftp_server_95_98:3.0.1:*:*:*:*:*:*:*","matchCriteriaId":"24DFAA5A-749D-41A1-A7A2-8DAB6C3912EB"},{"vulnerable":true,"criteria":"cpe:2.3:a:goodtech:ftp_server_nt_2000:3.0:*:*:*:*:*:*:*","matchCriteriaId":"B559198F-F002-4322-BC0E-6A6AA69FB11D"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1619","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=02ff01c0124c%24e9387660%240201a8c0%40aviram","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5166","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1619","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=02ff01c0124c%24e9387660%240201a8c0%40aviram","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5166","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0718","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:20.137","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A race condition in MandrakeUpdate allows local users to modify RPM files while they are in the /tmp directory before they are installed."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:N/I:P/A:N","baseScore":1.2,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":1.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"D323A6B7-2741-4F31-B0D6-5D6FB738A2A1"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"ACAAD334-2CA7-4B3B-BA25-302E7610BC2A"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"E4853E92-5E0A-47B9-A343-D5BEE87D2C27"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:7.1:*:*:*:*:*:*:*","matchCriteriaId":"3EC1FF5D-5EAB-44D5-B281-770547C70D68"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0146.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1567","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0146.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1567","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0719","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:20.260","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"VariCAD 7.0 is installed with world-writeable files, which allows local users to replace the VariCAD programs with a Trojan horse program."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:C/I:C/A:C","baseScore":6.2,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"MEDIUM","exploitabilityScore":1.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:varicad:varicad:7.0:*:*:*:*:*:*:*","matchCriteriaId":"CD92E9C9-86AB-4692-895E-8DFE9DD8E99C"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0126.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0126.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0720","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:20.387","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"news.cgi in GWScripts News Publisher does not properly authenticate requests to add an author to the author index, which allows remote attackers to add new authors by directly posting an HTTP request to the new.cgi program with an addAuthor parameter, and setting the Referer to the news.cgi program."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gwscripts:gwscripts_news_publisher:1.05:*:*:*:*:*:*:*","matchCriteriaId":"2DF581D7-7607-43EA-A267-5F8B3785FFF3"},{"vulnerable":true,"criteria":"cpe:2.3:a:gwscripts:gwscripts_news_publisher:1.05a:*:*:*:*:*:*:*","matchCriteriaId":"11FA1E31-1E21-414A-93F3-DB139DD8C9E2"},{"vulnerable":true,"criteria":"cpe:2.3:a:gwscripts:gwscripts_news_publisher:1.05b:*:*:*:*:*:*:*","matchCriteriaId":"D99B8B94-4BDD-4E63-8133-E9F4FC8C62BD"},{"vulnerable":true,"criteria":"cpe:2.3:a:gwscripts:gwscripts_news_publisher:1.06:*:*:*:*:*:*:*","matchCriteriaId":"756FAAEC-D6C7-4390-BC94-2BC554B19C15"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1621","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=003301c0123b%2418f8c1a0%24953b29d4%40e8s9s4","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5169","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1621","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=003301c0123b%2418f8c1a0%24953b29d4%40e8s9s4","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5169","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0721","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:20.517","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The FSserial, FlagShip_c, and FlagShip_p programs in the FlagShip package are installed world-writeable, which allows local users to replace them with Trojan horses."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:C/I:C/A:C","baseScore":6.2,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"MEDIUM","exploitabilityScore":1.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:multisoft:flagship:4.4:*:*:*:*:*:*:*","matchCriteriaId":"1392F771-F12E-4873-B7DC-3DD1D8D97F9B"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0114.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1586","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0114.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1586","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0722","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:20.643","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Helix GNOME Updater helix-update 0.5 and earlier allows local users to install arbitrary RPM packages by creating the /tmp/helix-install installation directory before root has begun installing packages."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:C/I:C/A:C","baseScore":6.2,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"MEDIUM","exploitabilityScore":1.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:helix_code:gnome_updater:0.1:*:*:*:*:*:*:*","matchCriteriaId":"2A671C7C-4645-42A2-BCB2-24889376733A"},{"vulnerable":true,"criteria":"cpe:2.3:a:helix_code:gnome_updater:0.2:*:*:*:*:*:*:*","matchCriteriaId":"3A0F6CDB-69CA-43C8-9F40-06449CCD5E9E"},{"vulnerable":true,"criteria":"cpe:2.3:a:helix_code:gnome_updater:0.3:*:*:*:*:*:*:*","matchCriteriaId":"527BBC9A-C2B9-40A0-8172-36DF4D1A698D"},{"vulnerable":true,"criteria":"cpe:2.3:a:helix_code:gnome_updater:0.4:*:*:*:*:*:*:*","matchCriteriaId":"8A55263F-7D90-448A-BCC0-AA3593262310"},{"vulnerable":true,"criteria":"cpe:2.3:a:helix_code:gnome_updater:0.5:*:*:*:*:*:*:*","matchCriteriaId":"1FCEF096-31AA-4038-AF34-9B580E2C2135"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0240.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0251.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1593","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=E13QAYl-0007il-00%40the-village.bc.nu","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0240.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0251.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1593","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=E13QAYl-0007il-00%40the-village.bc.nu","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0723","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:20.770","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Helix GNOME Updater helix-update 0.5 and earlier does not properly create /tmp directories, which allows local users to create empty system configuration files such as /etc/config.d/bashrc, /etc/config.d/csh.cshrc, and /etc/rc.config."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:N/I:N/A:P","baseScore":1.2,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":1.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:helix_code:gnome_installer:0.2:*:*:*:*:*:*:*","matchCriteriaId":"16525724-A6BF-4DA6-A4CF-CFDE674E11D6"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0251.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1596","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=E13QAYl-0007il-00%40the-village.bc.nu","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0251.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1596","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=E13QAYl-0007il-00%40the-village.bc.nu","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0724","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:20.903","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The go-gnome Helix GNOME pre-installer allows local users to overwrite arbitrary files via a symlink attack on various files in /tmp, including uudecode, snarf, and some installer files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:C/I:C/A:C","baseScore":6.2,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"MEDIUM","exploitabilityScore":1.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:helix_code:go-gnome_pre-installer:1.5:*:*:*:*:*:*:*","matchCriteriaId":"584CAC57-D4D6-4A00-BFFC-FE292CBFBB94"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0351.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0356.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1622","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0351.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0356.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1622","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0725","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:21.033","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Zope before 2.2.1 does not properly restrict access to the getRoles method, which allows users who can edit DTML to add or modify roles by modifying the roles list that is included in a request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:zope:zope:1.10.3:*:*:*:*:*:*:*","matchCriteriaId":"46B2B101-676C-4EF3-90FB-7B5D36D1ADF0"},{"vulnerable":true,"criteria":"cpe:2.3:a:zope:zope:2.1.1:*:*:*:*:*:*:*","matchCriteriaId":"6C49596F-E215-4B70-8397-3C247F509D43"},{"vulnerable":true,"criteria":"cpe:2.3:a:zope:zope:2.1.7:*:*:*:*:*:*:*","matchCriteriaId":"23673C10-0D61-4835-A37C-9AAA00F1DA30"},{"vulnerable":true,"criteria":"cpe:2.3:a:zope:zope:2.2_beta1:*:*:*:*:*:*:*","matchCriteriaId":"33CAC1ED-C055-4526-AE2A-E758C8960466"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0198.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0259.html","source":"cve@mitre.org","tags":["Patch"]},{"url":"http://www.debian.org/security/2000/20000821","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-052.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1577","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.zope.org/Products/Zope/Hotfix_08_09_2000/security_alert","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0198.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0259.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"http://www.debian.org/security/2000/20000821","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-052.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1577","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.zope.org/Products/Zope/Hotfix_08_09_2000/security_alert","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0726","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:21.180","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"CGIMail.exe CGI program in Stalkerlab Mailers 1.1.2 allows remote attackers to read arbitrary files by specifying the file in the $Attach$ hidden form variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:N/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:stalkerlab:mailers:1.1.2:*:*:*:*:*:*:*","matchCriteriaId":"F3A1CB18-39D9-46DA-827A-207C5FFF45F5"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1623","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000829194618.H7744%40thathost.com","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5165","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1623","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000829194618.H7744%40thathost.com","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5165","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0727","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:21.320","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"xpdf PDF viewer client earlier than 0.91 does not properly launch a web browser for embedded URL's, which allows an attacker to execute arbitrary commands via a URL that contains shell metacharacters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:C/I:C/A:C","baseScore":7.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":4.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:xpdf:xpdf:0.90:*:*:*:*:*:*:*","matchCriteriaId":"28CC6233-E207-40CC-81FF-A8670EEA4295"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=96766355023239&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=96886599829687&w=2","source":"cve@mitre.org"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-031.0.txt","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.debian.org/security/2000/20000910a","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-060.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1624","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=96766355023239&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=96886599829687&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-031.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.debian.org/security/2000/20000910a","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-060.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1624","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0728","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:21.473","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"xpdf PDF viewer client earlier than 0.91 allows local users to overwrite arbitrary files via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:xpdf:xpdf:0.90:*:*:*:*:*:*:*","matchCriteriaId":"28CC6233-E207-40CC-81FF-A8670EEA4295"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=96766355023239&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=96886599829687&w=2","source":"cve@mitre.org"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-031.0.txt","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-060.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1624","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=96766355023239&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=96886599829687&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-031.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-060.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1624","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0729","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:21.603","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"FreeBSD 5.x, 4.x, and 3.x allows local users to cause a denial of service by executing a program with a malformed ELF image header."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.0:*:*:*:*:*:*:*","matchCriteriaId":"EE38C50A-81FE-412E-9717-3672FAE6A6F4"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.1:*:*:*:*:*:*:*","matchCriteriaId":"263F3734-7076-4EA8-B4C0-F37CFC4E979E"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.2:*:*:*:*:*:*:*","matchCriteriaId":"0419DD66-FF66-48BC-AD3B-F6AFD0551E36"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.3:*:*:*:*:*:*:*","matchCriteriaId":"C3518628-08E5-4AD7-AAF6-A4E38F1CDE2C"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.4:*:*:*:*:*:*:*","matchCriteriaId":"B982342C-1981-4C55-8044-AFE4D87623DF"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.5:*:*:*:*:*:*:*","matchCriteriaId":"47E02BE6-4800-4940-B269-385B66AC5077"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.0:*:*:*:*:*:*:*","matchCriteriaId":"D0A585A1-FF82-418F-90F8-072458DB7816"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.0:alpha:*:*:*:*:*:*","matchCriteriaId":"E3F7EB61-55A5-4776-B0E7-3508920A6CEA"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.1:*:*:*:*:*:*:*","matchCriteriaId":"AE31DFF8-06AB-489D-A0C5-509C090283B5"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:5.0:*:*:*:*:*:*:*","matchCriteriaId":"61EBA52A-2D8B-4FB5-866E-AE67CE1842E7"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:5.0:alpha:*:*:*:*:*:*","matchCriteriaId":"3B13D898-C1B6-44B9-8432-7DDB8A380E9E"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/freebsd/2000-08/0337.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1534","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1625","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5967","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/freebsd/2000-08/0337.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1534","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1625","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5967","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0730","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:21.747","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in newgrp command in HP-UX 11.0 allows local users to gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:11.00:*:*:*:*:*:*:*","matchCriteriaId":"771931F7-9180-4EBD-8627-E1CF17D24647"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0144.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1580","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0144.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1580","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0731","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:21.880","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in Worm HTTP server allows remote attackers to read arbitrary files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:jeremy_arnold:worm_webserver:1.0:*:*:*:*:*:*:*","matchCriteriaId":"AE5ACE0C-474A-4D85-A8A2-AC593546D66F"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q3/0111.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1535","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1626","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5148","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q3/0111.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1535","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1626","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5148","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0732","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:22.003","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Worm HTTP server allows remote attackers to cause a denial of service via a long URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:jeremy_arnold:worm_webserver:1.0:*:*:*:*:*:*:*","matchCriteriaId":"AE5ACE0C-474A-4D85-A8A2-AC593546D66F"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q3/0111.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1626","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5149","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q3/0111.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1626","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5149","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0733","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:22.137","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Telnetd telnet server in IRIX 5.2 through 6.1 does not properly cleans user-injected format strings, which allows remote attackers to execute arbitrary commands via a long RLD variable in the IAC-SB-TELOPT_ENVIRON request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:5.2:*:*:*:*:*:*:*","matchCriteriaId":"E292DA15-91BF-4957-9C0F-A69518538BED"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:5.3:*:*:*:*:*:*:*","matchCriteriaId":"26144F94-63FD-4907-B548-09B68C2FC9B3"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:5.3:*:xfs:*:*:*:*:*","matchCriteriaId":"92BF03B6-9CDC-4161-9C1C-3E73582C3D83"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.0:*:*:*:*:*:*:*","matchCriteriaId":"26309EFA-0991-46B6-9818-F0FBB902D5F5"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.0.1:*:*:*:*:*:*:*","matchCriteriaId":"B6A81ED6-CE92-4C10-AA2B-AB9AF573D120"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.0.1:*:xfs:*:*:*:*:*","matchCriteriaId":"D157E1C1-F82B-4FDF-9ADB-5571B75E7D6B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.1:*:*:*:*:*:*:*","matchCriteriaId":"966C1A13-8007-408D-96BE-0DA3BB6CA401"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.2:*:*:*:*:*:*:*","matchCriteriaId":"0ECE564D-B4BB-4C05-88CC-CDC3F8E4E366"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.3:*:*:*:*:*:*:*","matchCriteriaId":"B2D59247-56FA-46B4-BB51-2DAE71AFC145"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.4:*:*:*:*:*:*:*","matchCriteriaId":"15BE08F8-5F3F-45DB-BFE0-1F6F2F57A4D4"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5:*:*:*:*:*:*:*","matchCriteriaId":"C30D6962-3DBB-4DF8-A04F-8E47AFEDCF99"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.1:*:*:*:*:*:*:*","matchCriteriaId":"36B60E50-4F5A-4404-BEA3-C94F7D27B156"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.2m:*:*:*:*:*:*:*","matchCriteriaId":"772E3C7E-9947-414F-8642-18653BB048E0"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.3:*:*:*:*:*:*:*","matchCriteriaId":"E6B2E6D1-8C2D-4E15-A6BB-E4FE878ED1E7"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.3f:*:*:*:*:*:*:*","matchCriteriaId":"8D51EC29-8836-4F87-ABF8-FF7530DECBB1"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.3m:*:*:*:*:*:*:*","matchCriteriaId":"518B7253-7B0F-4A0A-ADA7-F3E3B5AAF877"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.4:*:*:*:*:*:*:*","matchCriteriaId":"440B7208-34DB-4898-8461-4E703F7EDFB7"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.6:*:*:*:*:*:*:*","matchCriteriaId":"D07AA144-6FD7-4C80-B4F2-D21C1AFC864A"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.7:*:*:*:*:*:*:*","matchCriteriaId":"29113D8E-9618-4A0E-9157-678332082858"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.8:*:*:*:*:*:*:*","matchCriteriaId":"313613E9-4837-433C-90EE-84A92E8D24E5"}]}]}],"references":[{"url":"ftp://sgigate.sgi.com/security/20000801-02-P","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0154.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1572","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"ftp://sgigate.sgi.com/security/20000801-02-P","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0154.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1572","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0734","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:22.280","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"eEye IRIS 1.01 beta allows remote attackers to cause a denial of service via a large number of UDP connections."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:eeye_digital_security:iris:1.0.1:*:*:*:*:*:*:*","matchCriteriaId":"EEEA14BE-9F19-48F2-9683-40FB7B8DF449"},{"vulnerable":true,"criteria":"cpe:2.3:a:spynet:capturenet:3.0.12:*:*:*:*:*:*:*","matchCriteriaId":"720C0A6B-DCFE-442D-B48B-D595B53E5C52"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=96774637326591&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1627","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=96774637326591&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1627","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0735","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:22.417","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Becky! Internet Mail client 1.26.03 and earlier allows remote attackers to cause a denial of service via a long Content-type: MIME header when the user replies to a message."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:rimarts_inc.:becky_internet_mail:1.26.3:*:*:*:*:*:*:*","matchCriteriaId":"67D6EB04-364E-4F14-BD36-F37C20AD8047"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0234.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://member.nifty.ne.jp/rimarts/becky-e/Readme.txt","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1588","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0234.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://member.nifty.ne.jp/rimarts/becky-e/Readme.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1588","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0736","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:22.547","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Becky! Internet Mail client 1.26.04 and earlier allows remote attackers to cause a denial of service via a long Content-type: MIME header when the user forwards a message."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:rimarts_inc.:becky_internet_mail:1.26.3:*:*:*:*:*:*:*","matchCriteriaId":"67D6EB04-364E-4F14-BD36-F37C20AD8047"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0234.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://member.nifty.ne.jp/rimarts/becky-e/Readme.txt","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1588","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0234.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://member.nifty.ne.jp/rimarts/becky-e/Readme.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1588","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0737","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:22.670","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Service Control Manager (SCM) in Windows 2000 creates predictable named pipes, which allows a local user with console access to gain administrator privileges, aka the \"Service Control Manager Named Pipe Impersonation\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1535","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-053","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1535","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-053","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0738","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:22.790","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WebShield SMTP 4.5 allows remote attackers to cause a denial of service by sending e-mail with a From: address that has a . (period) at the end, which causes WebShield to continuously send itself copies of the e-mail."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:network_associates:webshield_smtp:4.5:*:*:*:*:*:*:*","matchCriteriaId":"27DD72FC-3FEF-43BC-8A68-3299213151F5"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q3/0101.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1589","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5100","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q3/0101.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1589","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5100","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0739","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:22.920","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in strong.exe program in NAI Net Tools PKI server 1.0 before HotFix 3 allows remote attackers to read arbitrary files via a .. (dot dot) attack in an HTTPS request to the enrollment server."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:network_associates:net_tools_pki_server:1.0:*:*:*:*:*:*:*","matchCriteriaId":"E9B0AA86-A1A2-4154-8F93-CD40F4A4D820"},{"vulnerable":true,"criteria":"cpe:2.3:a:network_associates:net_tools_pki_server:1.0hotfix1:*:*:*:*:*:*:*","matchCriteriaId":"E47369C1-0D9F-49F8-910E-CEB193AD7115"},{"vulnerable":true,"criteria":"cpe:2.3:a:network_associates:net_tools_pki_server:1.0hotfix2:*:*:*:*:*:*:*","matchCriteriaId":"591E0058-8826-455E-9D05-CB8387FB0D5E"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0473.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://download.nai.com/products/licensed/pgp/hf3pki10.txt","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1489","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1537","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5066","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0473.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://download.nai.com/products/licensed/pgp/hf3pki10.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1489","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1537","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5066","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0740","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:23.050","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in strong.exe program in NAI Net Tools PKI server 1.0 before HotFix 3 allows remote attackers to execute arbitrary commands via a long URL in the HTTPS port."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:network_associates:net_tools_pki_server:1.0:*:*:*:*:*:*:*","matchCriteriaId":"E9B0AA86-A1A2-4154-8F93-CD40F4A4D820"},{"vulnerable":true,"criteria":"cpe:2.3:a:network_associates:net_tools_pki_server:1.0hotfix1:*:*:*:*:*:*:*","matchCriteriaId":"E47369C1-0D9F-49F8-910E-CEB193AD7115"},{"vulnerable":true,"criteria":"cpe:2.3:a:network_associates:net_tools_pki_server:1.0hotfix2:*:*:*:*:*:*:*","matchCriteriaId":"591E0058-8826-455E-9D05-CB8387FB0D5E"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0473.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://download.nai.com/products/licensed/pgp/hf3pki10.txt","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1488","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1536","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5026","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0473.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://download.nai.com/products/licensed/pgp/hf3pki10.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1488","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1536","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5026","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0741","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:23.173","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Format string vulnerability in strong.exe program in NAI Net Tools PKI server 1.0 before HotFix 3 allows remote attackers to execute arbitrary code via format strings in a URL with a .XUDA extension."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:network_associates:net_tools_pki_server:1.0:*:*:*:*:*:*:*","matchCriteriaId":"E9B0AA86-A1A2-4154-8F93-CD40F4A4D820"},{"vulnerable":true,"criteria":"cpe:2.3:a:network_associates:net_tools_pki_server:1.0hotfix1:*:*:*:*:*:*:*","matchCriteriaId":"E47369C1-0D9F-49F8-910E-CEB193AD7115"},{"vulnerable":true,"criteria":"cpe:2.3:a:network_associates:net_tools_pki_server:1.0hotfix2:*:*:*:*:*:*:*","matchCriteriaId":"591E0058-8826-455E-9D05-CB8387FB0D5E"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0473.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://download.nai.com/products/licensed/pgp/hf3pki10.txt","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1490","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1538","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0473.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://download.nai.com/products/licensed/pgp/hf3pki10.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1490","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1538","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0742","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:23.300","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The IPX protocol implementation in Microsoft Windows 95 and 98 allows remote attackers to cause a denial of service by sending a ping packet with a source IP address that is a broadcast address, aka the \"Malformed IPX Ping Packet\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_95:*:*:*:*:*:*:*:*","matchCriteriaId":"82F7322B-8022-4D0B-ADB3-D0F5B6F20309"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98:*:gold:*:*:*:*:*:*","matchCriteriaId":"2D3B703C-79B2-4FA2-9E12-713AB977A880"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1544","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&mid=63120","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-054","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5079","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1544","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&mid=63120","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-054","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5079","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0743","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:23.430","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in University of Minnesota (UMN) gopherd 2.x allows remote attackers to execute arbitrary commands via a DES key generation request (GDESkey) that contains a long ticket value."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:university_of_minnesota:gopherd:2.3:*:*:*:*:*:*:*","matchCriteriaId":"C64BD158-CF62-438F-BD18-3841BB617411"},{"vulnerable":true,"criteria":"cpe:2.3:a:university_of_minnesota:gopherd:2.3.1:*:*:*:*:*:*:*","matchCriteriaId":"D3DFF8DA-128D-465D-9730-1B4FFD46551E"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0112.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1569","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0112.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1569","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0744","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2023-11-07T01:55:23.877","vulnStatus":"Rejected","cveTags":[],"descriptions":[{"lang":"en","value":"Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2000-0743. Reason: This candidate is a duplicate of CVE-2000-0743. Notes: All CVE users should reference CVE-2000-0743 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage"}],"metrics":{},"references":[]}},{"cve":{"id":"CVE-2000-0745","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:23.560","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"admin.php3 in PHP-Nuke does not properly verify the PHP-Nuke administrator password, which allows remote attackers to gain privileges by requesting a URL that does not specify the aid or pwd parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:francisco_burzi:php-nuke:1.0:*:*:*:*:*:*:*","matchCriteriaId":"1A9E1DB3-F0A2-4BD8-9D9D-53CA07B50ACB"},{"vulnerable":true,"criteria":"cpe:2.3:a:francisco_burzi:php-nuke:2.5:*:*:*:*:*:*:*","matchCriteriaId":"A7200662-F3B7-4755-8887-3BEEEDB469F2"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0243.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1521","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1592","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0243.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1521","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1592","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0746","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:23.690","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerabilities in IIS 4.0 and 5.0 do not properly protect against cross-site scripting (CSS) attacks.  They allow a malicious web site operator to embed scripts in a link to a trusted site, which are returned without quoting in an error message back to the client.  The client then executes those scripts in the same context as the trusted site, aka the \"IIS Cross-Site Scripting\" vulnerabilities."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:frontpage:*:*:*:*:*:*:*:*","matchCriteriaId":"0951E183-2BFE-4B19-9F06-107B5E22DBC5"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_services:5.0:*:*:*:*:*:*:*","matchCriteriaId":"413C07EA-139F-4B7D-A58B-835BD2591FA0"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1594","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1595","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=39A12BD6.E811BF4F%40nat.bg","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-060","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1594","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1595","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=39A12BD6.E811BF4F%40nat.bg","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-060","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0747","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:23.810","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The logrotate script for OpenLDAP before 1.2.11 in Conectiva Linux sends an improper signal to the kernel log daemon (klogd) and kills it."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:4.1:*:*:*:*:*:*:*","matchCriteriaId":"FFDAB801-AAA0-4B3B-B488-52E7BA8650C5"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:4.2:*:*:*:*:*:*:*","matchCriteriaId":"612AC3B1-8E55-437F-9600-67EA1A8BAD48"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:5.0:*:*:*:*:*:*:*","matchCriteriaId":"537A5C29-D770-4755-A6AB-8916754E14DB"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0379.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5036","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0379.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5036","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0748","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:23.930","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"OpenLDAP 1.2.11 and earlier improperly installs the ud binary with group write permissions, which could allow any user in that group to replace the binary with a Trojan horse."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:openldap:openldap:1.2.7:*:*:*:*:*:*:*","matchCriteriaId":"AC07AD0D-5DF9-41A4-8592-CEFF1842355D"},{"vulnerable":true,"criteria":"cpe:2.3:a:openldap:openldap:1.2.8:*:*:*:*:*:*:*","matchCriteriaId":"30017C56-42A9-4AF9-B5B3-7357E424F837"},{"vulnerable":true,"criteria":"cpe:2.3:a:openldap:openldap:1.2.9:*:*:*:*:*:*:*","matchCriteriaId":"C8A51F38-3F5A-4F6D-93EE-776B5C2FF48F"},{"vulnerable":true,"criteria":"cpe:2.3:a:openldap:openldap:1.2.10:*:*:*:*:*:*:*","matchCriteriaId":"8DBEC27E-3220-42CE-B6CC-675F387CB506"},{"vulnerable":true,"criteria":"cpe:2.3:a:openldap:openldap:1.2.11:*:*:*:*:*:*:*","matchCriteriaId":"E641DFFB-CBAF-4DCF-944F-443CFF836A53"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0375.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1511","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0375.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1511","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0749","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:24.050","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the Linux binary compatibility module in FreeBSD 3.x through 5.x allows local users to gain root privileges via long filenames in the linux shadow file system."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.0:*:*:*:*:*:*:*","matchCriteriaId":"EE38C50A-81FE-412E-9717-3672FAE6A6F4"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.1:*:*:*:*:*:*:*","matchCriteriaId":"263F3734-7076-4EA8-B4C0-F37CFC4E979E"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.2:*:*:*:*:*:*:*","matchCriteriaId":"0419DD66-FF66-48BC-AD3B-F6AFD0551E36"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.3:*:*:*:*:*:*:*","matchCriteriaId":"C3518628-08E5-4AD7-AAF6-A4E38F1CDE2C"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.4:*:*:*:*:*:*:*","matchCriteriaId":"B982342C-1981-4C55-8044-AFE4D87623DF"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.5:*:*:*:*:*:*:*","matchCriteriaId":"47E02BE6-4800-4940-B269-385B66AC5077"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.0:*:*:*:*:*:*:*","matchCriteriaId":"D0A585A1-FF82-418F-90F8-072458DB7816"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.1:*:*:*:*:*:*:*","matchCriteriaId":"AE31DFF8-06AB-489D-A0C5-509C090283B5"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:5.0:*:*:*:*:*:*:*","matchCriteriaId":"61EBA52A-2D8B-4FB5-866E-AE67CE1842E7"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/freebsd/2000-08/0338.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1536","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1628","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5968","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/freebsd/2000-08/0338.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1536","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1628","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5968","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0750","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:24.187","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in mopd (Maintenance Operations Protocol loader daemon) allows remote attackers to execute arbitrary commands via a long file name."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.1:*:*:*:*:*:*:*","matchCriteriaId":"1C288A88-11C6-429E-A109-0395D0989264"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.2:*:*:*:*:*:*:*","matchCriteriaId":"516C6D9A-7483-4E36-A2E0-42698161AD31"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.4:*:*:*:*:*:*:*","matchCriteriaId":"FEBE290B-5EC6-4BBA-B645-294C150E417A"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.5:*:*:*:*:*:*:*","matchCriteriaId":"ACE7FDFB-C6A6-4B58-B0B4-236E4EA76EF6"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.6:*:*:*:*:*:*:*","matchCriteriaId":"0DF053A1-C252-427E-9EEF-27240F422976"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.7:*:*:*:*:*:*:*","matchCriteriaId":"48A9C344-45AA-47B9-B35A-1A62E220D9C6"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"2DFA94D5-0139-490C-8257-0751FE9FBAE4"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"2EC4D3AB-38FA-4D44-AF5C-2DCD15994E76"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:*:*:*:*:*:*","matchCriteriaId":"0633B5A6-7A88-4A96-9462-4C09D124ED36"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0064.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/freebsd/2000-08/0336.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://cvsweb.netbsd.org/bsdweb.cgi/basesrc/usr.sbin/mopd/mopd/process.c.diff?r1=1.7&r2=1.8&f=h","source":"cve@mitre.org"},{"url":"http://www.openbsd.org/errata.html#mopd","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-050.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1558","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0064.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/freebsd/2000-08/0336.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://cvsweb.netbsd.org/bsdweb.cgi/basesrc/usr.sbin/mopd/mopd/process.c.diff?r1=1.7&r2=1.8&f=h","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.openbsd.org/errata.html#mopd","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-050.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1558","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0751","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:24.320","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"mopd (Maintenance Operations Protocol loader daemon) does not properly cleanse user-injected format strings, which allows remote attackers to execute arbitrary commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.1:*:*:*:*:*:*:*","matchCriteriaId":"1C288A88-11C6-429E-A109-0395D0989264"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.2:*:*:*:*:*:*:*","matchCriteriaId":"516C6D9A-7483-4E36-A2E0-42698161AD31"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.4:*:*:*:*:*:*:*","matchCriteriaId":"FEBE290B-5EC6-4BBA-B645-294C150E417A"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.5:*:*:*:*:*:*:*","matchCriteriaId":"ACE7FDFB-C6A6-4B58-B0B4-236E4EA76EF6"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.6:*:*:*:*:*:*:*","matchCriteriaId":"0DF053A1-C252-427E-9EEF-27240F422976"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.7:*:*:*:*:*:*:*","matchCriteriaId":"48A9C344-45AA-47B9-B35A-1A62E220D9C6"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"2DFA94D5-0139-490C-8257-0751FE9FBAE4"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"2EC4D3AB-38FA-4D44-AF5C-2DCD15994E76"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:*:*:*:*:*:*","matchCriteriaId":"0633B5A6-7A88-4A96-9462-4C09D124ED36"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0064.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/freebsd/2000-08/0336.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://cvsweb.netbsd.org/bsdweb.cgi/basesrc/usr.sbin/mopd/mopd/process.c.diff?r1=1.7&r2=1.8&f=h","source":"cve@mitre.org"},{"url":"http://www.openbsd.org/errata.html#mopd","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-050.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1559","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0064.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/freebsd/2000-08/0336.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://cvsweb.netbsd.org/bsdweb.cgi/basesrc/usr.sbin/mopd/mopd/process.c.diff?r1=1.7&r2=1.8&f=h","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.openbsd.org/errata.html#mopd","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-050.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1559","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0752","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:24.447","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflows in brouted in FreeBSD and possibly other OSes allows local users to gain root privileges via long command line arguments."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.5:*:*:*:*:*:*:*","matchCriteriaId":"47E02BE6-4800-4940-B269-385B66AC5077"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.0:*:*:*:*:*:*:*","matchCriteriaId":"D0A585A1-FF82-418F-90F8-072458DB7816"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.0:alpha:*:*:*:*:*:*","matchCriteriaId":"E3F7EB61-55A5-4776-B0E7-3508920A6CEA"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.1:*:*:*:*:*:*:*","matchCriteriaId":"AE31DFF8-06AB-489D-A0C5-509C090283B5"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:5.0:*:*:*:*:*:*:*","matchCriteriaId":"61EBA52A-2D8B-4FB5-866E-AE67CE1842E7"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:5.0:alpha:*:*:*:*:*:*","matchCriteriaId":"3B13D898-C1B6-44B9-8432-7DDB8A380E9E"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/freebsd/2000-08/0339.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1629","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/freebsd/2000-08/0339.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1629","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0753","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:24.563","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Microsoft Outlook mail client identifies the physical path of the sender's machine within a winmail.dat attachment to Rich Text Format (RTF) files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook:97:*:*:*:*:*:*:*","matchCriteriaId":"D1D5CC3A-E880-4727-AEBE-1E4FE5A43AF8"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook:98:*:*:*:*:*:*:*","matchCriteriaId":"52970A43-173E-477B-80BF-6FDBB6B0EECD"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook:2000:*:*:*:*:*:*:*","matchCriteriaId":"D52F17AB-2C87-4C1A-91B5-267ABBCF5844"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/201422","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/78240","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1631","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5508","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/201422","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/78240","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1631","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5508","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0754","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:24.693","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in HP OpenView Network Node Manager (NMM) version 6.1 related to passwords."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:hp:openview_network_node_manager:6.1:*:*:*:*:*:*:*","matchCriteriaId":"39C1B197-F043-4FB7-AFB3-AFC8B8B5B051"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0144.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1581","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0144.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1581","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0755","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:24.813","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in the newgrp command in HP-UX 11.00 allows local users to gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:hp:openview_network_node_manager:6.1:*:*:*:*:*:*:*","matchCriteriaId":"39C1B197-F043-4FB7-AFB3-AFC8B8B5B051"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0144.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1581","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0144.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1581","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0756","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:24.937","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Outlook 2000 does not properly process long or malformed fields in vCard (.vcf) files, which allows attackers to cause a denial of service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook:98:*:*:*:*:*:*:*","matchCriteriaId":"52970A43-173E-477B-80BF-6FDBB6B0EECD"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:outlook:2000:*:*:*:*:*:*:*","matchCriteriaId":"D52F17AB-2C87-4C1A-91B5-267ABBCF5844"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1633","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Springmail.105.967737080.0.16997300%40www.springmail.com","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1633","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=Springmail.105.967737080.0.16997300%40www.springmail.com","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0757","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:25.063","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The sysgen service in Aptis Totalbill does not perform authentication, which allows remote attackers to gain root privileges by connecting to the service and specifying the commands to be executed."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:aptis_software:totalbill:3.0:*:*:*:*:*:*:*","matchCriteriaId":"5053B053-C23F-4EB6-9A33-28C06850A5C7"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0074.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1555","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0074.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1555","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0758","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:25.193","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The web interface for Lyris List Manager 3 and 4 allows list subscribers to obtain administrative access by modifying the value of the list_admin hidden form field."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:lyris:list_manager:3.0:*:*:*:*:*:*:*","matchCriteriaId":"440F99F3-4778-4B41-87CD-81C857D2CCF8"},{"vulnerable":true,"criteria":"cpe:2.3:a:lyris:list_manager:4.0:*:*:*:*:*:*:*","matchCriteriaId":"C2DD1EAD-778A-426A-A604-C41D489632C5"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0149.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.lyris.com/lm/lm_updates.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1584","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0149.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.lyris.com/lm/lm_updates.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1584","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0759","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:25.317","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Jakarta Tomcat 3.1 under Apache reveals physical path information when a remote attacker requests a URL that does not exist, which generates an error message that includes the physical path."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:N","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:apache:tomcat:3.1:*:*:*:*:*:*:*","matchCriteriaId":"FEC42876-65AD-476A-8B62-25D4E15D1BB6"}]}]}],"references":[{"url":"http://www.iss.net/security_center/static/4967.php","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1531","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/frames/?content=/templates/archive.pike%3Flist%3D1%26date%3D2000-07-15%26msg%3DPine.SUN.3.96.1000719184401.17782A-100000%40grex.cyberspace.org","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/4967.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1531","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/frames/?content=/templates/archive.pike%3Flist%3D1%26date%3D2000-07-15%26msg%3DPine.SUN.3.96.1000719184401.17782A-100000%40grex.cyberspace.org","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0760","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:25.440","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Snoop servlet in Jakarta Tomcat 3.1 and 3.0 under Apache reveals sensitive system information when a remote attacker requests a nonexistent URL with a .snp extension."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:N","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:apache:tomcat:3.0:*:*:*:*:*:*:*","matchCriteriaId":"BAFF8D91-80A2-454A-8B44-A5A889002692"},{"vulnerable":true,"criteria":"cpe:2.3:a:apache:tomcat:3.1:*:*:*:*:*:*:*","matchCriteriaId":"FEC42876-65AD-476A-8B62-25D4E15D1BB6"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1532","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/frames/?content=/templates/archive.pike%3Flist%3D1%26date%3D2000-07-15%26msg%3DPine.SUN.3.96.1000719235404.24004A-100000%40grex.cyberspace.org","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1532","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/frames/?content=/templates/archive.pike%3Flist%3D1%26date%3D2000-07-15%26msg%3DPine.SUN.3.96.1000719235404.24004A-100000%40grex.cyberspace.org","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0761","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:25.567","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"OS2/Warp 4.5 FTP server allows remote attackers to cause a denial of service via a long username."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:os2_ftp_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"95799B11-78BE-4770-B2C1-0EC820B9A7E3"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:os2_ftp_server:4.2:*:*:*:*:*:*:*","matchCriteriaId":"C7B35302-1B34-49E6-B17C-01762300A001"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:os2_ftp_server:4.3:*:*:*:*:*:*:*","matchCriteriaId":"6094B4B5-225B-439C-AAE6-2465523C5E92"}]}]}],"references":[{"url":"ftp://ftp.software.ibm.com/ps/products/tcpip/fixes/v4.3os2/ic27721/README","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0166.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1582","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"ftp://ftp.software.ibm.com/ps/products/tcpip/fixes/v4.3os2/ic27721/README","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0166.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1582","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0762","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:25.690","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default installation of eTrust Access Control (formerly SeOS) uses a default encryption key, which allows remote attackers to spoof the eTrust administrator and gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:broadcom:etrust_access_control:4.1:*:*:*:*:*:*:*","matchCriteriaId":"E98CCF8A-D664-45EE-A435-90379F981290"},{"vulnerable":true,"criteria":"cpe:2.3:a:broadcom:etrust_access_control:5.0:*:*:*:*:*:*:*","matchCriteriaId":"76E1F4B2-CC90-4940-8E1B-4B38591B8F5B"},{"vulnerable":true,"criteria":"cpe:2.3:a:ca:etrust_access_control:4.1:sp1:*:*:*:*:*:*","matchCriteriaId":"F63210BA-7BB9-4591-8DFE-958C8CF5B7F1"},{"vulnerable":true,"criteria":"cpe:2.3:a:ca:etrust_access_control:5.0:sp1:*:*:*:*:*:*","matchCriteriaId":"2008A8B4-AC31-4C7B-AF4E-A5C2C45D6557"}]}]}],"references":[{"url":"http://support.ca.com/techbases/eTrust/etrust_access_control-response.html","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1517","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1583","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=004601c003a1%24ba473260%24ddeaa2cd%40itradefair.net","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5076","source":"cve@mitre.org"},{"url":"http://support.ca.com/techbases/eTrust/etrust_access_control-response.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1517","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1583","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=004601c003a1%24ba473260%24ddeaa2cd%40itradefair.net","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5076","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0763","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:25.817","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"xlockmore and xlockf do not properly cleanse user-injected format strings, which allows local users to gain root privileges via the -d option."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:david_bagley:xlock:4.16:*:*:*:*:*:*:*","matchCriteriaId":"DE36D516-F942-4398-BEFE-9C7E28CCE2DA"},{"vulnerable":true,"criteria":"cpe:2.3:a:david_bagley:xlock:4.16.1:*:*:*:*:*:*:*","matchCriteriaId":"2F4362FD-2913-424C-BFBF-41B64473273E"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0212.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0294.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/freebsd/2000-08/0340.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.debian.org/security/2000/20000816","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1585","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000815231724.A14694%40subterrain.net","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0212.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0294.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/freebsd/2000-08/0340.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.debian.org/security/2000/20000816","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1585","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000815231724.A14694%40subterrain.net","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0764","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:25.963","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Intel Express 500 series switches allow a remote attacker to cause a denial of service via a malformed IP packet."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:intel:express_8100:*:*:*:*:*:*:*:*","matchCriteriaId":"3218FE18-1E23-43F6-930D-8889EB1F845F"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0338.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1609","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5154","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0338.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1609","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5154","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0765","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:26.080","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the HTML interpreter in Microsoft Office 2000 allows an attacker to execute arbitrary commands via a long embedded object tag, aka the \"Microsoft Office HTML Object Tag\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:excel:2000:*:*:*:*:*:*:*","matchCriteriaId":"F55D42D5-7371-47C2-BF55-B7F51C19B61E"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:powerpoint:2000:*:*:*:*:*:*:*","matchCriteriaId":"3E392539-ABF6-4B5C-AEC3-C54B51E0DB70"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:word:2000:*:*:*:*:*:*:*","matchCriteriaId":"AEBFF713-0884-43BF-9AB8-777664FD64AF"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1561","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-056","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1561","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-056","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0766","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:26.197","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in vqSoft vqServer 1.4.49 allows remote attackers to cause a denial of service or possibly gain privileges via a long HTTP GET request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:vqsoft:vqserver:1.4.49:*:*:*:*:*:*:*","matchCriteriaId":"59F3113B-6C5F-4508-9644-00B1591BA298"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1610","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200008270354.UAA10952%40user4.hushmail.com","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5152","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1610","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200008270354.UAA10952%40user4.hushmail.com","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5152","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0767","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:26.320","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The ActiveX control for invoking a scriptlet in Internet Explorer 4.x and 5.x renders arbitrary file types instead of HTML, which allows an attacker to read arbitrary files, aka the \"Scriptlet Rendering\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:N/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0:*:*:*:*:*:*:*","matchCriteriaId":"A5B815D9-BC21-4A17-AF00-B8AD181027D7"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.01:*:*:*:*:*:*:*","matchCriteriaId":"6219D36E-9E2C-4DC7-8FD5-FAD144A333F6"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.5:*:*:*:*:*:*:*","matchCriteriaId":"40F8042F-C621-45AE-9F8C-70469579643A"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1564","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-055","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1564","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-055","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0768","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:26.447","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A function in Internet Explorer 4.x and 5.x does not properly verify the domain of a frame within a browser window, which allows a remote attacker to read client files, aka a variant of the \"Frame Domain Verification\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:N/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:4.0:*:windows_98:*:*:*:*:*","matchCriteriaId":"D0BDA2A8-EBB9-47AB-9DA0-5C24527F7210"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:4.0:*:windows_nt:*:*:*:*:*","matchCriteriaId":"077B638C-F14D-4048-86C8-B62517C5182F"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5.0:*:windows:*:*:*:*:*","matchCriteriaId":"D2CFDA81-A703-4330-88B0-F3F18B3BB7FC"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5.0:*:windows_2000:*:*:*:*:*","matchCriteriaId":"A7B6FB02-F15F-486D-8E7C-40830ABDB62F"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5.0:*:windows_95:*:*:*:*:*","matchCriteriaId":"0CE25503-0EDA-4AFA-A4B8-36396BB4A4E9"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5.0:*:windows_98:*:*:*:*:*","matchCriteriaId":"376DA3A6-FAB8-4B18-B9D9-C176675C7671"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0:*:*:*:*:*:*:*","matchCriteriaId":"A5B815D9-BC21-4A17-AF00-B8AD181027D7"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.01:*:*:*:*:*:*:*","matchCriteriaId":"6219D36E-9E2C-4DC7-8FD5-FAD144A333F6"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.5:*:*:*:*:*:*:*","matchCriteriaId":"40F8042F-C621-45AE-9F8C-70469579643A"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1564","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-055","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1564","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-055","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0769","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:26.580","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"O'Reilly WebSite Pro 2.3.7 installs the uploader.exe program with execute permissions for all users, which allows remote attackers to create and execute arbitrary files by directly calling uploader.exe."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oreilly:website_pro:*:*:*:*:*:*:*:*","versionEndIncluding":"2.3.7","matchCriteriaId":"333B83C5-EC0D-4335-A873-B56A3FFEA611"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=96715834610888&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1611","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=96715834610888&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1611","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0770","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:26.697","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IIS 4.0 and 5.0 does not properly restrict access to certain types of files when their parent folders have less restrictive permissions, which could allow remote attackers to bypass access restrictions to some files, aka the \"File Permission Canonicalization\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:N","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_services:5.0:*:*:*:*:*:*:*","matchCriteriaId":"413C07EA-139F-4B7D-A58B-835BD2591FA0"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1565","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-057","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1565","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-057","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0771","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:26.823","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Windows 2000 allows local users to cause a denial of service by corrupting the local security policy via malformed RPC traffic, aka the \"Local Security Policy Corruption\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1613","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-062","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1613","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-062","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0772","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:26.950","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The installation of Tumbleweed Messaging Management System (MMS) 4.6 and earlier (formerly Worldtalk Worldsecure) creates a default account \"sa\" with no password."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:tumbleweed:messaging_management_system:4.3:*:*:*:*:*:*:*","matchCriteriaId":"DE241542-7FD0-43C5-B5B4-DBC004280862"},{"vulnerable":true,"criteria":"cpe:2.3:a:tumbleweed:messaging_management_system:4.5:*:*:*:*:*:*:*","matchCriteriaId":"29A1DFD6-D05F-4436-AE8E-8AAB0FDD5E7C"},{"vulnerable":true,"criteria":"cpe:2.3:a:tumbleweed:messaging_management_system:4.6:*:*:*:*:*:*:*","matchCriteriaId":"2CE6B4AC-B7E5-4AB0-9E4F-82BFBA4B43EA"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0098.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://thompson.tumbleweed.com/NewKB/bulletin/UPFiles/sa-official.htm","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1562","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5072","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0098.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://thompson.tumbleweed.com/NewKB/bulletin/UPFiles/sa-official.htm","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1562","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5072","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0773","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:27.073","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Bajie HTTP web server 0.30a allows remote attackers to read arbitrary files via a URL that contains a \"....\", a variant of the dot dot directory traversal attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:bajie:java_http_server:1.0:*:*:*:*:*:*:*","matchCriteriaId":"007A5986-89DC-499C-AAC0-4A3D768628F7"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0426.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1522","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5021","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0426.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1522","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5021","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0774","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:27.193","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The sample Java servlet \"test\" in Bajie HTTP web server 0.30a reveals the real pathname of the web document root."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:bajie:java_http_server:1.0:*:*:*:*:*:*:*","matchCriteriaId":"007A5986-89DC-499C-AAC0-4A3D768628F7"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0426.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1521","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0426.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1521","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0775","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:27.317","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in RobTex Viking server earlier than 1.06-370 allows remote attackers to cause a denial of service or execute arbitrary commands via a long HTTP GET request, or long Unless-Modified-Since, If-Range, or If-Modified-Since headers."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:robtex:viking_server:*:*:*:*:*:*:*:*","versionEndIncluding":"1.0.6_build355","matchCriteriaId":"B3A49397-0B2A-4661-92E6-450EEDD44A1E"}]}]}],"references":[{"url":"http://www.robtex.com/viking/bugs.htm","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1614","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=399a01c01122%240d7f2310%240201a8c0%40aviram","source":"cve@mitre.org"},{"url":"http://www.robtex.com/viking/bugs.htm","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1614","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=399a01c01122%240d7f2310%240201a8c0%40aviram","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0776","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:27.433","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Mediahouse Statistics Server 5.02x allows remote attackers to execute arbitrary commands via a long HTTP GET request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mediahouse_software:statistics_server_livestats:5.02:*:*:*:*:*:*:*","matchCriteriaId":"0D6B06EA-A63F-44A8-8024-3E296EDBFE10"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0118.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1568","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5113","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0118.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1568","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5113","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0777","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:27.560","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The password protection feature of Microsoft Money can store the password in plaintext, which allows attackers with physical access to the system to obtain the password, aka the \"Money Password\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:money:2000:*:*:*:*:*:*:*","matchCriteriaId":"04303051-3FE6-45B0-B721-5331536A5D68"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:money:2001:*:*:*:*:*:*:*","matchCriteriaId":"5672DA19-6EAB-48B8-96CB-8AF426BD8B33"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1615","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-061","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1615","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-061","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0778","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:27.690","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IIS 5.0 allows remote attackers to obtain source code for .ASP files and other scripts via an HTTP GET request with a \"Translate: f\" header, aka the \"Specialized Header\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_services:5.0:*:*:*:*:*:*:*","matchCriteriaId":"413C07EA-139F-4B7D-A58B-835BD2591FA0"}]}]}],"references":[{"url":"http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind0008&L=ntbugtraq&F=&S=&P=5212","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1578","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=080D5336D882D211B56B0060080F2CD696A7C9%40beta.mia.cz","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-058","source":"cve@mitre.org"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A927","source":"cve@mitre.org"},{"url":"http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind0008&L=ntbugtraq&F=&S=&P=5212","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1578","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=080D5336D882D211B56B0060080F2CD696A7C9%40beta.mia.cz","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-058","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A927","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0779","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:27.823","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Checkpoint Firewall-1 with the RSH/REXEC setting enabled allows remote attackers to bypass access restrictions and connect to a RSH/REXEC client via malformed connection requests."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:3.0:*:*:*:*:*:*:*","matchCriteriaId":"A550C18E-F07A-4A05-87F0-B1D52FDC401C"},{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:4.0:*:*:*:*:*:*:*","matchCriteriaId":"0F543272-8C7E-4326-BA97-142FBEA641E5"},{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:4.1:*:*:*:*:*:*:*","matchCriteriaId":"100F03E3-1538-47AF-9CA6-E9E5C1DF05D4"}]}]}],"references":[{"url":"http://www.checkpoint.com/techsupport/alerts/list_vun.html#Improper_stderr","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1487","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1534","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.checkpoint.com/techsupport/alerts/list_vun.html#Improper_stderr","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1487","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1534","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0780","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:27.943","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The web server in IPSWITCH IMail 6.04 and earlier allows remote attackers to read and delete arbitrary files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:N","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:imail:5.0:*:*:*:*:*:*:*","matchCriteriaId":"EFEFE5A5-6589-4316-9C9F-2F8109696158"},{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:imail:6.0:*:*:*:*:*:*:*","matchCriteriaId":"9EADF489-0420-4C47-9F73-78114C2042F3"},{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:imail:6.1:*:*:*:*:*:*:*","matchCriteriaId":"EAEA8FB7-3D42-4A39-BCCD-2DE3BC3EAC19"},{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:imail:6.2:*:*:*:*:*:*:*","matchCriteriaId":"12658962-53E6-49EB-83EF-04A1B5D693B3"},{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:imail:6.3:*:*:*:*:*:*:*","matchCriteriaId":"6DA61FCA-BA3C-4014-9C4B-4D4ED65AB07A"},{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:imail:6.4:*:*:*:*:*:*:*","matchCriteriaId":"D0BC7230-2A64-43CE-B041-22F2E4A559A9"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=96767207207553&w=2","source":"cve@mitre.org"},{"url":"http://www.ipswitch.com/Support/IMail/news.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1617","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=96767207207553&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.ipswitch.com/Support/IMail/news.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1617","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0781","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:28.070","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"uagentsetup in ARCServeIT Client Agent 6.62 does not properly check for the existence or ownership of a temporary file which is moved to the agent.cfg configuration file, which allows local users to execute arbitrary commands by modifying the temporary file before it is moved."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ca:arcserve_backup:6.63_linux:*:*:*:*:*:*:*","matchCriteriaId":"0EAAF3F1-70E3-464A-8245-3F8F127FD1F1"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0431.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1519","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5023","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0431.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1519","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5023","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0782","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:28.203","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"netauth.cgi program in Netwin Netauth 4.2e and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netwin:netauth:*:*:*:*:*:*:*:*","versionEndIncluding":"4.2","matchCriteriaId":"23D01245-6C2F-44A2-BA67-E63D2120099C"}]}]}],"references":[{"url":"http://netwinsite.com/netauth/updates.htm","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1587","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=NEBBJCLKGNOGCOIOBJNAGEHLCPAA.marc%40eeye.com","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5090","source":"cve@mitre.org"},{"url":"http://netwinsite.com/netauth/updates.htm","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1587","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=NEBBJCLKGNOGCOIOBJNAGEHLCPAA.marc%40eeye.com","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5090","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0783","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:28.320","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Watchguard Firebox II allows remote attackers to cause a denial of service by sending a malformed URL to the authentication service on port 4100."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:watchguard:firebox:ii:*:*:*:*:*:*:*","matchCriteriaId":"31264E24-5E9A-4C76-B373-0D8FA58B7F37"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0162.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1573","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5098","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0162.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1573","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5098","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0784","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:28.447","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"sshd program in the Rapidstream 2.1 Beta VPN appliance has a hard-coded \"rsadmin\" account with a null password, which allows remote attackers to execute arbitrary commands via ssh."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:rapidstream:rapidstream:2000:*:*:*:*:*:*:*","matchCriteriaId":"C13F6038-2FB7-4814-A058-D6192963474E"},{"vulnerable":true,"criteria":"cpe:2.3:h:rapidstream:rapidstream:4000:*:*:*:*:*:*:*","matchCriteriaId":"03CD6CE7-23B7-4A45-82C0-A5F10AD9CC55"},{"vulnerable":true,"criteria":"cpe:2.3:h:rapidstream:rapidstream:6000:*:*:*:*:*:*:*","matchCriteriaId":"653929D6-6E9F-470F-B3DB-95F5E14D2AC0"},{"vulnerable":true,"criteria":"cpe:2.3:h:rapidstream:rapidstream:8000:*:*:*:*:*:*:*","matchCriteriaId":"0EFA822E-72CE-4EA6-A7FB-C4FCE94B670D"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0216.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1574","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0216.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1574","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0785","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:28.567","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WircSrv IRC Server 5.07s allows IRC operators to read arbitrary files via the importmotd command, which sets the Message of the Day (MOTD) to the specified file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:wircsrv:irc_server:5.0.7s:*:*:*:*:*:*:*","matchCriteriaId":"F7DE5E55-1B57-40FC-AC20-E016046A90F1"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=96353027909756&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=96353027909756&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0786","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:28.680","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"GNU userv 1.0.0 and earlier does not properly perform file descriptor swapping, which can corrupt the USERV_GROUPS and USERV_GIDS environmental variables and allow local users to bypass some access restrictions."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:userv:1.0.0:*:*:*:*:*:*:*","matchCriteriaId":"9A1B3C00-2F7B-4DA8-A238-3E9C45CC0B3F"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0389.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=96473640717095&w=2","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/2000/20000727","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1516","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0389.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=96473640717095&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.debian.org/security/2000/20000727","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1516","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0787","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:28.807","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IRC Xchat client versions 1.4.2 and earlier allows remote attackers to execute arbitrary commands by encoding shell metacharacters into a URL which XChat uses to launch a web browser."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:xchat:xchat:1.2.1:*:*:*:*:*:*:*","matchCriteriaId":"0B8C5104-52ED-42EC-97A5-05D345597496"},{"vulnerable":true,"criteria":"cpe:2.3:a:xchat:xchat:1.3.9:*:*:*:*:*:*:*","matchCriteriaId":"DAF68327-9D45-41F3-B120-C9E71A0A3259"},{"vulnerable":true,"criteria":"cpe:2.3:a:xchat:xchat:1.3.10:*:*:*:*:*:*:*","matchCriteriaId":"07373BC7-F34E-47A2-9057-64C04C45EA26"},{"vulnerable":true,"criteria":"cpe:2.3:a:xchat:xchat:1.3.11:*:*:*:*:*:*:*","matchCriteriaId":"F18504E4-03C8-45C9-B89D-86327D5663D8"},{"vulnerable":true,"criteria":"cpe:2.3:a:xchat:xchat:1.3.12:*:*:*:*:*:*:*","matchCriteriaId":"3F6EE47C-0AE8-4CCD-8A2D-54E55BE9C7D6"},{"vulnerable":true,"criteria":"cpe:2.3:a:xchat:xchat:1.3.13:*:*:*:*:*:*:*","matchCriteriaId":"103E7180-AFF5-4EBF-A9FD-EFE2A6C00256"},{"vulnerable":true,"criteria":"cpe:2.3:a:xchat:xchat:1.4:*:*:*:*:*:*:*","matchCriteriaId":"D371520F-1F2D-4EAB-A4D1-5CD13DBF6C62"},{"vulnerable":true,"criteria":"cpe:2.3:a:xchat:xchat:1.4.1:*:*:*:*:*:*:*","matchCriteriaId":"4CA8BBE2-4ABE-4574-9BD7-A26F2FF25333"},{"vulnerable":true,"criteria":"cpe:2.3:a:xchat:xchat:1.4.2:*:*:*:*:*:*:*","matchCriteriaId":"74588BF3-4DA4-410B-8416-C90E7F446238"},{"vulnerable":true,"criteria":"cpe:2.3:a:xchat:xchat:1.5.6:*:*:*:*:*:*:*","matchCriteriaId":"721836E8-A4B6-46D6-BEDD-9B269DDB0525"},{"vulnerable":true,"criteria":"cpe:2.3:a:xchat:xchat:1.5.xdev:*:*:*:*:*:*:*","matchCriteriaId":"D2C27A32-761C-4413-8856-6689150BBB4A"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0215.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0301.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0305.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-055.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1601","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0215.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0301.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0305.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-055.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1601","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0788","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:28.940","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Mail Merge tool in Microsoft Word does not prompt the user before executing Visual Basic (VBA) scripts in an Access database, which could allow an attacker to execute arbitrary commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:access:2000:*:*:*:*:*:*:*","matchCriteriaId":"90D7BA07-3BCA-41CF-B5D3-341E912650A2"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:word:2000:*:*:*:*:*:*:*","matchCriteriaId":"AEBFF713-0884-43BF-9AB8-777664FD64AF"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1566","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=398EB9CA.27E03A9C%40nat.bg","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-071","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5322","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1566","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=398EB9CA.27E03A9C%40nat.bg","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-071","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5322","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0789","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:29.067","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WinU 5.x and earlier uses weak encryption to store its configuration password, which allows local users to decrypt the password and gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:bardon_data_systems:winu:4.x:*:*:*:*:*:*:*","matchCriteriaId":"B322BD64-604F-4D64-A51E-7C066F1A5274"},{"vulnerable":true,"criteria":"cpe:2.3:a:bardon_data_systems:winu:5.0:*:*:*:*:*:*:*","matchCriteriaId":"937E6E4D-8E11-4D45-8ED0-954F91C85A7E"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0201.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0201.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0790","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:29.193","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The web-based folder display capability in Microsoft Internet Explorer 5.5 on Windows 98 allows local users to insert Trojan horse programs by modifying the Folder.htt file and using the InvokeVerb method in the ShellDefView ActiveX control to specify a default execute option for the first file that is listed in the folder."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98:*:gold:*:*:*:*:*:*","matchCriteriaId":"2D3B703C-79B2-4FA2-9E12-713AB977A880"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98se:*:*:*:*:*:*:*:*","matchCriteriaId":"AA733AD2-D948-46A0-A063-D29081A56F1F"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1571","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=3998370D.732A03F1%40nat.bg","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5097","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1571","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=3998370D.732A03F1%40nat.bg","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5097","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0791","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:29.327","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Trustix installs the httpsd program for Apache-SSL with world-writeable permissions, which allows local users to replace it with a Trojan horse."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:trustix:secure_linux:1.1:*:*:*:*:*:*:*","matchCriteriaId":"9D0DFB12-B43F-4207-A900-464A97F5124D"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0179.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1575","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0179.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1575","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0792","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:29.440","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Gnome Lokkit firewall package before 0.41 does not properly restrict access to some ports, even if a user does not make any services available."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:alan_cox:gnome-lokkit:0.1:*:*:*:*:*:*:*","matchCriteriaId":"E50F12AC-CF90-4B9C-A6B1-14045DEDF894"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0252.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1520","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1590","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0252.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1520","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1590","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0793","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:29.560","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Norton AntiVirus 5.00.01C with the Novell Netware client does not properly restart the auto-protection service after the first user has logged off of the system."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:novell:client:3.1:*:*:*:*:*:*:*","matchCriteriaId":"B5217A98-F7EA-4DC1-B7F8-CD6BAE700E65"},{"vulnerable":true,"criteria":"cpe:2.3:a:symantec:norton_antivirus:5.0:*:*:*:*:*:*:*","matchCriteriaId":"B3C2BFDB-DF41-4D5E-979C-0AA01908FB09"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1533","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=398222C5%40zathras.cc.vt.edu","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1533","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=398222C5%40zathras.cc.vt.edu","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0794","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:29.680","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in IRIX libgl.so library allows local users to gain root privileges via a long HOME variable to programs such as (1) gmemusage and (2) gr_osview."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.2:*:*:*:*:*:*:*","matchCriteriaId":"0ECE564D-B4BB-4C05-88CC-CDC3F8E4E366"}]}]}],"references":[{"url":"http://www.iss.net/security_center/static/5063.php","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/8568","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1527","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200008021924.e72JOVs12558%40ix.put.poznan.pl","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/5063.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/8568","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1527","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200008021924.e72JOVs12558%40ix.put.poznan.pl","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0795","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:29.807","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in lpstat in IRIX 6.2 and 6.3 allows local users to gain root privileges via a long -n option."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.2:*:*:*:*:*:*:*","matchCriteriaId":"0ECE564D-B4BB-4C05-88CC-CDC3F8E4E366"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.3:*:*:*:*:*:*:*","matchCriteriaId":"B2D59247-56FA-46B4-BB51-2DAE71AFC145"}]}]}],"references":[{"url":"http://www.osvdb.org/1485","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1529","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200008021924.e72JOVs12558%40ix.put.poznan.pl","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1485","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1529","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200008021924.e72JOVs12558%40ix.put.poznan.pl","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0796","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:29.937","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in dmplay in IRIX 6.2 and 6.3 allows local users to gain root privileges via a long command line option."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.2:*:*:*:*:*:*:*","matchCriteriaId":"0ECE564D-B4BB-4C05-88CC-CDC3F8E4E366"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.3:*:*:*:*:*:*:*","matchCriteriaId":"B2D59247-56FA-46B4-BB51-2DAE71AFC145"}]}]}],"references":[{"url":"http://www.osvdb.org/1484","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1528","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200008021924.e72JOVs12558%40ix.put.poznan.pl","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5064","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1484","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1528","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200008021924.e72JOVs12558%40ix.put.poznan.pl","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5064","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0797","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:30.063","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in gr_osview in IRIX 6.2 and 6.3 allows local users to gain privileges via a long -D option."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.2:*:*:*:*:*:*:*","matchCriteriaId":"0ECE564D-B4BB-4C05-88CC-CDC3F8E4E366"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.3:*:*:*:*:*:*:*","matchCriteriaId":"B2D59247-56FA-46B4-BB51-2DAE71AFC145"}]}]}],"references":[{"url":"ftp://patches.sgi.com/support/free/security/advisories/20040104-01-P.asc","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/3815","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1526","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200008021924.e72JOVs12558%40ix.put.poznan.pl","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5062","source":"cve@mitre.org"},{"url":"ftp://patches.sgi.com/support/free/security/advisories/20040104-01-P.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/3815","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1526","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200008021924.e72JOVs12558%40ix.put.poznan.pl","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5062","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0798","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:30.190","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The truncate function in IRIX 6.x does not properly check for privileges when the file is in the xfs file system, which allows local users to delete the contents of arbitrary files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.2:*:*:*:*:*:*:*","matchCriteriaId":"0ECE564D-B4BB-4C05-88CC-CDC3F8E4E366"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.3:*:*:*:*:*:*:*","matchCriteriaId":"B2D59247-56FA-46B4-BB51-2DAE71AFC145"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.4:*:*:*:*:*:*:*","matchCriteriaId":"15BE08F8-5F3F-45DB-BFE0-1F6F2F57A4D4"}]}]}],"references":[{"url":"http://www.osvdb.org/8569","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1540","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200008021924.e72JOVs12558%40ix.put.poznan.pl","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/8569","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1540","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200008021924.e72JOVs12558%40ix.put.poznan.pl","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0799","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:30.323","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"inpview in InPerson in SGI IRIX 5.3 through IRIX 6.5.10 allows local users to gain privileges via a symlink attack on the .ilmpAAA temporary file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:P/I:P/A:P","baseScore":3.7,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":1.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5:*:*:*:*:*:*:*","matchCriteriaId":"C30D6962-3DBB-4DF8-A04F-8E47AFEDCF99"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.1:*:*:*:*:*:*:*","matchCriteriaId":"36B60E50-4F5A-4404-BEA3-C94F7D27B156"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.2m:*:*:*:*:*:*:*","matchCriteriaId":"772E3C7E-9947-414F-8642-18653BB048E0"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.3:*:*:*:*:*:*:*","matchCriteriaId":"E6B2E6D1-8C2D-4E15-A6BB-E4FE878ED1E7"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.3f:*:*:*:*:*:*:*","matchCriteriaId":"8D51EC29-8836-4F87-ABF8-FF7530DECBB1"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.3m:*:*:*:*:*:*:*","matchCriteriaId":"518B7253-7B0F-4A0A-ADA7-F3E3B5AAF877"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.4:*:*:*:*:*:*:*","matchCriteriaId":"440B7208-34DB-4898-8461-4E703F7EDFB7"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.6:*:*:*:*:*:*:*","matchCriteriaId":"D07AA144-6FD7-4C80-B4F2-D21C1AFC864A"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.7:*:*:*:*:*:*:*","matchCriteriaId":"29113D8E-9618-4A0E-9157-678332082858"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.8:*:*:*:*:*:*:*","matchCriteriaId":"313613E9-4837-433C-90EE-84A92E8D24E5"}]}]}],"references":[{"url":"ftp://patches.sgi.com/support/free/security/advisories/20001101-01-I","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1530","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200008021924.e72JOVs12558%40ix.put.poznan.pl","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5065","source":"cve@mitre.org"},{"url":"ftp://patches.sgi.com/support/free/security/advisories/20001101-01-I","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1530","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/templates/archive.pike?list=1&msg=200008021924.e72JOVs12558%40ix.put.poznan.pl","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5065","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0800","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:30.447","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"String parsing error in rpc.kstatd in the linuxnfs or knfsd packages in SuSE and possibly other Linux systems allows remote attackers to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"124E1802-7984-45ED-8A92-393FC20662FD"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.1:alpha:*:*:*:*:*:*","matchCriteriaId":"C7F08806-9458-439A-8EAE-2553122262ED"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.2:*:*:*:*:*:*:*","matchCriteriaId":"1B67020A-6942-4478-B501-764147C4970D"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.3:*:*:*:*:*:*:*","matchCriteriaId":"0AD0FF64-05DF-48C2-9BB5-FD993121FB2E"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.3:*:ppc:*:*:*:*:*","matchCriteriaId":"E74E0A28-7C78-4160-8BCF-99605285C0EE"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.3:alpha:*:*:*:*:*:*","matchCriteriaId":"76159C25-0760-47CB-AFCE-28306CDEA830"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.4:*:*:*:*:*:*:*","matchCriteriaId":"7786607A-362E-4817-A17E-C76D6A1F737D"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.4:*:ppc:*:*:*:*:*","matchCriteriaId":"6E2FE291-1142-4627-A497-C0BB0D934A0B"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.4:alpha:*:*:*:*:*:*","matchCriteriaId":"49BC7C7E-046C-4186-822E-9F3A2AD3577B"}]}]}],"references":[{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_58.html","source":"cve@mitre.org"},{"url":"http://www.novell.com/linux/security/advisories/suse_security_announce_58.html","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0801","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:30.567","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in bdf program in HP-UX 11.00 may allow local users to gain root privileges via a long -t option."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.20:*:*:*:*:*:*:*","matchCriteriaId":"EDE44C49-172C-4899-8CC8-29AA99A7CD2F"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:11.00:*:*:*:*:*:*:*","matchCriteriaId":"771931F7-9180-4EBD-8627-E1CF17D24647"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0388.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1520","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-07/0388.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1520","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0802","sourceIdentifier":"cve@mitre.org","published":"2000-10-20T04:00:00.000","lastModified":"2026-06-16T21:52:30.690","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The BAIR program does not properly restrict access to the Internet Explorer Internet options menu, which allows local users to obtain access to the menu by modifying the registry key that starts BAIR."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:N","baseScore":3.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:pgp:personal_privacy:6.5.3:*:*:*:*:*:*:*","matchCriteriaId":"84F855F6-EFC0-4B60-B772-D66A1A39E3CD"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=96430372326912&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=96430372326912&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1080","sourceIdentifier":"cve@mitre.org","published":"2000-11-01T05:00:00.000","lastModified":"2026-06-16T21:53:06.547","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Quake 1 (quake1) and ProQuake 1.01 and earlier allow remote attackers to cause a denial of service via a malformed (empty) UDP packet."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:id_software:quake:1.9:*:*:*:*:*:*:*","matchCriteriaId":"61028BF2-6AF9-4145-B096-DA93E3197040"},{"vulnerable":true,"criteria":"cpe:2.3:a:j._p._grossman:proquake:1.0:*:*:*:*:*:*:*","matchCriteriaId":"7A3E828B-9669-440D-B9A6-012024ADBBD2"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97318797630246&w=2","source":"cve@mitre.org"},{"url":"http://proquake.ai.mit.edu/","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1900","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5527","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97318797630246&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://proquake.ai.mit.edu/","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1900","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5527","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1219","sourceIdentifier":"cve@mitre.org","published":"2000-11-01T05:00:00.000","lastModified":"2026-06-16T21:53:24.397","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The -ftrapv compiler option in gcc and g++ 3.3.3 and earlier does not handle all types of integer overflows, which may leave applications vulnerable to vulnerabilities related to overflows."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:g\\+\\+:*:*:*:*:*:*:*:*","versionEndIncluding":"3.3.3","matchCriteriaId":"3F8F6387-72F3-4659-B298-4B1752213D1C"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:gcc:*:*:*:*:*:*:*:*","versionEndIncluding":"3.3.3","matchCriteriaId":"0914E3FE-A632-4E8B-B6E4-71CC6DBD07D3"}]}]}],"references":[{"url":"http://gcc.gnu.org/ml/gcc-bugs/2002-05/msg00198.html","source":"cve@mitre.org"},{"url":"http://www.kb.cert.org/vuls/id/540517","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://gcc.gnu.org/ml/gcc-bugs/2002-05/msg00198.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.kb.cert.org/vuls/id/540517","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]}]}},{"cve":{"id":"CVE-2000-0804","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:30.933","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Check Point VPN-1/FireWall-1 4.1 and earlier allows remote attackers to bypass the directionality check via fragmented TCP connection requests or reopening closed TCP connection requests, aka \"One-way Connection Enforcement Bypass.\""}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:3.0:*:*:*:*:*:*:*","matchCriteriaId":"A550C18E-F07A-4A05-87F0-B1D52FDC401C"},{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:4.0:*:*:*:*:*:*:*","matchCriteriaId":"0F543272-8C7E-4326-BA97-142FBEA641E5"},{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:4.1:*:*:*:*:*:*:*","matchCriteriaId":"100F03E3-1538-47AF-9CA6-E9E5C1DF05D4"}]}]}],"references":[{"url":"http://www.checkpoint.com/techsupport/alerts/list_vun.html#One-way_Connection","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/4419","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5468","source":"cve@mitre.org"},{"url":"http://www.checkpoint.com/techsupport/alerts/list_vun.html#One-way_Connection","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/4419","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5468","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0805","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:31.053","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Check Point VPN-1/FireWall-1 4.1 and earlier improperly retransmits encapsulated FWS packets, even if they do not come from a valid FWZ client, aka \"Retransmission of Encapsulated Packets.\""}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:3.0:*:*:*:*:*:*:*","matchCriteriaId":"A550C18E-F07A-4A05-87F0-B1D52FDC401C"},{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:4.0:*:*:*:*:*:*:*","matchCriteriaId":"0F543272-8C7E-4326-BA97-142FBEA641E5"},{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:4.1:*:*:*:*:*:*:*","matchCriteriaId":"100F03E3-1538-47AF-9CA6-E9E5C1DF05D4"}]}]}],"references":[{"url":"http://www.checkpoint.com/techsupport/alerts/list_vun.html#Retransmission_of","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/4415","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5469","source":"cve@mitre.org"},{"url":"http://www.checkpoint.com/techsupport/alerts/list_vun.html#Retransmission_of","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/4415","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5469","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0806","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:31.177","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The inter-module authentication mechanism (fwa1) in Check Point VPN-1/FireWall-1 4.1 and earlier may allow remote attackers to conduct a denial of service, aka \"Inter-module Communications Bypass.\""}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:3.0:*:*:*:*:*:*:*","matchCriteriaId":"A550C18E-F07A-4A05-87F0-B1D52FDC401C"},{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:4.0:*:*:*:*:*:*:*","matchCriteriaId":"0F543272-8C7E-4326-BA97-142FBEA641E5"},{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:4.1:*:*:*:*:*:*:*","matchCriteriaId":"100F03E3-1538-47AF-9CA6-E9E5C1DF05D4"}]}]}],"references":[{"url":"http://www.checkpoint.com/techsupport/alerts/list_vun.html#Inter-module_Communications","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/4413","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5162","source":"cve@mitre.org"},{"url":"http://www.checkpoint.com/techsupport/alerts/list_vun.html#Inter-module_Communications","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/4413","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5162","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0807","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:31.310","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The OPSEC communications authentication mechanism (fwn1) in Check Point VPN-1/FireWall-1 4.1 and earlier allows remote attackers to spoof connections, aka the \"OPSEC Authentication Vulnerability.\""}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:3.0:*:*:*:*:*:*:*","matchCriteriaId":"A550C18E-F07A-4A05-87F0-B1D52FDC401C"},{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:4.0:*:*:*:*:*:*:*","matchCriteriaId":"0F543272-8C7E-4326-BA97-142FBEA641E5"},{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:4.1:*:*:*:*:*:*:*","matchCriteriaId":"100F03E3-1538-47AF-9CA6-E9E5C1DF05D4"}]}]}],"references":[{"url":"http://www.checkpoint.com/techsupport/alerts/list_vun.html#OPSEC_Authentication","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/4420","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5471","source":"cve@mitre.org"},{"url":"http://www.checkpoint.com/techsupport/alerts/list_vun.html#OPSEC_Authentication","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/4420","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5471","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0808","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:31.430","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The seed generation mechanism in the inter-module S/Key authentication mechanism in Check Point VPN-1/FireWall-1 4.1 and earlier allows remote attackers to bypass authentication via a brute force attack, aka \"One-time (s/key) Password Authentication.\""}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:3.0:*:*:*:*:*:*:*","matchCriteriaId":"A550C18E-F07A-4A05-87F0-B1D52FDC401C"},{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:4.0:*:*:*:*:*:*:*","matchCriteriaId":"0F543272-8C7E-4326-BA97-142FBEA641E5"},{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:4.1:*:*:*:*:*:*:*","matchCriteriaId":"100F03E3-1538-47AF-9CA6-E9E5C1DF05D4"}]}]}],"references":[{"url":"http://www.checkpoint.com/techsupport/alerts/list_vun.html#One-time_Password","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/4421","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5137","source":"cve@mitre.org"},{"url":"http://www.checkpoint.com/techsupport/alerts/list_vun.html#One-time_Password","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/4421","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5137","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0809","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:31.557","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Getkey in the protocol checker in the inter-module communication mechanism in Check Point VPN-1/FireWall-1 4.1 and earlier allows remote attackers to cause a denial of service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:3.0:*:*:*:*:*:*:*","matchCriteriaId":"A550C18E-F07A-4A05-87F0-B1D52FDC401C"},{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:4.0:*:*:*:*:*:*:*","matchCriteriaId":"0F543272-8C7E-4326-BA97-142FBEA641E5"},{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:4.1:*:*:*:*:*:*:*","matchCriteriaId":"100F03E3-1538-47AF-9CA6-E9E5C1DF05D4"}]}]}],"references":[{"url":"http://www.checkpoint.com/techsupport/alerts/list_vun.html#Getkey_Buffer","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/4422","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5139","source":"cve@mitre.org"},{"url":"http://www.checkpoint.com/techsupport/alerts/list_vun.html#Getkey_Buffer","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/4422","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5139","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0812","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:31.923","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The administration module in Sun Java web server allows remote attackers to execute arbitrary commands by uploading Java code to the module and invoke the com.sun.server.http.pagecompile.jsp92.JspServlet by requesting a URL that begins with a /servlet/ tag."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sun:java_system_web_server:1.1.2:*:*:*:*:*:*:*","matchCriteriaId":"1FF95716-6357-4F5D-A6C4-79EE8E3C49E5"},{"vulnerable":true,"criteria":"cpe:2.3:a:sun:java_system_web_server:1.1.3:*:*:*:*:*:*:*","matchCriteriaId":"8812EC0B-E426-43D7-9E2B-542CAAAB0D30"},{"vulnerable":true,"criteria":"cpe:2.3:a:sun:java_system_web_server:1.1_beta:*:*:*:*:*:*:*","matchCriteriaId":"454CFAE0-1FA0-4E25-8E2E-93E289CCF3EC"},{"vulnerable":true,"criteria":"cpe:2.3:a:sun:java_system_web_server:2.0:*:*:*:*:*:*:*","matchCriteriaId":"6E8894D1-5147-4065-AA67-ECFE676ED899"}]}]}],"references":[{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/197&type=0&nav=sec.sba","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1600","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/advisory.html?id=2542","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5135","source":"cve@mitre.org"},{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/197&type=0&nav=sec.sba","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1600","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/advisory.html?id=2542","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5135","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0813","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:32.053","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Check Point VPN-1/FireWall-1 4.1 and earlier allows remote attackers to redirect FTP connections to other servers (\"FTP Bounce\") via invalid FTP commands that are processed improperly by FireWall-1, aka \"FTP Connection Enforcement Bypass.\""}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:3.0:*:*:*:*:*:*:*","matchCriteriaId":"A550C18E-F07A-4A05-87F0-B1D52FDC401C"},{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:4.0:*:*:*:*:*:*:*","matchCriteriaId":"0F543272-8C7E-4326-BA97-142FBEA641E5"},{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:4.1:*:*:*:*:*:*:*","matchCriteriaId":"100F03E3-1538-47AF-9CA6-E9E5C1DF05D4"}]}]}],"references":[{"url":"http://www.checkpoint.com/techsupport/alerts/list_vun.html#FTP_Connection","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/4434","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5474","source":"cve@mitre.org"},{"url":"http://www.checkpoint.com/techsupport/alerts/list_vun.html#FTP_Connection","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/4434","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5474","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0824","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:32.550","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The unsetenv function in glibc 2.1.1 does not properly unset an environmental variable if the variable is provided twice to a program, which could allow local users to execute arbitrary commands in setuid programs by specifying their own duplicate environmental variables such as LD_PRELOAD or LD_LIBRARY_PATH."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:glibc:2.1.1:*:*:*:*:*:*:*","matchCriteriaId":"8ED8F0E8-A969-4F7F-A100-662F4A5426FD"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0436.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0509.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0525.html","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=93760201002154&w=2","source":"cve@mitre.org"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-028.0.txt","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/2000/20000902","source":"cve@mitre.org"},{"url":"http://www.linux-mandrake.com/en/updates/MDKSA-2000-040.php3","source":"cve@mitre.org"},{"url":"http://www.linux-mandrake.com/en/updates/MDKSA-2000-045.php3","source":"cve@mitre.org"},{"url":"http://www.novell.com/linux/security/advisories/adv5_draht_glibc_txt.html","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-057.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/79537","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1639","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/648","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.turbolinux.com/pipermail/tl-security-announce/2000-September/000020.html","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5173","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0436.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0509.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0525.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=93760201002154&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-028.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.debian.org/security/2000/20000902","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.linux-mandrake.com/en/updates/MDKSA-2000-040.php3","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.linux-mandrake.com/en/updates/MDKSA-2000-045.php3","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.novell.com/linux/security/advisories/adv5_draht_glibc_txt.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-057.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/79537","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1639","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/648","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.turbolinux.com/pipermail/tl-security-announce/2000-September/000020.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5173","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0825","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:32.720","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Ipswitch Imail 6.0 allows remote attackers to cause a denial of service via a large number of connections in which a long Host: header is sent, which causes a thread to crash."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:imail:6.00:*:*:*:*:*:*:*","matchCriteriaId":"0A81DF07-7B75-4590-861C-F0FBC81E86AD"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/win2ksecadvice/2000-q3/0071.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=96659012127444&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=ntbugtraq&m=96654521004571&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2011","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5475","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/win2ksecadvice/2000-q3/0071.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=96659012127444&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=ntbugtraq&m=96654521004571&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2011","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5475","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0826","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:32.863","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in ddicgi.exe program in Mobius DocumentDirect for the Internet 1.2 allows remote attackers to execute arbitrary commands via a long GET request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mobius:documentdirect_for_the_internet:1.2:*:*:*:*:*:*:*","matchCriteriaId":"3FF3B1D7-DA61-4406-8DDA-66D10D2C73C2"}]}]}],"references":[{"url":"http://www.atstake.com/research/advisories/2000/a090800-1.txt","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1657","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5210","source":"cve@mitre.org"},{"url":"http://www.atstake.com/research/advisories/2000/a090800-1.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1657","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5210","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0827","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:32.987","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the web authorization form of Mobius DocumentDirect for the Internet 1.2 allows remote attackers to cause a denial of service or execute arbitrary commands via a long username."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mobius:documentdirect_for_the_internet:1.2:*:*:*:*:*:*:*","matchCriteriaId":"3FF3B1D7-DA61-4406-8DDA-66D10D2C73C2"}]}]}],"references":[{"url":"http://www.atstake.com/research/advisories/2000/a090800-1.txt","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1657","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5211","source":"cve@mitre.org"},{"url":"http://www.atstake.com/research/advisories/2000/a090800-1.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1657","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5211","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0828","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:33.107","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in ddicgi.exe in Mobius DocumentDirect for the Internet 1.2 allows remote attackers to execute arbitrary commands via a long User-Agent parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mobius:documentdirect_for_the_internet:1.2:*:*:*:*:*:*:*","matchCriteriaId":"3FF3B1D7-DA61-4406-8DDA-66D10D2C73C2"}]}]}],"references":[{"url":"http://www.atstake.com/research/advisories/2000/a090800-1.txt","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1657","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5212","source":"cve@mitre.org"},{"url":"http://www.atstake.com/research/advisories/2000/a090800-1.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1657","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5212","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0829","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:33.230","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The tmpwatch utility in Red Hat Linux forks a new process for each directory level, which allows local users to cause a denial of service by creating deeply nested directories in /tmp or /var/tmp/."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:redhat:tmpwatch:2.2:*:*:*:*:*:*:*","matchCriteriaId":"C8A78557-96FB-458B-A6B8-CF61BBFEBBDB"},{"vulnerable":true,"criteria":"cpe:2.3:a:redhat:tmpwatch:2.5.1:*:*:*:*:*:*:*","matchCriteriaId":"D976654E-FA94-4146-9FB1-7764E39C2AC0"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:i386:*:*:*:*:*","matchCriteriaId":"B72D6205-DFA4-41D9-B3B6-0B7DA756CD8F"}]}]}],"references":[{"url":"http://www.redhat.com/support/errata/RHSA-2000-080.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/81364","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1664","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5217","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-080.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/81364","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1664","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5217","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0830","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:33.350","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"annclist.exe in webTV for Windows allows remote attackers to cause a denial of service by via a large, malformed UDP packet to ports 22701 through 22705."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:webtv:*:*:*:*:*:*:*:*","matchCriteriaId":"3BB38E8E-B3B2-4C2F-84E7-D52BFD5E9236"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/81852","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1671","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-074","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5216","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/81852","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1671","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-074","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5216","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0831","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:33.477","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Fastream FTP++ 2.0 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long username."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:fastream:ftp\\+\\+_server:2.0:*:*:*:*:*:*:*","matchCriteriaId":"21961F5E-AAD0-4B63-9B15-8E176FBC305D"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/win2ksecadvice/2000-q3/0109.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/win2ksecadvice/2000-q3/0109.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0832","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:33.597","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Htgrep CGI program allows remote attackers to read arbitrary files by specifying the full pathname in the hdr parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oscar_nierstrasz:htgrep:*:*:*:*:*:*:*:*","versionEndIncluding":"3.0","matchCriteriaId":"6A7CF62D-124C-4DCC-B18A-F3D92C025A5B"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0208.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5476","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0208.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5476","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0833","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:33.727","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in WinSMTP 1.06f and 2.X allows remote attackers to cause a denial of service via a long (1) USER or (2) HELO command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:jack_de_winter:winsmtp:1.6f:*:*:*:*:*:*:*","matchCriteriaId":"55AB3A6D-2BE5-4300-B832-5AF210B96315"},{"vulnerable":true,"criteria":"cpe:2.3:a:jack_de_winter:winsmtp:2.x:*:*:*:*:*:*:*","matchCriteriaId":"7E0A2A24-C4DE-452E-889D-03C35AB4A54C"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/81693","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1680","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5255","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/81693","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1680","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5255","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0834","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:33.847","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Windows 2000 telnet client attempts to perform NTLM authentication by default, which allows remote attackers to capture and replay the NTLM challenge/response via a telnet:// URL that points to the malicious server, aka the \"Windows 2000 Telnet Client NTLM Authentication\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"}]}]}],"references":[{"url":"http://www.atstake.com/research/advisories/2000/a091400-1.txt","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1683","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-067","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5242","source":"cve@mitre.org"},{"url":"http://www.atstake.com/research/advisories/2000/a091400-1.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1683","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-067","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5242","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0835","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:33.977","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"search.dll Sambar ISAPI Search utility in Sambar Server 4.4 Beta 3 allows remote attackers to read arbitrary directories by specifying the directory in the query parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sambar:sambar_server:4.3:*:*:*:*:*:*:*","matchCriteriaId":"94F70201-3D0E-463A-82B8-4CDE086EAF61"},{"vulnerable":true,"criteria":"cpe:2.3:a:sambar:sambar_server:4.4:beta3:*:*:*:*:*:*","matchCriteriaId":"2147F86B-2293-4D20-B5FC-58F5DA936D7D"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0175.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1684","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0175.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1684","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0836","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:34.097","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in CamShot WebCam Trial2.6 allows remote attackers to execute arbitrary commands via a long Authorization header."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:broadgun_software:camshot_webcam:2.6trial_version:*:*:*:*:*:*:*","matchCriteriaId":"189D20B9-41B9-41CC-A2B2-1C1E81659F42"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0176.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1685","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5246","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0176.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1685","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5246","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0837","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:34.227","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"FTP Serv-U 2.5e allows remote attackers to cause a denial of service by sending a large number of null bytes."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:deerfield:ftp_serv-u:2.5e:*:*:*:*:*:*:*","matchCriteriaId":"CA71E661-8D57-4CE6-9C38-9FB84162FA50"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/73843","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1543","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5029","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/73843","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1543","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5029","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0838","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:34.343","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Fastream FUR HTTP server 1.0b allows remote attackers to cause a denial of service via a long GET request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:fastream:fur_http_server:1.0b:*:*:*:*:*:*:*","matchCriteriaId":"E5EF62B1-BB39-48A9-8CFB-9276768442F2"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/win2ksecadvice/2000-q3/0111.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5237","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/win2ksecadvice/2000-q3/0111.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5237","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0839","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:34.460","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WinCOM LPD 1.00.90 allows remote attackers to cause a denial of service via a large number of LPD options to the LPD port (515)."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ipswitch:wincom_lpd:1.00.90:*:*:*:*:*:*:*","matchCriteriaId":"4CCFF522-C01B-400A-9185-06114BC0FA0E"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0212.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1701","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5258","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0212.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1701","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5258","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0840","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:34.590","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in XMail POP3 server before version 0.59 allows remote attackers to execute arbitrary commands via a long USER command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:davide_libenzi:xmail:0.58:*:*:*:*:*:*:*","matchCriteriaId":"A0DC8B05-AD4E-4ACD-BF23-91989831E4C6"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0001.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1652","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5192","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0001.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1652","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5192","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0841","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:34.717","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in XMail POP3 server before version 0.59 allows remote attackers to execute arbitrary commands via a long APOP command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:davide_libenzi:xmail:0.58:*:*:*:*:*:*:*","matchCriteriaId":"A0DC8B05-AD4E-4ACD-BF23-91989831E4C6"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0001.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1652","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5191","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0001.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1652","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5191","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0842","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:34.843","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The search97cgi/vtopic\" in the UnixWare 7 scohelphttp webserver allows remote attackers to read arbitrary files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.0:*:*:*:*:*:*:*","matchCriteriaId":"17439B5B-0B66-490B-9B53-2C9D576C879F"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0086.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1663","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0086.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1663","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0843","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:34.967","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in pam_smb and pam_ntdom pluggable authentication modules (PAM) allow remote attackers to execute arbitrary commands via a login with a long user name."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:dave_airlie:pam_smb:1.1.5:*:*:*:*:*:*:*","matchCriteriaId":"E008E992-638F-49A2-8643-E6ABCA55BDEE"},{"vulnerable":true,"criteria":"cpe:2.3:a:luke_kenneth_casson_leighton:pam_ntdom:0.23:*:*:*:*:*:*:*","matchCriteriaId":"D68A438A-D4EE-4E6F-80AA-6CCD9E5EDFC9"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0073.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0114.html","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/2000/20000911","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-047.php3","source":"cve@mitre.org"},{"url":"http://www.novell.com/linux/security/advisories/adv8_draht_pam_smb_txt.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1666","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0073.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0114.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.debian.org/security/2000/20000911","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-047.php3","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.novell.com/linux/security/advisories/adv8_draht_pam_smb_txt.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1666","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0844","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:35.100","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Some functions that implement the locale subsystem on Unix do not  properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-264"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:caldera:openlinux_ebuilder:3.0:*:*:*:*:*:*:*","matchCriteriaId":"E02719FF-924A-4E96-AE1D-5994A8D4275E"},{"vulnerable":true,"criteria":"cpe:2.3:a:immunix:immunix:6.2:*:*:*:*:*:*:*","matchCriteriaId":"DB0F79BE-8EBF-44D8-83A1-9331669BED54"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:4.0:*:*:*:*:*:*:*","matchCriteriaId":"48F068BE-F5B3-4E43-8E6A-24AB4D2DEDF0"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:4.0es:*:*:*:*:*:*:*","matchCriteriaId":"6529EC98-7CF7-47A1-95BB-2F34066FE95D"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:4.1:*:*:*:*:*:*:*","matchCriteriaId":"FFDAB801-AAA0-4B3B-B488-52E7BA8650C5"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:4.2:*:*:*:*:*:*:*","matchCriteriaId":"612AC3B1-8E55-437F-9600-67EA1A8BAD48"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:5.0:*:*:*:*:*:*:*","matchCriteriaId":"537A5C29-D770-4755-A6AB-8916754E14DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:5.1:*:*:*:*:*:*:*","matchCriteriaId":"E3AC05A9-04DA-4ED3-94D8-3254384CB724"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.2:*:*:*:*:*:*:*","matchCriteriaId":"0ECE564D-B4BB-4C05-88CC-CDC3F8E4E366"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.3:*:*:*:*:*:*:*","matchCriteriaId":"B2D59247-56FA-46B4-BB51-2DAE71AFC145"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.4:*:*:*:*:*:*:*","matchCriteriaId":"15BE08F8-5F3F-45DB-BFE0-1F6F2F57A4D4"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5:*:*:*:*:*:*:*","matchCriteriaId":"C30D6962-3DBB-4DF8-A04F-8E47AFEDCF99"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.1:*:*:*:*:*:*:*","matchCriteriaId":"36B60E50-4F5A-4404-BEA3-C94F7D27B156"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.2m:*:*:*:*:*:*:*","matchCriteriaId":"772E3C7E-9947-414F-8642-18653BB048E0"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.3:*:*:*:*:*:*:*","matchCriteriaId":"E6B2E6D1-8C2D-4E15-A6BB-E4FE878ED1E7"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.3f:*:*:*:*:*:*:*","matchCriteriaId":"8D51EC29-8836-4F87-ABF8-FF7530DECBB1"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.3m:*:*:*:*:*:*:*","matchCriteriaId":"518B7253-7B0F-4A0A-ADA7-F3E3B5AAF877"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.4:*:*:*:*:*:*:*","matchCriteriaId":"440B7208-34DB-4898-8461-4E703F7EDFB7"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.6:*:*:*:*:*:*:*","matchCriteriaId":"D07AA144-6FD7-4C80-B4F2-D21C1AFC864A"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.7:*:*:*:*:*:*:*","matchCriteriaId":"29113D8E-9618-4A0E-9157-678332082858"},{"vulnerable":true,"criteria":"cpe:2.3:o:sgi:irix:6.5.8:*:*:*:*:*:*:*","matchCriteriaId":"313613E9-4837-433C-90EE-84A92E8D24E5"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux:*:*:*:*:*:*:*:*","matchCriteriaId":"4EC3F7E5-5D49-471B-A705-ADD2642E5B46"},{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux_eserver:2.3:*:*:*:*:*:*:*","matchCriteriaId":"3BE526D3-4CD8-423C-81FA-65B92F862A5E"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.0:*:*:*:*:*:*:*","matchCriteriaId":"203BDD63-2FA5-42FD-A9CD-6BDBB41A63C4"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.1:*:*:*:*:*:*:*","matchCriteriaId":"3C67BDA1-9451-4026-AC6D-E912C882A757"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.2:*:*:*:*:*:*:*","matchCriteriaId":"58B90124-0543-4226-BFF4-13CCCBCCB243"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.3:*:*:*:*:*:*:*","matchCriteriaId":"618111F3-6608-47F0-AB0D-21547E342871"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:3.2:*:*:*:*:*:*:*","matchCriteriaId":"DD5E0678-45C7-492A-963C-897494D6878F"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:3.2.4:*:*:*:*:*:*:*","matchCriteriaId":"E55C28A7-CD21-47CD-AA50-E8B2D89A18E8"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:3.2.5:*:*:*:*:*:*:*","matchCriteriaId":"D3C00FC9-AD97-4226-A0EA-7DB14AA592DE"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.0:*:*:*:*:*:*:*","matchCriteriaId":"44C6203A-D05B-47B1-8BC2-BA021EBAFDEB"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1:*:*:*:*:*:*:*","matchCriteriaId":"FBF25306-E7C2-4F9A-A809-4779A6C0A079"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1.1:*:*:*:*:*:*:*","matchCriteriaId":"B3BA7775-30F2-4CA0-BA6E-70ED12A48D90"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1.2:*:*:*:*:*:*:*","matchCriteriaId":"FB038A89-1CA6-4313-B7CE-56C894945FFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1.3:*:*:*:*:*:*:*","matchCriteriaId":"2B3BC86F-5718-4232-BFFF-6244A7C09B8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1.4:*:*:*:*:*:*:*","matchCriteriaId":"E6118CC1-6E51-4E1B-8F58-43B337515222"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.1.5:*:*:*:*:*:*:*","matchCriteriaId":"F3D3B348-270F-4209-B31A-2B40F5E4A601"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.2:*:*:*:*:*:*:*","matchCriteriaId":"05F20EC2-ADE6-4F96-A2E7-1DCCA819D657"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.2.1:*:*:*:*:*:*:*","matchCriteriaId":"91D7C561-4D23-430B-A7D8-137E52B08FF5"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3:*:*:*:*:*:*:*","matchCriteriaId":"11ACD012-F05F-45CD-A170-96CBAA42FFE4"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.1:*:*:*:*:*:*:*","matchCriteriaId":"55919E74-09E7-44BA-9941-D1B69BB1692F"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.2:*:*:*:*:*:*:*","matchCriteriaId":"45F3C5D8-8BC3-44EB-917A-D0BA051D3D9D"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"E4853E92-5E0A-47B9-A343-D5BEE87D2C27"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:7.1:*:*:*:*:*:*:*","matchCriteriaId":"3EC1FF5D-5EAB-44D5-B281-770547C70D68"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.0:*:*:*:*:*:*:*","matchCriteriaId":"4BF54738-3C44-4FD4-AA9C-CAB2E86B1DC1"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.1:*:*:*:*:*:*:*","matchCriteriaId":"4EF44364-0F57-4B74-81B0-501EA6B58501"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:*:*:*:*:*:*","matchCriteriaId":"A8EED385-8C39-4A40-A507-2EFE7652FB35"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"2DFA94D5-0139-490C-8257-0751FE9FBAE4"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"2EC4D3AB-38FA-4D44-AF5C-2DCD15994E76"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:*:*:*:*:*:*","matchCriteriaId":"0633B5A6-7A88-4A96-9462-4C09D124ED36"},{"vulnerable":true,"criteria":"cpe:2.3:o:slackware:slackware_linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"C2A9C005-4392-4C95-9B92-98EEC73EFE73"},{"vulnerable":true,"criteria":"cpe:2.3:o:slackware:slackware_linux:7.1:*:*:*:*:*:*:*","matchCriteriaId":"F0297F56-5F41-48FD-AB47-36E3BD2AB7E7"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.6:*:*:*:*:*:*:*","matchCriteriaId":"34EBF074-78C8-41AF-88F1-DA6726E56F8B"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.0:*:*:*:*:*:*:*","matchCriteriaId":"C1370216-93EB-400F-9AA6-CB2DC316DAA7"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.1:*:*:*:*:*:*:*","matchCriteriaId":"5FF2C7C4-6F8D-40DB-9FBC-E7E4D76A2B23"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.2:*:*:*:*:*:*:*","matchCriteriaId":"84523B48-218B-45F4-9C04-2C103612DCB2"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.3:*:*:*:*:*:*:*","matchCriteriaId":"C7A22D21-E0A9-4B56-86C7-805AD1A610D6"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.4:*:*:*:*:*:*:*","matchCriteriaId":"7AAC8954-74A8-4FE3-ABE7-57DA041D9D8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5:*:*:*:*:*:*:*","matchCriteriaId":"5B72953B-E873-4E44-A3CF-12D770A0D416"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5.1:*:*:*:*:*:*:*","matchCriteriaId":"39F847DB-65A9-47DA-BCFA-A179E5E2301A"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.8:*:*:*:*:*:*:*","matchCriteriaId":"A2475113-CFE4-41C8-A86F-F2DA6548D224"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"124E1802-7984-45ED-8A92-393FC20662FD"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.2:*:*:*:*:*:*:*","matchCriteriaId":"1B67020A-6942-4478-B501-764147C4970D"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.3:*:*:*:*:*:*:*","matchCriteriaId":"0AD0FF64-05DF-48C2-9BB5-FD993121FB2E"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.4:*:*:*:*:*:*:*","matchCriteriaId":"7786607A-362E-4817-A17E-C76D6A1F737D"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"C9E7D75A-333E-4C63-9593-F64ABA5D1CE3"},{"vulnerable":true,"criteria":"cpe:2.3:o:trustix:secure_linux:1.0:*:*:*:*:*:*:*","matchCriteriaId":"8DF1A678-FEF1-4549-8EDC-518444CFC57F"},{"vulnerable":true,"criteria":"cpe:2.3:o:trustix:secure_linux:1.1:*:*:*:*:*:*:*","matchCriteriaId":"9D0DFB12-B43F-4207-A900-464A97F5124D"},{"vulnerable":true,"criteria":"cpe:2.3:o:turbolinux:turbolinux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"981A0654-C17D-48BB-A8B3-A728CB159C33"},{"vulnerable":true,"criteria":"cpe:2.3:o:turbolinux:turbolinux:6.0.1:*:*:*:*:*:*:*","matchCriteriaId":"2AA8956D-F533-42BA-A06B-7CDB0A267B2F"},{"vulnerable":true,"criteria":"cpe:2.3:o:turbolinux:turbolinux:6.0.2:*:*:*:*:*:*:*","matchCriteriaId":"C6619B49-8A89-4600-A47F-A39C8BF54259"},{"vulnerable":true,"criteria":"cpe:2.3:o:turbolinux:turbolinux:6.0.3:*:*:*:*:*:*:*","matchCriteriaId":"A0AA1204-D181-4E1C-B795-159FC57E86A9"},{"vulnerable":true,"criteria":"cpe:2.3:o:turbolinux:turbolinux:6.0.4:*:*:*:*:*:*:*","matchCriteriaId":"24740C11-59D0-4071-97BD-8BF7084FC1FC"}]}]}],"references":[{"url":"ftp://patches.sgi.com/support/free/security/advisories/20000901-01-P","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0436.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0457.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0427.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/tru64/2000-q4/0000.html","source":"cve@mitre.org"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-030.0.txt","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/2000/20000902","source":"cve@mitre.org"},{"url":"http://www.novell.com/linux/security/advisories/adv5_draht_glibc_txt.html","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-057.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1634","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.turbolinux.com/pipermail/tl-security-announce/2000-September/000020.html","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5176","source":"cve@mitre.org"},{"url":"ftp://patches.sgi.com/support/free/security/advisories/20000901-01-P","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0436.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0457.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0427.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/tru64/2000-q4/0000.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-030.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.debian.org/security/2000/20000902","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.novell.com/linux/security/advisories/adv5_draht_glibc_txt.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-057.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1634","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.turbolinux.com/pipermail/tl-security-announce/2000-September/000020.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5176","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0845","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:35.270","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"kdebug daemon (kdebugd) in Digital Unix 4.0F allows remote attackers to read arbitrary files by specifying the full file name in the initialization packet."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:N","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:digital:unix:4.0f:*:*:*:*:*:*:*","matchCriteriaId":"8237F390-43DB-4B07-9CD7-C3F804710497"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0204.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0204.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0846","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:35.410","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Darxite 0.4 and earlier allows a remote attacker to execute arbitrary commands via a long username or password."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ashley_montanaro:darxite:0.4:*:*:*:*:*:*:*","matchCriteriaId":"666EBBBF-B016-4592-94C0-9DEC5EDF870B"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0256.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1598","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5134","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0256.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1598","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5134","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0847","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:35.527","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in University of Washington c-client library (used by pine and other programs) allows remote attackers to execute arbitrary commands via a long X-Keywords header."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:university_of_washington:imap:4.7b:*:*:*:*:*:*:*","matchCriteriaId":"C8B5612D-2592-4D36-9973-3C3CDF18C7B3"},{"vulnerable":true,"criteria":"cpe:2.3:a:university_of_washington:imap:4.7c:*:*:*:*:*:*:*","matchCriteriaId":"272E8047-AFBF-49BD-8A13-F39E688CB818"},{"vulnerable":true,"criteria":"cpe:2.3:a:university_of_washington:pine:4.20:*:*:*:*:*:*:*","matchCriteriaId":"16766308-A2F2-4155-A4F7-702808CC9450"},{"vulnerable":true,"criteria":"cpe:2.3:a:university_of_washington:pine:4.21:*:*:*:*:*:*:*","matchCriteriaId":"AA9E599F-D922-42B7-9FB5-FB025B095895"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0425.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0437.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/freebsd/2000-09/0108.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1646","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1687","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5223","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0425.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0437.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/freebsd/2000-09/0108.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1646","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1687","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5223","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0848","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:35.657","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in IBM WebSphere web application server (WAS) allows remote attackers to execute arbitrary commands via a long Host:  request header."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:3.0.2:*:*:*:*:*:*:*","matchCriteriaId":"6FC25AE4-76D2-4FE6-8B33-7069322EBC5D"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0192.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www-4.ibm.com/software/webservers/appserv/doc/v3022/fxpklst.htm#Security","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1691","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5252","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0192.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www-4.ibm.com/software/webservers/appserv/doc/v3022/fxpklst.htm#Security","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1691","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5252","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0849","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:35.773","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Race condition in Microsoft Windows Media server allows remote attackers to cause a denial of service in the Windows Media Unicast Service via a malformed request, aka the \"Unicast Service Race Condition\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:N/I:N/A:P","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:windows_media_services:4.0:*:*:*:*:*:*:*","matchCriteriaId":"D073958F-0428-4E15-97B0-8EDAD0E80632"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:windows_media_services:4.1:*:*:*:*:*:*:*","matchCriteriaId":"AA3DDE73-E623-45A3-AA49-17BAFB89A2CC"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1655","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-064","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5193","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1655","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-064","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5193","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0850","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:35.890","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Netegrity SiteMinder before 4.11 allows remote attackers to bypass its authentication mechanism by appending \"$/FILENAME.ext\" (where ext is .ccc, .class, or .jpg) to the requested URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netegrity:siteminder:3.6:*:*:*:*:*:*:*","matchCriteriaId":"2837196C-771B-46EA-9176-D450C6046503"},{"vulnerable":true,"criteria":"cpe:2.3:a:netegrity:siteminder:4.0:*:*:*:*:*:*:*","matchCriteriaId":"0D23E120-0D4A-426E-84B9-075EF715E3B4"}]}]}],"references":[{"url":"http://www.atstake.com/research/advisories/2000/a091100-1.txt","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1681","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5230","source":"cve@mitre.org"},{"url":"http://www.atstake.com/research/advisories/2000/a091100-1.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1681","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5230","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0851","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:36.020","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the Still Image Service in Windows 2000 allows local users to gain additional privileges via a long WM_USER message, aka the \"Still Image Service Privilege Escalation\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"}]}]}],"references":[{"url":"http://www.atstake.com/research/advisories/2000/a090700-1.txt","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1651","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-065","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5203","source":"cve@mitre.org"},{"url":"http://www.atstake.com/research/advisories/2000/a090700-1.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1651","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-065","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5203","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0852","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:36.143","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Multiple buffer overflows in eject on FreeBSD and possibly other OSes allows local users to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.0:*:*:*:*:*:*:*","matchCriteriaId":"EE38C50A-81FE-412E-9717-3672FAE6A6F4"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.0:*:*:*:*:*:*:*","matchCriteriaId":"D0A585A1-FF82-418F-90F8-072458DB7816"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:5.0:*:*:*:*:*:*:*","matchCriteriaId":"61EBA52A-2D8B-4FB5-866E-AE67CE1842E7"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:5.0:alpha:*:*:*:*:*:*","matchCriteriaId":"3B13D898-C1B6-44B9-8432-7DDB8A380E9E"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/freebsd/2000-09/0110.html","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1559","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1686","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5248","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/freebsd/2000-09/0110.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1559","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1686","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5248","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0853","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:36.267","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"YaBB Bulletin Board 9.1.2000 allows remote attackers to read arbitrary files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:yabb:yabb:2000-09-01:*:*:*:*:*:*:*","matchCriteriaId":"5B8C55BC-81D8-46E2-A303-22D379E3CC65"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0072.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1668","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5254","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0072.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1668","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5254","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0854","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:36.387","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"When a Microsoft Office 2000 document is launched, the directory of that document is first used to locate DLL's such as riched20.dll and msi.dll, which could allow an attacker to execute arbitrary commands by inserting a Trojan Horse DLL into the same directory as the document."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:office:2000:*:*:*:*:*:*:*","matchCriteriaId":"A9A82D13-513C-46FA-AF51-0582233E230A"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0277.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q3/0155.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/win2ksecadvice/2000-q3/0117.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1699","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5263","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0277.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q3/0155.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/win2ksecadvice/2000-q3/0117.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1699","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5263","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0855","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:36.523","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"SunFTP build 9(1) allows remote attackers to cause a denial of service by connecting to the server and disconnecting before sending a newline."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:xs4all_data:xs4all_data_sunftp:1.0_build_9:*:*:*:*:*:*:*","matchCriteriaId":"A21FE51E-C424-4DD5-A102-92097707D57D"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0408.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1637","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0408.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1637","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0856","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:36.647","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in SunFTP build 9(1) allows remote attackers to cause a denial of service or possibly execute arbitrary commands via a long GET request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:xs4all_data:xs4all_data_sunftp:1.0_build_9:*:*:*:*:*:*:*","matchCriteriaId":"A21FE51E-C424-4DD5-A102-92097707D57D"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0408.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1638","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0408.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1638","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0857","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:36.770","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The logging capability in muh 2.05d IRC server does not properly cleanse user-injected format strings, which allows remote attackers to cause a denial of service or execute arbitrary commands via a malformed nickname."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sebastian_kienzl:muh:2.05d:*:*:*:*:*:*:*","matchCriteriaId":"006CF8D2-CAA9-47A3-8DAB-F5E99D1693B1"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0067.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0068.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1665","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5215","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0067.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0068.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1665","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5215","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0858","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:36.887","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in Microsoft Windows NT 4.0 allows remote attackers to cause a denial of service in IIS by sending it a series of malformed requests which cause INETINFO.EXE to fail, aka the \"Invalid URL\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/vendor/2000-q3/0065.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/80413","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1642","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5202","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/vendor/2000-q3/0065.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/80413","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1642","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5202","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0859","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:37.020","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The web configuration server for NTMail V5 and V6 allows remote attackers to cause a denial of service via a series of partial HTTP requests."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gordano:ntmail:5.0:*:*:*:*:*:*:*","matchCriteriaId":"B41F8197-E230-497C-87C9-6DA293D43E09"},{"vulnerable":true,"criteria":"cpe:2.3:a:gordano:ntmail:6.0:*:*:*:*:*:*:*","matchCriteriaId":"2147A4FA-3268-4466-8F10-6E7C9F8DB144"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0471.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1640","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5182","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0471.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1640","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5182","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0860","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:37.143","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The file upload capability in PHP versions 3 and 4 allows remote attackers to read arbitrary files by setting hidden form fields whose names match the names of internal PHP script variables."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:1.0:*:*:*:*:*:*:*","matchCriteriaId":"92647629-083F-4042-8365-4AD2EBC9C1BF"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:2.0:*:*:*:*:*:*:*","matchCriteriaId":"FF72E8D5-9F8C-4BD4-9AA4-28E23CB48A47"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:2.0b10:*:*:*:*:*:*:*","matchCriteriaId":"83BE1120-6370-4470-8586-6581EDF3FD69"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:3.0:*:*:*:*:*:*:*","matchCriteriaId":"245C601D-0FE7-47E3-8304-6FF45E9567D6"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:3.0.1:*:*:*:*:*:*:*","matchCriteriaId":"691BB8BB-329A-4640-B758-7590C99B5E42"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:3.0.2:*:*:*:*:*:*:*","matchCriteriaId":"E2BC4CCE-2774-463E-82EA-36CD442D3A7B"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:3.0.3:*:*:*:*:*:*:*","matchCriteriaId":"C478024C-2FCD-463F-A75E-E04660AA9DF1"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:3.0.4:*:*:*:*:*:*:*","matchCriteriaId":"AC9C32F4-5102-4E9B-9F32-B24B65A5ED2F"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:3.0.5:*:*:*:*:*:*:*","matchCriteriaId":"A5BD99C0-E875-496E-BE5E-A8DCBD414B5C"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:3.0.6:*:*:*:*:*:*:*","matchCriteriaId":"1851ADE5-C70C-46E0-941A-6ADF7DB5C126"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:3.0.7:*:*:*:*:*:*:*","matchCriteriaId":"69DA3BA2-AF53-4C9D-93FA-0317841595B1"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:3.0.8:*:*:*:*:*:*:*","matchCriteriaId":"FB0CFEE5-2274-4BBC-A24A-3A0D13F607FA"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:3.0.9:*:*:*:*:*:*:*","matchCriteriaId":"67B59D6A-7EDA-4C34-81D6-C2557C85D164"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:3.0.10:*:*:*:*:*:*:*","matchCriteriaId":"AEBA40B6-8FDF-41AA-8166-F491FF7F3118"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:3.0.11:*:*:*:*:*:*:*","matchCriteriaId":"E74E2B72-A428-4BB3-B6F8-0AF5E487A807"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:3.0.12:*:*:*:*:*:*:*","matchCriteriaId":"1E2F1D82-8E6A-4FBF-9055-A0F395DC17FA"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:3.0.13:*:*:*:*:*:*:*","matchCriteriaId":"945FF149-3446-4905-BCA1-C397E3497B58"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:4.0:*:*:*:*:*:*:*","matchCriteriaId":"EDBEC461-D553-41B7-8D85-20B6A933C21C"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0455.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0477.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0150.html","source":"cve@mitre.org"},{"url":"http://cvsweb.php.net/viewcvs.cgi/php4/main/rfc1867.c.diff?r1=1.38%3Aphp_4_0_2&tr1=1.1&r2=text&tr2=1.45&diff_format=u","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1649","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5190","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0455.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0477.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0150.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://cvsweb.php.net/viewcvs.cgi/php4/main/rfc1867.c.diff?r1=1.38%3Aphp_4_0_2&tr1=1.1&r2=text&tr2=1.45&diff_format=u","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1649","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5190","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0861","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:37.287","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Mailman 1.1 allows list administrators to execute arbitrary commands via shell metacharacters in the %(listname) macro expansion."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:mailman:1.1:*:*:*:*:*:*:*","matchCriteriaId":"1D965E3E-E08C-40EA-AF66-470F473F0262"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0040.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/freebsd/2000-09/0112.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1667","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5493","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0040.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/freebsd/2000-09/0112.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1667","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5493","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0862","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:37.423","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in an administrative interface utility for Allaire Spectra 1.0.1 allows remote attackers to read and modify sensitive configuration information."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:N","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:allaire:spectra:1.0.1:*:*:*:*:*:*:*","matchCriteriaId":"42D8A283-08F2-4F40-AA94-FDE57403DE02"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/vendor/2000-q3/0059.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5466","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/vendor/2000-q3/0059.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5466","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0863","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:37.550","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in listmanager earlier than 2.105.1 allows local users to gain additional privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:listmanager:linux:*:*:*:*:*:*:*:*","versionEndIncluding":"2.96","matchCriteriaId":"D1EA6C49-8581-4710-A8A0-3496A38AC953"},{"vulnerable":true,"criteria":"cpe:2.3:a:listmanager:linux:2.97:*:*:*:*:*:*:*","matchCriteriaId":"9C4BBB11-6DFF-4CA5-91F7-6C6A43431AAB"},{"vulnerable":true,"criteria":"cpe:2.3:a:listmanager:linux:2.98:*:*:*:*:*:*:*","matchCriteriaId":"624FEE6A-75FE-46EA-AB85-AF94C7AAE2AE"},{"vulnerable":true,"criteria":"cpe:2.3:a:listmanager:linux:2.99:*:*:*:*:*:*:*","matchCriteriaId":"81458087-B1E8-4B09-BA17-36FD31E2D100"},{"vulnerable":true,"criteria":"cpe:2.3:a:listmanager:linux:2.100:*:*:*:*:*:*:*","matchCriteriaId":"FF297C39-C0E1-496C-8C4C-74CF0D16BEE9"},{"vulnerable":true,"criteria":"cpe:2.3:a:listmanager:linux:2.101:*:*:*:*:*:*:*","matchCriteriaId":"9C2A955A-15D3-4B9E-A77D-BE6456F9E273"},{"vulnerable":true,"criteria":"cpe:2.3:a:listmanager:linux:2.102:*:*:*:*:*:*:*","matchCriteriaId":"D9456C03-F149-4F9B-84B7-99C5878F795C"},{"vulnerable":true,"criteria":"cpe:2.3:a:listmanager:linux:2.103:*:*:*:*:*:*:*","matchCriteriaId":"E72881EE-C8E1-4CDA-9BD6-C4930EE6B1E6"},{"vulnerable":true,"criteria":"cpe:2.3:a:listmanager:linux:2.104:*:*:*:*:*:*:*","matchCriteriaId":"E12033AF-2AA5-4F13-A020-B2BAFC1804E0"},{"vulnerable":true,"criteria":"cpe:2.3:a:listmanager:linux:2.105.1:*:*:*:*:*:*:*","matchCriteriaId":"22C81928-EA21-46DB-8EB5-BE31CDE4F28E"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/freebsd/2000-09/0111.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5503","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/freebsd/2000-09/0111.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5503","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0864","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:37.687","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Race condition in the creation of a Unix domain socket in GNOME esound 0.2.19 and earlier allows a local user to change the permissions of arbitrary files and directories, and gain additional privileges, via a  symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:C/I:C/A:C","baseScore":6.2,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"MEDIUM","exploitabilityScore":1.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-362"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gnome:esound:0.2.19:*:*:*:*:*:*:*","matchCriteriaId":"B380BD42-CF0E-44A2-AB26-CB60AC1457A2"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0095.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0328.htm","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0118.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/freebsd/2000-08/0365.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.debian.org/security/2000/20001008","source":"cve@mitre.org"},{"url":"http://www.novell.com/linux/security/advisories/esound_daemon_race_condition.html","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-077.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1659","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5213","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0095.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0328.htm","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0118.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/freebsd/2000-08/0365.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.debian.org/security/2000/20001008","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.novell.com/linux/security/advisories/esound_daemon_race_condition.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-077.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1659","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5213","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0865","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:37.840","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in dvtermtype in Tridia Double Vision 3.07.00 allows local users to gain root privileges via a long terminal type argument."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:tridia:doublevision:3.07.00:*:*:*:*:*:*:*","matchCriteriaId":"AFDFDCB0-D4D8-4C2E-A9D0-BFC301484424"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0185.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1697","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5261","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0185.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1697","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5261","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0866","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:37.977","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Interbase 6 SuperServer for Linux allows an attacker to cause a denial of service via a query containing 0 bytes."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:borland_software:interbase_superserver:6.0:*:*:*:*:*:*:*","matchCriteriaId":"1DB0894E-F477-45F1-902B-D87C4E2291BC"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0027.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1654","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5205","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0027.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1654","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5205","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0867","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:38.097","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Kernel logging daemon (klogd) in Linux does not properly cleanse user-injected format strings, which allows local users to gain root privileges by triggering malformed kernel messages."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.1:*:slink:*:*:*:*:*","matchCriteriaId":"FAB6D992-C0E9-4951-85FD-5FE54045AEAF"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.2:*:potato:*:*:*:*:*","matchCriteriaId":"470653CE-3BF8-498E-B673-82AC854B23C1"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"D323A6B7-2741-4F31-B0D6-5D6FB738A2A1"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"ACAAD334-2CA7-4B3B-BA25-302E7610BC2A"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"E4853E92-5E0A-47B9-A343-D5BEE87D2C27"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:7.1:*:*:*:*:*:*:*","matchCriteriaId":"3EC1FF5D-5EAB-44D5-B281-770547C70D68"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:*:*:*:*:*:*","matchCriteriaId":"A8EED385-8C39-4A40-A507-2EFE7652FB35"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:*:*:*:*:*:*","matchCriteriaId":"0633B5A6-7A88-4A96-9462-4C09D124ED36"},{"vulnerable":true,"criteria":"cpe:2.3:o:slackware:slackware_linux:*:*:*:*:*:*:*:*","matchCriteriaId":"F432C6C2-8676-4DD5-B9E6-71F6C164EF9D"},{"vulnerable":true,"criteria":"cpe:2.3:o:trustix:secure_linux:1.1:*:*:*:*:*:*:*","matchCriteriaId":"9D0DFB12-B43F-4207-A900-464A97F5124D"}]}]}],"references":[{"url":"ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2000-032.0.txt","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0193.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://frontal2.mandriva.com/security/advisories?name=MDKSA-2000:050","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97726239017741&w=2","source":"cve@mitre.org"},{"url":"http://www.novell.com/linux/security/advisories/adv9_draht_syslogd_txt.html","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/5824","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-061.html","source":"cve@mitre.org"},{"url":"http://www.turbolinux.com/pipermail/tl-security-announce/2000-September/000023.html","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5259","source":"cve@mitre.org"},{"url":"ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2000-032.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0193.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://frontal2.mandriva.com/security/advisories?name=MDKSA-2000:050","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=97726239017741&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.novell.com/linux/security/advisories/adv9_draht_syslogd_txt.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/5824","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-061.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.turbolinux.com/pipermail/tl-security-announce/2000-September/000023.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5259","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0868","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:38.250","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default configuration of Apache 1.3.12 in SuSE Linux 6.4 allows remote attackers to read source code for CGI scripts by replacing the /cgi-bin/ in the requested URL with /cgi-bin-sdb/."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.3.12:*:*:*:*:*:*:*","matchCriteriaId":"33FD6791-3B84-40CA-BCF4-B5637B172F2A"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.3:*:*:*:*:*:*:*","matchCriteriaId":"0AD0FF64-05DF-48C2-9BB5-FD993121FB2E"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.4:*:*:*:*:*:*:*","matchCriteriaId":"7786607A-362E-4817-A17E-C76D6A1F737D"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/linux/suse/2000-q3/0906.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.atstake.com/research/advisories/2000/a090700-2.txt","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1658","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5197","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/linux/suse/2000-q3/0906.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.atstake.com/research/advisories/2000/a090700-2.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1658","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5197","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0869","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:38.377","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default configuration of Apache 1.3.12 in SuSE Linux 6.4 enables WebDAV, which allows remote attackers to list arbitrary directories via the PROPFIND HTTP request method."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.3.12:*:*:*:*:*:*:*","matchCriteriaId":"33FD6791-3B84-40CA-BCF4-B5637B172F2A"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"F163E145-09F7-4BE2-9B46-5B6713070BAB"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"124E1802-7984-45ED-8A92-393FC20662FD"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.1:alpha:*:*:*:*:*:*","matchCriteriaId":"C7F08806-9458-439A-8EAE-2553122262ED"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.2:*:*:*:*:*:*:*","matchCriteriaId":"1B67020A-6942-4478-B501-764147C4970D"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.3:*:*:*:*:*:*:*","matchCriteriaId":"0AD0FF64-05DF-48C2-9BB5-FD993121FB2E"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.3:*:ppc:*:*:*:*:*","matchCriteriaId":"E74E0A28-7C78-4160-8BCF-99605285C0EE"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.3:alpha:*:*:*:*:*:*","matchCriteriaId":"76159C25-0760-47CB-AFCE-28306CDEA830"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.4:*:*:*:*:*:*:*","matchCriteriaId":"7786607A-362E-4817-A17E-C76D6A1F737D"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.4:*:ppc:*:*:*:*:*","matchCriteriaId":"6E2FE291-1142-4627-A497-C0BB0D934A0B"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.4:alpha:*:*:*:*:*:*","matchCriteriaId":"49BC7C7E-046C-4186-822E-9F3A2AD3577B"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"C9E7D75A-333E-4C63-9593-F64ABA5D1CE3"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/linux/suse/2000-q3/0906.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.atstake.com/research/advisories/2000/a090700-3.txt","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1656","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5204","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/linux/suse/2000-q3/0906.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.atstake.com/research/advisories/2000/a090700-3.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1656","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5204","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0870","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:38.503","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in EFTP allows remote attackers to cause a denial of service via a long string."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:khamil_landross_and_zack_jones:eftp:2.0.4.281:*:*:*:*:*:*:*","matchCriteriaId":"DFE301FA-1D94-4F1D-ADF6-84A5451FF0B3"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0089.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.osvdb.org/1555","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1675","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5219","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0089.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.osvdb.org/1555","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1675","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5219","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0871","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:38.617","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in EFTP allows remote attackers to cause a denial of service by sending a string that does not contain a newline, then disconnecting from the server."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:khamil_landross_and_zack_jones:eftp:2.0.4.281:*:*:*:*:*:*:*","matchCriteriaId":"DFE301FA-1D94-4F1D-ADF6-84A5451FF0B3"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0089.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.osvdb.org/409","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1677","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5220","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0089.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.osvdb.org/409","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1677","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5220","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0872","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:38.740","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"explorer.php in PhotoAlbum 0.9.9 allows remote attackers to read arbitrary files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:nathan_purciful:phpphotoalbum:0.9.9:*:*:*:*:*:*:*","matchCriteriaId":"2B6D46B4-762D-4E46-8AA6-06FED7D9DA41"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0015.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1650","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5198","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0015.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1650","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5198","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0873","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:38.860","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"netstat in AIX 4.x.x does not properly restrict access to the -Zi option, which allows local users to clear network interface statistics and possibly hide evidence of unusual network activities."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.2:*:*:*:*:*:*:*","matchCriteriaId":"05F20EC2-ADE6-4F96-A2E7-1DCCA819D657"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.2.1:*:*:*:*:*:*:*","matchCriteriaId":"91D7C561-4D23-430B-A7D8-137E52B08FF5"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3:*:*:*:*:*:*:*","matchCriteriaId":"11ACD012-F05F-45CD-A170-96CBAA42FFE4"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.1:*:*:*:*:*:*:*","matchCriteriaId":"55919E74-09E7-44BA-9941-D1B69BB1692F"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.2:*:*:*:*:*:*:*","matchCriteriaId":"45F3C5D8-8BC3-44EB-917A-D0BA051D3D9D"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0454.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1660","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5214","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0454.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1660","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5214","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0874","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:38.987","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Eudora mail client includes the absolute path of the sender's host within a virtual card (VCF)."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:eudora:4.2:*:*:*:*:*:*:*","matchCriteriaId":"A2A8B413-CD80-4D91-BE69-9063EA60345B"},{"vulnerable":true,"criteria":"cpe:2.3:a:qualcomm:eudora:4.3:*:*:*:*:*:*:*","matchCriteriaId":"A9F8ADFF-D7B7-4907-B5DB-3920BC6EFB7B"}]}]}],"references":[{"url":"http://www.osvdb.org/1545","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/80888","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1653","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5206","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1545","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/80888","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1653","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5206","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0875","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:39.110","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WFTPD and WFTPD Pro 2.41 RC12 allows remote attackers to cause a denial of service by sending a long string of unprintable characters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd:2.4.1:*:*:*:*:*:*:*","matchCriteriaId":"BE581DA0-0DEC-4C2D-B2CA-FFBDC39FAF95"},{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd:2.4.1_rc11:*:*:*:*:*:*:*","matchCriteriaId":"0F0D720E-2C84-4AD8-8B2A-9F73E3396AB7"},{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd:2.4.1_rc12:*:*:*:*:*:*:*","matchCriteriaId":"599F7D23-563D-439A-9868-F9169569282A"},{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd:2.34:*:*:*:*:*:*:*","matchCriteriaId":"2955B341-3B28-4474-96DD-AA11CD14E1A3"},{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd:2.40:*:*:*:*:*:*:*","matchCriteriaId":"B9B1592D-0D0E-4B03-9414-82AAD16B680E"},{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd_pro:2.41_rc12:*:*:*:*:*:*:*","matchCriteriaId":"B0BE4206-6635-401B-9E0D-1B222DC6D0B5"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0488.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.wftpd.com/bug_gpf.htm","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5194","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0488.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.wftpd.com/bug_gpf.htm","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5194","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0876","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:39.233","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WFTPD and WFTPD Pro 2.41 RC12 allows remote attackers to obtain the  full pathname of the server via a \"%C\" command, which generates an error message that includes the pathname."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-200"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd:2.4.1:*:*:*:*:*:*:*","matchCriteriaId":"BE581DA0-0DEC-4C2D-B2CA-FFBDC39FAF95"},{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd:2.4.1_rc11:*:*:*:*:*:*:*","matchCriteriaId":"0F0D720E-2C84-4AD8-8B2A-9F73E3396AB7"},{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd:2.4.1_rc12:*:*:*:*:*:*:*","matchCriteriaId":"599F7D23-563D-439A-9868-F9169569282A"},{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd:2.34:*:*:*:*:*:*:*","matchCriteriaId":"2955B341-3B28-4474-96DD-AA11CD14E1A3"},{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd:2.40:*:*:*:*:*:*:*","matchCriteriaId":"B9B1592D-0D0E-4B03-9414-82AAD16B680E"},{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd_pro:2.41_rc12:*:*:*:*:*:*:*","matchCriteriaId":"B0BE4206-6635-401B-9E0D-1B222DC6D0B5"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0488.html","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/5829","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5196","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0488.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/5829","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5196","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0877","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:39.353","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"mailform.pl CGI script in MailForm 2.0 allows remote attackers to read arbitrary files by specifying the file name in the XX-attach_file parameter, which MailForm then sends to the attacker."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ranson_johnson:mailform:2.0:*:*:*:*:*:*:*","matchCriteriaId":"0B4A969B-8B12-4C29-8DAD-24F76F5D1859"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0092.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1670","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5224","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0092.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1670","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5224","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0878","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:39.473","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The mailto CGI script allows remote attacker to execute arbitrary commands via shell metacharacters in the emailadd form field."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ranson_johnson:mailto_cgi_script:*:*:*:*:*:*:*:*","versionEndIncluding":"1.9","matchCriteriaId":"079184BA-72BC-4C10-A56C-09E989819D4F"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0088.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1669","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5241","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0088.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1669","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5241","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0879","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:39.600","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"LPPlus programs dccsched, dcclpdser, dccbkst, dccshut, dcclpdshut, and dccbkstshut are installed setuid root and world executable, which allows arbitrary local users to start and stop various LPD services."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:plus_technologies:lpplus:3.2.2:*:*:*:*:*:*:*","matchCriteriaId":"49A54053-DF3A-47E1-AB8A-5BA32BA6AB10"},{"vulnerable":true,"criteria":"cpe:2.3:a:plus_technologies:lpplus:3.3:*:*:*:*:*:*:*","matchCriteriaId":"C66BF777-D87A-4C19-AC77-49A90C43DCC7"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0531.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1643","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5199","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0531.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1643","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5199","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0880","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:39.750","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"LPPlus creates the lpdprocess file with world-writeable permissions, which allows local users to kill arbitrary processes by specifying an alternate process ID and using the setuid dcclpdshut program to kill the process that was specified in the lpdprocess file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:P","baseScore":3.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:plus_technologies:lpplus:3.2.2:*:*:*:*:*:*:*","matchCriteriaId":"49A54053-DF3A-47E1-AB8A-5BA32BA6AB10"},{"vulnerable":true,"criteria":"cpe:2.3:a:plus_technologies:lpplus:3.3:*:*:*:*:*:*:*","matchCriteriaId":"C66BF777-D87A-4C19-AC77-49A90C43DCC7"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0531.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1643","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5200","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0531.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1643","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5200","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0881","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:39.873","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The dccscan setuid program in LPPlus does not properly check if the user has the permissions to print the file that is specified to dccscan, which allows local users to print arbitrary files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:plus_technologies:lpplus:3.2.2:*:*:*:*:*:*:*","matchCriteriaId":"49A54053-DF3A-47E1-AB8A-5BA32BA6AB10"},{"vulnerable":true,"criteria":"cpe:2.3:a:plus_technologies:lpplus:3.3:*:*:*:*:*:*:*","matchCriteriaId":"C66BF777-D87A-4C19-AC77-49A90C43DCC7"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0531.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1644","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5201","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0531.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1644","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5201","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0882","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:39.990","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Intel Express 500 series switches allow a remote attacker to cause a denial of service via a malformed ICMP packet, which causes the CPU to crash."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:intel:express_510t:2.63:*:*:*:*:*:*:*","matchCriteriaId":"751D9D67-A085-4B4B-8894-CC485A8BCE58"},{"vulnerable":true,"criteria":"cpe:2.3:h:intel:express_510t:2.64:*:*:*:*:*:*:*","matchCriteriaId":"B445FB3F-505E-4274-902F-6F4D4880957C"},{"vulnerable":true,"criteria":"cpe:2.3:h:intel:express_520t:2.63:*:*:*:*:*:*:*","matchCriteriaId":"799D2573-872F-4728-83DA-2CFDEFA8AAE1"},{"vulnerable":true,"criteria":"cpe:2.3:h:intel:express_520t:2.64:*:*:*:*:*:*:*","matchCriteriaId":"95E1ABCD-FA76-401B-9035-5E5177E3F87B"},{"vulnerable":true,"criteria":"cpe:2.3:h:intel:express_550f:2.63:*:*:*:*:*:*:*","matchCriteriaId":"BBC0117F-DF7E-48B0-AB6F-1ACD32C2E953"},{"vulnerable":true,"criteria":"cpe:2.3:h:intel:express_550f:2.64:*:*:*:*:*:*:*","matchCriteriaId":"55668A24-B8AE-4099-9F41-1802F492AB01"},{"vulnerable":true,"criteria":"cpe:2.3:h:intel:express_550t:2.63:*:*:*:*:*:*:*","matchCriteriaId":"6E683C8D-2E0C-424B-B866-3E0C68A792D9"},{"vulnerable":true,"criteria":"cpe:2.3:h:intel:express_550t:2.64:*:*:*:*:*:*:*","matchCriteriaId":"041F03B7-568B-4F54-AD74-BB80D80448B1"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0533.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1647","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0533.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1647","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0883","sourceIdentifier":"cve@mitre.org","published":"2000-11-14T05:00:00.000","lastModified":"2026-06-16T21:52:40.130","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default configuration of mod_perl for Apache as installed on Mandrake Linux 6.1 through 7.1 sets the /perl/ directory to be browseable, which allows remote attackers to list the contents of that directory."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"ACAAD334-2CA7-4B3B-BA25-302E7610BC2A"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"E4853E92-5E0A-47B9-A343-D5BEE87D2C27"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:7.1:*:*:*:*:*:*:*","matchCriteriaId":"3EC1FF5D-5EAB-44D5-B281-770547C70D68"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0111.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1678","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5257","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0111.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1678","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5257","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1223","sourceIdentifier":"cve@mitre.org","published":"2000-11-20T05:00:00.000","lastModified":"2026-06-16T21:53:24.900","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"quikstore.cgi in Quikstore Shopping Cart allows remote attackers to execute arbitrary commands via shell metacharacters in the URL portion of an HTTP GET request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:i-soft:quikstore:*:*:*:*:*:*:*:*","matchCriteriaId":"97464CB1-6822-4CAF-A155-9CC35A19594E"}]}]}],"references":[{"url":"http://www.kb.cert.org/vuls/id/671444","source":"cve@mitre.org","tags":["Third Party Advisory","US Government Resource"]},{"url":"http://www.kb.cert.org/vuls/id/671444","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","US Government Resource"]}]}},{"cve":{"id":"CVE-2000-1217","sourceIdentifier":"cve@mitre.org","published":"2000-11-21T05:00:00.000","lastModified":"2026-06-16T21:53:24.150","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Windows 2000 before Service Pack 2 (SP2), when running in a non-Windows 2000 domain and using NTLM authentication, and when credentials of an account are locally cached, allows local users to bypass account lockout policies and make an unlimited number of login attempts, aka the \"Domain Account Lockout\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:sp1:*:*:*:*:*:*","matchCriteriaId":"294EBA01-147B-4DA0-937E-ACBB655EDE53"}]}]}],"references":[{"url":"http://www.kb.cert.org/vuls/id/818496","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://www.securityfocus.com/bid/1973","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-089","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5585","source":"cve@mitre.org"},{"url":"http://www.kb.cert.org/vuls/id/818496","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"http://www.securityfocus.com/bid/1973","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-089","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5585","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1224","sourceIdentifier":"cve@mitre.org","published":"2000-11-23T05:00:00.000","lastModified":"2026-06-16T21:53:25.010","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Caucho Technology Resin 1.2 and possibly earlier allows remote attackers to view JSP source via an HTTP request to a .jsp file with certain characters appended to the file name, such as (1) \"..\", (2) \"%2e..\", (3) \"%81\", (4) \"%82\", and others."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:caucho_technology:resin:1.1.5:*:*:*:*:*:*:*","matchCriteriaId":"22531253-3486-486A-905E-57067B2D18AD"},{"vulnerable":true,"criteria":"cpe:2.3:a:caucho_technology:resin:1.2:*:*:*:*:*:*:*","matchCriteriaId":"B2019C22-B81F-434F-9D41-77C85EF26C91"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97502269408279&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/146770","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1986","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5568","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97502269408279&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/146770","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1986","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5568","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1222","sourceIdentifier":"cve@mitre.org","published":"2000-12-10T05:00:00.000","lastModified":"2026-06-16T21:53:24.790","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"AIX sysback before 4.2.1.13 uses a relative path to find and execute the hostname program, which allows local users to gain privileges by modifying the path to point to a malicious hostname program."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:*:*:*:*:*:*:*:*","versionEndIncluding":"4.2.1.12","matchCriteriaId":"5221C66C-4BAC-475B-9D1F-2BD11030783C"}]}]}],"references":[{"url":"http://www.kb.cert.org/vuls/id/17566","source":"cve@mitre.org","tags":["Third Party Advisory","US Government Resource"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6432","source":"cve@mitre.org"},{"url":"http://www.kb.cert.org/vuls/id/17566","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","US Government Resource"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6432","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0998","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:52:56.410","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Format string vulnerability in top program allows local attackers to gain root privileges via the \"kill\" or \"renice\" function."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.5:*:*:*:*:*:*:*","matchCriteriaId":"47E02BE6-4800-4940-B269-385B66AC5077"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.5:stable:*:*:*:*:*:*","matchCriteriaId":"0EB09993-B837-4352-B09D-3656F62638A8"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.5.1:*:*:*:*:*:*:*","matchCriteriaId":"7C283AD7-1C58-4CE8-A6CD-502FFE0B18BB"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.5.1:release:*:*:*:*:*:*","matchCriteriaId":"0361EA35-FBD7-4E8F-8625-C8100ED7BB7C"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.5.1:stable:*:*:*:*:*:*","matchCriteriaId":"29EAA113-2404-4ABB-826B-3AA2AA858D02"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.0:*:*:*:*:*:*:*","matchCriteriaId":"D0A585A1-FF82-418F-90F8-072458DB7816"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.0:alpha:*:*:*:*:*:*","matchCriteriaId":"E3F7EB61-55A5-4776-B0E7-3508920A6CEA"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.1:*:*:*:*:*:*:*","matchCriteriaId":"AE31DFF8-06AB-489D-A0C5-509C090283B5"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.1.1:*:*:*:*:*:*:*","matchCriteriaId":"3BE1E3D8-2BB1-4FFA-9BC9-7AF347D26190"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:62.top.v1.1.asc","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"ftp://ftp.openbsd.org/pub/OpenBSD/patches/2.7/common/028_format_strings.patch","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1895","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:62.top.v1.1.asc","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"ftp://ftp.openbsd.org/pub/OpenBSD/patches/2.7/common/028_format_strings.patch","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1895","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0999","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:52:56.540","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Format string vulnerabilities in OpenBSD ssh program (and possibly other BSD-based operating systems) allow attackers to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:openbsd:openssh:4.5:*:*:*:*:*:*:*","matchCriteriaId":"9B72CFB3-39C7-469C-AA59-69F5B8993BF7"}]}]}],"references":[{"url":"ftp://ftp.openbsd.org/pub/OpenBSD/patches/2.7/common/028_format_strings.patch","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"ftp://ftp.openbsd.org/pub/OpenBSD/patches/2.7/common/028_format_strings.patch","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1000","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:52:56.670","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Format string vulnerability in AOL Instant Messenger (AIM) 4.1.2010 allows remote attackers to cause a denial of service and possibly execute arbitrary commands by transferring a file whose name includes format characters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:aol:instant_messenger:4.1.2010:*:*:*:*:*:*:*","matchCriteriaId":"8B2707D6-D5EC-4A22-B5E1-2A34913CB3FB"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/137374","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1747","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5314","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/137374","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1747","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5314","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1001","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:52:56.810","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"add_2_basket.asp in Element InstantShop allows remote attackers to modify price information via the \"price\" hidden form variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:element_n.v:element_instantshop:1.0:*:*:*:*:*:*:*","matchCriteriaId":"7D4C2DFB-4792-4666-BE6A-75AF9CAE713B"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97240616129614&w=2","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/6487","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5402","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97240616129614&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/6487","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5402","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1002","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:52:56.930","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"POP3 daemon in Stalker CommuniGate Pro 3.3.2 generates different error messages for invalid usernames versus invalid passwords, which allows remote attackers to determine valid email addresses on the server for SPAM attacks."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:stalker:communigate_pro:3.3.2:*:*:*:*:*:*:*","matchCriteriaId":"8E4802FD-52E5-4A8B-8AAB-4536A4A8AC4A"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/139523","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1792","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5363","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/139523","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1792","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5363","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1003","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:52:57.060","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"NETBIOS client in Windows 95 and Windows 98 allows a remote attacker to cause a denial of service by changing a file sharing service to return an unknown driver type, which causes the client to crash."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:N/I:N/A:P","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_95:*:*:*:*:*:*:*:*","matchCriteriaId":"82F7322B-8022-4D0B-ADB3-D0F5B6F20309"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98:*:gold:*:*:*:*:*:*","matchCriteriaId":"2D3B703C-79B2-4FA2-9E12-713AB977A880"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98se:*:*:*:*:*:*:*:*","matchCriteriaId":"AA733AD2-D948-46A0-A063-D29081A56F1F"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/139511","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1794","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5370","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/139511","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1794","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5370","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1004","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:52:57.190","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Format string vulnerability in OpenBSD photurisd allows local users to execute arbitrary commands via a configuration file directory name that contains formatting characters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.3:*:*:*:*:*:*:*","matchCriteriaId":"1D2DA7F0-E3C0-447A-A2B0-ECC928389D84"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.4:*:*:*:*:*:*:*","matchCriteriaId":"FEBE290B-5EC6-4BBA-B645-294C150E417A"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.5:*:*:*:*:*:*:*","matchCriteriaId":"ACE7FDFB-C6A6-4B58-B0B4-236E4EA76EF6"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.6:*:*:*:*:*:*:*","matchCriteriaId":"0DF053A1-C252-427E-9EEF-27240F422976"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.7:*:*:*:*:*:*:*","matchCriteriaId":"48A9C344-45AA-47B9-B35A-1A62E220D9C6"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97068555106135&w=2","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/6123","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5336","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97068555106135&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/6123","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5336","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1005","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:52:57.310","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in html_web_store.cgi and web_store.cgi CGI programs in eXtropia WebStore allows remote attackers to read arbitrary files via a .. (dot dot) attack on the page parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:extropia:extropia_webstore:1.0:*:*:*:*:*:*:*","matchCriteriaId":"F5C64FF0-0D27-453A-A2AF-BEE1605A4DC2"},{"vulnerable":true,"criteria":"cpe:2.3:a:extropia:extropia_webstore:2.0:*:*:*:*:*:*:*","matchCriteriaId":"401F0F91-4227-4A89-8C00-55D99E9D1C24"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/138495","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1774","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5347","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/138495","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1774","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5347","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1006","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:52:57.420","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Exchange Server 5.5 does not properly handle a MIME header with a blank charset specified, which allows remote attackers to cause a denial of service via a charset=\"\" command, aka the \"Malformed MIME Header\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-noinfo"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:exchange_server:5.5:-:*:*:*:*:*:*","matchCriteriaId":"B4F9C143-4734-4E5D-9281-F51513C5CAAF"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1869","source":"cve@mitre.org","tags":["Exploit","Patch","Third Party Advisory","VDB Entry","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-082","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5448","source":"cve@mitre.org","tags":["VDB Entry"]},{"url":"http://www.securityfocus.com/bid/1869","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Third Party Advisory","VDB Entry","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-082","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5448","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["VDB Entry"]}]}},{"cve":{"id":"CVE-2000-1007","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:52:57.537","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"I-gear 3.5.7 and earlier does not properly process log entries in which a URL is longer than 255 characters, which allows an attacker to cause reporting errors."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:symantec:i-gear:3.5:*:*:*:*:*:*:*","matchCriteriaId":"6E61525F-0BFE-4738-9D7F-85E190D75D71"},{"vulnerable":true,"criteria":"cpe:2.3:a:symantec:i-gear:3.5.7:*:*:*:*:*:*:*","matchCriteriaId":"CEC883C1-A120-4D8B-AB71-DDD245FBF098"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q4/0048.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5791","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q4/0048.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5791","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1008","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:52:57.657","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"PalmOS 3.5.2 and earlier uses weak encryption to store the user password, which allows attackers with physical access to the Palm device to decrypt the password and gain access to the device."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:palm:palm_os:*:*:*:*:*:*:*:*","versionEndIncluding":"3.5.2","matchCriteriaId":"189F51EC-95A6-499A-8F51-39F67B49C7C2"}]}]}],"references":[{"url":"http://www.atstake.com/research/advisories/2000/a092600-1.txt","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1715","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.atstake.com/research/advisories/2000/a092600-1.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1715","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1009","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:52:57.790","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"dump in Red Hat Linux 6.2 trusts the pathname specified by the RSH environmental variable, which allows local users to obtain root privileges by modifying the RSH variable to point to a Trojan horse program."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:*:*:*:*:*:*","matchCriteriaId":"0633B5A6-7A88-4A96-9462-4C09D124ED36"},{"vulnerable":true,"criteria":"cpe:2.3:o:trustix:secure_linux:1.1:*:*:*:*:*:*:*","matchCriteriaId":"9D0DFB12-B43F-4207-A900-464A97F5124D"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0438.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1871","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5437","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0438.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1871","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5437","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1010","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:52:57.913","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Format string vulnerability in talkd in OpenBSD and possibly other BSD-based OSes allows remote attackers to execute arbitrary commands via a user name that contains format characters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.3:*:*:*:*:*:*:*","matchCriteriaId":"1D2DA7F0-E3C0-447A-A2B0-ECC928389D84"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.4:*:*:*:*:*:*:*","matchCriteriaId":"FEBE290B-5EC6-4BBA-B645-294C150E417A"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.5:*:*:*:*:*:*:*","matchCriteriaId":"ACE7FDFB-C6A6-4B58-B0B4-236E4EA76EF6"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.6:*:*:*:*:*:*:*","matchCriteriaId":"0DF053A1-C252-427E-9EEF-27240F422976"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.7:*:*:*:*:*:*:*","matchCriteriaId":"48A9C344-45AA-47B9-B35A-1A62E220D9C6"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.0:*:*:*:*:*:*:*","matchCriteriaId":"4BF54738-3C44-4FD4-AA9C-CAB2E86B1DC1"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.1:*:*:*:*:*:*:*","matchCriteriaId":"4EF44364-0F57-4B74-81B0-501EA6B58501"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:alpha:*:*:*:*:*","matchCriteriaId":"07396B95-E434-46C9-A345-27C9EA9BEA26"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:i386:*:*:*:*:*","matchCriteriaId":"363AB7DB-A8BA-4D58-97C4-1DF1F0F43E07"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:sparc:*:*:*:*:*","matchCriteriaId":"0775CE08-C5AD-4FF7-AEA9-537B1EAE3BDE"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/137890","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1764","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5344","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/137890","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1764","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5344","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1011","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:52:58.040","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in catopen() function in FreeBSD 5.0 and earlier, and possibly other OSes, allows local users to gain root privileges via a long environmental variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.0:*:*:*:*:*:*:*","matchCriteriaId":"EE38C50A-81FE-412E-9717-3672FAE6A6F4"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.1:*:*:*:*:*:*:*","matchCriteriaId":"263F3734-7076-4EA8-B4C0-F37CFC4E979E"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.2:*:*:*:*:*:*:*","matchCriteriaId":"0419DD66-FF66-48BC-AD3B-F6AFD0551E36"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.3:*:*:*:*:*:*:*","matchCriteriaId":"C3518628-08E5-4AD7-AAF6-A4E38F1CDE2C"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.4:*:*:*:*:*:*:*","matchCriteriaId":"B982342C-1981-4C55-8044-AFE4D87623DF"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.5:*:*:*:*:*:*:*","matchCriteriaId":"47E02BE6-4800-4940-B269-385B66AC5077"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.5.1:*:*:*:*:*:*:*","matchCriteriaId":"7C283AD7-1C58-4CE8-A6CD-502FFE0B18BB"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.0:*:*:*:*:*:*:*","matchCriteriaId":"D0A585A1-FF82-418F-90F8-072458DB7816"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.1:*:*:*:*:*:*:*","matchCriteriaId":"AE31DFF8-06AB-489D-A0C5-509C090283B5"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.1.1:*:*:*:*:*:*:*","matchCriteriaId":"3BE1E3D8-2BB1-4FFA-9BC9-7AF347D26190"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.2:*:*:*:*:*:*:*","matchCriteriaId":"DF49BF03-C25E-4737-84D5-892895C86C58"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:5.0:*:*:*:*:*:*:*","matchCriteriaId":"61EBA52A-2D8B-4FB5-866E-AE67CE1842E7"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:53.catopen.asc","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/6070","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5638","source":"cve@mitre.org"},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:53.catopen.asc","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/6070","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5638","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1012","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:52:58.170","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The catopen function in FreeBSD 5.0 and earlier, and possibly other OSes, allows local users to read arbitrary files via the LANG environmental variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.0:*:*:*:*:*:*:*","matchCriteriaId":"EE38C50A-81FE-412E-9717-3672FAE6A6F4"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.1:*:*:*:*:*:*:*","matchCriteriaId":"263F3734-7076-4EA8-B4C0-F37CFC4E979E"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.2:*:*:*:*:*:*:*","matchCriteriaId":"0419DD66-FF66-48BC-AD3B-F6AFD0551E36"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.3:*:*:*:*:*:*:*","matchCriteriaId":"C3518628-08E5-4AD7-AAF6-A4E38F1CDE2C"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.4:*:*:*:*:*:*:*","matchCriteriaId":"B982342C-1981-4C55-8044-AFE4D87623DF"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.5:*:*:*:*:*:*:*","matchCriteriaId":"47E02BE6-4800-4940-B269-385B66AC5077"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.5.1:*:*:*:*:*:*:*","matchCriteriaId":"7C283AD7-1C58-4CE8-A6CD-502FFE0B18BB"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.0:*:*:*:*:*:*:*","matchCriteriaId":"D0A585A1-FF82-418F-90F8-072458DB7816"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.1:*:*:*:*:*:*:*","matchCriteriaId":"AE31DFF8-06AB-489D-A0C5-509C090283B5"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.1.1:*:*:*:*:*:*:*","matchCriteriaId":"3BE1E3D8-2BB1-4FFA-9BC9-7AF347D26190"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.2:*:*:*:*:*:*:*","matchCriteriaId":"DF49BF03-C25E-4737-84D5-892895C86C58"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:5.0:*:*:*:*:*:*:*","matchCriteriaId":"61EBA52A-2D8B-4FB5-866E-AE67CE1842E7"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:53.catopen.asc","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:53.catopen.asc","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1013","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:52:58.290","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The setlocale function in FreeBSD 5.0 and earlier, and possibly other OSes, allows local users to read arbitrary files via the LANG environmental variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.0:*:*:*:*:*:*:*","matchCriteriaId":"EE38C50A-81FE-412E-9717-3672FAE6A6F4"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.1:*:*:*:*:*:*:*","matchCriteriaId":"263F3734-7076-4EA8-B4C0-F37CFC4E979E"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.2:*:*:*:*:*:*:*","matchCriteriaId":"0419DD66-FF66-48BC-AD3B-F6AFD0551E36"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.3:*:*:*:*:*:*:*","matchCriteriaId":"C3518628-08E5-4AD7-AAF6-A4E38F1CDE2C"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.4:*:*:*:*:*:*:*","matchCriteriaId":"B982342C-1981-4C55-8044-AFE4D87623DF"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.5:*:*:*:*:*:*:*","matchCriteriaId":"47E02BE6-4800-4940-B269-385B66AC5077"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.5.1:*:*:*:*:*:*:*","matchCriteriaId":"7C283AD7-1C58-4CE8-A6CD-502FFE0B18BB"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.0:*:*:*:*:*:*:*","matchCriteriaId":"D0A585A1-FF82-418F-90F8-072458DB7816"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.1:*:*:*:*:*:*:*","matchCriteriaId":"AE31DFF8-06AB-489D-A0C5-509C090283B5"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.1.1:*:*:*:*:*:*:*","matchCriteriaId":"3BE1E3D8-2BB1-4FFA-9BC9-7AF347D26190"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.2:*:*:*:*:*:*:*","matchCriteriaId":"DF49BF03-C25E-4737-84D5-892895C86C58"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:5.0:*:*:*:*:*:*:*","matchCriteriaId":"61EBA52A-2D8B-4FB5-866E-AE67CE1842E7"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:53.catopen.asc","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:53.catopen.asc","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1014","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:52:58.420","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Format string vulnerability in the search97.cgi CGI script in SCO help http server for Unixware 7 allows remote attackers to execute arbitrary commands via format characters in the queryText parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sco:unixware:7.0:*:*:*:*:*:*:*","matchCriteriaId":"17439B5B-0B66-490B-9B53-2C9D576C879F"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0325.html","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/3240","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1717","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5291","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0325.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/3240","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1717","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5291","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1015","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:52:58.547","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default configuration of Slashcode before version 2.0 Alpha has a default administrative password, which allows remote attackers to gain Slashcode privileges and possibly execute arbitrary commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:open_source_development_network:slashcode:*:*:*:*:*:*:*:*","versionEndIncluding":"1.0.8","matchCriteriaId":"F30590C0-E506-42E8-9C55-11C836D59A6C"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0366.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1731","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5306","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0366.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1731","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5306","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1016","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:52:58.657","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default configuration of Apache (httpd.conf) on SuSE 6.4 includes an alias for the /usr/doc directory, which allows remote attackers to read package documentation and obtain system configuration information via an HTTP request for the /doc/packages URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.3:*:*:*:*:*:*:*","matchCriteriaId":"0AD0FF64-05DF-48C2-9BB5-FD993121FB2E"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.4:*:*:*:*:*:*:*","matchCriteriaId":"7786607A-362E-4817-A17E-C76D6A1F737D"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/84360","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1707","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5276","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/84360","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1707","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5276","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1017","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:52:58.773","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Webteachers Webdata allows remote attackers with valid Webdata accounts to read arbitrary files by posting a request to import the file into the WebData database."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:webteacher:webdata:*:*:*:*:*:*:*:*","versionEndIncluding":"2.2","matchCriteriaId":"9D88549A-F6AE-4B2E-9671-CBAFE2F4357B"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0007.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0032.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1732","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0007.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0032.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1732","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1018","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:52:58.897","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"shred 1.0 file wiping utility does not properly open a file for overwriting or flush its buffers, which prevents shred from properly replacing the file's data and allows local users to recover the file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mendel_cooper:shred:1.0:*:*:*:*:*:*:*","matchCriteriaId":"53ED9F96-6E79-4232-BEB2-2C26E8350EC2"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97119799515246&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97131166004145&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1788","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5722","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97119799515246&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=97131166004145&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1788","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5722","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1019","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:52:59.020","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Search engine in Ultraseek 3.1 and 3.1.10 (aka Inktomi Search) allows remote attackers to cause a denial of service via a malformed URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:inktomi:search_software:3.0:*:*:*:*:*:*:*","matchCriteriaId":"B039D838-F1FE-407B-B70F-B93C41295514"},{"vulnerable":true,"criteria":"cpe:2.3:a:inktomi:search_software:3.1.10:*:*:*:*:*:*:*","matchCriteriaId":"F2BB83EB-686A-4ABD-A293-C67846F661A6"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97301487015664&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1866","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5439","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97301487015664&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1866","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5439","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1020","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:52:59.143","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Heap overflow in Worldclient in Mdaemon 3.1.1 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:alt-n:mdaemon:3.1.1:*:*:*:*:*:*:*","matchCriteriaId":"AF752E6A-0AB8-4B82-A895-9AF79B0783FE"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=96925269716274&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1689","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5250","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=96925269716274&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1689","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5250","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1021","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:52:59.267","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Heap overflow in WebConfig in Mdaemon 3.1.1 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:alt-n:mdaemon:3.1.1:*:*:*:*:*:*:*","matchCriteriaId":"AF752E6A-0AB8-4B82-A895-9AF79B0783FE"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=96925269716274&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1689","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5250","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=96925269716274&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1689","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5250","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1022","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:52:59.423","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The mailguard feature in Cisco Secure PIX Firewall 5.2(2) and earlier does not properly restrict access to SMTP commands, which allows remote attackers to execute restricted commands by sending a DATA command before sending the restricted commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:pix_firewall_software:4.2\\(1\\):*:*:*:*:*:*:*","matchCriteriaId":"B1C4F7D5-DCD0-409C-86BF-A96A5253DF64"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:pix_firewall_software:4.2\\(2\\):*:*:*:*:*:*:*","matchCriteriaId":"8198D129-76D0-4983-BFC4-8EC724FE1B6A"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:pix_firewall_software:4.2\\(5\\):*:*:*:*:*:*:*","matchCriteriaId":"6BEECFAA-9DD5-4950-B9F1-CF8582225314"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:pix_firewall_software:4.3:*:*:*:*:*:*:*","matchCriteriaId":"49566EAC-05AF-4880-8000-351AF538E4CC"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:pix_firewall_software:4.4\\(4\\):*:*:*:*:*:*:*","matchCriteriaId":"118CBF59-DAD8-468E-B279-F6359E4624F1"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:pix_firewall_software:5.0:*:*:*:*:*:*:*","matchCriteriaId":"7AA2E425-904C-4070-8F5F-B81BCF3147F6"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:pix_firewall_software:5.1:*:*:*:*:*:*:*","matchCriteriaId":"604CF950-5D4B-4DC6-819E-0528B22CB05C"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:pix_firewall_software:5.2:*:*:*:*:*:*:*","matchCriteriaId":"999A0969-60EB-4B2E-A274-9F05D9F840E5"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0222.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0241.html","source":"cve@mitre.org"},{"url":"http://www.cisco.com/warp/public/707/PIXfirewallSMTPfilter-pub.shtml","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1698","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5277","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0222.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0241.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.cisco.com/warp/public/707/PIXfirewallSMTPfilter-pub.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1698","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5277","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1023","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:52:59.573","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Alabanza Control Panel does not require passwords to access administrative commands, which allows remote attackers to modify domain name information via the nsManager.cgi CGI program."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:alabanza:control_panel:*:*:*:*:*:*:*:*","versionEndIncluding":"3.0","matchCriteriaId":"83EAD8B6-4C25-4834-A1A5-E1B26701440F"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/84766","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1710","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5284","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/84766","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1710","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5284","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1024","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:52:59.690","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"eWave ServletExec 3.0C and earlier does not restrict access to the UploadServlet Java/JSP servlet, which allows remote attackers to upload files and execute arbitrary commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:unify:ewave_servletexec:3.0c:*:*:*:*:*:*:*","matchCriteriaId":"A7944E5F-FAAC-443E-BB7C-BC42392EA209"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97306581513537&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1876","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5450","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97306581513537&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1876","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5450","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1025","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:52:59.793","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"eWave ServletExec JSP/Java servlet engine, versions 3.0C and earlier, allows remote attackers to cause a denial of service via a URL that contains the \"/servlet/\" string, which invokes the ServletExec servlet and causes an exception if the servlet is already running."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:unify:ewave_servletexec:3.0c:*:*:*:*:*:*:*","matchCriteriaId":"A7944E5F-FAAC-443E-BB7C-BC42392EA209"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97295224226042&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1868","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5435","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97295224226042&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1868","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5435","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1026","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:52:59.913","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Multiple buffer overflows in LBNL tcpdump allow remote attackers to execute arbitrary commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:lbl:tcpdump:3.4:*:*:*:*:*:*:*","matchCriteriaId":"B9B50919-7C67-416D-BA2F-50747CDBE08F"},{"vulnerable":true,"criteria":"cpe:2.3:a:lbl:tcpdump:3.4a6:*:*:*:*:*:*:*","matchCriteriaId":"950C6522-3C7F-4E81-8952-246FFE1072C8"},{"vulnerable":true,"criteria":"cpe:2.3:a:lbl:tcpdump:3.5:*:*:*:*:*:*:*","matchCriteriaId":"A6CC000D-857D-4E12-82E6-7F8168B463EE"},{"vulnerable":true,"criteria":"cpe:2.3:a:lbl:tcpdump:3.5_alpha:*:*:*:*:*:*:*","matchCriteriaId":"45083B9F-95CC-4EB7-9591-2146084CBBC5"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:61.tcpdump.v1.1.asc","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/linux/suse/2000-q4/0681.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1870","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5480","source":"cve@mitre.org"},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:61.tcpdump.v1.1.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/linux/suse/2000-q4/0681.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1870","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5480","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1027","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:00.030","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Cisco Secure PIX Firewall 5.2(2) allows remote attackers to determine the real IP address of a target FTP server by flooding the server with PASV requests, which includes the real IP address in the response when passive mode is established."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:pix_firewall_software:5.2:*:*:*:*:*:*:*","matchCriteriaId":"999A0969-60EB-4B2E-A274-9F05D9F840E5"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97059440000367&w=2","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1623","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1877","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5646","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97059440000367&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1623","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1877","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5646","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1028","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:00.150","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in cu program in HP-UX 11.0 may allow local users to gain privileges via a long -l command line argument."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:9.00:*:*:*:*:*:*:*","matchCriteriaId":"6E436D06-FA3A-43F6-AF84-2E9C2F42E3FF"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:9.01:*:*:*:*:*:*:*","matchCriteriaId":"DCB1B6DC-4FF9-40DC-BAD5-91A04E79981E"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:9.04:*:*:*:*:*:*:*","matchCriteriaId":"E178238D-E17A-48C9-8922-AC92474BDF55"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:9.05:*:*:*:*:*:*:*","matchCriteriaId":"560C17E1-6154-4291-A838-5E76139B9FB5"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:9.06:*:*:*:*:*:*:*","matchCriteriaId":"3194CFA3-F0B3-487A-99C6-1A7DF1EF0586"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:9.07:*:*:*:*:*:*:*","matchCriteriaId":"035890F7-BF48-4669-812A-1DCBD91A8F34"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:9.08:*:*:*:*:*:*:*","matchCriteriaId":"F9AED8F3-2501-444D-8141-37FEE2246747"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:9.09:*:*:*:*:*:*:*","matchCriteriaId":"10974B0F-DA3A-4E3E-8914-8CEB366E9CC4"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:9.10:*:*:*:*:*:*:*","matchCriteriaId":"C54F7F74-7DD7-431E-AE75-1D1199D63032"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.20:*:*:*:*:*:*:*","matchCriteriaId":"EDE44C49-172C-4899-8CC8-29AA99A7CD2F"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:11.00:*:*:*:*:*:*:*","matchCriteriaId":"771931F7-9180-4EBD-8627-E1CF17D24647"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/142792","source":"cve@mitre.org","tags":["Exploit"]},{"url":"http://www.securityfocus.com/bid/1886","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5460","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/142792","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]},{"url":"http://www.securityfocus.com/bid/1886","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5460","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1029","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:00.257","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in host command allows a remote attacker to execute arbitrary commands via a long response to an AXFR query."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.1:*:*:*:*:*:*:*","matchCriteriaId":"BB79EDA4-9B2C-4C4C-A5DE-CB8C6EB00BDC"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/141660","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1887","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5462","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/141660","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1887","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5462","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1030","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:00.373","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"CS&T CorporateTime for the Web returns different error messages for invalid usernames and invalid passwords, which allows remote attackers to determine valid usernames on the server."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:csandt:corporatetime_for_the_web:*:*:*:*:*:*:*:*","versionEndIncluding":"2.1.2","matchCriteriaId":"32596B9D-76D9-4B12-8A8E-59A3FAEB1B47"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/142672","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1888","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5529","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/142672","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1888","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5529","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1031","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:00.490","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in dtterm in HP-UX 11.0 and HP Tru64 UNIX 4.0f through 5.1a allows local users to execute arbitrary code via a long -tn option."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.10:*:*:*:*:*:*:*","matchCriteriaId":"38BFA923-7D80-4F01-AF9F-6F13209948AC"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.20:*:*:*:*:*:*:*","matchCriteriaId":"EDE44C49-172C-4899-8CC8-29AA99A7CD2F"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.24:*:*:*:*:*:*:*","matchCriteriaId":"4259A901-A1CF-44EE-80C4-2031D3FCADC3"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:11.00:*:*:*:*:*:*:*","matchCriteriaId":"771931F7-9180-4EBD-8627-E1CF17D24647"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:11.4:*:*:*:*:*:*:*","matchCriteriaId":"F038B325-A982-43FB-9146-E103CCFB5C41"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:tru64:4.0f:*:*:*:*:*:*:*","matchCriteriaId":"3E8BA552-394A-4E06-8CAD-24A2F542FD91"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:tru64:4.0f:pk8:*:*:*:*:*:*","matchCriteriaId":"884D55C0-F5EB-484E-8886-1C6C12320BCB"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:tru64:4.0g:*:*:*:*:*:*:*","matchCriteriaId":"E43FAAEF-B0DD-466F-A74E-43CBA4CCF7E7"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:tru64:4.0g:pk4:*:*:*:*:*:*","matchCriteriaId":"5A788DB8-B738-4498-9C0B-68FCB92086F7"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:tru64:5.0a:*:*:*:*:*:*:*","matchCriteriaId":"C3F90BA0-45D4-4089-BFBC-69FD1DB10C5D"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:tru64:5.1:*:*:*:*:*:*:*","matchCriteriaId":"B5840611-A108-48EE-9D5A-4B6DA0621FF4"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:tru64:5.1a:*:*:*:*:*:*:*","matchCriteriaId":"684BEA17-3BFC-4C30-9E8A-411D9D057354"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/fulldisclosure/2002-q3/1203.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/fulldisclosure/2002-q3/1203.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/fulldisclosure/2002-q3/1203.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/fulldisclosure/2002-q3/1203.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/hp/2000-q4/0034.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://wwss1pro.compaq.com/support/reference_library/viewdocument.asp?source=SRB0039W.xml&dt=11","source":"cve@mitre.org"},{"url":"http://www.kb.cert.org/vuls/id/320067","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://www.securityfocus.com/archive/1/290115","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/75188","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1889","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5461","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/fulldisclosure/2002-q3/1203.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/fulldisclosure/2002-q3/1203.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/fulldisclosure/2002-q3/1203.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/fulldisclosure/2002-q3/1203.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/hp/2000-q4/0034.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://wwss1pro.compaq.com/support/reference_library/viewdocument.asp?source=SRB0039W.xml&dt=11","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.kb.cert.org/vuls/id/320067","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"http://www.securityfocus.com/archive/1/290115","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/75188","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1889","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5461","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1032","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:00.660","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The client authentication interface for Check Point Firewall-1 4.0 and earlier generates different error messages for invalid usernames versus invalid passwords, which allows remote attackers to identify valid usernames on the firewall."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:3.0:*:*:*:*:*:*:*","matchCriteriaId":"A550C18E-F07A-4A05-87F0-B1D52FDC401C"},{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:4.0:*:*:*:*:*:*:*","matchCriteriaId":"0F543272-8C7E-4326-BA97-142FBEA641E5"}]}]}],"references":[{"url":"http://www.osvdb.org/1632","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/142808","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1890","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5816","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1632","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/142808","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1890","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5816","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1033","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:00.790","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Serv-U FTP Server allows remote attackers to bypass its anti-hammering feature by first logging on as a valid user (possibly anonymous) and then attempting to guess the passwords of other users."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cat_soft:serv-u:2.5x:*:*:*:*:*:*:*","matchCriteriaId":"7F9E83D8-9A38-4CD0-885F-70AF50A50E23"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/141905","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1860","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5436","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/141905","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1860","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5436","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1034","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:00.920","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the System Monitor ActiveX control in Windows 2000 allows remote attackers to execute arbitrary commands via a long LogFileName parameter in HTML source code, aka the \"ActiveX Parameter Validation\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97349782305448&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1899","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-085","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5467","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97349782305448&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1899","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-085","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5467","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1035","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:01.053","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflows in TYPSoft FTP Server 0.78 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long USER, PASS, or CWD command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:typsoft:typsoft:0.7x:*:*:*:*:*:*:*","matchCriteriaId":"17CFF0EF-21A4-4C27-AB0E-93BF261BEB79"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=96879389027478&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1690","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.synnergy.net/Archives/Advisories/dethy/typsoft-ftpd.txt","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=96879389027478&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1690","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.synnergy.net/Archives/Advisories/dethy/typsoft-ftpd.txt","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1036","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:01.183","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in Extent RBS ISP web server allows remote attackers to read sensitive information via a .. (dot dot) attack on the Image parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:extent_technologies:rbs_isp:2.5:*:*:*:*:*:*:*","matchCriteriaId":"582B4E3F-E10D-4E6B-A541-A7CD07833624"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0252.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1704","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5275","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0252.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1704","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5275","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1037","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:01.320","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Check Point Firewall-1 session agent 3.0 through 4.1 generates different error messages for invalid user names versus invalid passwords, which allows remote attackers to determine valid usernames and guess a password via a brute force attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:3.0:*:*:*:*:*:*:*","matchCriteriaId":"A550C18E-F07A-4A05-87F0-B1D52FDC401C"},{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:4.0:*:*:*:*:*:*:*","matchCriteriaId":"0F543272-8C7E-4326-BA97-142FBEA641E5"},{"vulnerable":true,"criteria":"cpe:2.3:a:checkpoint:firewall-1:4.1:*:*:*:*:*:*:*","matchCriteriaId":"100F03E3-1538-47AF-9CA6-E9E5C1DF05D4"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/76389","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1662","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/76389","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1662","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1038","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:01.453","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The web administration interface for IBM AS/400 Firewall allows remote attackers to cause a denial of service via an empty GET request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:as400_firewall:r440:*:*:*:*:*:*:*","matchCriteriaId":"75A2F90D-63BA-412C-A9B8-244415FA0C71"}]}]}],"references":[{"url":"http://as400service.rochester.ibm.com/n_dir/nas4apar.NSF/5ec6cdc6ab42894a862568f90073c74a/9ce636030a58807186256955003d128d?OpenDocument","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www-1.ibm.com/support/search.wss?rs=0&q=SA90544&apar=only","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5266","source":"cve@mitre.org"},{"url":"http://as400service.rochester.ibm.com/n_dir/nas4apar.NSF/5ec6cdc6ab42894a862568f90073c74a/9ce636030a58807186256955003d128d?OpenDocument","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www-1.ibm.com/support/search.wss?rs=0&q=SA90544&apar=only","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5266","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1040","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:01.743","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Format string vulnerability in logging function of ypbind 3.3, while running in debug mode, leaks file descriptors and allows an attacker to cause a denial of service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.2:*:*:*:*:*:*:*","matchCriteriaId":"1B67020A-6942-4478-B501-764147C4970D"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.3:*:*:*:*:*:*:*","matchCriteriaId":"0AD0FF64-05DF-48C2-9BB5-FD993121FB2E"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.4:*:*:*:*:*:*:*","matchCriteriaId":"7786607A-362E-4817-A17E-C76D6A1F737D"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"C9E7D75A-333E-4C63-9593-F64ABA5D1CE3"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0356.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0429.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/linux/suse/2000-q4/0262.html","source":"cve@mitre.org"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-039.0.txt","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/2000/20001014","source":"cve@mitre.org"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-064.php3?dis=7.1","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-086.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1820","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5394","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0356.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0429.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/linux/suse/2000-q4/0262.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-039.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.debian.org/security/2000/20001014","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-064.php3?dis=7.1","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-086.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1820","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5394","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1041","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:01.910","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in ypbind 3.3 possibly allows an attacker to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:swen_thuemmler:ypbind:3.3:*:*:*:*:*:*:*","matchCriteriaId":"72D0839C-B7EC-4750-99A4-6CD70DC3803C"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/linux/suse/2000-q4/0262.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-039.0.txt","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-064.php3?dis=7.1","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5759","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/linux/suse/2000-q4/0262.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-039.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-064.php3?dis=7.1","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5759","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1042","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:02.053","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in ypserv in Mandrake Linux 7.1 and earlier, and possibly other Linux operating systems, allows an attacker to gain root privileges when ypserv is built without a vsyslog() function."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"ACAAD334-2CA7-4B3B-BA25-302E7610BC2A"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"E4853E92-5E0A-47B9-A343-D5BEE87D2C27"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:7.1:*:*:*:*:*:*:*","matchCriteriaId":"3EC1FF5D-5EAB-44D5-B281-770547C70D68"}]}]}],"references":[{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-064.php3?dis=7.1","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5730","source":"cve@mitre.org"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-064.php3?dis=7.1","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5730","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1043","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:02.197","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Format string vulnerability in ypserv in Mandrake Linux 7.1 and earlier, and possibly other Linux operating systems, allows an attacker to gain root privileges when ypserv is built without a vsyslog() function."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"ACAAD334-2CA7-4B3B-BA25-302E7610BC2A"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"E4853E92-5E0A-47B9-A343-D5BEE87D2C27"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:7.1:*:*:*:*:*:*:*","matchCriteriaId":"3EC1FF5D-5EAB-44D5-B281-770547C70D68"}]}]}],"references":[{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-064.php3?dis=7.1","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5731","source":"cve@mitre.org"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-064.php3?dis=7.1","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5731","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1044","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:02.340","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Format string vulnerability in ypbind-mt in SuSE SuSE-6.2, and possibly other Linux operating systems, allows an attacker to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.2:*:*:*:*:*:*:*","matchCriteriaId":"1B67020A-6942-4478-B501-764147C4970D"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.3:*:*:*:*:*:*:*","matchCriteriaId":"0AD0FF64-05DF-48C2-9BB5-FD993121FB2E"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.4:*:*:*:*:*:*:*","matchCriteriaId":"7786607A-362E-4817-A17E-C76D6A1F737D"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"C9E7D75A-333E-4C63-9593-F64ABA5D1CE3"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/linux/suse/2000-q4/0262.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1820","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5394","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/linux/suse/2000-q4/0262.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1820","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5394","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1045","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:02.470","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"nss_ldap earlier than 121, when run with nscd (name service caching daemon), allows remote attackers to cause a denial of service via a flood of LDAP requests."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:N/I:N/A:P","baseScore":1.2,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":1.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:padl_software:nss_ldap:build_85:*:*:*:*:*:*:*","matchCriteriaId":"F1454E19-D72A-4A22-8F3A-E1E9E71DD526"},{"vulnerable":true,"criteria":"cpe:2.3:a:padl_software:nss_ldap:build_105:*:*:*:*:*:*:*","matchCriteriaId":"3CDB22E9-2A08-40BA-9C17-C809008E02BA"},{"vulnerable":true,"criteria":"cpe:2.3:a:padl_software:nss_ldap:build_113:*:*:*:*:*:*:*","matchCriteriaId":"23C0888A-1DA7-432C-8E5B-8738B9411D6B"}]}]}],"references":[{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-066-1.php3","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-024.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1863","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5449","source":"cve@mitre.org"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-066-1.php3","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-024.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1863","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5449","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1046","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:02.613","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Multiple buffer overflows in the ESMTP service of Lotus Domino 5.0.2c and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via long (1) \"RCPT TO,\" (2) \"SAML FROM,\" or (3) \"SOML FROM\" commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:lotus:domino:5.0.2a:*:*:*:*:*:*:*","matchCriteriaId":"43FCF018-AE63-4D6B-B6D2-2DF6912E4D4B"},{"vulnerable":true,"criteria":"cpe:2.3:a:lotus:domino:5.0.2c:*:*:*:*:*:*:*","matchCriteriaId":"9ADEA116-1DB1-4D19-B073-A36B63313BA8"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0093.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0093.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1047","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:02.750","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in SMTP service of Lotus Domino 5.0.4 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long ENVID keyword in the \"MAIL FROM\" command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:lotus:domino_enterprise_server:5.0.1:*:*:*:*:*:*:*","matchCriteriaId":"6256A050-8C38-4CC2-86F2-3364FAABDE59"},{"vulnerable":true,"criteria":"cpe:2.3:a:lotus:domino_enterprise_server:5.0.2:*:*:*:*:*:*:*","matchCriteriaId":"C0A1146D-E261-4AE9-8852-5988B3AB5865"},{"vulnerable":true,"criteria":"cpe:2.3:a:lotus:domino_enterprise_server:5.0.2b:*:*:*:*:*:*:*","matchCriteriaId":"99139690-6962-4373-9853-4EF28C922768"},{"vulnerable":true,"criteria":"cpe:2.3:a:lotus:domino_enterprise_server:5.0.3:*:*:*:*:*:*:*","matchCriteriaId":"E5FD1CC4-DFD4-4A32-AD45-353583463916"},{"vulnerable":true,"criteria":"cpe:2.3:a:lotus:domino_enterprise_server:5.0.4:*:*:*:*:*:*:*","matchCriteriaId":"068A0CE8-C88D-4D4D-822A-3CCC88EF2C32"},{"vulnerable":true,"criteria":"cpe:2.3:a:lotus:domino_mail_server:5.0.1:*:*:*:*:*:*:*","matchCriteriaId":"EF6E13D4-7764-4A02-B599-B68BB45F4AD3"},{"vulnerable":true,"criteria":"cpe:2.3:a:lotus:domino_mail_server:5.0.2:*:*:*:*:*:*:*","matchCriteriaId":"55BC4294-9363-406C-8C64-964A95DA2052"},{"vulnerable":true,"criteria":"cpe:2.3:a:lotus:domino_mail_server:5.0.2b:*:*:*:*:*:*:*","matchCriteriaId":"F9C6D1AA-ABEE-4491-828F-3AE3E6D3A029"},{"vulnerable":true,"criteria":"cpe:2.3:a:lotus:domino_mail_server:5.0.3:*:*:*:*:*:*:*","matchCriteriaId":"DB86430D-3A2D-4A07-A94B-731640E24269"},{"vulnerable":true,"criteria":"cpe:2.3:a:lotus:domino_mail_server:5.0.4:*:*:*:*:*:*:*","matchCriteriaId":"9D480F91-6FEE-4675-8AE8-B0A20803B382"}]}]}],"references":[{"url":"http://www.osvdb.org/442","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/143071","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1905","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5488","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/442","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/143071","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1905","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5488","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1048","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:02.900","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in the logfile service of Wingate 4.1 Beta A and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack via an HTTP GET request that uses encoded characters in the URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:qbik:wingate:2.1:*:*:*:*:*:*:*","matchCriteriaId":"FA8E8CEE-E78A-46D5-B73D-C75CC8D088B5"},{"vulnerable":true,"criteria":"cpe:2.3:a:qbik:wingate:3.0:*:*:*:*:*:*:*","matchCriteriaId":"4C7BC4C8-FB7B-4A88-B97B-984D9AA8EA1D"},{"vulnerable":true,"criteria":"cpe:2.3:a:qbik:wingate:4.0.1:*:*:*:*:*:*:*","matchCriteriaId":"0C1D98E1-EBE1-4697-906F-E29C91D9074D"},{"vulnerable":true,"criteria":"cpe:2.3:a:qbik:wingate:4.1_beta_a:*:*:*:*:*:*:*","matchCriteriaId":"8AB1D7C0-E484-4441-AA68-FBA5A3309547"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0245.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5373","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0245.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5373","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1049","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:03.037","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Allaire JRun 3.0 http servlet server allows remote attackers to cause a denial of service via a URL that contains a long string of \".\" characters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:macromedia:jrun:3.0:*:*:*:*:*:*:*","matchCriteriaId":"96D6C1D6-F9AF-4CF0-9F80-AB2C20C7615C"},{"vulnerable":true,"criteria":"cpe:2.3:a:macromedia:jrun:3.0:sp1:*:*:*:*:*:*","matchCriteriaId":"EF7B2456-5820-4B72-9375-4945B95F371E"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97310314724964&w=2","source":"cve@mitre.org"},{"url":"http://www.allaire.com/handlers/index.cfm?ID=18085&Method=Full","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5452","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97310314724964&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.allaire.com/handlers/index.cfm?ID=18085&Method=Full","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5452","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1050","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:03.200","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Allaire JRun 3.0 http servlet server allows remote attackers to directly access the WEB-INF directory via a URL request that contains an extra \"/\" in the beginning of the request (aka the \"extra leading slash\")."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:macromedia:jrun:3.0:*:*:*:*:*:*:*","matchCriteriaId":"96D6C1D6-F9AF-4CF0-9F80-AB2C20C7615C"},{"vulnerable":true,"criteria":"cpe:2.3:a:macromedia:jrun:3.0:sp1:*:*:*:*:*:*","matchCriteriaId":"EF7B2456-5820-4B72-9375-4945B95F371E"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97236316510117&w=2","source":"cve@mitre.org"},{"url":"http://www.allaire.com/handlers/index.cfm?ID=17966&Method=Full","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/500","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5407","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97236316510117&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.allaire.com/handlers/index.cfm?ID=17966&Method=Full","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/500","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5407","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1051","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:03.347","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in Allaire JRun 2.3 server allows remote attackers to read arbitrary files via the SSIFilter servlet."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:macromedia:jrun:2.3.x:*:*:*:*:*:*:*","matchCriteriaId":"9C0A179E-281A-441B-B5B0-04D839E363D3"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97236692714978&w=2","source":"cve@mitre.org"},{"url":"http://www.allaire.com/handlers/index.cfm?ID=17968&Method=Full","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5405","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97236692714978&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.allaire.com/handlers/index.cfm?ID=17968&Method=Full","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5405","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1052","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:03.470","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Allaire JRun 2.3 server allows remote attackers to obtain source code for executable content by directly calling the SSIFilter servlet."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:macromedia:jrun:2.3.x:*:*:*:*:*:*:*","matchCriteriaId":"9C0A179E-281A-441B-B5B0-04D839E363D3"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97236692714978&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97236692714978&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1053","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:03.580","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Allaire JRun 2.3.3 server allows remote attackers to compile and execute JSP code by inserting it via a cross-site scripting (CSS) attack and directly calling the com.livesoftware.jrun.plugins.JSP JSP servlet."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:macromedia:jrun:2.3.x:*:*:*:*:*:*:*","matchCriteriaId":"9C0A179E-281A-441B-B5B0-04D839E363D3"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97236125107957&w=2","source":"cve@mitre.org"},{"url":"http://www.allaire.com/handlers/index.cfm?ID=17969&Method=Full","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5406","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97236125107957&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.allaire.com/handlers/index.cfm?ID=17969&Method=Full","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5406","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1054","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:03.690","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in CSAdmin module in CiscoSecure ACS Server 2.4(2) and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a large packet."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:secure_access_control_server:2.1:*:windows_nt:*:*:*:*:*","matchCriteriaId":"3BF391B2-17C6-4633-8CE9-35B637BFDC79"},{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:secure_access_control_server:2.3\\(3\\):*:windows_nt:*:*:*:*:*","matchCriteriaId":"C8203963-D3FA-464F-9C43-C3A26B628B30"},{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:secure_access_control_server:2.4\\(2\\):*:windows_nt:*:*:*:*:*","matchCriteriaId":"674F9D34-BD92-436D-B149-CB30BC4069E2"}]}]}],"references":[{"url":"http://www.cisco.com/warp/public/707/csecureacsnt-pub.shtml","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1705","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5272","source":"cve@mitre.org"},{"url":"http://www.cisco.com/warp/public/707/csecureacsnt-pub.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1705","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5272","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1055","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:03.797","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in CiscoSecure ACS Server 2.4(2) and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a large TACACS+ packet."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:secure_access_control_server:2.1:*:windows_nt:*:*:*:*:*","matchCriteriaId":"3BF391B2-17C6-4633-8CE9-35B637BFDC79"},{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:secure_access_control_server:2.3\\(3\\):*:windows_nt:*:*:*:*:*","matchCriteriaId":"C8203963-D3FA-464F-9C43-C3A26B628B30"},{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:secure_access_control_server:2.4\\(2\\):*:windows_nt:*:*:*:*:*","matchCriteriaId":"674F9D34-BD92-436D-B149-CB30BC4069E2"}]}]}],"references":[{"url":"http://www.cisco.com/warp/public/707/csecureacsnt-pub.shtml","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1569","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1706","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5273","source":"cve@mitre.org"},{"url":"http://www.cisco.com/warp/public/707/csecureacsnt-pub.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1569","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1706","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5273","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1056","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:03.910","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"CiscoSecure ACS Server 2.4(2) and earlier allows remote attackers to bypass LDAP authentication on the server if the LDAP server allows null passwords."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:secure_access_control_server:2.1:*:windows_nt:*:*:*:*:*","matchCriteriaId":"3BF391B2-17C6-4633-8CE9-35B637BFDC79"},{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:secure_access_control_server:2.3\\(3\\):*:windows_nt:*:*:*:*:*","matchCriteriaId":"C8203963-D3FA-464F-9C43-C3A26B628B30"},{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:secure_access_control_server:2.4\\(2\\):*:windows_nt:*:*:*:*:*","matchCriteriaId":"674F9D34-BD92-436D-B149-CB30BC4069E2"}]}]}],"references":[{"url":"http://www.cisco.com/warp/public/707/csecureacsnt-pub.shtml","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1708","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5274","source":"cve@mitre.org"},{"url":"http://www.cisco.com/warp/public/707/csecureacsnt-pub.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1708","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5274","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1057","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:04.020","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerabilities in database configuration scripts in HP OpenView Network Node Manager (NNM) 6.1 and earlier allows local users to gain privileges, possibly via insecure permissions."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:hp:openview_network_node_manager:4.11:*:hp_ux:*:*:*:*:*","matchCriteriaId":"0A8A9CE5-0303-4B2A-9844-86268D47F92B"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:openview_network_node_manager:4.11:*:solaris:*:*:*:*:*","matchCriteriaId":"D61BEE01-0A97-4202-831C-0DBC5582664F"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:openview_network_node_manager:5.01:*:hp_ux:*:*:*:*:*","matchCriteriaId":"A15652A8-A673-4652-8BEA-A38207D9B77E"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:openview_network_node_manager:5.01:*:solaris:*:*:*:*:*","matchCriteriaId":"B3A43C94-1DDA-4F04-9BE1-42636286AB8D"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:openview_network_node_manager:6.1:*:hp_ux_10.x:*:*:*:*:*","matchCriteriaId":"05E589CE-62AE-4FD8-AF2C-ABF73F5678B1"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:openview_network_node_manager:6.1:*:hp_ux_11.x:*:*:*:*:*","matchCriteriaId":"1271CE87-C584-427B-9DC5-C52A04E361FC"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:openview_network_node_manager:6.1:*:solaris:*:*:*:*:*","matchCriteriaId":"B97EC5AC-1C14-47FD-BA59-48879B1176F7"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0140.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1682","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5229","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0140.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1682","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5229","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1058","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:04.140","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in OverView5 CGI program in HP OpenView Network Node Manager (NNM) 6.1 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, in the SNMP service (snmp.exe), aka the \"Java SNMP MIB Browser Object ID parsing problem.\""}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:hp:openview_network_node_manager:4.11:*:*:*:*:*:*:*","matchCriteriaId":"4670BB0B-F94E-44FE-A1E5-2EEAF58C0C75"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:openview_network_node_manager:5.01:*:*:*:*:*:*:*","matchCriteriaId":"1218361D-6F62-4035-B0B2-9BEB19539A70"},{"vulnerable":true,"criteria":"cpe:2.3:a:hp:openview_network_node_manager:6.1:*:*:*:*:*:*:*","matchCriteriaId":"39C1B197-F043-4FB7-AFB3-AFC8B8B5B051"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0274.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=97004856403173&w=2","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5282","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0274.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=97004856403173&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5282","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1059","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:04.260","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default configuration of the Xsession file in Mandrake Linux 7.1 and 7.0 bypasses the Xauthority access control mechanism with an \"xhost + localhost\" command, which allows local users to sniff X Windows events and gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"E4853E92-5E0A-47B9-A343-D5BEE87D2C27"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:7.1:*:*:*:*:*:*:*","matchCriteriaId":"3EC1FF5D-5EAB-44D5-B281-770547C70D68"}]}]}],"references":[{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-052.php3","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/136495","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1735","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5305","source":"cve@mitre.org"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-052.php3","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/136495","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1735","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5305","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1060","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:04.390","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default configuration of XFCE 3.5.1 bypasses the Xauthority access control mechanism with an \"xhost + localhost\" command in the xinitrc program, which allows local users to sniff X Windows traffic and gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:xfree86_project:xfce:3.5.1:*:*:*:*:*:*:*","matchCriteriaId":"8CA20054-FC0B-4E69-A628-615A3C46850A"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0022.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1736","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5305","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0022.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1736","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5305","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1061","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:04.500","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Virtual Machine (VM) in Internet Explorer 4.x and 5.x allows an unsigned applet to create and use ActiveX controls, which allows a remote attacker to bypass Internet Explorer's security settings and execute arbitrary commands via a malicious web page or email, aka the \"Microsoft VM ActiveX Component\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:4.x:*:*:*:*:*:*:*","matchCriteriaId":"45091F51-BA28-4FEB-9F84-58AC2E1DB48F"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:ie:5.x:*:*:*:*:*:*:*","matchCriteriaId":"B0DCFCBD-8EDF-47B5-823F-5E05CD22AF4F"}]}]}],"references":[{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-075","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5127","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-075","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5127","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1062","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:04.607","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the FTP service in HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:hp:jetdirect:x.08.04:*:*:*:*:*:*:*","matchCriteriaId":"60C68BF3-FF26-485D-83EF-934F1C74507C"},{"vulnerable":true,"criteria":"cpe:2.3:h:hp:jetdirect:x.08.05:*:*:*:*:*:*:*","matchCriteriaId":"99649072-7DA1-404D-BF7F-E16A85544002"},{"vulnerable":true,"criteria":"cpe:2.3:h:hp:jetdirect:x.08.20:*:*:*:*:*:*:*","matchCriteriaId":"017D5FFF-0735-4152-B99C-35D85D8EA5C1"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97119729613778&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1775","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5353","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97119729613778&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1775","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5353","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1063","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:04.720","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the Telnet service in HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:hp:jetdirect:x.08.04:*:*:*:*:*:*:*","matchCriteriaId":"60C68BF3-FF26-485D-83EF-934F1C74507C"},{"vulnerable":true,"criteria":"cpe:2.3:h:hp:jetdirect:x.08.05:*:*:*:*:*:*:*","matchCriteriaId":"99649072-7DA1-404D-BF7F-E16A85544002"},{"vulnerable":true,"criteria":"cpe:2.3:h:hp:jetdirect:x.08.20:*:*:*:*:*:*:*","matchCriteriaId":"017D5FFF-0735-4152-B99C-35D85D8EA5C1"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97119729613778&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1775","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5353","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97119729613778&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1775","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5353","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1064","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:04.820","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the LPD service in HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:hp:jetdirect:x.08.04:*:*:*:*:*:*:*","matchCriteriaId":"60C68BF3-FF26-485D-83EF-934F1C74507C"},{"vulnerable":true,"criteria":"cpe:2.3:h:hp:jetdirect:x.08.05:*:*:*:*:*:*:*","matchCriteriaId":"99649072-7DA1-404D-BF7F-E16A85544002"},{"vulnerable":true,"criteria":"cpe:2.3:h:hp:jetdirect:x.08.20:*:*:*:*:*:*:*","matchCriteriaId":"017D5FFF-0735-4152-B99C-35D85D8EA5C1"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97119729613778&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1775","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5353","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97119729613778&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1775","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5353","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1065","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:04.930","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in IP implementation of HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service (printer crash) via a malformed packet."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:hp:jetdirect:x.08.04:*:*:*:*:*:*:*","matchCriteriaId":"60C68BF3-FF26-485D-83EF-934F1C74507C"},{"vulnerable":true,"criteria":"cpe:2.3:h:hp:jetdirect:x.08.05:*:*:*:*:*:*:*","matchCriteriaId":"99649072-7DA1-404D-BF7F-E16A85544002"},{"vulnerable":true,"criteria":"cpe:2.3:h:hp:jetdirect:x.08.20:*:*:*:*:*:*:*","matchCriteriaId":"017D5FFF-0735-4152-B99C-35D85D8EA5C1"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97119729613778&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1775","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5354","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97119729613778&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1775","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5354","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1066","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:05.037","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The getnameinfo function in FreeBSD 4.1.1 and earlier, and possibly other operating systems, allows a remote attacker to cause a denial of service via a long DNS hostname."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.0:*:*:*:*:*:*:*","matchCriteriaId":"D0A585A1-FF82-418F-90F8-072458DB7816"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.0:alpha:*:*:*:*:*:*","matchCriteriaId":"E3F7EB61-55A5-4776-B0E7-3508920A6CEA"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.1:*:*:*:*:*:*:*","matchCriteriaId":"AE31DFF8-06AB-489D-A0C5-509C090283B5"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.1.1:*:*:*:*:*:*:*","matchCriteriaId":"3BE1E3D8-2BB1-4FFA-9BC9-7AF347D26190"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.1.1:release:*:*:*:*:*:*","matchCriteriaId":"1E8A6564-129A-4555-A5ED-6F65C56AE7B4"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:63.getnameinfo.asc","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1894","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5454","source":"cve@mitre.org"},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:63.getnameinfo.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1894","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5454","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1068","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:05.150","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"pollit.cgi in Poll It 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the poll_options parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cgi-world:poll_it:2.0:*:*:*:*:*:*:*","matchCriteriaId":"8DEBB723-06DF-4368-AF20-DC0840FA8556"},{"vulnerable":true,"criteria":"cpe:2.3:a:cgi-world:poll_it_pro:1.6:*:*:*:*:*:*:*","matchCriteriaId":"832C4436-00A1-4771-A520-560DE791D4D2"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97236719315352&w=2","source":"cve@mitre.org"},{"url":"http://www.cgi-world.com/pollit.html","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5792","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97236719315352&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.cgi-world.com/pollit.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5792","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1069","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:05.270","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"pollit.cgi in Poll It 2.01 and earlier allows remote attackers to access administrative functions without knowing the real password by specifying the same value to the entered_password and admin_password parameters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:N","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cgi-world:poll_it:2.0:*:*:*:*:*:*:*","matchCriteriaId":"8DEBB723-06DF-4368-AF20-DC0840FA8556"},{"vulnerable":true,"criteria":"cpe:2.3:a:cgi-world:poll_it:2.01:*:*:*:*:*:*:*","matchCriteriaId":"42165FB2-5945-4962-8D4C-550E67AD3875"},{"vulnerable":true,"criteria":"cpe:2.3:a:cgi-world:poll_it_pro:1.6:*:*:*:*:*:*:*","matchCriteriaId":"832C4436-00A1-4771-A520-560DE791D4D2"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97236719315352&w=2","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5419","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97236719315352&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5419","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1070","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:05.393","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"pollit.cgi in Poll It 2.01 and earlier uses data files that are located under the web document root, which allows remote attackers to access sensitive or private information."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cgi-world:poll_it:2.0:*:*:*:*:*:*:*","matchCriteriaId":"8DEBB723-06DF-4368-AF20-DC0840FA8556"},{"vulnerable":true,"criteria":"cpe:2.3:a:cgi-world:poll_it:2.01:*:*:*:*:*:*:*","matchCriteriaId":"42165FB2-5945-4962-8D4C-550E67AD3875"},{"vulnerable":true,"criteria":"cpe:2.3:a:cgi-world:poll_it_pro:1.6:*:*:*:*:*:*:*","matchCriteriaId":"832C4436-00A1-4771-A520-560DE791D4D2"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97236719315352&w=2","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5794","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97236719315352&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5794","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1071","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:05.500","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The GUI installation for iCal 2.1 Patch 2 disables access control for the X server using an \"xhost +\" command, which allows remote attackers to monitor X Windows events and gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:iplanet_ical:2.1:patch2:*:*:*:*:*:*","matchCriteriaId":"377FC32F-3C96-473E-A6EA-2522AC15B81C"}]}]}],"references":[{"url":"http://www.atstake.com/research/advisories/2000/a100900-1.txt","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/7213","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1767","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5752","source":"cve@mitre.org"},{"url":"http://www.atstake.com/research/advisories/2000/a100900-1.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/7213","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1767","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5752","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1072","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:05.613","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"iCal 2.1 Patch 2 installs many files with world-writeable permissions, which allows local users to modify the iCal configuration and execute arbitrary commands by replacing the iplncal.sh program with a Trojan horse."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:iplanet_ical:2.1:patch2:*:*:*:*:*:*","matchCriteriaId":"377FC32F-3C96-473E-A6EA-2522AC15B81C"}]}]}],"references":[{"url":"http://www.atstake.com/research/advisories/2000/a100900-1.txt","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/7212","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1768","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5756","source":"cve@mitre.org"},{"url":"http://www.atstake.com/research/advisories/2000/a100900-1.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/7212","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1768","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5756","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1073","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:05.720","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"csstart program in iCal 2.1 Patch 2 searches for the cshttpd program in the current working directory, which allows local users to gain root privileges by creating a Trojan Horse cshttpd program in a directory and calling csstart from that directory."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:iplanet_ical:2.1:patch2:*:*:*:*:*:*","matchCriteriaId":"377FC32F-3C96-473E-A6EA-2522AC15B81C"}]}]}],"references":[{"url":"http://www.atstake.com/research/advisories/2000/a100900-1.txt","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/7210","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1769","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5757","source":"cve@mitre.org"},{"url":"http://www.atstake.com/research/advisories/2000/a100900-1.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/7210","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1769","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5757","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1074","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:05.833","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"csstart program in iCal 2.1 Patch 2 uses relative pathnames to install the libsocket and libnsl libraries, which could allow the icsuser account to gain root privileges by creating a Trojan Horse library in the current or parent directory."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:iplanet_ical:2.1:patch2:*:*:*:*:*:*","matchCriteriaId":"377FC32F-3C96-473E-A6EA-2522AC15B81C"}]}]}],"references":[{"url":"http://www.atstake.com/research/advisories/2000/a100900-1.txt","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/7209","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1769","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5757","source":"cve@mitre.org"},{"url":"http://www.atstake.com/research/advisories/2000/a100900-1.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/7209","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1769","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5757","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1075","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:05.947","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in iPlanet Certificate Management System 4.2 and Directory Server 4.12 allows remote attackers to read arbitrary files via a .. (dot dot) attack in the Agent, End Entity, or Administrator services."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:directory_server:4.12:*:*:*:*:*:*:*","matchCriteriaId":"025DC6F0-A1FF-4325-8F58-2337BA961DBA"},{"vulnerable":true,"criteria":"cpe:2.3:a:sun:iplanet_certificate_management_system:4.2:*:*:*:*:*:*:*","matchCriteriaId":"FEBFF8AA-E42A-4CE9-AD08-4A1BBFFD3A90"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0383.html","source":"cve@mitre.org"},{"url":"http://www.iplanet.com/downloads/patches/0122.html","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/4086","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/486","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1839","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5421","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0383.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.iplanet.com/downloads/patches/0122.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/4086","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/486","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1839","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5421","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1076","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:06.060","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Netscape (iPlanet) Certificate Management System 4.2 and Directory Server 4.12 stores the administrative password in plaintext, which could allow local and possibly remote attackers to gain administrative privileges on the server."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:directory_server:4.12:*:*:*:*:*:*:*","matchCriteriaId":"025DC6F0-A1FF-4325-8F58-2337BA961DBA"},{"vulnerable":true,"criteria":"cpe:2.3:a:sun:iplanet_certificate_management_system:4.2:*:*:*:*:*:*:*","matchCriteriaId":"FEBFF8AA-E42A-4CE9-AD08-4A1BBFFD3A90"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0383.html","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5422","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0383.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5422","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1077","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:06.163","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the SHTML logging functionality of iPlanet Web Server 4.x allows remote attackers to execute arbitrary commands via a long filename with a .shtml extension."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:iplanet:iplanet_web_server:4.x:*:*:*:*:*:*:*","matchCriteriaId":"D7F12D3A-AE61-49BD-A164-F74A10B2F0FB"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/141435","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5446","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/141435","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5446","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1078","sourceIdentifier":"cve@mitre.org","published":"2000-12-11T05:00:00.000","lastModified":"2026-06-16T21:53:06.287","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ICQ Web Front HTTPd allows remote attackers to cause a denial of service by requesting a URL that contains a \"?\" character."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mirabilis:icq_web_front:windows_9x:*:*:*:*:*:*:*","matchCriteriaId":"A697B7D0-C602-4D06-A1A1-33FA3BF0296C"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/138332","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5332","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/138332","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5332","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1579","sourceIdentifier":"cve@mitre.org","published":"2000-12-14T05:00:00.000","lastModified":"2026-06-16T21:50:45.793","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Cenroll ActiveX control (xenroll.dll) for Terminal Server Editions of Windows NT 4.0 and Windows NT Server 4.0 before SP6 allows remote attackers to cause a denial of service (resource consumption) by creating a large number of arbitrary files on the target machine."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3B242366","source":"cve@mitre.org"},{"url":"http://www.kb.cert.org/vuls/id/3062","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://www.securityfocus.com/bid/6827","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7107","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3B242366","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.kb.cert.org/vuls/id/3062","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"http://www.securityfocus.com/bid/6827","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7107","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1211","sourceIdentifier":"cve@mitre.org","published":"2000-12-16T05:00:00.000","lastModified":"2026-06-16T21:53:23.463","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Zope 2.2.0 through 2.2.4 does not properly perform security registration for legacy names of object constructors such as DTML method objects, which could allow attackers to perform unauthorized activities."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:zope:zope:2.2.0:*:*:*:*:*:*:*","matchCriteriaId":"CF3C0DAC-01B0-4C9D-9AA2-8F02F974DCFF"},{"vulnerable":true,"criteria":"cpe:2.3:a:zope:zope:2.2.0a1:*:*:*:*:*:*:*","matchCriteriaId":"6D4E13A0-7384-49E3-A848-8E864C340F79"},{"vulnerable":true,"criteria":"cpe:2.3:a:zope:zope:2.2.0b1:*:*:*:*:*:*:*","matchCriteriaId":"0EA5CE15-530A-400D-9FDF-7044CD8C6DDC"},{"vulnerable":true,"criteria":"cpe:2.3:a:zope:zope:2.2.0b2:*:*:*:*:*:*:*","matchCriteriaId":"B7DC30CD-684E-4C53-833E-6EF2C8D1A3E3"},{"vulnerable":true,"criteria":"cpe:2.3:a:zope:zope:2.2.0b3:*:*:*:*:*:*:*","matchCriteriaId":"DABDC050-BF8B-4F8C-9FCD-4B0D86E46D60"},{"vulnerable":true,"criteria":"cpe:2.3:a:zope:zope:2.2.0b4:*:*:*:*:*:*:*","matchCriteriaId":"C91E72CC-8AEA-49E5-BB7D-3C16E2E30A0D"},{"vulnerable":true,"criteria":"cpe:2.3:a:zope:zope:2.2.1:*:*:*:*:*:*:*","matchCriteriaId":"12A13ABF-9850-4AB8-A0C9-8D6B9F3D9862"},{"vulnerable":true,"criteria":"cpe:2.3:a:zope:zope:2.2.1b1:*:*:*:*:*:*:*","matchCriteriaId":"98EBD292-5FC6-4463-B085-A34D1DFDB0C3"},{"vulnerable":true,"criteria":"cpe:2.3:a:zope:zope:2.2.2:*:*:*:*:*:*:*","matchCriteriaId":"15B80335-5F59-4530-A241-437367369BD8"},{"vulnerable":true,"criteria":"cpe:2.3:a:zope:zope:2.2.3:*:*:*:*:*:*:*","matchCriteriaId":"53427D40-495B-4F37-95A5-6D069186CBB5"},{"vulnerable":true,"criteria":"cpe:2.3:a:zope:zope:2.2.4:*:*:*:*:*:*:*","matchCriteriaId":"1DB2FC39-A95D-414E-A67E-66AF79A12CEB"}]}]}],"references":[{"url":"http://www.iss.net/security_center/static/5824.php","source":"cve@mitre.org"},{"url":"http://www.linux-mandrake.com/en/security/2000/MDKSA-2000-083.php3","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/6282","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-125.html","source":"cve@mitre.org"},{"url":"http://www.zope.org/Products/Zope/Hotfix_2000-12-08/security_alert","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/5824.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.linux-mandrake.com/en/security/2000/MDKSA-2000-083.php3","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/6282","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-125.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.zope.org/Products/Zope/Hotfix_2000-12-08/security_alert","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1212","sourceIdentifier":"cve@mitre.org","published":"2000-12-18T05:00:00.000","lastModified":"2026-06-16T21:53:23.580","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Zope 2.2.0 through 2.2.4 does not properly protect a data updating method on Image and File objects, which allows attackers with DTML editing privileges to modify the raw data of these objects."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:zope:zope:2.2.0:*:*:*:*:*:*:*","matchCriteriaId":"CF3C0DAC-01B0-4C9D-9AA2-8F02F974DCFF"},{"vulnerable":true,"criteria":"cpe:2.3:a:zope:zope:2.2.0a1:*:*:*:*:*:*:*","matchCriteriaId":"6D4E13A0-7384-49E3-A848-8E864C340F79"},{"vulnerable":true,"criteria":"cpe:2.3:a:zope:zope:2.2.0b1:*:*:*:*:*:*:*","matchCriteriaId":"0EA5CE15-530A-400D-9FDF-7044CD8C6DDC"},{"vulnerable":true,"criteria":"cpe:2.3:a:zope:zope:2.2.0b2:*:*:*:*:*:*:*","matchCriteriaId":"B7DC30CD-684E-4C53-833E-6EF2C8D1A3E3"},{"vulnerable":true,"criteria":"cpe:2.3:a:zope:zope:2.2.0b3:*:*:*:*:*:*:*","matchCriteriaId":"DABDC050-BF8B-4F8C-9FCD-4B0D86E46D60"},{"vulnerable":true,"criteria":"cpe:2.3:a:zope:zope:2.2.0b4:*:*:*:*:*:*:*","matchCriteriaId":"C91E72CC-8AEA-49E5-BB7D-3C16E2E30A0D"},{"vulnerable":true,"criteria":"cpe:2.3:a:zope:zope:2.2.1:*:*:*:*:*:*:*","matchCriteriaId":"12A13ABF-9850-4AB8-A0C9-8D6B9F3D9862"},{"vulnerable":true,"criteria":"cpe:2.3:a:zope:zope:2.2.1b1:*:*:*:*:*:*:*","matchCriteriaId":"98EBD292-5FC6-4463-B085-A34D1DFDB0C3"},{"vulnerable":true,"criteria":"cpe:2.3:a:zope:zope:2.2.2:*:*:*:*:*:*:*","matchCriteriaId":"15B80335-5F59-4530-A241-437367369BD8"},{"vulnerable":true,"criteria":"cpe:2.3:a:zope:zope:2.2.3:*:*:*:*:*:*:*","matchCriteriaId":"53427D40-495B-4F37-95A5-6D069186CBB5"},{"vulnerable":true,"criteria":"cpe:2.3:a:zope:zope:2.2.4:*:*:*:*:*:*:*","matchCriteriaId":"1DB2FC39-A95D-414E-A67E-66AF79A12CEB"}]}]}],"references":[{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000365","source":"cve@mitre.org"},{"url":"http://frontal2.mandriva.com/security/advisories?name=MDKSA-2000:086","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/2001/dsa-007","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/6283","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-135.html","source":"cve@mitre.org"},{"url":"http://www.zope.org/Products/Zope/Hotfix_2000-12-18/security_alert","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5778","source":"cve@mitre.org"},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000365","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://frontal2.mandriva.com/security/advisories?name=MDKSA-2000:086","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.debian.org/security/2001/dsa-007","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/6283","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-135.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.zope.org/Products/Zope/Hotfix_2000-12-18/security_alert","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5778","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0803","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:30.807","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"GNU Groff uses the current working directory to find a device description file, which allows a local user to gain additional privileges by including a malicious postpro directive in the description file, which is executed when another user runs groff."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:groff:*:*:*:*:*:*:*:*","versionEndExcluding":"1.17","matchCriteriaId":"3D12195B-922F-44A8-BC6E-5FA696CB83AB"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5280","source":"cve@mitre.org","tags":["VDB Entry"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5280","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["VDB Entry"]}]}},{"cve":{"id":"CVE-2000-0810","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:31.680","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Auction Weaver 1.0 through 1.04 does not properly validate the names of form fields, which allows remote attackers to delete arbitrary files and directories via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cgi_script_center:auction_weaver:1.0:*:*:*:*:*:*:*","matchCriteriaId":"E97D1366-A8E7-42C7-B83A-B4BF58FC3F39"},{"vulnerable":true,"criteria":"cpe:2.3:a:cgi_script_center:auction_weaver:1.01:*:*:*:*:*:*:*","matchCriteriaId":"39CA0640-803C-40F5-AD07-350C789FE132"},{"vulnerable":true,"criteria":"cpe:2.3:a:cgi_script_center:auction_weaver:1.02:*:*:*:*:*:*:*","matchCriteriaId":"3A22F425-6EAB-4292-82BC-5B198DDE4E39"},{"vulnerable":true,"criteria":"cpe:2.3:a:cgi_script_center:auction_weaver:1.03:*:*:*:*:*:*:*","matchCriteriaId":"2E4E8025-5F2D-4FF3-B469-214BAB0FD87A"},{"vulnerable":true,"criteria":"cpe:2.3:a:cgi_script_center:auction_weaver:1.04:*:*:*:*:*:*:*","matchCriteriaId":"FC7F5CF0-DE7F-4F2E-ADF9-37F2FCD27863"}]}]}],"references":[{"url":"http://www.osvdb.org/1600","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1782","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5371","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1600","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1782","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5371","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0811","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:31.807","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Auction Weaver 1.0 through 1.04 allows remote attackers to read arbitrary files via a .. (dot dot) attack on the username or bidfile form fields."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cgi_script_center:auction_weaver:1.0:*:*:*:*:*:*:*","matchCriteriaId":"E97D1366-A8E7-42C7-B83A-B4BF58FC3F39"},{"vulnerable":true,"criteria":"cpe:2.3:a:cgi_script_center:auction_weaver:1.01:*:*:*:*:*:*:*","matchCriteriaId":"39CA0640-803C-40F5-AD07-350C789FE132"},{"vulnerable":true,"criteria":"cpe:2.3:a:cgi_script_center:auction_weaver:1.02:*:*:*:*:*:*:*","matchCriteriaId":"3A22F425-6EAB-4292-82BC-5B198DDE4E39"},{"vulnerable":true,"criteria":"cpe:2.3:a:cgi_script_center:auction_weaver:1.03:*:*:*:*:*:*:*","matchCriteriaId":"2E4E8025-5F2D-4FF3-B469-214BAB0FD87A"},{"vulnerable":true,"criteria":"cpe:2.3:a:cgi_script_center:auction_weaver:1.04:*:*:*:*:*:*:*","matchCriteriaId":"FC7F5CF0-DE7F-4F2E-ADF9-37F2FCD27863"}]}]}],"references":[{"url":"http://www.osvdb.org/4053","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1783","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5372","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/4053","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1783","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5372","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0817","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:32.303","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the HTTP protocol parser for Microsoft Network Monitor (Netmon) allows remote attackers to execute arbitrary commands via malformed data, aka the \"Netmon Protocol Parsing\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:network_monitor:*:*:*:*:*:*:*:*","matchCriteriaId":"C7E54C9C-74C5-4D66-9ED5-525AEF885C7E"}]}]}],"references":[{"url":"http://xforce.iss.net/alerts/index.php","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-083","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5399","source":"cve@mitre.org"},{"url":"http://xforce.iss.net/alerts/index.php","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-083","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5399","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0818","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:32.423","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default installation for the Oracle listener program 7.3.4, 8.0.6, and 8.1.6 allows an attacker to cause logging information to be appended to arbitrary files and execute commands via the SET TRC_FILE or SET LOG_FILE commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:listener:7.3.4:*:*:*:*:*:*:*","matchCriteriaId":"1401CC07-14D9-4558-819A-85D2B8DA867F"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:listener:8.0.6:*:*:*:*:*:*:*","matchCriteriaId":"75A28B67-A114-4956-B0FC-C6D22DE8E87F"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:listener:8.1.6:*:*:*:*:*:*:*","matchCriteriaId":"465571B9-5189-4CD6-B279-23B340476C5C"}]}]}],"references":[{"url":"http://otn.oracle.com/deploy/security/pdf/listener_alert.pdf","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://xforce.iss.net/alerts/advise66.php","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5380","source":"cve@mitre.org"},{"url":"http://otn.oracle.com/deploy/security/pdf/listener_alert.pdf","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://xforce.iss.net/alerts/advise66.php","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5380","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0884","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:40.277","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IIS 4.0 and 5.0 allows remote attackers to read documents outside of the web root, and possibly execute arbitrary commands, via malformed URLs that contain UNICODE encoded characters, aka the \"Web Server Folder Traversal\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_services:5.0:*:*:*:*:*:*:*","matchCriteriaId":"413C07EA-139F-4B7D-A58B-835BD2591FA0"}]}]}],"references":[{"url":"http://www.osvdb.org/436","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1806","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-078","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5377","source":"cve@mitre.org"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A44","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/436","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1806","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-078","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5377","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A44","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0885","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:40.397","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflows in Microsoft Network Monitor (Netmon) allow remote attackers to execute arbitrary commands via a long Browser Name in a CIFS Browse Frame, a long SNMP community name, or a long username or filename in an SMB session, aka the \"Netmon Protocol Parsing\" vulnerability.  NOTE: It is highly likely that this candidate will be split into multiple candidates."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:systems_management_server:1.2:*:*:*:*:*:*:*","matchCriteriaId":"F714FC20-0412-472D-B4A3-EA548EE14E81"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:systems_management_server:2.0:*:*:*:*:*:*:*","matchCriteriaId":"43E8A8EF-B54F-4413-9BC8-A6A479951313"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:terminal_server:*:*:*:*:*","matchCriteriaId":"6E7E6AD3-5418-4FEA-84B5-833059CA880D"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp1:enterprise:*:*:*:*:*","matchCriteriaId":"BBD9C514-5AF7-4849-A535-F0F3C9339051"}]}]}],"references":[{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-083","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5399","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-083","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5399","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0886","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:40.523","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IIS 5.0 allows remote attackers to execute arbitrary commands via a malformed request for an executable file whose name is appended with operating system commands, aka the \"Web Server File Request Parsing\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_services:5.0:*:*:*:*:*:*:*","matchCriteriaId":"413C07EA-139F-4B7D-A58B-835BD2591FA0"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1912","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/templates/archive.pike?mid=143604&list=1&fromthread=0&end=2000-11-11&threads=0&start=2000-11-05&","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-086","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5470","source":"cve@mitre.org"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A191","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1912","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/templates/archive.pike?mid=143604&list=1&fromthread=0&end=2000-11-11&threads=0&start=2000-11-05&","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-086","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5470","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A191","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0887","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:40.657","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"named in BIND 8.2 through 8.2.2-P6 allows remote attackers to cause a denial of service by making a compressed zone transfer (ZXFR) request and performing a name service query on an authoritative record that is not cached, aka the \"zxfr bug.\""}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.2:p5:*:*:*:*:*:*","matchCriteriaId":"30D2ACB3-BE6D-4948-AFC3-16EAD173F595"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0217.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/linux/suse/2000-q4/0657.html","source":"cve@mitre.org"},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000338","source":"cve@mitre.org"},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000339","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://frontal2.mandriva.com/security/advisories?name=MDKSA-2000:067","source":"cve@mitre.org"},{"url":"http://www.cert.org/advisories/CA-2000-20.html","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://www.debian.org/security/2000/20001112","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-107.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/143843","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1923","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5540","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0217.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/linux/suse/2000-q4/0657.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000338","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000339","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://frontal2.mandriva.com/security/advisories?name=MDKSA-2000:067","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.cert.org/advisories/CA-2000-20.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"http://www.debian.org/security/2000/20001112","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-107.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/143843","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1923","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5540","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0888","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:40.820","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"named in BIND 8.2 through 8.2.2-P6 allows remote attackers to cause a denial of service by sending an SRV record to the server, aka the \"srv bug.\""}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-noinfo"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2:-:*:*:*:*:*:*","matchCriteriaId":"D0F0B3CC-F040-4D1D-8977-69B11282708B"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2:p1:*:*:*:*:*:*","matchCriteriaId":"CEBD7B33-5B16-4235-8792-69E09CFB0C4B"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.1:*:*:*:*:*:*:*","matchCriteriaId":"93BB48F5-A635-402E-AE7F-B8AB90ED0C70"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.2:-:*:*:*:*:*:*","matchCriteriaId":"85850031-73A2-4980-8841-5D2E3BC082C3"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.2:p1:*:*:*:*:*:*","matchCriteriaId":"BBBF703F-D43B-4C29-8AFB-DDDB51CDEF7B"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.2:p2:*:*:*:*:*:*","matchCriteriaId":"BEED8045-CEA2-4EBE-A864-22D1B6103F53"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.2:p3:*:*:*:*:*:*","matchCriteriaId":"C3B798F1-769E-4DBE-B99D-BFEA5F9B4DB0"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.2:p4:*:*:*:*:*:*","matchCriteriaId":"64C3DB3B-4C8E-4647-A61B-ECED4EB63439"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.2:p5:*:*:*:*:*:*","matchCriteriaId":"30D2ACB3-BE6D-4948-AFC3-16EAD173F595"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.2:p6:*:*:*:*:*:*","matchCriteriaId":"B3255FB4-D84E-487B-B53A-4EA01D6613A3"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.2:*:*:*:*:*:*:*","matchCriteriaId":"58B90124-0543-4226-BFF4-13CCCBCCB243"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/linux/suse/2000-q4/0657.html","source":"cve@mitre.org","tags":["Broken Link"]},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000338","source":"cve@mitre.org","tags":["Broken Link"]},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000339","source":"cve@mitre.org","tags":["Broken Link"]},{"url":"http://frontal2.mandriva.com/security/advisories?name=MDKSA-2000:067","source":"cve@mitre.org","tags":["Broken Link"]},{"url":"http://www.cert.org/advisories/CA-2000-20.html","source":"cve@mitre.org","tags":["Third Party Advisory","US Government Resource"]},{"url":"http://www.debian.org/security/2000/20001112","source":"cve@mitre.org","tags":["Third Party Advisory"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-107.html","source":"cve@mitre.org","tags":["Third Party Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5814","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://archives.neohapsis.com/archives/linux/suse/2000-q4/0657.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"]},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000338","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"]},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000339","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"]},{"url":"http://frontal2.mandriva.com/security/advisories?name=MDKSA-2000:067","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"]},{"url":"http://www.cert.org/advisories/CA-2000-20.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","US Government Resource"]},{"url":"http://www.debian.org/security/2000/20001112","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-107.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5814","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]}]}},{"cve":{"id":"CVE-2000-0900","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:43.280","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in ssi CGI program in thttpd 2.19 and earlier allows remote attackers to read arbitrary files via a \"%2e%2e\" string, a variation of the .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:acme_labs:thttpd:2.16:*:*:*:*:*:*:*","matchCriteriaId":"DAA5CDC3-EF0B-4A2D-B0DC-C1C0D6B07CFA"},{"vulnerable":true,"criteria":"cpe:2.3:a:acme_labs:thttpd:2.17:*:*:*:*:*:*:*","matchCriteriaId":"2A847C36-1DCF-4FCC-8E52-F9FE4E1DBD80"},{"vulnerable":true,"criteria":"cpe:2.3:a:acme_labs:thttpd:2.18:*:*:*:*:*:*:*","matchCriteriaId":"2A85AC9E-7532-4306-9CF3-2AFE9363342B"},{"vulnerable":true,"criteria":"cpe:2.3:a:acme_labs:thttpd:2.19:*:*:*:*:*:*:*","matchCriteriaId":"B58EB965-E06F-4985-B5B4-08EC0B9B8F71"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:73.thttpd.asc","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0025.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1737","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5313","source":"cve@mitre.org"},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:73.thttpd.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0025.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1737","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5313","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0901","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:43.420","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Format string vulnerability in screen 3.9.5 and earlier allows local users to gain root privileges via format characters in the vbell_msg initialization variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:juergen:weigert_screen:3.9.3:*:*:*:*:*:*:*","matchCriteriaId":"AABEFE1E-3BDF-4C25-BD33-B74B1E54C71B"},{"vulnerable":true,"criteria":"cpe:2.3:a:juergen:weigert_screen:3.9.4:*:*:*:*:*:*:*","matchCriteriaId":"981882E7-FC9C-40BF-B24D-1438D82110A4"},{"vulnerable":true,"criteria":"cpe:2.3:a:juergen:weigert_screen:3.9.5:*:*:*:*:*:*:*","matchCriteriaId":"76A6038A-34F0-4D11-8BE3-87A057B76891"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:46.screen.asc","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0530.html","source":"cve@mitre.org"},{"url":"http://www.linux-mandrake.com/en/updates/MDKSA-2000-044.php3","source":"cve@mitre.org"},{"url":"http://www.novell.com/linux/security/advisories/adv6_draht_screen_txt.html","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-058.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/80178","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1641","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5188","source":"cve@mitre.org"},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:46.screen.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-08/0530.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.linux-mandrake.com/en/updates/MDKSA-2000-044.php3","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.novell.com/linux/security/advisories/adv6_draht_screen_txt.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-058.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/80178","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1641","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5188","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0902","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:43.583","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"getalbum.php in PhotoAlbum before 0.9.9 allows remote attackers to read arbitrary files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:nathan_purciful:phpphotoalbum:0.9.9:*:*:*:*:*:*:*","matchCriteriaId":"2B6D46B4-762D-4E46-8AA6-06FED7D9DA41"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/80858","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5209","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/80858","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5209","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0903","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:43.710","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in Voyager web server 2.01B in the demo disks for QNX 405 allows remote attackers to read arbitrary files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:qnx:voyager:2.01b:*:*:*:*:*:*:*","matchCriteriaId":"8C4C4049-5A12-4FC4-A1DB-B11E3CB25895"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/79956","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1648","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/79956","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1648","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0904","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:43.850","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Voyager web server 2.01B in the demo disks for QNX 405 stores sensitive web client information in the .photon directory in the web document root, which allows remote attackers to obtain that information."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:qnx:voyager:2.01b:*:*:*:*:*:*:*","matchCriteriaId":"8C4C4049-5A12-4FC4-A1DB-B11E3CB25895"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/79956","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1648","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/79956","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1648","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0905","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:43.980","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"QNX Embedded Resource Manager in Voyager web server 2.01B in the demo disks for QNX 405 allows remote attackers to read sensitive system statistics information via the embedded.html web page."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:qnx:voyager:2.01b:*:*:*:*:*:*:*","matchCriteriaId":"8C4C4049-5A12-4FC4-A1DB-B11E3CB25895"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/79956","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1648","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/79956","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1648","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0906","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:44.133","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in Moreover.com cached_feed.cgi script version 4.July.00 allows remote attackers to read arbitrary files via a .. (dot dot) attack on the category or format parameters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:moreover.com:cached_feed.cgi_script:1.0:*:*:*:*:*:*:*","matchCriteriaId":"4980C2E4-2D50-4195-98C7-3803BD8A06D1"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0013.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1762","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5334","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0013.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1762","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5334","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0907","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:44.277","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"EServ 2.92 Build 2982 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via long HELO and MAIL FROM commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:etype:eserv:2.92:*:*:*:*:*:*:*","matchCriteriaId":"E26ABE5A-F702-4E6B-9089-97B8E81490E3"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/win2ksecadvice/2000-q3/0131.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/win2ksecadvice/2000-q3/0131.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0908","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:44.407","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"BrowseGate 2.80 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via long Authorization or Referer MIME headers in the HTTP request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netcplus:browsegate:2.80:*:*:*:*:*:*:*","matchCriteriaId":"AE48FAB4-8CE1-4AC2-AC8D-E04BFBF5658D"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/win2ksecadvice/2000-q3/0128.html","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=96956211605302&w=2","source":"cve@mitre.org"},{"url":"http://www.netcplus.com/browsegate.htm#BGLatest","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1702","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5270","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/win2ksecadvice/2000-q3/0128.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=96956211605302&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.netcplus.com/browsegate.htm#BGLatest","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1702","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5270","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0909","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:44.540","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the automatic mail checking component of Pine 4.21 and earlier allows remote attackers to execute arbitrary commands via a long From: header."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:university_of_washington:pine:4.0.4:*:*:*:*:*:*:*","matchCriteriaId":"D405F684-38E2-4AC4-8451-F4842E67C509"},{"vulnerable":true,"criteria":"cpe:2.3:a:university_of_washington:pine:4.10:*:*:*:*:*:*:*","matchCriteriaId":"358A71B0-79F2-4728-AC1E-5872BC64B2C3"},{"vulnerable":true,"criteria":"cpe:2.3:a:university_of_washington:pine:4.21:*:*:*:*:*:*:*","matchCriteriaId":"AA9E599F-D922-42B7-9FB5-FB025B095895"}]}]}],"references":[{"url":"ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:59.pine.asc","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0441.html","source":"cve@mitre.org"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-073.php3","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-102.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/84901","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1709","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5283","source":"cve@mitre.org"},{"url":"ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:59.pine.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0441.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-073.php3","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-102.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/84901","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1709","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5283","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0910","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:44.680","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Horde library 1.02 allows attackers to execute arbitrary commands via shell metacharacters in the \"from\" address."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:horde:horde:1.2:*:*:*:*:*:*:*","matchCriteriaId":"8695C97E-2E1A-480D-9DC9-8AD981B72CD5"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0051.html","source":"cve@mitre.org"},{"url":"http://ssl.coc-ag.de/sec/hordelib-1.2.0.frombug.patch","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/2000/20000910","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1674","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5278","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0051.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://ssl.coc-ag.de/sec/hordelib-1.2.0.frombug.patch","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.debian.org/security/2000/20000910","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1674","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5278","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0911","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:44.810","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IMP 2.2 and earlier allows attackers to read and delete arbitrary files by modifying the attachment_name hidden form variable, which causes IMP to send the file to the attacker as an attachment."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:horde:imp:2.0:*:*:*:*:*:*:*","matchCriteriaId":"8D2A8C5B-6155-4B40-B8C8-B4944064E3DF"},{"vulnerable":true,"criteria":"cpe:2.3:a:horde:imp:2.2:*:*:*:*:*:*:*","matchCriteriaId":"D11E08A4-79D6-46FE-880F-66E9778C298E"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/82088","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1679","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5227","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/82088","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1679","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5227","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0912","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:44.943","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"MultiHTML CGI script allows remote attackers to read arbitrary files and possibly execute arbitrary commands by specifying the file name to the \"multi\" parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:jcs_web_works:multihtml:*:*:*:*:*:*:*:*","matchCriteriaId":"AB6FB2C6-1A30-49AC-8464-DBDC6888520F"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0146.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5285","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0146.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5285","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0913","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:45.083","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"mod_rewrite in Apache 1.3.12 and earlier allows remote attackers to read arbitrary files if a RewriteRule directive is expanded to include a filename whose name contains a regular expression."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:0.8.11:*:*:*:*:*:*:*","matchCriteriaId":"E80E240C-9879-48EC-AC9A-2C1FD5E2DD8E"},{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:0.8.14:*:*:*:*:*:*:*","matchCriteriaId":"AF16AF7D-9475-435F-AE36-F16CE8F45A75"},{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.0:*:*:*:*:*:*:*","matchCriteriaId":"06F3141B-2C30-4230-A425-465E235539EE"},{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.0.2:*:*:*:*:*:*:*","matchCriteriaId":"B6D2C9EA-1241-4DE6-A6CD-FCD7EEC9B42D"},{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.0.3:*:*:*:*:*:*:*","matchCriteriaId":"B5EA86B9-4F86-4ADA-BC6A-4F6E261848F6"},{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.0.5:*:*:*:*:*:*:*","matchCriteriaId":"CA6523AC-ECC9-4A79-9387-18308FCF9A68"},{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.1:*:*:*:*:*:*:*","matchCriteriaId":"BDCBCF0F-63FB-4A03-92F8-FF121083CD85"},{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.1.1:*:*:*:*:*:*:*","matchCriteriaId":"4363C07C-179B-4797-947F-7440AD1F2D00"},{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.3.11:*:win32:*:*:*:*:*","matchCriteriaId":"5E3B21AE-B167-4E49-AC32-537DCAABAB33"},{"vulnerable":true,"criteria":"cpe:2.3:a:apache:http_server:1.3.12:*:*:*:*:*:*:*","matchCriteriaId":"33FD6791-3B84-40CA-BCF4-B5637B172F2A"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0352.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0174.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/hp/2000-q4/0021.html","source":"cve@mitre.org"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-035.0.txt","source":"cve@mitre.org"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-060-2.php3?dis=7.1","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-088.html","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-095.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1728","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5310","source":"cve@mitre.org"},{"url":"https://lists.apache.org/thread.html/r5419c9ba0951ef73a655362403d12bb8d10fab38274deb3f005816f5%40%3Ccvs.httpd.apache.org%3E","source":"cve@mitre.org"},{"url":"https://lists.apache.org/thread.html/r5f9c22f9c28adbd9f00556059edc7b03a5d5bb71d4bb80257c0d34e4%40%3Ccvs.httpd.apache.org%3E","source":"cve@mitre.org"},{"url":"https://lists.apache.org/thread.html/r9f93cf6dde308d42a9c807784e8102600d0397f5f834890708bf6920%40%3Ccvs.httpd.apache.org%3E","source":"cve@mitre.org"},{"url":"https://lists.apache.org/thread.html/rb9c9f42dafa25d2f669dac2a536a03f2575bc5ec1be6f480618aee10%40%3Ccvs.httpd.apache.org%3E","source":"cve@mitre.org"},{"url":"https://lists.apache.org/thread.html/rf2f0f3611f937cf6cfb3b4fe4a67f69885855126110e1e3f2fb2728e%40%3Ccvs.httpd.apache.org%3E","source":"cve@mitre.org"},{"url":"https://lists.apache.org/thread.html/rf6449464fd8b7437704c55f88361b66f12d5b5f90bcce66af4be4ba9%40%3Ccvs.httpd.apache.org%3E","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0352.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0174.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/hp/2000-q4/0021.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-035.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-060-2.php3?dis=7.1","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-088.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-095.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1728","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5310","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://lists.apache.org/thread.html/r5419c9ba0951ef73a655362403d12bb8d10fab38274deb3f005816f5%40%3Ccvs.httpd.apache.org%3E","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://lists.apache.org/thread.html/r5f9c22f9c28adbd9f00556059edc7b03a5d5bb71d4bb80257c0d34e4%40%3Ccvs.httpd.apache.org%3E","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://lists.apache.org/thread.html/r9f93cf6dde308d42a9c807784e8102600d0397f5f834890708bf6920%40%3Ccvs.httpd.apache.org%3E","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://lists.apache.org/thread.html/rb9c9f42dafa25d2f669dac2a536a03f2575bc5ec1be6f480618aee10%40%3Ccvs.httpd.apache.org%3E","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://lists.apache.org/thread.html/rf2f0f3611f937cf6cfb3b4fe4a67f69885855126110e1e3f2fb2728e%40%3Ccvs.httpd.apache.org%3E","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://lists.apache.org/thread.html/rf6449464fd8b7437704c55f88361b66f12d5b5f90bcce66af4be4ba9%40%3Ccvs.httpd.apache.org%3E","source":"af854a3a-2127-422b-91ae-364da2661108"}],"vendorComments":[{"organization":"Apache","comment":"Fixed in Apache HTTP Server 1.3.14:\nhttp://httpd.apache.org/security/vulnerabilities_13.html","lastModified":"2008-07-02T00:00:00"}]}},{"cve":{"id":"CVE-2000-0914","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:45.303","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"OpenBSD 2.6 and earlier allows remote attackers to cause a denial of service by flooding the server with ARP requests."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.0:*:*:*:*:*:*:*","matchCriteriaId":"36DF0D51-FCFA-46A3-B834-E80DFA91DFDC"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.1:*:*:*:*:*:*:*","matchCriteriaId":"5CB726CF-ADA2-4CDA-9786-1E84AC53740A"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.2:*:*:*:*:*:*:*","matchCriteriaId":"1FC373FC-88AC-4B6D-A289-51881ACD57F7"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.3:*:*:*:*:*:*:*","matchCriteriaId":"1D2DA7F0-E3C0-447A-A2B0-ECC928389D84"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.4:*:*:*:*:*:*:*","matchCriteriaId":"FEBE290B-5EC6-4BBA-B645-294C150E417A"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.5:*:*:*:*:*:*:*","matchCriteriaId":"ACE7FDFB-C6A6-4B58-B0B4-236E4EA76EF6"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.6:*:*:*:*:*:*:*","matchCriteriaId":"0DF053A1-C252-427E-9EEF-27240F422976"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0078.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1592","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1759","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5340","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0078.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1592","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1759","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5340","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0915","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:45.440","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"fingerd in FreeBSD 4.1.1 allows remote attackers to read arbitrary files by specifying the target file name instead of a regular user name."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.1.1:release:*:*:*:*:*:*","matchCriteriaId":"1E8A6564-129A-4555-A5ED-6F65C56AE7B4"}]}]}],"references":[{"url":"ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:54.fingerd.asc","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0017.html","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/433","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1803","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5385","source":"cve@mitre.org"},{"url":"ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:54.fingerd.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0017.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/433","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1803","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5385","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0916","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:45.587","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"FreeBSD 4.1.1 and earlier, and possibly other BSD-based OSes, uses an insufficient random number generator to generate initial TCP sequence numbers (ISN), which allows remote attackers to spoof TCP connections."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:2.0:*:*:*:*:*:*:*","matchCriteriaId":"F1F098C1-D09E-49B4-9B51-E84B6C4EA6CD"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.0:*:*:*:*:*:*:*","matchCriteriaId":"EE38C50A-81FE-412E-9717-3672FAE6A6F4"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.0:*:*:*:*:*:*:*","matchCriteriaId":"D0A585A1-FF82-418F-90F8-072458DB7816"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.1:*:*:*:*:*:*:*","matchCriteriaId":"AE31DFF8-06AB-489D-A0C5-509C090283B5"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.1.1:*:*:*:*:*:*:*","matchCriteriaId":"3BE1E3D8-2BB1-4FFA-9BC9-7AF347D26190"}]}]}],"references":[{"url":"ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:52.tcp-iss.asc","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1766","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:52.tcp-iss.asc","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1766","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0917","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:45.720","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Format string vulnerability in use_syslog() function in LPRng 3.6.24 allows remote attackers to execute arbitrary commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:caldera:openlinux_ebuilder:3.0:*:*:*:*:*:*:*","matchCriteriaId":"E02719FF-924A-4E96-AE1D-5994A8D4275E"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux:*:*:*:*:*:*:*:*","matchCriteriaId":"4EC3F7E5-5D49-471B-A705-ADD2642E5B46"},{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux_edesktop:2.4:*:*:*:*:*:*:*","matchCriteriaId":"B211BCBF-CB17-4D32-B6FE-A34D86C4FBF9"},{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux_eserver:2.3:*:*:*:*:*:*:*","matchCriteriaId":"3BE526D3-4CD8-423C-81FA-65B92F862A5E"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"29B186E5-7C2F-466E-AA4A-8F2B618F8A14"},{"vulnerable":true,"criteria":"cpe:2.3:o:trustix:secure_linux:1.0:*:*:*:*:*:*:*","matchCriteriaId":"8DF1A678-FEF1-4549-8EDC-518444CFC57F"},{"vulnerable":true,"criteria":"cpe:2.3:o:trustix:secure_linux:1.1:*:*:*:*:*:*:*","matchCriteriaId":"9D0DFB12-B43F-4207-A900-464A97F5124D"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:56.lprng.asc","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0293.html","source":"cve@mitre.org"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-033.0.txt","source":"cve@mitre.org"},{"url":"http://www.cert.org/advisories/CA-2000-22.html","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-065.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1712","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5287","source":"cve@mitre.org"},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:56.lprng.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0293.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-033.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.cert.org/advisories/CA-2000-22.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-065.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1712","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5287","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0918","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:45.863","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Format string vulnerability in kvt in KDE 1.1.2 may allow local users to execute arbitrary commands via a DISPLAY environmental variable that contains formatting characters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:kde:kvt:1.1.2:*:*:*:*:*:*:*","matchCriteriaId":"AD94AA3E-282F-4562-8C90-82D2CE337C85"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/83914","source":"cve@mitre.org","tags":["Patch"]},{"url":"http://www.securityfocus.com/bid/1700","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/83914","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"http://www.securityfocus.com/bid/1700","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0919","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:46.000","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in PHPix Photo Album 1.0.2 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:phpix:phpix:1.0:*:*:*:*:*:*:*","matchCriteriaId":"AA6E38A4-5011-4349-AC69-527A488FDDBB"},{"vulnerable":true,"criteria":"cpe:2.3:a:phpix:phpix:1.0.1:*:*:*:*:*:*:*","matchCriteriaId":"9C532BB8-60BD-4632-AF61-CE58B72AD813"},{"vulnerable":true,"criteria":"cpe:2.3:a:phpix:phpix:1.0.2:*:*:*:*:*:*:*","matchCriteriaId":"F19959A6-A663-449C-9F63-CB5F647485F0"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0117.html","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/472","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1773","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5331","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0117.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/472","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1773","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5331","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0920","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:46.130","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in BOA web server 0.94.8.2 and earlier allows remote attackers to read arbitrary files via a modified .. (dot dot) attack in the GET HTTP request that uses a \"%2E\" instead of a \".\""}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:boa:boa_webserver:*:*:*:*:*:*:*:*","versionEndIncluding":"0.94.8.2","matchCriteriaId":"4B1D3572-6F72-4EC9-868E-6D3D3E301224"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:60.boa.asc","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0092.html","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/2000/20001009","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1770","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5330","source":"cve@mitre.org"},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:60.boa.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0092.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.debian.org/security/2000/20001009","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1770","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5330","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0921","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:46.263","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in Hassan Consulting shop.cgi shopping cart program allows remote attackers to read arbitrary files via a .. (dot dot) attack on the page parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:hassan_consulting:shopping_cart:*:*:*:*:*:*:*:*","versionEndIncluding":"1.18","matchCriteriaId":"2414B6D5-0D16-4280-A991-705243829E13"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0115.html","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1596","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1777","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5342","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0115.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1596","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1777","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5342","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0922","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:46.397","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in Bytes Interactive Web Shopper shopping cart program (shopper.cgi) 2.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack on the newpage parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:bytes_interactive:web_shopper:1.0:*:*:*:*:*:*:*","matchCriteriaId":"3971F31C-0EAA-4BCF-9BBD-5BEA531F9E79"},{"vulnerable":true,"criteria":"cpe:2.3:a:bytes_interactive:web_shopper:2.0:*:*:*:*:*:*:*","matchCriteriaId":"CC43E7A6-9911-40EB-8B44-CCA0F1C6B834"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0120.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1776","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5351","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0120.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1776","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5351","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0923","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:46.530","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"authenticate.cgi CGI program in Aplio PRO allows remote attackers to execute arbitrary commands via shell metacharacters in the password parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:aplio:aplio_phone:2.0.33_build1:*:*:*:*:*:*:*","matchCriteriaId":"62E6FA59-739E-4302-86BE-53B8EC6FDEE4"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0107.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1784","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5333","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0107.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1784","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5333","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0924","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:46.660","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in search.cgi CGI script in Armada Master Index allows remote attackers to read arbitrary files via a .. (dot dot) attack in the \"catigory\" parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:armada_design:master_index:1.0:*:*:*:*:*:*:*","matchCriteriaId":"098CE136-9B5D-451B-9F82-BAD97EF4E127"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0141.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.osvdb.org/461","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1772","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5355","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0141.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.osvdb.org/461","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1772","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5355","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0925","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:46.800","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default installation of SmartWin CyberOffice Shopping Cart 2 (aka CyberShop) installs the _private directory with world readable permissions, which allows remote attackers to obtain sensitive information."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:smartwin_technology:cyberoffice_shopping_cart:2.0:*:*:*:*:*:*:*","matchCriteriaId":"9F212B71-567F-494E-B372-04E519506C4A"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/win2ksecadvice/2000-q4/0001.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=97050819812055&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1734","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5318","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/win2ksecadvice/2000-q4/0001.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=97050819812055&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1734","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5318","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0926","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:46.943","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"SmartWin CyberOffice Shopping Cart 2 (aka CyberShop) allows remote attackers to modify price information by changing the \"Price\" hidden form variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:smartwin_technology:cyberoffice_shopping_cart:2.0:*:*:*:*:*:*:*","matchCriteriaId":"9F212B71-567F-494E-B372-04E519506C4A"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/win2ksecadvice/2000-q4/0000.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=97050627707128&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1733","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5319","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/win2ksecadvice/2000-q4/0000.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=97050627707128&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1733","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5319","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0927","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:47.093","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WQuinn QuotaAdvisor 4.1 does not properly record file sizes if they are stored in alternative data streams, which allows users to bypass quota restrictions."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:wquinn:quotaadvisor:4.1:*:*:*:*:*:*:*","matchCriteriaId":"3AE9F1D3-C53F-4413-8894-5CFAFDFC4F3C"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09//0331.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q3/0173.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1724","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5302","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09//0331.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q3/0173.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1724","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5302","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0928","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:47.227","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WQuinn QuotaAdvisor 4.1 allows users to list directories and files by running a report on the targeted shares."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:wquinn:diskadvisor:*:*:*:*:*:*:*:*","versionEndIncluding":"4.1","matchCriteriaId":"FE4A190A-3FD3-47C5-A414-32C053B9D43D"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0091.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1765","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5327","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0091.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1765","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5327","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0929","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:47.363","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Windows Media Player 7 allows attackers to cause a denial of service in RTF-enabled email clients via an embedded OCX control that is not closed properly, aka the \"OCX Attachment\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:windows_media_player:7:*:*:*:*:*:*:*","matchCriteriaId":"E5C9557F-DCBF-48BA-9045-AA5DF58F604A"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97024839222747&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1714","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-068","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5309","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97024839222747&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1714","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-068","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5309","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0930","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:47.510","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Pegasus Mail 3.12 allows remote attackers to read arbitrary files via an embedded URL that calls the mailto: protocol with a -F switch."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:david_harris:pegasus_mail:3.12:*:*:*:*:*:*:*","matchCriteriaId":"17384992-EF0A-4E59-BA16-6D6E31755AD3"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0039.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0436.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1738","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5326","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0039.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0436.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1738","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5326","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0931","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:47.657","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Pegasus Mail 3.11 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long email message containing binary data."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:david_harris:pegasus_mail:3.11:*:*:*:*:*:*:*","matchCriteriaId":"26984F0D-12A5-4C81-A8F0-5C1EE2CB8F4C"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/137518","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1750","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/137518","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1750","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0932","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:47.807","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"MAILsweeper for SMTP 3.x does not properly handle corrupt CDA documents in a ZIP file and hangs, which allows remote attackers to cause a denial of service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:clearswift:mailsweeper_for_smtp:3.x:*:*:*:*:*:*:*","matchCriteriaId":"AA14560A-D811-4087-B5E4-FA24988C48AD"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q3/0181.html","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5641","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q3/0181.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5641","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0933","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:47.940","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Input Method Editor (IME) in the Simplified Chinese version of Windows 2000 does not disable access to privileged functionality that should normally be restricted, which allows local users to gain privileges, aka the \"Simplified Chinese IME State Recognition\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1729","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-069","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5301","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1729","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-069","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5301","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0934","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:48.080","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Glint in Red Hat Linux 5.2 allows local users to overwrite arbitrary files and cause a denial of service via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:*:*:*:*:*:*","matchCriteriaId":"A8EED385-8C39-4A40-A507-2EFE7652FB35"}]}]}],"references":[{"url":"http://www.redhat.com/support/errata/RHSA-2000-062.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1703","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5271","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-062.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1703","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5271","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0935","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:48.227","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Samba Web Administration Tool (SWAT) in Samba 2.0.7 allows local users to overwrite arbitrary files via a symlink attack on the cgi.log file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:samba:samba:2.0.7:*:*:*:*:*:*:*","matchCriteriaId":"1CB46ABA-F403-4715-915D-870BD221C8FE"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0430.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1872","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5443","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0430.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1872","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5443","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0936","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:48.367","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Samba Web Administration Tool (SWAT) in Samba 2.0.7 installs the cgi.log logging file with world readable permissions, which allows local users to read sensitive information such as user names and passwords."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:samba:samba:2.0.7:*:*:*:*:*:*:*","matchCriteriaId":"1CB46ABA-F403-4715-915D-870BD221C8FE"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0430.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1874","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5445","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0430.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1874","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5445","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0937","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:48.497","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Samba Web Administration Tool (SWAT) in Samba 2.0.7 does not log login attempts in which the username is correct but the password is wrong, which allows remote attackers to conduct brute force password guessing attacks."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:samba:samba:2.0.7:*:*:*:*:*:*:*","matchCriteriaId":"1CB46ABA-F403-4715-915D-870BD221C8FE"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0430.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1873","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5442","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0430.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1873","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5442","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0938","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:48.630","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Samba Web Administration Tool (SWAT) in Samba 2.0.7 supplies a different error message when a valid username is provided versus an invalid name, which allows remote attackers to identify valid users on the server."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:samba:samba:2.0.7:*:*:*:*:*:*:*","matchCriteriaId":"1CB46ABA-F403-4715-915D-870BD221C8FE"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0430.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5442","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0430.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5442","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0939","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:48.757","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Samba Web Administration Tool (SWAT) in Samba 2.0.7 allows remote attackers to cause a denial of service by repeatedly submitting a nonstandard URL in the GET HTTP request and forcing it to restart."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:samba:samba:2.0.7:*:*:*:*:*:*:*","matchCriteriaId":"1CB46ABA-F403-4715-915D-870BD221C8FE"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0430.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5444","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0430.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5444","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0940","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:48.903","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in Metertek pagelog.cgi allows remote attackers to read arbitrary files via a .. (dot dot) attack on the \"name\" or \"display\" parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:N","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:metertek:pagelog.cgi:1.0:*:*:*:*:*:*:*","matchCriteriaId":"ED267E4B-B4BD-464F-9570-7763C8F39016"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0422.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1864","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5451","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0422.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1864","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5451","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0941","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:49.050","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Kootenay Web KW Whois 1.0 CGI program allows remote attackers to execute arbitrary commands via shell metacharacters in the \"whois\" parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:kootenay_web_inc:kootenay_web_inc_whois:1.0:*:*:*:*:*:*:*","matchCriteriaId":"47BAF439-099B-42D8-82FA-B7D9DAE546E8"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0419.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0420.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.kootenayweb.bc.ca/scripts/whois.txt","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1883","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5438","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0419.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0420.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.kootenayweb.bc.ca/scripts/whois.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1883","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5438","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0942","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:49.197","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The CiWebHitsFile component in Microsoft Indexing Services for Windows 2000 allows remote attackers to conduct a cross site scripting (CSS) attack via a CiRestriction parameter in a .htw request, aka the \"Indexing Services Cross Site Scripting\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:indexing_service:*:*:*:*:*:*:*:*","matchCriteriaId":"E8D01793-B14A-4A3E-868F-8F9C74AB7482"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/141903","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1861","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-084","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5441","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/141903","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1861","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-084","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5441","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0943","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:49.340","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in bftp daemon (bftpd) 1.0.11 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long USER command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:max-wilhelm_bruker:bftpd:1.0.11:*:*:*:*:*:*:*","matchCriteriaId":"F1ED895A-7AC7-4951-B772-11479856E580"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0397.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1858","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5426","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0397.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1858","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5426","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0944","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:49.477","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"CGI Script Center News Update 1.1 does not properly validate the original news administration password during a password change operation, which allows remote attackers to modify the password without knowing the original password."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","baseScore":9.8,"baseSeverity":"CRITICAL","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":3.9,"impactScore":5.9}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-522"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cgi:script_center_news_update:1.1:*:*:*:*:*:*:*","matchCriteriaId":"27376C80-C1F3-41D3-844F-0BE1C05E4E7D"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0402.html","source":"cve@mitre.org","tags":["Broken Link","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1881","source":"cve@mitre.org","tags":["Broken Link","Exploit","Third Party Advisory","VDB Entry","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5433","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0402.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1881","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Exploit","Third Party Advisory","VDB Entry","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5433","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]}]}},{"cve":{"id":"CVE-2000-0945","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:49.600","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The web configuration interface for Catalyst 3500 XL switches allows remote attackers to execute arbitrary commands without authentication when the enable password is not set, via a URL containing the /exec/ directory."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:catalyst_3500_xl:*:*:*:*:*:*:*:*","matchCriteriaId":"DA122273-0B84-4CE6-AAF6-F89E1F986C33"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0380.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0194.html","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/444","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1846","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5415","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0380.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0194.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/444","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1846","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5415","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0946","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:49.727","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Compaq Easy Access Keyboard software 1.3 does not properly disable access to custom buttons when the screen is locked, which could allow an attacker to gain privileges or execute programs without authorization."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:compaq:easy_access_keyboard_software:1.3:*:*:*:*:*:*:*","matchCriteriaId":"B1F97203-4197-498E-9139-C172531C62FC"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q4/0023.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/5831","source":"cve@mitre.org"},{"url":"http://www5.compaq.com/support/files/desktops/us/revision/1723.html","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5718","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q4/0023.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/5831","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www5.compaq.com/support/files/desktops/us/revision/1723.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5718","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0947","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:49.857","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Format string vulnerability in cfd daemon in GNU CFEngine before 1.6.0a11 allows attackers to execute arbitrary commands via format characters in the CAUTH command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:cfengine:1.5:*:*:*:*:*:*:*","matchCriteriaId":"5C22AB17-D78C-4330-A7BA-02495AE92F0B"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:cfengine:1.5.3-4:*:*:*:*:*:*:*","matchCriteriaId":"CDA14719-B1F6-4547-A746-073FAFF3DCE6"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:cfengine:1.6:a10:*:*:*:*:*:*","matchCriteriaId":"1883251B-87AF-40B4-87E7-C11C5B2B2257"}]}]}],"references":[{"url":"ftp://ftp.NetBSD.ORG/pub/NetBSD/misc/security/advisories/NetBSD-SA2000-013.txt.asc","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0004.html","source":"cve@mitre.org"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-061.php3?dis=7.1","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1757","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5630","source":"cve@mitre.org"},{"url":"ftp://ftp.NetBSD.ORG/pub/NetBSD/misc/security/advisories/NetBSD-SA2000-013.txt.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0004.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-061.php3?dis=7.1","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1757","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5630","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0948","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:49.983","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"GnoRPM before 0.95 allows local users to modify arbitrary files via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gnome:gnorpm:*:*:*:*:*:*:*:*","versionEndIncluding":"0.94","matchCriteriaId":"A2D4FBE0-8739-436B-9330-C587D488AA84"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0043.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0184.html","source":"cve@mitre.org"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-055.php3?dis=7.0","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-072.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/136866","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1761","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5317","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0043.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0184.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-055.php3?dis=7.0","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-072.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/136866","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1761","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5317","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0949","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:50.113","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Heap overflow in savestr function in LBNL traceroute 1.4a5 and earlier allows a local user to execute arbitrary commands via the -g option."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:lbl:lbl_traceroute:1.4a5:*:*:*:*:*:*:*","matchCriteriaId":"270B8B64-276D-4C16-B242-0DD2E2A7F1DB"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5.1:*:*:*:*:*:*:*","matchCriteriaId":"39F847DB-65A9-47DA-BCFA-A179E5E2301A"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0344.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0357.html","source":"cve@mitre.org"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-034.0.txt","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/2000/20001013","source":"cve@mitre.org"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-053.php3?dis=7.1","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-078.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1739","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.turbolinux.com/pipermail/tl-security-announce/2000-October/000025.html","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5311","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0344.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0357.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-034.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.debian.org/security/2000/20001013","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-053.php3?dis=7.1","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-078.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1739","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.turbolinux.com/pipermail/tl-security-announce/2000-October/000025.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5311","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0950","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:50.270","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Format string vulnerability in x-gw in TIS Firewall Toolkit (FWTK) allows local users to execute arbitrary commands via a malformed display name."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:tis:internet_firewall_toolkit:2.1:*:*:*:*:*:*:*","matchCriteriaId":"0D8F8D55-AA37-4701-BD6E-03DFAC1C6E34"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0376.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5420","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0376.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5420","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0951","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:50.413","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A misconfiguration in IIS 5.0 with Index Server enabled and the Index property set allows remote attackers to list directories in the web root via a Web Distributed Authoring and Versioning (WebDAV) search."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_services:5.0:*:*:*:*:*:*:*","matchCriteriaId":"413C07EA-139F-4B7D-A58B-835BD2591FA0"}]}]}],"references":[{"url":"http://www.atstake.com/research/advisories/2000/a100400-1.txt","source":"cve@mitre.org"},{"url":"http://www.microsoft.com/technet/support/kb.asp?ID=272079","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1756","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5335","source":"cve@mitre.org"},{"url":"http://www.atstake.com/research/advisories/2000/a100400-1.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.microsoft.com/technet/support/kb.asp?ID=272079","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1756","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5335","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0952","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:50.543","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"global.cgi CGI program in Global 3.55 and earlier on NetBSD allows remote attackers to execute arbitrary commands via shell metacharacters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:shigio_yamaguchi:global:3.55:*:*:*:*:*:*:*","matchCriteriaId":"A22EA8E1-B640-494E-A38C-5D34C89E714D"}]}]}],"references":[{"url":"ftp://ftp.NetBSD.ORG/pub/NetBSD/misc/security/advisories/NetBSD-SA2000-014.txt.asc","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/6486","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5424","source":"cve@mitre.org"},{"url":"ftp://ftp.NetBSD.ORG/pub/NetBSD/misc/security/advisories/NetBSD-SA2000-014.txt.asc","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/6486","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5424","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0953","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:50.670","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Shambala Server 4.5 allows remote attackers to cause a denial of service by opening then closing a connection."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:evolvable_corporation:shambala_server:4.5:*:*:*:*:*:*:*","matchCriteriaId":"D0038B0E-2EF8-421C-B745-03B09DC2322B"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0134.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1778","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5345","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0134.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1778","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5345","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0954","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:50.810","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Shambala Server 4.5 stores passwords in plaintext, which could allow local users to obtain the passwords and compromise the server."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:evolvable_corporation:shambala_server:4.5:*:*:*:*:*:*:*","matchCriteriaId":"D0038B0E-2EF8-421C-B745-03B09DC2322B"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0134.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1771","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5346","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0134.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1771","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5346","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0955","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:50.940","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Cisco Virtual Central Office 4000 (VCO/4K) uses weak encryption to store usernames and passwords in the SNMP MIB, which allows an attacker who knows the community name to crack the password and gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:virtual_central_office_4000:*:*:*:*:*:*:*:*","versionEndIncluding":"5.1.3","matchCriteriaId":"643BB7C9-FAB0-475E-8425-C5E0EFB5CEA3"}]}]}],"references":[{"url":"http://www.atstake.com/research/advisories/2000/a102600-1.txt","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1885","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5425","source":"cve@mitre.org"},{"url":"http://www.atstake.com/research/advisories/2000/a102600-1.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1885","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5425","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0956","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:51.077","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"cyrus-sasl before 1.5.24 in Red Hat Linux 7.0 does not properly verify the authorization for a local user, which could allow the users to bypass specified access restrictions."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:carnegie_mellon_university:cyrus-sasl:1.5.24:*:*:*:*:*:*:*","matchCriteriaId":"DD2651BC-04DB-4807-95FC-E4DD48A504F2"}]}]}],"references":[{"url":"http://www.redhat.com/support/errata/RHSA-2000-094.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1875","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5427","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-094.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1875","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5427","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0957","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:51.233","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The pluggable authentication module for mysql (pam_mysql) before 0.4.7 does not properly cleanse user input when constructing SQL statements, which allows attackers to obtain plaintext passwords or hashes."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:pam_mysql:pam_mysql:0.1:*:*:*:*:*:*:*","matchCriteriaId":"69F34F78-005A-4385-B950-7E64CB764E0F"},{"vulnerable":true,"criteria":"cpe:2.3:a:pam_mysql:pam_mysql:0.2:*:*:*:*:*:*:*","matchCriteriaId":"D8197EC1-9941-4A9E-AAC9-EDC562AE0A78"},{"vulnerable":true,"criteria":"cpe:2.3:a:pam_mysql:pam_mysql:0.3:*:*:*:*:*:*:*","matchCriteriaId":"3B5E13E9-39A1-4667-BE2C-3BD30CBA35A1"},{"vulnerable":true,"criteria":"cpe:2.3:a:pam_mysql:pam_mysql:0.4:*:*:*:*:*:*:*","matchCriteriaId":"4E26729E-81B9-4F32-A853-149F7B771C06"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0374.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5447","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0374.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5447","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0958","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:51.370","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"HotJava Browser 3.0 allows remote attackers to access the DOM of a web page by opening a javascript: URL in a named window."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sun:hotjava_browser:3.0:*:*:*:*:*:*:*","matchCriteriaId":"D5EF4789-27AB-405D-854D-EA7158003EA3"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0349.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5428","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0349.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5428","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0959","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:51.490","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"glibc2 does not properly clear the LD_DEBUG_OUTPUT and LD_DEBUG environmental variables when a program is spawned from a setuid program, which could allow local users to overwrite files via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:N/I:P/A:N","baseScore":1.2,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":1.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:glibc:2.1.3.10:*:*:*:*:*:*:*","matchCriteriaId":"8AFD93D5-70BB-475C-BDD3-DEDE9965C5BA"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/85028","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1719","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5299","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/85028","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1719","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5299","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0960","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:51.613","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The POP3 server in Netscape Messaging Server 4.15p1 generates different error messages for incorrect user names versus incorrect passwords, which allows remote attackers to determine valid users on the system and harvest email addresses for spam abuse."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:messaging_server:4.15:*:*:*:*:*:*:*","matchCriteriaId":"294BA50A-A19B-46F8-8D9E-4F0DA98F74E5"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:messaging_server:4.15:patch1:*:*:*:*:*:*","matchCriteriaId":"41AD2442-625E-4654-8654-0BF345FAC3B7"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:messaging_server:4.15:patch2:*:*:*:*:*:*","matchCriteriaId":"32228CBD-0C64-40B9-85A8-6925FDEEC89F"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97138100426121&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1787","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5364","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97138100426121&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1787","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5364","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0961","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:51.743","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in IMAP server in Netscape Messaging Server 4.15 Patch 2 allows local users to execute arbitrary commands via a long LIST command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:messaging_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"6BFC3BDA-6B7E-4C95-8455-C60A61560C06"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:netscape_messaging_server_multiplexor:4.0:*:*:*:*:*:*:*","matchCriteriaId":"96C18478-4A02-48BE-AC28-AC4FF1D8F436"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0334.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1721","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5292","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0334.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1721","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5292","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0962","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:51.863","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The IPSEC implementation in OpenBSD 2.7 does not properly handle empty AH/ESP packets, which allows remote attackers to cause a denial of service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.7:*:*:*:*:*:*:*","matchCriteriaId":"48A9C344-45AA-47B9-B35A-1A62E220D9C6"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0299.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1574","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1723","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5634","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0299.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1574","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1723","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5634","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0963","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-07-23T18:58:25.760","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in ncurses library allows local users to execute arbitrary commands via long environmental information such as TERM or TERMINFO_DIRS."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:immunix:immunix:6.2:*:*:*:*:*:*:*","matchCriteriaId":"DB0F79BE-8EBF-44D8-83A1-9331669BED54"},{"vulnerable":true,"criteria":"cpe:2.3:a:immunix:immunix:7.0_beta:*:*:*:*:*:*:*","matchCriteriaId":"1A2889C6-8DE0-4432-812A-F2A5C4A08897"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.4:*:*:*:*:*:*:*","matchCriteriaId":"B982342C-1981-4C55-8044-AFE4D87623DF"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.5.1:*:*:*:*:*:*:*","matchCriteriaId":"7C283AD7-1C58-4CE8-A6CD-502FFE0B18BB"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.0:*:*:*:*:*:*:*","matchCriteriaId":"D0A585A1-FF82-418F-90F8-072458DB7816"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.1:*:*:*:*:*:*:*","matchCriteriaId":"AE31DFF8-06AB-489D-A0C5-509C090283B5"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.1.1:*:*:*:*:*:*:*","matchCriteriaId":"3BE1E3D8-2BB1-4FFA-9BC9-7AF347D26190"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.1.1:stable:*:*:*:*:*:*","matchCriteriaId":"237174A4-E030-4A0B-AD0B-5C463603EAA4"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:alpha:*:*:*:*:*","matchCriteriaId":"344610A8-DB6D-4407-9304-916C419F648C"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:i386:*:*:*:*:*","matchCriteriaId":"B7EC2B95-4715-4EC9-A10A-2542501F8A61"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:sparc:*:*:*:*:*","matchCriteriaId":"64775BEF-2E53-43CA-8639-A7E54F6F4222"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"29B186E5-7C2F-466E-AA4A-8F2B618F8A14"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:invisible-island:ncurses:*:*:*:*:*:*:*:*","versionEndExcluding":"5.6","matchCriteriaId":"1159212D-FC25-426E-AAF3-E8ECFF28B247"}]}]}],"references":[{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-036.0.txt","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/138550","source":"cve@mitre.org","tags":["Broken Link","Third Party Advisory","VDB Entry"]},{"url":"http://www.securityfocus.com/bid/1142","source":"cve@mitre.org","tags":["Broken Link","Exploit","Patch","Third Party Advisory","VDB Entry","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/44487","source":"cve@mitre.org","tags":["VDB Entry","Vendor Advisory"]},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-036.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/138550","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Third Party Advisory","VDB Entry"]},{"url":"http://www.securityfocus.com/bid/1142","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Exploit","Patch","Third Party Advisory","VDB Entry","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/44487","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["VDB Entry","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0964","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:52.117","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the web administration service for the HiNet LP5100 IP-phone allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long GET request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:siemens:hinet_lp:5100.0:*:*:*:*:*:*:*","matchCriteriaId":"34DF0E00-BEAC-47D2-9D28-66EE75825CE6"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0336.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1727","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5298","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0336.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1727","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5298","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0965","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:52.230","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The NSAPI plugins for TGA and the Java Servlet proxy in HP-UX VVOS 10.24 and 11.04 allows an attacker to cause a denial of service (high CPU utilization)."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:vvos:10.24:*:*:*:*:*:*:*","matchCriteriaId":"D9B7C178-4BE6-4397-A4E2-01375E4CA978"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:vvos:11.04:*:*:*:*:*:*:*","matchCriteriaId":"1D462D6F-EB68-4E31-87FD-D918F5DEF3FB"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/hp/2000-q4/0012.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5361","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/hp/2000-q4/0012.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5361","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0966","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:52.357","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflows in lpspooler in the fileset PrinterMgmt.LP-SPOOL of HP-UX 11.0 and earlier allows local users to gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.00:*:*:*:*:*:*:*","matchCriteriaId":"3187435B-C052-4DBA-AA79-F8AC0287EE14"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:11.00:*:*:*:*:*:*:*","matchCriteriaId":"771931F7-9180-4EBD-8627-E1CF17D24647"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/hp/2000-q4/0020.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/7244","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5379","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/hp/2000-q4/0020.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/7244","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5379","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0967","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:52.483","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"PHP 3 and 4 do not properly cleanse user-injected format strings, which allows remote attackers to execute arbitrary commands by triggering error messages that are improperly written to the error logs."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:3.0:*:*:*:*:*:*:*","matchCriteriaId":"245C601D-0FE7-47E3-8304-6FF45E9567D6"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:4.0:*:*:*:*:*:*:*","matchCriteriaId":"EDBEC461-D553-41B7-8D85-20B6A933C21C"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:75.php.asc","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0204.html","source":"cve@mitre.org"},{"url":"http://www.atstake.com/research/advisories/2000/a101200-1.txt","source":"cve@mitre.org"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-037.0.txt","source":"cve@mitre.org"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-062.php3?dis=7.1","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-088.html","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-095.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1786","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5359","source":"cve@mitre.org"},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:75.php.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0204.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.atstake.com/research/advisories/2000/a101200-1.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-037.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-062.php3?dis=7.1","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-088.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-095.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1786","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5359","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0968","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:52.630","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Half Life dedicated server before build 3104 allows remote attackers to execute arbitrary commands via a long rcon command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:valve_software:half-life_dedicated_server:*:*:*:*:*:*:*:*","versionEndIncluding":"3.1","matchCriteriaId":"EC796554-0AC5-40DE-B3AA-69A60D7C6786"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0254.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0409.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/141060","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1799","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5375","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0254.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0409.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/141060","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1799","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5375","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0969","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:52.763","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Format string vulnerability in Half Life dedicated server build 3104 and earlier allows remote attackers to execute arbitrary commands by injecting format strings into the changelevel command, via the system console or rcon."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:valve_software:half-life_dedicated_server:3.1.3:*:*:*:*:*:*:*","matchCriteriaId":"0CA42F82-2F19-4253-B9B2-AED23607672E"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0254.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0409.html","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/6983","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/141060","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5413","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0254.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0409.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/6983","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/141060","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5413","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0970","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:52.890","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IIS 4.0 and 5.0 .ASP pages send the same Session ID cookie for secure and insecure web sessions, which could allow remote attackers to hijack the secure web session of the user if that user moves to an insecure session, aka the \"Session ID Cookie Marking\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_services:5.0:*:*:*:*:*:*:*","matchCriteriaId":"413C07EA-139F-4B7D-A58B-835BD2591FA0"}]}]}],"references":[{"url":"http://www.acrossecurity.com/aspr/ASPR-2000-07-22-1-PUB.txt","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/7265","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-080","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5396","source":"cve@mitre.org"},{"url":"http://www.acrossecurity.com/aspr/ASPR-2000-07-22-1-PUB.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/7265","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-080","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5396","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0971","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:53.017","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Avirt Mail 4.0 and 4.2 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long \"RCPT TO\" or \"MAIL FROM\" command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:avirt:avirt_mail_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"987701CD-2DE1-4CCB-9AF9-F3ACD3865FB8"},{"vulnerable":true,"criteria":"cpe:2.3:a:avirt:avirt_mail_server:4.2:*:*:*:*:*:*:*","matchCriteriaId":"93291607-B845-4999-B464-395E268A7B59"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0301.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5397","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5398","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0301.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5397","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5398","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0972","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:53.140","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"HP-UX 11.00 crontab allows local users to read arbitrary files via the -e option by creating a symlink to the target file during the crontab session, quitting the session, and reading the error messages that crontab generates."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N","baseScore":5.5,"baseSeverity":"MEDIUM","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"NONE","availabilityImpact":"NONE"},"exploitabilityScore":1.8,"impactScore":3.6}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-59"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:11.00:*:*:*:*:*:*:*","matchCriteriaId":"771931F7-9180-4EBD-8627-E1CF17D24647"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0317.html","source":"cve@mitre.org","tags":["Broken Link","Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5410","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0317.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5410","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]}]}},{"cve":{"id":"CVE-2000-0973","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:53.267","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in curl earlier than 6.0-1.1, and curl-ssl earlier than 6.0-1.2, allows remote attackers to execute arbitrary commands by forcing a long error message to be generated."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:daniel_stenberg:curl:6.0:*:*:*:*:*:*:*","matchCriteriaId":"666F4E03-9AAF-4708-A8AA-C43AB80B57DE"},{"vulnerable":true,"criteria":"cpe:2.3:a:daniel_stenberg:curl:6.1:*:*:*:*:*:*:*","matchCriteriaId":"C0164C24-6535-4E3C-92F1-43BDF8594FD9"},{"vulnerable":true,"criteria":"cpe:2.3:a:daniel_stenberg:curl:6.1beta:*:*:*:*:*:*:*","matchCriteriaId":"610B0EA6-4F36-4CE3-B5B2-72BF64EC8C5F"},{"vulnerable":true,"criteria":"cpe:2.3:a:daniel_stenberg:curl:6.3:*:*:*:*:*:*:*","matchCriteriaId":"B174FCC4-C63A-4530-A871-6D438CD8849F"},{"vulnerable":true,"criteria":"cpe:2.3:a:daniel_stenberg:curl:6.4:*:*:*:*:*:*:*","matchCriteriaId":"CE40B979-ED1F-40CF-9296-E673F19990EA"},{"vulnerable":true,"criteria":"cpe:2.3:a:daniel_stenberg:curl:6.5:*:*:*:*:*:*:*","matchCriteriaId":"559792F4-B6FF-4A90-9D1A-BA73E0157FBF"},{"vulnerable":true,"criteria":"cpe:2.3:a:daniel_stenberg:curl:6.5.1:*:*:*:*:*:*:*","matchCriteriaId":"9E351F24-7E36-4D80-AC1D-C40C85611285"},{"vulnerable":true,"criteria":"cpe:2.3:a:daniel_stenberg:curl:6.5.2:*:*:*:*:*:*:*","matchCriteriaId":"2BFE1EAA-5E39-42FA-8F2E-097003C05B8D"},{"vulnerable":true,"criteria":"cpe:2.3:a:daniel_stenberg:curl:7.1:*:*:*:*:*:*:*","matchCriteriaId":"21AEE075-CEB9-4080-B417-E0285AD2CD26"},{"vulnerable":true,"criteria":"cpe:2.3:a:daniel_stenberg:curl:7.1.1:*:*:*:*:*:*:*","matchCriteriaId":"1EA5BC99-FA45-4860-B676-9C89BE882522"},{"vulnerable":true,"criteria":"cpe:2.3:a:daniel_stenberg:curl:7.2:*:*:*:*:*:*:*","matchCriteriaId":"69D07770-7E79-4B7C-AD6F-BB8ADDD9E270"},{"vulnerable":true,"criteria":"cpe:2.3:a:daniel_stenberg:curl:7.2.1:*:*:*:*:*:*:*","matchCriteriaId":"3B94C50A-E303-475B-9545-F038D8BAD2F0"},{"vulnerable":true,"criteria":"cpe:2.3:a:daniel_stenberg:curl:7.3:*:*:*:*:*:*:*","matchCriteriaId":"7B54972E-C1E0-4CAC-A567-5681B4BF3641"},{"vulnerable":true,"criteria":"cpe:2.3:a:daniel_stenberg:curl:7.4:*:*:*:*:*:*:*","matchCriteriaId":"E7ABC917-EE6C-4C29-83AE-0414D605C85D"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:72.curl.asc","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0331.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1804","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5374","source":"cve@mitre.org"},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:72.curl.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0331.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1804","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5374","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0974","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:53.400","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"GnuPG (gpg) 1.0.3 does not properly check all signatures of a file containing multiple documents, which allows an attacker to modify contents of all documents but the first without detection."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:privacy_guard:1.0:*:*:*:*:*:*:*","matchCriteriaId":"E054978B-8466-4D12-B7DC-7E72CC57F0DE"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:privacy_guard:1.0.1:*:*:*:*:*:*:*","matchCriteriaId":"F38F964B-C5D1-4177-BD31-7AB4083CC431"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:privacy_guard:1.0.2:*:*:*:*:*:*:*","matchCriteriaId":"4DF7811A-B254-4829-AED2-C70BD5C82592"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:privacy_guard:1.0.3:*:*:*:*:*:*:*","matchCriteriaId":"72ED862B-6278-41ED-9619-115E6552AFBB"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:67.gnupg.asc","source":"cve@mitre.org"},{"url":"ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2000-038.0.txt","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0201.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0361.html","source":"cve@mitre.org"},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000334","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/2000/20001111","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1608","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-089.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1797","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5386","source":"cve@mitre.org"},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:67.gnupg.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2000-038.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0201.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0361.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000334","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.debian.org/security/2000/20001111","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1608","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-089.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1797","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5386","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0975","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:53.547","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in apexec.pl in Anaconda Foundation Directory allows remote attackers to read arbitrary files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:anaconda_partners:foundation_directory:*:*:*:*:*:*:*:*","matchCriteriaId":"CAB9CA6D-A115-4108-9CB6-C665F2258300"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0210.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.osvdb.org/435","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5750","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0210.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.osvdb.org/435","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5750","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0976","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:53.677","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in xlib in XFree 3.3.x possibly allows local users to execute arbitrary commands via a long DISPLAY environment variable or a -display command line parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:xfree86_project:xlib:3.3x:*:*:*:*:*:*:*","matchCriteriaId":"8A62FA5E-16B2-40E7-B751-DA2609EF85D3"}]}]}],"references":[{"url":"ftp://patches.sgi.com/support/free/security/advisories/20020502-01-I","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0211.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/5751.php","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1805","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"ftp://patches.sgi.com/support/free/security/advisories/20020502-01-I","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0211.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/5751.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1805","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0977","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:53.800","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"mailfile.cgi CGI program in MailFile 1.10 allows remote attackers to read arbitrary files by specifying the target file name in the \"filename\" parameter in a POST request, which is then sent by email to the address specified in the \"email\" parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oatmeal_studios:mail_file:1.10:*:*:*:*:*:*:*","matchCriteriaId":"AB713105-EB24-407E-B353-9496EC7249A3"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0172.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1807","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5358","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0172.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1807","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5358","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0978","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:53.920","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"bbd server in Big Brother System and Network Monitor before 1.5c2 allows remote attackers to execute arbitrary commands via the \"&\" shell metacharacter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:bb4:big_brother_network_monitor:1.5c2:*:*:*:*:*:*:*","matchCriteriaId":"015807EA-DDA5-450E-B7A4-084E1596B662"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0162.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1779","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5719","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0162.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1779","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5719","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0979","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:54.040","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"File and Print Sharing service in Windows 95, Windows 98, and Windows Me does not properly check the password for a file share, which allows remote attackers to bypass share access controls by sending a 1-byte password that matches the first character of the real password, aka the \"Share Level Password\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:N","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_95:*:*:*:*:*:*:*:*","matchCriteriaId":"82F7322B-8022-4D0B-ADB3-D0F5B6F20309"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98:*:gold:*:*:*:*:*:*","matchCriteriaId":"2D3B703C-79B2-4FA2-9E12-713AB977A880"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98se:*:*:*:*:*:*:*:*","matchCriteriaId":"AA733AD2-D948-46A0-A063-D29081A56F1F"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_me:*:*:*:*:*:*:*:*","matchCriteriaId":"799DA395-C7F8-477C-8BC7-5B4B88FB7503"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97147777618139&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1780","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-072","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5395","source":"cve@mitre.org"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A996","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97147777618139&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1780","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-072","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5395","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A996","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0980","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:54.173","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"NMPI (Name Management Protocol on IPX) listener in Microsoft NWLink does not properly filter packets from a broadcast address, which allows remote attackers to cause a broadcast storm and flood the network."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_95:*:*:*:*:*:*:*:*","matchCriteriaId":"82F7322B-8022-4D0B-ADB3-D0F5B6F20309"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98:*:gold:*:*:*:*:*:*","matchCriteriaId":"2D3B703C-79B2-4FA2-9E12-713AB977A880"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98se:*:*:*:*:*:*:*:*","matchCriteriaId":"AA733AD2-D948-46A0-A063-D29081A56F1F"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_me:*:*:*:*:*:*:*:*","matchCriteriaId":"799DA395-C7F8-477C-8BC7-5B4B88FB7503"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1781","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-073","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5357","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1781","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-073","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5357","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0981","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:54.300","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"MySQL Database Engine uses a weak authentication method which leaks information that could be used by a remote attacker to recover the password."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:mysql:3.20:*:*:*:*:*:*:*","matchCriteriaId":"578BA199-EF04-4595-AFDE-54FD66B7FC39"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:mysql:3.21:*:*:*:*:*:*:*","matchCriteriaId":"B82E464F-3871-40C7-A758-B81582D193AE"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:mysql:3.22:*:*:*:*:*:*:*","matchCriteriaId":"05B7E2C5-6139-47F9-A310-F2BC0EF83942"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:mysql:3.23:*:*:*:*:*:*:*","matchCriteriaId":"48DBBAC9-AA05-409F-82B2-A552A3417E45"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0318.html","source":"cve@mitre.org"},{"url":"http://www.mysql.com/documentation/mysql/commented/manual.php?section=Security","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5409","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0318.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.mysql.com/documentation/mysql/commented/manual.php?section=Security","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5409","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0982","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:54.427","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Internet Explorer before 5.5 forwards cached user credentials for a secure web site to insecure pages on the same web site, which could allow remote attackers to obtain the credentials by monitoring connections to the web server, aka the \"Cached Web Credentials\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0:*:*:*:*:*:*:*","matchCriteriaId":"A5B815D9-BC21-4A17-AF00-B8AD181027D7"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.0.1:*:*:*:*:*:*:*","matchCriteriaId":"42502347-DD40-4F8C-9861-C0A88A3F8608"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:4.1:*:*:*:*:*:*:*","matchCriteriaId":"44FF4E47-AD75-42C7-BB84-42BBA46A58B2"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*","matchCriteriaId":"E6B8985B-B927-4928-B1DB-18E29F796992"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_explorer:5.01:*:*:*:*:*:*:*","matchCriteriaId":"6219D36E-9E2C-4DC7-8FD5-FAD144A333F6"}]}]}],"references":[{"url":"http://www.acrossecurity.com/aspr/ASPR-2000-07-22-2-PUB.txt","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1793","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-076","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5367","source":"cve@mitre.org"},{"url":"http://www.acrossecurity.com/aspr/ASPR-2000-07-22-2-PUB.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1793","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-076","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5367","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0983","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:54.540","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft NetMeeting with Remote Desktop Sharing enabled allows remote attackers to cause a denial of service (CPU utilization) via a sequence of null bytes to the NetMeeting port, aka the \"NetMeeting Desktop Sharing\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:netmeeting:3.0.1:*:*:*:*:*:*:*","matchCriteriaId":"4492BB3B-A225-4CD2-B857-1C8793B5DC39"}]}]}],"references":[{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ273854","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/140341","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1798","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-077","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5368","source":"cve@mitre.org"},{"url":"http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ273854","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/140341","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1798","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-077","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5368","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0984","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:54.663","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The HTTP server in Cisco IOS 12.0 through 12.1 allows local users to cause a denial of service (crash and reload) via a URL containing a \"?/\" string."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0t:*:*:*:*:*:*:*","matchCriteriaId":"CA7F94E8-86FC-456B-A7BB-57953F67F754"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0w5:*:*:*:*:*:*:*","matchCriteriaId":"5A92DCEF-C205-4145-91B0-DB9991130457"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0xa:*:*:*:*:*:*:*","matchCriteriaId":"1050ACB3-E5B2-4710-910B-F3DF4B49907F"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0xe:*:*:*:*:*:*:*","matchCriteriaId":"1ADAB898-7728-4C14-B69A-7B8B06AFC894"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0xh:*:*:*:*:*:*:*","matchCriteriaId":"54424787-34AC-410D-985F-511ADB2BB144"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.0xj:*:*:*:*:*:*:*","matchCriteriaId":"B6A0D017-F26F-4429-891E-C7E1C66B6588"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.1aa:*:*:*:*:*:*:*","matchCriteriaId":"BA6FFE33-2891-48E5-9D0C-C52F88B2D76C"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.1da:*:*:*:*:*:*:*","matchCriteriaId":"C9427851-B0DC-4CE6-8BFA-60619D1DC87C"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.1db:*:*:*:*:*:*:*","matchCriteriaId":"6D07DD94-0925-4FEE-9565-5F36B9AAF448"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.1dc:*:*:*:*:*:*:*","matchCriteriaId":"BC3A67F5-05C6-4097-A88E-0A0F165C12EA"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.1ec:*:*:*:*:*:*:*","matchCriteriaId":"46FF39C5-CC37-4573-BB18-36254D38509B"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.1t:*:*:*:*:*:*:*","matchCriteriaId":"752C3C6B-910D-4153-A162-DF255F60306B"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.1xa:*:*:*:*:*:*:*","matchCriteriaId":"C1BBE2FF-5DAE-447A-9C3D-3F48B24AECA2"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.1xb:*:*:*:*:*:*:*","matchCriteriaId":"297FAD97-60C0-473D-A18D-03657B81B7E0"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.1xc:*:*:*:*:*:*:*","matchCriteriaId":"2AD4A33B-B13E-40C6-B47F-A406ACC6664F"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.1xd:*:*:*:*:*:*:*","matchCriteriaId":"0E488E6E-87F0-4292-B97B-31087FDB4655"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.1xe:*:*:*:*:*:*:*","matchCriteriaId":"0D199CB1-A2A3-4678-9503-C5B61281755C"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.1xf:*:*:*:*:*:*:*","matchCriteriaId":"D5D743DF-838A-4E7A-A4FC-BB5EB7D93CFC"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.1xg:*:*:*:*:*:*:*","matchCriteriaId":"19952DC6-1186-4754-BB1E-BA1D78A19C96"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.1xh:*:*:*:*:*:*:*","matchCriteriaId":"441CB9D6-5EDB-457B-B59E-D48B01AEAF5D"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.1xi:*:*:*:*:*:*:*","matchCriteriaId":"28097F62-B51F-4A3B-BB31-6FA67E8C8B5A"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.1xj:*:*:*:*:*:*:*","matchCriteriaId":"80E8AF76-0A1D-4BAE-BF10-D63080352E6E"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.1xl:*:*:*:*:*:*:*","matchCriteriaId":"3B674647-4438-4450-9DCA-25184D4E2682"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:12.1xp:*:*:*:*:*:*:*","matchCriteriaId":"71FB7128-CF11-4903-97D7-418403A03CD6"}]}]}],"references":[{"url":"http://www.cisco.com/warp/public/707/ioshttpserverquery-pub.shtml","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1838","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5412","source":"cve@mitre.org"},{"url":"http://www.cisco.com/warp/public/707/ioshttpserverquery-pub.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1838","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5412","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0985","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:54.800","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in All-Mail 1.1 allows remote attackers to execute arbitrary commands via a long \"MAIL FROM\" or \"RCPT TO\" command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:nevis_systems:all-mail:1.1:*:*:*:*:*:*:*","matchCriteriaId":"6E8E4DFA-26FD-4D01-A0CE-FBBBFC760431"}]}]}],"references":[{"url":"http://www.atstake.com/research/advisories/2000/a101200-2.txt","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1789","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.atstake.com/research/advisories/2000/a101200-2.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1789","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-0986","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:54.923","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Oracle 8.1.5 applications such as names, namesctl, onrsd, osslogin, tnslsnr, tnsping, trcasst, and trcroute possibly allow local users to gain privileges via a long ORACLE_HOME environmental variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:oracle8i:8.1.5:*:*:*:*:*:*:*","matchCriteriaId":"42AF8B37-C5AA-4B92-A565-214A677C3486"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0294.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5390","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0294.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5390","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0987","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:55.040","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in oidldapd in Oracle 8.1.6 allow local users to gain privileges via a long \"connect\" command line parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:internet_directory:2.0.6:*:*:*:*:*:*:*","matchCriteriaId":"58CD5369-4262-421D-BC2C-C3E9986A5471"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:oracle8i:8.1.6:*:*:*:*:*:*:*","matchCriteriaId":"5EC58370-C10D-4559-81C8-C67B64EE2502"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/140340","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/140709","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5401","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/140340","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/140709","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5401","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0988","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:55.163","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WinU 1.0 through 5.1 has a backdoor password that allows remote attackers to gain access to its administrative interface and modify configuration."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:bardon_data_systems:winu:*:*:*:*:*:*:*:*","versionEndIncluding":"5.1","matchCriteriaId":"7F104889-9EDB-45B2-A39F-616D12645E9C"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0238.html","source":"cve@mitre.org"},{"url":"http://www.bardon.com/pwdcrack.htm","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1801","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5376","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0238.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.bardon.com/pwdcrack.htm","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1801","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5376","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0989","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:55.287","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Intel InBusiness eMail Station 1.04.87 POP service allows remote attackers to cause a denial of service and possibly execute commands via a long username."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:intel:inbusiness_email_station:1.4.87:*:*:*:*:*:*:*","matchCriteriaId":"78A23DD9-7CAF-4126-BB9E-3C9911504130"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0293.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.osvdb.org/6488","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5414","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0293.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.osvdb.org/6488","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5414","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0990","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:55.417","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"cmd5checkpw 0.21 and earlier allows remote attackers to cause a denial of service via an \"SMTP AUTH\" command with an unknown username."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:krzysztof_dabrowski:cmd5checkpw:0.20:*:*:*:*:*:*:*","matchCriteriaId":"BD542D23-A05C-43C3-949C-634B21E517EB"},{"vulnerable":true,"criteria":"cpe:2.3:a:krzysztof_dabrowski:cmd5checkpw:0.21:*:*:*:*:*:*:*","matchCriteriaId":"FD6D32BC-E219-4F5D-B4EC-4C9706A4CBC5"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0258.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://members.elysium.pl/brush/cmd5checkpw/changes.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1809","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5382","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0258.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://members.elysium.pl/brush/cmd5checkpw/changes.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1809","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5382","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0991","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:55.553","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Hilgraeve, Inc. HyperTerminal client on Windows 98, ME, and 2000 allows remote attackers to execute arbitrary commands via a long telnet URL, aka the \"HyperTerminal Buffer Overflow\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:hilgraeve:hyperterminal:*:*:*:*:*:*:*:*","versionEndIncluding":"6.0","matchCriteriaId":"CCBDB0F6-C4E9-46FD-A315-2A6596EA1DF5"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1815","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-079","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5387","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1815","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-079","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5387","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0992","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:55.680","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in scp in sshd 1.2.xx allows a remote malicious scp server to overwrite arbitrary files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:openbsd:openssh:1.2:*:*:*:*:*:*:*","matchCriteriaId":"316C8534-9CE3-456C-A04E-5D2B789FBE31"},{"vulnerable":true,"criteria":"cpe:2.3:a:openbsd:openssh:1.2.3:*:*:*:*:*:*:*","matchCriteriaId":"CA997F5E-29FE-454A-9006-001D732CD4B1"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.14:*:*:*:*:*:*:*","matchCriteriaId":"41BF66ED-CB08-440E-AC05-A31371B7A380"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.15:*:*:*:*:*:*:*","matchCriteriaId":"E0EE3216-D8FF-43F0-9329-6676E2CEC250"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.16:*:*:*:*:*:*:*","matchCriteriaId":"9310E12D-1136-4AD6-9678-8ADCD9EE58C3"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.17:*:*:*:*:*:*:*","matchCriteriaId":"BBEDF399-58DE-491A-8B51-87E0392FF9C9"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.18:*:*:*:*:*:*:*","matchCriteriaId":"CBDF2DE8-8559-4BED-80AE-E1420BBF4043"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.19:*:*:*:*:*:*:*","matchCriteriaId":"23EB8421-76BF-47D1-B294-68412D5E4572"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.20:*:*:*:*:*:*:*","matchCriteriaId":"D9560989-5342-4C6B-974F-7D90C467BA39"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.21:*:*:*:*:*:*:*","matchCriteriaId":"971835AF-E908-4C74-9DE0-167349138DEC"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.22:*:*:*:*:*:*:*","matchCriteriaId":"2E0D49C5-54B4-4437-A2D3-3EBFA1D9A3CF"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.23:*:*:*:*:*:*:*","matchCriteriaId":"926B57D7-009C-4317-ACFB-98551FADC5B2"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.24:*:*:*:*:*:*:*","matchCriteriaId":"B0EDBA45-FDEE-4D4B-A6FF-7E953B523DAE"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.25:*:*:*:*:*:*:*","matchCriteriaId":"7AF5BDEF-E86B-4F4D-AF6D-B27044A96B1E"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.26:*:*:*:*:*:*:*","matchCriteriaId":"7D0FF07F-E13B-425F-9892-C50B326B2944"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.27:*:*:*:*:*:*:*","matchCriteriaId":"338EDA76-05D6-48C0-952E-6244A5F206F3"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.28:*:*:*:*:*:*:*","matchCriteriaId":"F719468E-A218-4EB5-9F8D-7841E84F44C8"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.29:*:*:*:*:*:*:*","matchCriteriaId":"1E4FCD36-0009-4A93-A190-8FDD11C672CA"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.30:*:*:*:*:*:*:*","matchCriteriaId":"71727854-1B75-465F-AF8C-DFE6EFF46B40"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.31:*:*:*:*:*:*:*","matchCriteriaId":"64B76EA2-D3A6-4751-ADE6-998C2A7B44FA"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0359.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://frontal2.mandriva.com/security/advisories?name=MDKSA-2000:057","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1742","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5312","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-09/0359.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://frontal2.mandriva.com/security/advisories?name=MDKSA-2000:057","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1742","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5312","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0993","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:55.813","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Format string vulnerability in pw_error function in BSD libutil library allows local users to gain root privileges via a malformed password in commands such as chpass or passwd."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.2:*:*:*:*:*:*:*","matchCriteriaId":"0419DD66-FF66-48BC-AD3B-F6AFD0551E36"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.3:*:*:*:*:*:*:*","matchCriteriaId":"C3518628-08E5-4AD7-AAF6-A4E38F1CDE2C"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.4:*:*:*:*:*:*:*","matchCriteriaId":"B982342C-1981-4C55-8044-AFE4D87623DF"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.5:*:*:*:*:*:*:*","matchCriteriaId":"47E02BE6-4800-4940-B269-385B66AC5077"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.0:*:*:*:*:*:*:*","matchCriteriaId":"D0A585A1-FF82-418F-90F8-072458DB7816"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4:*:*:*:*:*:*:*","matchCriteriaId":"C422E343-ADF2-427D-865D-B5C35431EFD1"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.1:*:*:*:*:*:*:*","matchCriteriaId":"1C288A88-11C6-429E-A109-0395D0989264"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.2:*:*:*:*:*:*:*","matchCriteriaId":"516C6D9A-7483-4E36-A2E0-42698161AD31"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.3:*:*:*:*:*:*:*","matchCriteriaId":"1D2DA7F0-E3C0-447A-A2B0-ECC928389D84"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.4:*:*:*:*:*:*:*","matchCriteriaId":"FEBE290B-5EC6-4BBA-B645-294C150E417A"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.5:*:*:*:*:*:*:*","matchCriteriaId":"ACE7FDFB-C6A6-4B58-B0B4-236E4EA76EF6"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.6:*:*:*:*:*:*:*","matchCriteriaId":"0DF053A1-C252-427E-9EEF-27240F422976"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.7:*:*:*:*:*:*:*","matchCriteriaId":"48A9C344-45AA-47B9-B35A-1A62E220D9C6"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:58.chpass.asc","source":"cve@mitre.org"},{"url":"ftp://ftp.NetBSD.ORG/pub/NetBSD/misc/security/advisories/NetBSD-SA2000-015.txt.asc","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97068555106135&w=2","source":"cve@mitre.org"},{"url":"http://www.openbsd.org/errata27.html#pw_error","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1744","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5339","source":"cve@mitre.org"},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:58.chpass.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"ftp://ftp.NetBSD.ORG/pub/NetBSD/misc/security/advisories/NetBSD-SA2000-015.txt.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=97068555106135&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.openbsd.org/errata27.html#pw_error","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1744","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5339","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0994","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:55.937","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Format string vulnerability in OpenBSD fstat program (and possibly other BSD-based operating systems) allows local users to gain root privileges via the PWD environmental variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.3:*:*:*:*:*:*:*","matchCriteriaId":"1D2DA7F0-E3C0-447A-A2B0-ECC928389D84"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.4:*:*:*:*:*:*:*","matchCriteriaId":"FEBE290B-5EC6-4BBA-B645-294C150E417A"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.5:*:*:*:*:*:*:*","matchCriteriaId":"ACE7FDFB-C6A6-4B58-B0B4-236E4EA76EF6"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.6:*:*:*:*:*:*:*","matchCriteriaId":"0DF053A1-C252-427E-9EEF-27240F422976"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.7:*:*:*:*:*:*:*","matchCriteriaId":"48A9C344-45AA-47B9-B35A-1A62E220D9C6"}]}]}],"references":[{"url":"ftp://ftp.openbsd.org/pub/OpenBSD/patches/2.7/common/028_format_strings.patch","source":"cve@mitre.org","tags":["Patch"]},{"url":"http://marc.info/?l=bugtraq&m=97068555106135&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1746","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5338","source":"cve@mitre.org"},{"url":"ftp://ftp.openbsd.org/pub/OpenBSD/patches/2.7/common/028_format_strings.patch","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"http://marc.info/?l=bugtraq&m=97068555106135&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1746","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5338","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0995","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:56.057","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Format string vulnerability in OpenBSD yp_passwd program (and possibly other BSD-based operating systems) allows attackers to gain root privileges a malformed name."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:*:*:*:*:*:*:*:*","matchCriteriaId":"CA3CDD3C-DBA6-4BA2-967D-AD746822F3CF"}]}]}],"references":[{"url":"ftp://ftp.openbsd.org/pub/OpenBSD/patches/2.7/common/028_format_strings.patch","source":"cve@mitre.org","tags":["Patch"]},{"url":"http://www.osvdb.org/6125","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5635","source":"cve@mitre.org"},{"url":"ftp://ftp.openbsd.org/pub/OpenBSD/patches/2.7/common/028_format_strings.patch","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"http://www.osvdb.org/6125","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5635","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0996","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:56.173","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Format string vulnerability in OpenBSD su program (and possibly other BSD-based operating systems) allows local attackers to gain root privileges via a malformed shell."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:*:*:*:*:*:*:*:*","matchCriteriaId":"CA3CDD3C-DBA6-4BA2-967D-AD746822F3CF"}]}]}],"references":[{"url":"ftp://ftp.openbsd.org/pub/OpenBSD/patches/2.7/common/028_format_strings.patch","source":"cve@mitre.org","tags":["Patch"]},{"url":"http://www.osvdb.org/6124","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5636","source":"cve@mitre.org"},{"url":"ftp://ftp.openbsd.org/pub/OpenBSD/patches/2.7/common/028_format_strings.patch","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"http://www.osvdb.org/6124","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5636","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0997","sourceIdentifier":"cve@mitre.org","published":"2000-12-19T05:00:00.000","lastModified":"2026-06-16T21:52:56.293","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Format string vulnerabilities in eeprom program in OpenBSD, NetBSD, and possibly other operating systems allows local attackers to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4:*:*:*:*:*:*:*","matchCriteriaId":"C422E343-ADF2-427D-865D-B5C35431EFD1"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.1:*:*:*:*:*:*:*","matchCriteriaId":"1C288A88-11C6-429E-A109-0395D0989264"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.2:*:*:*:*:*:*:*","matchCriteriaId":"516C6D9A-7483-4E36-A2E0-42698161AD31"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.3:*:*:*:*:*:*:*","matchCriteriaId":"1D2DA7F0-E3C0-447A-A2B0-ECC928389D84"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.4:*:*:*:*:*:*:*","matchCriteriaId":"FEBE290B-5EC6-4BBA-B645-294C150E417A"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.5:*:*:*:*:*:*:*","matchCriteriaId":"ACE7FDFB-C6A6-4B58-B0B4-236E4EA76EF6"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.6:*:*:*:*:*:*:*","matchCriteriaId":"0DF053A1-C252-427E-9EEF-27240F422976"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.7:*:*:*:*:*:*:*","matchCriteriaId":"48A9C344-45AA-47B9-B35A-1A62E220D9C6"}]}]}],"references":[{"url":"ftp://ftp.openbsd.org/pub/OpenBSD/patches/2.7/common/028_format_strings.patch","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1752","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5337","source":"cve@mitre.org"},{"url":"ftp://ftp.openbsd.org/pub/OpenBSD/patches/2.7/common/028_format_strings.patch","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1752","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5337","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0307","sourceIdentifier":"cve@mitre.org","published":"2000-12-20T05:00:00.000","lastModified":"2026-06-16T21:48:07.113","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in HP-UX cstm program allows local users to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:9.00:*:*:*:*:*:*:*","matchCriteriaId":"6E436D06-FA3A-43F6-AF84-2E9C2F42E3FF"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.00:*:*:*:*:*:*:*","matchCriteriaId":"3187435B-C052-4DBA-AA79-F8AC0287EE14"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0307","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0307","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1225","sourceIdentifier":"cve@mitre.org","published":"2000-12-31T05:00:00.000","lastModified":"2026-06-16T21:53:25.123","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Xitami 2.5b installs the testcgi.exe program by default in the cgi-bin directory, which allows remote attackers to gain sensitive configuration information about the web server by accessing the program."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:imatix:xitami:2.5_b:*:*:*:*:*:*:*","matchCriteriaId":"7F754413-8327-4DB7-BEAC-BA6691813372"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/win2ksecadvice/2000-q4/0109.html","source":"cve@mitre.org","tags":["Exploit"]},{"url":"http://archives.neohapsis.com/archives/win2ksecadvice/2000-q4/0109.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]}]}},{"cve":{"id":"CVE-2000-1226","sourceIdentifier":"cve@mitre.org","published":"2000-12-31T05:00:00.000","lastModified":"2026-06-16T21:53:25.227","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Snort 1.6, when running in straight ASCII packet logging mode or IDS mode with straight decoded ASCII packet logging selected, allows remote attackers to cause a denial of service (crash) by sending non-IP protocols that Snort does not know about, as demonstrated by an nmap protocol scan."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:snort:snort:1.6:*:*:*:*:*:*:*","matchCriteriaId":"5EB5D24B-44B7-4BA1-B988-BBB3342F0C3A"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0122.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0126.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0122.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0126.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1227","sourceIdentifier":"cve@mitre.org","published":"2000-12-31T05:00:00.000","lastModified":"2026-06-16T21:53:25.340","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Windows NT 4.0 and Windows 2000 hosts allow remote attackers to cause a denial of service (unavailable connections) by sending multiple SMB SMBnegprots requests but not reading the response that is sent back."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:enterprise_server:*:*:*:*:*","matchCriteriaId":"237D7C18-C8D6-4FDB-A160-FA17DD46A55A"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:server:*:*:*:*:*","matchCriteriaId":"7C5FCE82-1E2F-49B9-B504-8C03F2BCF296"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:terminal_server:*:*:*:*:*","matchCriteriaId":"6E7E6AD3-5418-4FEA-84B5-833059CA880D"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:workstation:*:*:*:*:*","matchCriteriaId":"35346A7B-2CB5-446D-B0C3-1F21D71A746D"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp1:enterprise_server:*:*:*:*:*","matchCriteriaId":"064F4E76-1B89-4FA5-97ED-64624285C014"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp1:server:*:*:*:*:*","matchCriteriaId":"089A953C-8446-4E6F-B506-430C38DF37B1"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp1:terminal_server:*:*:*:*:*","matchCriteriaId":"EA262C44-C0E6-493A-B8E5-4D26E4013226"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp1:workstation:*:*:*:*:*","matchCriteriaId":"416F06DD-980E-4A54-822D-CBA499FD1F86"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp2:enterprise_server:*:*:*:*:*","matchCriteriaId":"F66DC6FF-2B3D-4718-838F-9E055E89961F"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp2:server:*:*:*:*:*","matchCriteriaId":"656AE014-AEEC-46E8-A696-61FEA7932F21"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp2:terminal_server:*:*:*:*:*","matchCriteriaId":"EB519FE0-9E7D-4E71-8873-356C9D7CEAB5"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp2:workstation:*:*:*:*:*","matchCriteriaId":"A08D0EA1-DA1B-4C52-883A-3F156F032517"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp3:enterprise_server:*:*:*:*:*","matchCriteriaId":"DA267420-56C5-4697-B0AA-52932F78B24B"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp3:server:*:*:*:*:*","matchCriteriaId":"93BA426E-DD51-44AC-BE78-3164670FF9E1"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp3:terminal_server:*:*:*:*:*","matchCriteriaId":"224F8968-9F4C-4727-AAA3-61F5578EF54C"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp3:workstation:*:*:*:*:*","matchCriteriaId":"02BE9817-E1AE-4619-8302-CA7AA4167F48"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp4:enterprise_server:*:*:*:*:*","matchCriteriaId":"363E3895-A19B-42EC-B479-765168DC0B17"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp4:server:*:*:*:*:*","matchCriteriaId":"FBBBF25A-709B-4716-9894-AD82180091AD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp4:terminal_server:*:*:*:*:*","matchCriteriaId":"407DA6E8-0832-49FE-AE14-35C104C237EC"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp4:workstation:*:*:*:*:*","matchCriteriaId":"88B70B7A-5BCC-4626-AAC7-D1ACFF25D66E"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp5:enterprise_server:*:*:*:*:*","matchCriteriaId":"81B7961D-151D-4773-80CB-CCD0456BFEAA"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp5:server:*:*:*:*:*","matchCriteriaId":"82781A72-A34F-4668-9EE8-C203B04E3367"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp5:terminal_server:*:*:*:*:*","matchCriteriaId":"AFE612D2-DF38-404F-AED1-B8C9C24012DE"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp5:workstation:*:*:*:*:*","matchCriteriaId":"12ED7363-6EEE-4688-A9B7-C5EB1107A7B4"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp6:enterprise_server:*:*:*:*:*","matchCriteriaId":"B5CAF64E-98AA-4813-A2A2-5AC3387CF230"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp6:server:*:*:*:*:*","matchCriteriaId":"BCDFDBBA-6C4F-472A-9F4F-461C424794E7"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp6:terminal_server:*:*:*:*:*","matchCriteriaId":"BCC5E316-FB61-408B-BAA2-7FE03D581250"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp6:workstation:*:*:*:*:*","matchCriteriaId":"EDDD8DA8-D074-4543-AEDF-F856B5567F21"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp6a:enterprise_server:*:*:*:*:*","matchCriteriaId":"CA7BA525-6DB8-4444-934A-932AFED69816"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp6a:server:*:*:*:*:*","matchCriteriaId":"90CFA69B-7814-4F97-A14D-D76310065CF3"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:sp6a:workstation:*:*:*:*:*","matchCriteriaId":"AB6ADBAF-6EB0-4CFA-9D33-A814AC20484E"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/63322","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1301","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/63322","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1301","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1228","sourceIdentifier":"cve@mitre.org","published":"2000-12-31T05:00:00.000","lastModified":"2026-06-16T21:53:25.480","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Phorum 3.0.7 allows remote attackers to change the administrator password without authentication via an HTTP request for admin.php3 that sets step, option, confirm and newPssword variables."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:phorum:phorum:3.0.7:*:*:*:*:*:*:*","matchCriteriaId":"740F974F-D679-472C-966A-3E4C334E3C0A"}]}]}],"references":[{"url":"http://cert.uni-stuttgart.de/archive/bugtraq/2000/01/msg00215.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://hispahack.ccc.de/mi020.html","source":"cve@mitre.org"},{"url":"http://www.digitalsec.net/stuff/z-mirrors/hispahack/mi020.htm","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2271","source":"cve@mitre.org","tags":["Exploit","Patch"]},{"url":"http://cert.uni-stuttgart.de/archive/bugtraq/2000/01/msg00215.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://hispahack.ccc.de/mi020.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.digitalsec.net/stuff/z-mirrors/hispahack/mi020.htm","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2271","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch"]}]}},{"cve":{"id":"CVE-2000-1229","sourceIdentifier":"cve@mitre.org","published":"2000-12-31T05:00:00.000","lastModified":"2026-06-16T21:53:25.593","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in Phorum 3.0.7 allows remote Phorum administrators to read arbitrary files via \"..\" (dot dot) sequences in the default .langfile name field in the Master Settings administrative function, which causes the file to be displayed in admin.php3."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:phorum:phorum:3.0.7:*:*:*:*:*:*:*","matchCriteriaId":"740F974F-D679-472C-966A-3E4C334E3C0A"}]}]}],"references":[{"url":"http://cert.uni-stuttgart.de/archive/bugtraq/2000/01/msg00215.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://hispahack.ccc.de/mi020.html","source":"cve@mitre.org"},{"url":"http://www.digitalsec.net/stuff/z-mirrors/hispahack/mi020.htm","source":"cve@mitre.org"},{"url":"http://cert.uni-stuttgart.de/archive/bugtraq/2000/01/msg00215.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://hispahack.ccc.de/mi020.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.digitalsec.net/stuff/z-mirrors/hispahack/mi020.htm","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1230","sourceIdentifier":"cve@mitre.org","published":"2000-12-31T05:00:00.000","lastModified":"2026-06-16T21:53:25.707","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Backdoor in auth.php3 in Phorum 3.0.7 allows remote attackers to access restricted web pages via an HTTP request with the PHP_AUTH_USER parameter set to \"boogieman\"."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:phorum:phorum:3.0.7:*:*:*:*:*:*:*","matchCriteriaId":"740F974F-D679-472C-966A-3E4C334E3C0A"}]}]}],"references":[{"url":"http://cert.uni-stuttgart.de/archive/bugtraq/2000/01/msg00215.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://hispahack.ccc.de/mi020.html","source":"cve@mitre.org"},{"url":"http://www.digitalsec.net/stuff/z-mirrors/hispahack/mi020.htm","source":"cve@mitre.org","tags":["Exploit","Patch"]},{"url":"http://www.securityfocus.com/bid/2274","source":"cve@mitre.org"},{"url":"http://cert.uni-stuttgart.de/archive/bugtraq/2000/01/msg00215.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://hispahack.ccc.de/mi020.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.digitalsec.net/stuff/z-mirrors/hispahack/mi020.htm","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch"]},{"url":"http://www.securityfocus.com/bid/2274","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1231","sourceIdentifier":"cve@mitre.org","published":"2000-12-31T05:00:00.000","lastModified":"2026-06-16T21:53:25.810","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"code.php3 in Phorum 3.0.7 allows remote attackers to read arbitrary files in the phorum directory via the query string."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:phorum:phorum:3.0.7:*:*:*:*:*:*:*","matchCriteriaId":"740F974F-D679-472C-966A-3E4C334E3C0A"}]}]}],"references":[{"url":"http://cert.uni-stuttgart.de/archive/bugtraq/2000/01/msg00215.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://hispahack.ccc.de/mi020.html","source":"cve@mitre.org"},{"url":"http://www.digitalsec.net/stuff/z-mirrors/hispahack/mi020.htm","source":"cve@mitre.org"},{"url":"http://cert.uni-stuttgart.de/archive/bugtraq/2000/01/msg00215.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://hispahack.ccc.de/mi020.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.digitalsec.net/stuff/z-mirrors/hispahack/mi020.htm","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1232","sourceIdentifier":"cve@mitre.org","published":"2000-12-31T05:00:00.000","lastModified":"2026-06-16T21:53:25.923","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"upgrade.php3 in Phorum 3.0.7 could allow remote attackers to modify certain Phorum database tables via an unknown method."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:phorum:phorum:3.0.7:*:*:*:*:*:*:*","matchCriteriaId":"740F974F-D679-472C-966A-3E4C334E3C0A"}]}]}],"references":[{"url":"http://cert.uni-stuttgart.de/archive/bugtraq/2000/01/msg00215.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://hispahack.ccc.de/mi020.html","source":"cve@mitre.org"},{"url":"http://www.digitalsec.net/stuff/z-mirrors/hispahack/mi020.htm","source":"cve@mitre.org"},{"url":"http://cert.uni-stuttgart.de/archive/bugtraq/2000/01/msg00215.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://hispahack.ccc.de/mi020.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.digitalsec.net/stuff/z-mirrors/hispahack/mi020.htm","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1233","sourceIdentifier":"cve@mitre.org","published":"2000-12-31T05:00:00.000","lastModified":"2026-06-16T21:53:26.033","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"SQL injection vulnerability in read.php3 and other scripts in Phorum 3.0.7 allows remote attackers to execute arbitrary SQL queries via the sSQL parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:phorum:phorum:3.0.7:*:*:*:*:*:*:*","matchCriteriaId":"740F974F-D679-472C-966A-3E4C334E3C0A"}]}]}],"references":[{"url":"http://cert.uni-stuttgart.de/archive/bugtraq/2000/01/msg00215.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://hispahack.ccc.de/mi020.html","source":"cve@mitre.org"},{"url":"http://www.digitalsec.net/stuff/z-mirrors/hispahack/mi020.htm","source":"cve@mitre.org"},{"url":"http://cert.uni-stuttgart.de/archive/bugtraq/2000/01/msg00215.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://hispahack.ccc.de/mi020.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.digitalsec.net/stuff/z-mirrors/hispahack/mi020.htm","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1234","sourceIdentifier":"cve@mitre.org","published":"2000-12-31T05:00:00.000","lastModified":"2026-06-16T21:53:26.140","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"violation.php3 in Phorum 3.0.7 allows remote attackers to send e-mails to arbitrary addresses and possibly use Phorum as a \"spam proxy\" by setting the Mod and ForumName parameters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:phorum:phorum:3.0.7:*:*:*:*:*:*:*","matchCriteriaId":"740F974F-D679-472C-966A-3E4C334E3C0A"}]}]}],"references":[{"url":"http://cert.uni-stuttgart.de/archive/bugtraq/2000/01/msg00215.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://hispahack.ccc.de/mi020.html","source":"cve@mitre.org"},{"url":"http://www.digitalsec.net/stuff/z-mirrors/hispahack/mi020.htm","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2272","source":"cve@mitre.org","tags":["Exploit","Patch"]},{"url":"http://cert.uni-stuttgart.de/archive/bugtraq/2000/01/msg00215.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://hispahack.ccc.de/mi020.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.digitalsec.net/stuff/z-mirrors/hispahack/mi020.htm","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2272","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch"]}]}},{"cve":{"id":"CVE-2000-1235","sourceIdentifier":"cve@mitre.org","published":"2000-12-31T05:00:00.000","lastModified":"2026-06-16T21:53:26.260","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default configurations of (1) the port listener and (2) modplsql in Oracle Internet Application Server (IAS) 3.0.7 and earlier allow remote attackers to view privileged database information via HTTP requests for Database Access Descriptor (DAD) files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:application_server:*:*:*:*:*:*:*:*","versionEndIncluding":"3.0.7","matchCriteriaId":"7487A9CD-A2A1-4AC7-B67F-131923DE2A0F"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0339.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0372.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0463.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://online.securityfocus.com/archive/1/155881","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/5818.php","source":"cve@mitre.org","tags":["Patch"]},{"url":"http://www.securityfocus.com/bid/2150","source":"cve@mitre.org","tags":["Patch"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0339.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0372.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0463.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://online.securityfocus.com/archive/1/155881","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.iss.net/security_center/static/5818.php","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"http://www.securityfocus.com/bid/2150","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]}]}},{"cve":{"id":"CVE-2000-1236","sourceIdentifier":"cve@mitre.org","published":"2000-12-31T05:00:00.000","lastModified":"2026-06-16T21:53:26.393","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"SQL injection vulnerability in mod_sql in Oracle Internet Application Server (IAS) 3.0.7 and earlier allows remote attackers to execute arbitrary SQL commands via the query string of the URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:application_server:*:*:*:*:*:*:*:*","versionEndIncluding":"3.0.7","matchCriteriaId":"7487A9CD-A2A1-4AC7-B67F-131923DE2A0F"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0339.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0372.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0463.html","source":"cve@mitre.org"},{"url":"http://online.securityfocus.com/archive/1/155881","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/5817.php","source":"cve@mitre.org","tags":["Patch"]},{"url":"http://www.securityfocus.com/bid/2150","source":"cve@mitre.org","tags":["Patch"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0339.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0372.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0463.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://online.securityfocus.com/archive/1/155881","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.iss.net/security_center/static/5817.php","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"http://www.securityfocus.com/bid/2150","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]}]}},{"cve":{"id":"CVE-2000-1237","sourceIdentifier":"cve@mitre.org","published":"2000-12-31T05:00:00.000","lastModified":"2026-06-16T21:53:26.523","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The POP3 server in FTGate returns an -ERR code after receiving an invalid USER request, which makes it easier for remote attackers to determine valid usernames and conduct brute force password guessing."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:floosietek:ftgate:*:*:*:*:*:*:*:*","matchCriteriaId":"98DC976A-D0A2-419B-B83B-762A3ADE22BA"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0282.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/4793.php","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-06/0282.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/4793.php","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1238","sourceIdentifier":"cve@mitre.org","published":"2000-12-31T05:00:00.000","lastModified":"2026-06-16T21:53:26.633","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"BEA Systems WebLogic Express and WebLogic Server 5.1 SP1-SP6 allows remote attackers to bypass access controls for restricted JSP or servlet pages via a URL with multiple / (forward slash) characters before the restricted pages."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:*:*:*:*:*:*:*","matchCriteriaId":"CCD5D4AD-0BA3-42F7-852F-524488D74A96"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:*:express:*:*:*:*:*","matchCriteriaId":"A8F69E7A-8BBB-4D20-AEE9-F37155AD5C3F"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp1:*:*:*:*:*:*","matchCriteriaId":"2B393A66-08A6-4EBA-B01E-BB6418423F79"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp1:express:*:*:*:*:*","matchCriteriaId":"0FAB4F19-EFE0-4860-B9E9-E3938A36AE17"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp2:*:*:*:*:*:*","matchCriteriaId":"99D0A3A8-1444-4DA4-AEF3-08578482574C"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp2:express:*:*:*:*:*","matchCriteriaId":"8B0B183B-95A3-463D-B76B-50640F554013"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp3:*:*:*:*:*:*","matchCriteriaId":"523836A4-0110-4CD3-A81E-988A02AEA68C"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp3:express:*:*:*:*:*","matchCriteriaId":"36A0EFDA-409E-44F0-9F8B-167A72D2361B"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp4:*:*:*:*:*:*","matchCriteriaId":"A705EB67-3961-445F-8023-F82C7618BE2B"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp4:express:*:*:*:*:*","matchCriteriaId":"51A8AB95-FB23-4A7A-A6F5-EF442EAABD26"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp5:*:*:*:*:*:*","matchCriteriaId":"BD698DD8-5491-4A73-A527-8C9228992A2D"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp5:express:*:*:*:*:*","matchCriteriaId":"5F00947F-1804-41D5-8F2B-7E48C77B1306"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp6:*:*:*:*:*:*","matchCriteriaId":"86C4679F-F13F-4A97-AE42-BC54BD0F149C"},{"vulnerable":true,"criteria":"cpe:2.3:a:bea:weblogic_server:5.1:sp6:express:*:*:*:*:*","matchCriteriaId":"114E5E3E-84B2-4DD3-98FC-2ABFFA41BAD4"}]}]}],"references":[{"url":"ftp://ftpna.bea.com/pub/releases/patches/SecurityBEA00-0600.zip","source":"cve@mitre.org","tags":["Patch"]},{"url":"http://www.securityfocus.com/bid/5089","source":"cve@mitre.org","tags":["Patch"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5588","source":"cve@mitre.org"},{"url":"ftp://ftpna.bea.com/pub/releases/patches/SecurityBEA00-0600.zip","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"http://www.securityfocus.com/bid/5089","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5588","source":"af854a3a-2127-422b-91ae-364da2661108"}],"evaluatorSolution":"This vulnerability is addressed in the following product releases:\r\nBEA Systems Weblogic Server 5.1 SP 7\r\nBEA Systems WebLogic Express 5.1 SP 7"}},{"cve":{"id":"CVE-2000-1239","sourceIdentifier":"cve@mitre.org","published":"2000-12-31T05:00:00.000","lastModified":"2026-06-16T21:53:26.750","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The HTTP interface of Tivoli Lightweight Client Framework (LCF) in IBM Tivoli Management Framework 3.7.1 sets http_disable to zero at install time, which allows remote authenticated users to bypass file permissions on Tivoli Endpoint Configuration data files via an unspecified manipulation of log files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:S/C:C/I:C/A:C","baseScore":9.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"SINGLE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":8.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:tivoli_management_framework:3.7.1:*:*:*:*:*:*:*","matchCriteriaId":"3A7E1F60-3BCC-4091-85DA-2FEE32C254DC"}]}]}],"references":[{"url":"http://www-1.ibm.com/support/docview.wss?uid=swg21082896","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/17085","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3927","source":"cve@mitre.org"},{"url":"http://www-1.ibm.com/support/docview.wss?uid=swg21082896","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/17085","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3927","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1240","sourceIdentifier":"cve@mitre.org","published":"2000-12-31T05:00:00.000","lastModified":"2026-06-16T21:53:26.860","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Unspecified vulnerability in siteman.php3 in AnyPortal(php) before 22 APR 00 allows remote attackers to obtain sensitive information via unknown attack vectors, which reveal the absolute path.  NOTE: the provenance of this information is unknown; the details are obtained from third party information."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:anyportal_php:anyportal_php:*:*:*:*:*:*:*:*","versionEndIncluding":"2000-04-18","matchCriteriaId":"4D3D44E1-63F2-4ED3-8B2C-0A94A8C10AD4"}]}]}],"references":[{"url":"http://www.osvdb.org/23983","source":"cve@mitre.org","tags":["Patch"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/25441","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/23983","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/25441","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1241","sourceIdentifier":"cve@mitre.org","published":"2000-12-31T05:00:00.000","lastModified":"2026-06-16T21:53:26.963","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Unspecified vulnerability in Haakon Nilsen simple, integrated publishing system (SIPS) before 0.2.4 has an unknown impact and attack vectors, related to a \"grave security fault.\""}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-noinfo"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sips:sips:*:*:*:*:*:*:*:*","matchCriteriaId":"B030C0BB-26DD-4EA3-9444-B3FB271910A0"}]}]}],"references":[{"url":"http://sourceforge.net/forum/forum.php?forum_id=25971","source":"cve@mitre.org"},{"url":"http://sourceforge.net/forum/forum.php?forum_id=25971","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1242","sourceIdentifier":"cve@mitre.org","published":"2000-12-31T05:00:00.000","lastModified":"2026-06-16T21:53:27.070","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The HTTP service in American Power Conversion (APC) PowerChute uses a default username and password, which allows remote attackers to gain system access."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:S/C:C/I:C/A:C","baseScore":9.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"SINGLE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":8.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:apc:powerchute:*:*:*:*:*:*:*:*","matchCriteriaId":"3536F866-E6B3-4F22-991B-36D30C54595E"}]}]}],"references":[{"url":"http://governmentsecurity.org/articles/DefaultLoginsandPasswordsforNetworkedDevices.php","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/30768","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://governmentsecurity.org/articles/DefaultLoginsandPasswordsforNetworkedDevices.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/30768","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1243","sourceIdentifier":"cve@mitre.org","published":"2000-12-31T05:00:00.000","lastModified":"2026-06-16T21:53:27.180","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Privacy leak in Dansie Shopping Cart 3.04, and probably earlier versions, sends sensitive information such as user credentials to an e-mail address controlled by the product developers."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:dansie:shopping_cart:3.04:*:*:*:*:*:*:*","matchCriteriaId":"95132EF3-AC19-4B7E-B0BF-47DDEDA6330A"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0051.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0066.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0071.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0086.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/470457/100/0/threaded","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0051.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0066.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0071.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-04/0086.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/470457/100/0/threaded","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1244","sourceIdentifier":"cve@mitre.org","published":"2000-12-31T05:00:00.000","lastModified":"2026-06-16T21:53:27.297","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Computer Associates InoculateIT Agent for Exchange Server does not recognize an e-mail virus attachment if the SMTP header is missing the \"From\" field, which allows remote attackers to bypass virus protection."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:broadcom:inoculateit_agent_for_exchange:*:*:*:*:*:*:*:*","matchCriteriaId":"1ACD606A-0375-401D-870E-A7FA3D0D0860"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0158.html","source":"cve@mitre.org","tags":["Exploit"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0158.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]}]}},{"cve":{"id":"CVE-2001-0160","sourceIdentifier":"cve@mitre.org","published":"2001-01-01T05:00:00.000","lastModified":"2026-06-16T21:53:46.920","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Lucent/ORiNOCO WaveLAN cards generate predictable Initialization Vector (IV) values for the Wireless Encryption Protocol (WEP) which allows remote attackers to quickly compile information that will let them decrypt messages."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:lucent:wavelan:*:*:*:*:*:*:*:*","matchCriteriaId":"781443B2-E898-41F2-AF94-0D689CB3151C"},{"vulnerable":true,"criteria":"cpe:2.3:h:orinoco:orinoco_wavelan:*:*:*:*:*:*:*:*","matchCriteriaId":"85543BCB-989D-483D-B5C1-666393DBCEA7"}]}]}],"references":[{"url":"http://www.cs.jhu.edu/~seny/pubs/wince802.pdf","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.cs.jhu.edu/~seny/pubs/wince802.pdf","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2001-0161","sourceIdentifier":"cve@mitre.org","published":"2001-01-01T05:00:00.000","lastModified":"2026-06-16T21:53:47.027","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Cisco 340-series Aironet access point using firmware 11.01 does not use 6 of the 24 available IV bits for WEP encryption, which makes it easier for remote attackers to mount brute force attacks."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:aironet:340-series:*:*:*:*:*:*:*","matchCriteriaId":"337CAB56-CB4D-4187-B847-3E12FB9CEE2B"}]}]}],"references":[{"url":"http://www.cs.jhu.edu/~seny/pubs/wince802.pdf","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.cs.jhu.edu/~seny/pubs/wince802.pdf","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2001-0162","sourceIdentifier":"cve@mitre.org","published":"2001-01-01T05:00:00.000","lastModified":"2026-06-16T21:53:47.133","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WinCE 3.0.9348 generates predictable TCP Initial Sequence Numbers (ISNs), which allows remote attackers to spoof or hijack TCP connections."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_embedded_compact:3.0.9348:*:*:*:*:*:*:*","matchCriteriaId":"EFB3E6BE-C974-4E83-9467-F871B71A052C"}]}]}],"references":[{"url":"http://www.cs.jhu.edu/~seny/pubs/wince802.pdf","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.cs.jhu.edu/~seny/pubs/wince802.pdf","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2001-0163","sourceIdentifier":"cve@mitre.org","published":"2001-01-01T05:00:00.000","lastModified":"2026-06-16T21:53:47.250","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Cisco AP340 base station produces predictable TCP Initial Sequence Numbers (ISNs), which allows remote attackers to spoof or hijack TCP connections."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:aironet_ap340:*:*:*:*:*:*:*:*","matchCriteriaId":"9DBDCD08-D3E9-4E72-BC5E-A9A9453D32A8"}]}]}],"references":[{"url":"http://www.cs.jhu.edu/~seny/pubs/wince802.pdf","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.cs.jhu.edu/~seny/pubs/wince802.pdf","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2001-1037","sourceIdentifier":"cve@mitre.org","published":"2001-01-08T05:00:00.000","lastModified":"2026-06-16T21:55:27.583","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Cisco SN 5420 Storage Router 1.1(3) and earlier allows local users to access a developer's shell without a password and execute certain restricted commands without being logged."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:sn_5420_storage_router_firmware:1.1\\(2\\):*:*:*:*:*:*:*","matchCriteriaId":"6576F05C-271D-401F-99BF-54D004B8D9B4"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:sn_5420_storage_router_firmware:1.1\\(3\\):*:*:*:*:*:*:*","matchCriteriaId":"718815AE-B1F2-4275-946A-A6FE5D5106C7"}]}]}],"references":[{"url":"http://www.cisco.com/warp/public/707/SN-kernel-pub.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1917","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/3131","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6827","source":"cve@mitre.org"},{"url":"http://www.cisco.com/warp/public/707/SN-kernel-pub.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1917","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/3131","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6827","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0897","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:52:42.860","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Small HTTP Server 2.03 and earlier allows remote attackers to cause a denial of service by repeatedly requesting a URL that references a directory that does not contain an index.html file, which consumes memory that is not released after the request is completed."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:max_feoktistov:small_http_server:2.01:*:*:*:*:*:*:*","matchCriteriaId":"82D993A9-83F8-410B-B2E3-00D5207CFD96"}]}]}],"references":[{"url":"http://home.lanck.net/mf/srv/index.htm","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97421834001092&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1941","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5524","source":"cve@mitre.org"},{"url":"http://home.lanck.net/mf/srv/index.htm","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=97421834001092&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1941","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5524","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0898","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:52:43.003","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Small HTTP Server 2.01 does not properly process Server Side Includes (SSI) tags that contain null values, which allows local users, and possibly remote attackers, to cause the server to crash by inserting the SSI into an HTML file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:max_feoktistov:small_http_server:2.01:*:*:*:*:*:*:*","matchCriteriaId":"82D993A9-83F8-410B-B2E3-00D5207CFD96"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97421834001092&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97421834001092&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0899","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:52:43.133","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Small HTTP Server 2.01 allows remote attackers to cause a denial of service by connecting to the server and sending out multiple GET, HEAD, or POST requests and closing the connection before the server responds to the requests."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:max_feoktistov:small_http_server:2.01:*:*:*:*:*:*:*","matchCriteriaId":"82D993A9-83F8-410B-B2E3-00D5207CFD96"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97421834001092&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1942","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=97421834001092&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1942","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1039","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:01.593","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Various TCP/IP stacks and network applications allow remote attackers to cause a denial of service by flooding a target host with TCP connection attempts and completing the TCP/IP handshake without maintaining the connection state on the attacker host, aka the \"NAPTHA\" class of vulnerabilities.  NOTE: this candidate may change significantly as the security community discusses the technical nature of NAPTHA and learns more about the affected applications. This candidate is at a higher level of abstraction than is typical for CVE."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_95:*:*:*:*:*:*:*:*","matchCriteriaId":"82F7322B-8022-4D0B-ADB3-D0F5B6F20309"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98:*:gold:*:*:*:*:*:*","matchCriteriaId":"2D3B703C-79B2-4FA2-9E12-713AB977A880"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_98se:*:*:*:*:*:*:*:*","matchCriteriaId":"AA733AD2-D948-46A0-A063-D29081A56F1F"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_me:*:*:*:*:*:*:*:*","matchCriteriaId":"799DA395-C7F8-477C-8BC7-5B4B88FB7503"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/win2ksecadvice/2000-q4/0105.html","source":"cve@mitre.org"},{"url":"http://razor.bindview.com/publish/advisories/adv_NAPTHA.html","source":"cve@mitre.org"},{"url":"http://www.cert.org/advisories/CA-2000-21.html","source":"cve@mitre.org","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.securityfocus.com/bid/2022","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-091","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/win2ksecadvice/2000-q4/0105.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://razor.bindview.com/publish/advisories/adv_NAPTHA.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.cert.org/advisories/CA-2000-21.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.securityfocus.com/bid/2022","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-091","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1081","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:06.653","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The xp_displayparamstmt function in SQL Server and Microsoft SQL Server Desktop Engine (MSDE) does not properly restrict the length of a buffer before calling the srv_paraminfo function in the SQL Server API for Extended Stored Procedures (XP), which allows an attacker to cause a denial of service or execute arbitrary commands, aka the \"Extended Stored Procedure Parameter Parsing\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:data_engine:1.0:*:*:*:*:*:*:*","matchCriteriaId":"F455C373-A9F7-47F9-828E-DEE2C8CC6545"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:data_engine:2000:*:*:*:*:*:*:*","matchCriteriaId":"51ABD323-BF3F-4825-8788-8FCD614E83E4"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:sql_server:7.0:*:*:*:*:*:*:*","matchCriteriaId":"A2AB95D7-394E-423B-884C-87A9960682EE"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:sql_server:2000:*:*:*:*:*:*:*","matchCriteriaId":"A5D559EE-727C-405C-987C-247973A84D32"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97570878710037&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2030","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-092","source":"cve@mitre.org"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A231","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97570878710037&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2030","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-092","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A231","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1082","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:06.773","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The xp_enumresultset function in SQL Server and Microsoft SQL Server Desktop Engine (MSDE) does not properly restrict the length of a buffer before calling the srv_paraminfo function in the SQL Server API for Extended Stored Procedures (XP), which allows an attacker to cause a denial of service or execute arbitrary commands, aka the \"Extended Stored Procedure Parameter Parsing\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:data_engine:1.0:*:*:*:*:*:*:*","matchCriteriaId":"F455C373-A9F7-47F9-828E-DEE2C8CC6545"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:data_engine:2000:*:*:*:*:*:*:*","matchCriteriaId":"51ABD323-BF3F-4825-8788-8FCD614E83E4"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:sql_server:7.0:*:*:*:*:*:*:*","matchCriteriaId":"A2AB95D7-394E-423B-884C-87A9960682EE"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:sql_server:2000:*:*:*:*:*:*:*","matchCriteriaId":"A5D559EE-727C-405C-987C-247973A84D32"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97570878710037&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2031","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-092","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97570878710037&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2031","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-092","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1083","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:06.877","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The xp_showcolv function in SQL Server and Microsoft SQL Server Desktop Engine (MSDE) does not properly restrict the length of a buffer before calling the srv_paraminfo function in the SQL Server API for Extended Stored Procedures (XP), which allows an attacker to cause a denial of service or execute arbitrary commands, aka the \"Extended Stored Procedure Parameter Parsing\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:data_engine:1.0:*:*:*:*:*:*:*","matchCriteriaId":"F455C373-A9F7-47F9-828E-DEE2C8CC6545"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:data_engine:2000:*:*:*:*:*:*:*","matchCriteriaId":"51ABD323-BF3F-4825-8788-8FCD614E83E4"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:sql_server:7.0:*:*:*:*:*:*:*","matchCriteriaId":"A2AB95D7-394E-423B-884C-87A9960682EE"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:sql_server:2000:*:*:*:*:*:*:*","matchCriteriaId":"A5D559EE-727C-405C-987C-247973A84D32"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97570878710037&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2038","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-092","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97570878710037&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2038","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-092","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1084","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:06.987","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The xp_updatecolvbm function in SQL Server and Microsoft SQL Server Desktop Engine (MSDE) does not properly restrict the length of a buffer before calling the srv_paraminfo function in the SQL Server API for Extended Stored Procedures (XP), which allows an attacker to cause a denial of service or execute arbitrary commands, aka the \"Extended Stored Procedure Parameter Parsing\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:data_engine:1.0:*:*:*:*:*:*:*","matchCriteriaId":"F455C373-A9F7-47F9-828E-DEE2C8CC6545"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:data_engine:2000:*:*:*:*:*:*:*","matchCriteriaId":"51ABD323-BF3F-4825-8788-8FCD614E83E4"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:sql_server:7.0:*:*:*:*:*:*:*","matchCriteriaId":"A2AB95D7-394E-423B-884C-87A9960682EE"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:sql_server:2000:*:*:*:*:*:*:*","matchCriteriaId":"A5D559EE-727C-405C-987C-247973A84D32"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97570878710037&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2039","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-092","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97570878710037&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2039","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-092","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1085","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:07.090","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The xp_peekqueue function in Microsoft SQL Server 2000 and SQL Server Desktop Engine (MSDE) does not properly restrict the length of a buffer before calling the srv_paraminfo function in the SQL Server API for Extended Stored Procedures (XP), which allows an attacker to cause a denial of service or execute arbitrary commands, aka the \"Extended Stored Procedure Parameter Parsing\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:data_engine:1.0:*:*:*:*:*:*:*","matchCriteriaId":"F455C373-A9F7-47F9-828E-DEE2C8CC6545"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:data_engine:2000:*:*:*:*:*:*:*","matchCriteriaId":"51ABD323-BF3F-4825-8788-8FCD614E83E4"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:sql_server:7.0:*:*:*:*:*:*:*","matchCriteriaId":"A2AB95D7-394E-423B-884C-87A9960682EE"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:sql_server:2000:*:*:*:*:*:*:*","matchCriteriaId":"A5D559EE-727C-405C-987C-247973A84D32"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97570884410184&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2040","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-092","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97570884410184&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2040","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-092","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1086","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:07.200","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The xp_printstatements function in Microsoft SQL Server 2000 and SQL Server Desktop Engine (MSDE) does not properly restrict the length of a buffer before calling the srv_paraminfo function in the SQL Server API for Extended Stored Procedures (XP), which allows an attacker to cause a denial of service or execute arbitrary commands, aka the \"Extended Stored Procedure Parameter Parsing\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:data_engine:1.0:*:*:*:*:*:*:*","matchCriteriaId":"F455C373-A9F7-47F9-828E-DEE2C8CC6545"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:data_engine:2000:*:*:*:*:*:*:*","matchCriteriaId":"51ABD323-BF3F-4825-8788-8FCD614E83E4"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:sql_server:7.0:*:*:*:*:*:*:*","matchCriteriaId":"A2AB95D7-394E-423B-884C-87A9960682EE"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:sql_server:2000:*:*:*:*:*:*:*","matchCriteriaId":"A5D559EE-727C-405C-987C-247973A84D32"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97570884410184&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2041","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-092","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97570884410184&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2041","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-092","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1087","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:07.320","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The xp_proxiedmetadata function in Microsoft SQL Server 2000 and SQL Server Desktop Engine (MSDE) does not properly restrict the length of a buffer before calling the srv_paraminfo function in the SQL Server API for Extended Stored Procedures (XP), which allows an attacker to cause a denial of service or execute arbitrary commands, aka the \"Extended Stored Procedure Parameter Parsing\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:data_engine:1.0:*:*:*:*:*:*:*","matchCriteriaId":"F455C373-A9F7-47F9-828E-DEE2C8CC6545"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:data_engine:2000:*:*:*:*:*:*:*","matchCriteriaId":"51ABD323-BF3F-4825-8788-8FCD614E83E4"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:sql_server:7.0:*:*:*:*:*:*:*","matchCriteriaId":"A2AB95D7-394E-423B-884C-87A9960682EE"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:sql_server:2000:*:*:*:*:*:*:*","matchCriteriaId":"A5D559EE-727C-405C-987C-247973A84D32"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97570884410184&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2042","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-092","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97570884410184&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2042","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-092","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1088","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:07.447","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The xp_SetSQLSecurity function in Microsoft SQL Server 2000 and SQL Server Desktop Engine (MSDE) does not properly restrict the length of a buffer before calling the srv_paraminfo function in the SQL Server API for Extended Stored Procedures (XP), which allows an attacker to cause a denial of service or execute arbitrary commands, aka the \"Extended Stored Procedure Parameter Parsing\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:data_engine:1.0:*:*:*:*:*:*:*","matchCriteriaId":"F455C373-A9F7-47F9-828E-DEE2C8CC6545"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:data_engine:2000:*:*:*:*:*:*:*","matchCriteriaId":"51ABD323-BF3F-4825-8788-8FCD614E83E4"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:sql_server:7.0:*:*:*:*:*:*:*","matchCriteriaId":"A2AB95D7-394E-423B-884C-87A9960682EE"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:sql_server:2000:*:*:*:*:*:*:*","matchCriteriaId":"A5D559EE-727C-405C-987C-247973A84D32"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97570884410184&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2043","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-092","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97570884410184&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2043","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-092","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1089","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:07.557","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Microsoft Phone Book Service allows local users to execute arbitrary commands, aka the \"Phone Book Service Buffer Overflow\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/2048","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.stake.com/research/advisories/2000/a120400-1.txt","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-094","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5623","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2048","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.stake.com/research/advisories/2000/a120400-1.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-094","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5623","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1092","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:07.783","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"loadpage.cgi CGI program in EZshopper 3.0 and 2.0 allows remote attackers to list and read files in the EZshopper data directory by inserting a \"/\" in front of the target filename in the \"file\" parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:alex_heiphetz_group:ezshopper:2.0:*:*:*:*:*:*:*","matchCriteriaId":"DA91E5DF-0069-4896-8392-5BCA8E98970D"},{"vulnerable":true,"criteria":"cpe:2.3:a:alex_heiphetz_group:ezshopper:3.0:*:*:*:*:*:*:*","matchCriteriaId":"5DB24D0E-9799-4C96-B9F0-45B821ABA365"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97676270729984&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2109","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5740","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97676270729984&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2109","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5740","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1093","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:07.890","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in AOL Instant Messenger before 4.3.2229 allows remote attackers to execute arbitrary commands via a long \"goim\" command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:aol:instant_messenger:2.0_n:*:*:*:*:*:*:*","matchCriteriaId":"ED10DFD8-2532-466D-8EBB-F05081F2935D"},{"vulnerable":true,"criteria":"cpe:2.3:a:aol:instant_messenger:2.5.1366:*:*:*:*:*:*:*","matchCriteriaId":"0D371BDC-9E31-4EB1-88E9-82C2976086E1"},{"vulnerable":true,"criteria":"cpe:2.3:a:aol:instant_messenger:2.5.1598:*:*:*:*:*:*:*","matchCriteriaId":"64B46D19-9103-40C5-A6A4-D5BE8DF8276E"},{"vulnerable":true,"criteria":"cpe:2.3:a:aol:instant_messenger:3.0.1470:*:*:*:*:*:*:*","matchCriteriaId":"D47319C5-1E96-4AEB-ABA9-638DFF22BD56"},{"vulnerable":true,"criteria":"cpe:2.3:a:aol:instant_messenger:3.0_n:*:*:*:*:*:*:*","matchCriteriaId":"483C0045-4C10-4120-AB89-C36467993E25"},{"vulnerable":true,"criteria":"cpe:2.3:a:aol:instant_messenger:3.5.1635:*:*:*:*:*:*:*","matchCriteriaId":"7577D890-E06A-477C-80BE-48075FB16437"},{"vulnerable":true,"criteria":"cpe:2.3:a:aol:instant_messenger:3.5.1670:*:*:*:*:*:*:*","matchCriteriaId":"34B6D42F-9FD9-4E0D-BB59-8E65E817889C"},{"vulnerable":true,"criteria":"cpe:2.3:a:aol:instant_messenger:3.5.1808:*:*:*:*:*:*:*","matchCriteriaId":"9C2B7D7B-DB48-458B-9CA5-813782BA600D"},{"vulnerable":true,"criteria":"cpe:2.3:a:aol:instant_messenger:3.5.1856:*:*:*:*:*:*:*","matchCriteriaId":"FF19BBC6-C4F2-4636-8650-E178FFD6BF4C"},{"vulnerable":true,"criteria":"cpe:2.3:a:aol:instant_messenger:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E00F0805-8C73-43B1-87AC-744434046E59"},{"vulnerable":true,"criteria":"cpe:2.3:a:aol:instant_messenger:4.1.2010:*:*:*:*:*:*:*","matchCriteriaId":"8B2707D6-D5EC-4A22-B5E1-2A34913CB3FB"},{"vulnerable":true,"criteria":"cpe:2.3:a:aol:instant_messenger:4.2.1193:*:*:*:*:*:*:*","matchCriteriaId":"172E406F-108C-4D9A-80AB-78CDF134C4A8"}]}]}],"references":[{"url":"http://www.atstake.com/research/advisories/2000/a121200-1.txt","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5732","source":"cve@mitre.org"},{"url":"http://www.atstake.com/research/advisories/2000/a121200-1.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5732","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1094","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:08.013","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in AOL Instant Messenger (AIM) before 4.3.2229 allows remote attackers to execute arbitrary commands via a \"buddyicon\" command with a long \"src\" argument."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-120"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:aol:aim:*:*:*:*:*:*:*:*","versionEndExcluding":"4.3.2229","matchCriteriaId":"90BDB096-13CB-4E99-B7C6-953B82D6A954"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97668265628917&w=2","source":"cve@mitre.org","tags":["Third Party Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=97683774417132&w=2","source":"cve@mitre.org","tags":["Third Party Advisory"]},{"url":"http://www.atstake.com/research/advisories/2000/a121200-1.txt","source":"cve@mitre.org","tags":["Broken Link","Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1692","source":"cve@mitre.org","tags":["Broken Link"]},{"url":"http://marc.info/?l=bugtraq&m=97668265628917&w=2","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=97683774417132&w=2","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"]},{"url":"http://www.atstake.com/research/advisories/2000/a121200-1.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1692","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"]}]}},{"cve":{"id":"CVE-2000-1095","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:08.130","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"modprobe in the modutils 2.3.x package on Linux systems allows a local user to execute arbitrary commands via shell metacharacters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:immunix:immunix:6.2:*:*:*:*:*:*:*","matchCriteriaId":"DB0F79BE-8EBF-44D8-83A1-9331669BED54"},{"vulnerable":true,"criteria":"cpe:2.3:a:immunix:immunix:7.0_beta:*:*:*:*:*:*:*","matchCriteriaId":"1A2889C6-8DE0-4432-812A-F2A5C4A08897"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:5.1:*:*:*:*:*:*:*","matchCriteriaId":"E3AC05A9-04DA-4ED3-94D8-3254384CB724"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:7.2:*:*:*:*:*:*:*","matchCriteriaId":"0A8FBD5A-2FD0-43CD-AC4B-1D6984D336FE"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"29B186E5-7C2F-466E-AA4A-8F2B618F8A14"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.4:*:*:*:*:*:*:*","matchCriteriaId":"7786607A-362E-4817-A17E-C76D6A1F737D"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"C9E7D75A-333E-4C63-9593-F64ABA5D1CE3"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0179.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/linux/suse/2000-q4/0596.html","source":"cve@mitre.org"},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000340","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/2000/20001120","source":"cve@mitre.org"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-071-1.php3?dis=7.1","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-108.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1936","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5516","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0179.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/linux/suse/2000-q4/0596.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000340","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.debian.org/security/2000/20001120","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-071-1.php3?dis=7.1","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-108.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1936","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5516","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1096","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:08.263","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"crontab by Paul Vixie uses predictable file names for a temporary file and does not properly ensure that the file is owned by the user executing the crontab -e command, which allows local users with write access to the crontab spool directory to execute arbitrary commands by creating world-writeable temporary files and modifying them while the victim is editing the file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:P/I:P/A:P","baseScore":3.7,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":1.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:paul_vixie:vixie_cron:3.0_pl1:*:*:*:*:*:*:*","matchCriteriaId":"D8F45BCD-EBC1-4707-8C53-A25F373026A5"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0237.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1960","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5543","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0237.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1960","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5543","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1097","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:08.387","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The web server for the SonicWALL SOHO firewall allows remote attackers to cause a denial of service via a long username in the authentication page."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:sonicwall:soho_firewall:4.0.0:*:*:*:*:*:*:*","matchCriteriaId":"A1B5EA1E-E755-4517-9C2A-B489FEFA3FCB"},{"vulnerable":true,"criteria":"cpe:2.3:h:sonicwall:soho_firewall:5.0.0:*:*:*:*:*:*:*","matchCriteriaId":"762138D4-CCCF-493A-B362-DC88B1D909EC"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0406.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0435.html","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1667","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2013","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5596","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0406.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0435.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1667","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2013","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5596","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1098","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:08.543","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The web server for the SonicWALL SOHO firewall allows remote attackers to cause a denial of service via an empty GET or POST request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:sonicwall:soho_firewall:4.0.0:*:*:*:*:*:*:*","matchCriteriaId":"A1B5EA1E-E755-4517-9C2A-B489FEFA3FCB"},{"vulnerable":true,"criteria":"cpe:2.3:h:sonicwall:soho_firewall:5.0.0:*:*:*:*:*:*:*","matchCriteriaId":"762138D4-CCCF-493A-B362-DC88B1D909EC"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0435.html","source":"cve@mitre.org","tags":["Patch"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0439.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0435.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0439.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1099","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:08.667","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Java Runtime Environment in Java Development Kit (JDK) 1.2.2_05 and earlier can allow an untrusted Java class to call into a disallowed class, which could allow an attacker to escape the Java sandbox and conduct unauthorized activities."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sun:jdk:*:*:*:*:*:*:*:*","versionEndIncluding":"1.2.1","matchCriteriaId":"FBCDE0DF-29CB-4C41-84F5-664A9845F4CA"},{"vulnerable":true,"criteria":"cpe:2.3:a:sun:jdk:1.2.1:update3:*:*:*:*:*:*","matchCriteriaId":"38A647E6-2BC2-4E71-96FB-7CA457484CB4"},{"vulnerable":true,"criteria":"cpe:2.3:a:sun:jdk:1.2.2:update4:*:*:*:*:*:*","matchCriteriaId":"5B791B1F-D6AA-451D-A415-C2C9BE44865A"},{"vulnerable":true,"criteria":"cpe:2.3:a:sun:jdk:1.2.2:update5:*:*:*:*:*:*","matchCriteriaId":"A4D34197-1500-47C7-848D-676F7592BCD4"}]}]}],"references":[{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/199&type=0&nav=sec.sba","source":"cve@mitre.org","tags":["Broken Link"]},{"url":"http://www.osvdb.org/7255","source":"cve@mitre.org","tags":["Broken Link"]},{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX0011-132","source":"cve@mitre.org","tags":["Broken Link"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5605","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/199&type=0&nav=sec.sba","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"]},{"url":"http://www.osvdb.org/7255","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"]},{"url":"http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX0011-132","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5605","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]}]}},{"cve":{"id":"CVE-2000-1100","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:08.807","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default configuration for PostACI webmail system installs the /includes/global.inc configuration file within the web root, which allows remote attackers to read sensitive information such as database usernames and passwords via a direct HTTP GET request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:trlinux:postaci_webmail:1.1.3:*:*:*:*:*:*:*","matchCriteriaId":"CEA2CF48-2C03-45A7-B87E-86A54BEEDF81"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0433.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/2029","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0433.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/2029","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1101","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:08.937","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in Winsock FTPd (WFTPD) 3.00 and 2.41 with the \"Restrict to home directory\" option enabled allows local users to escape the home directory via a \"/../\" string, a variation of the .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd:2.41_rc14:*:*:*:*:*:*:*","matchCriteriaId":"0BFFAD53-125B-4633-9AC4-A580B17A60F1"},{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd:2.41_rc14:*:pro:*:*:*:*:*","matchCriteriaId":"8D405E5C-7528-44FA-A923-6467E5C00E7A"},{"vulnerable":true,"criteria":"cpe:2.3:a:texas_imperial_software:wftpd:3.0:*:pro:*:*:*:*:*","matchCriteriaId":"48834DE9-009F-4ADF-882C-731AAE13216C"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0386.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/5608.php","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2005","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0386.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/5608.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2005","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1102","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:09.077","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"PTlink IRCD 3.5.3 and PTlink Services 1.8.1 allow remote attackers to cause a denial of service (server crash) via \"mode +owgscfxeb\" and \"oper\" commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ptlink:ptlink_irc_services:1.8.1:*:*:*:*:*:*:*","matchCriteriaId":"1E207D40-EE27-4513-992D-B302A8A6CD4B"},{"vulnerable":true,"criteria":"cpe:2.3:a:ptlink:ptlink_ircd:3.5.3:*:*:*:*:*:*:*","matchCriteriaId":"6205F328-8C56-4324-9D6E-C7F0C612E616"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/147115","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/2008","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/147115","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/2008","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1103","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:09.207","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"rcvtty in BSD 3.0 and 4.0 does not properly drop privileges before executing a script, which allows local attackers to gain privileges by specifying an alternate Trojan horse script on the command line."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:bsdi:bsd_os:3.0:*:*:*:*:*:*:*","matchCriteriaId":"99235B00-0050-42BF-99EF-FCDD72D8627D"},{"vulnerable":true,"criteria":"cpe:2.3:o:bsdi:bsd_os:3.1:*:*:*:*:*:*:*","matchCriteriaId":"950CE88E-E396-4D32-AC9D-B76EB2B537C6"},{"vulnerable":true,"criteria":"cpe:2.3:o:bsdi:bsd_os:4.0:*:*:*:*:*:*:*","matchCriteriaId":"7ECF99E9-1C3B-4D8F-A52E-28D0BFEB2E9D"},{"vulnerable":true,"criteria":"cpe:2.3:o:bsdi:bsd_os:4.0.1:*:*:*:*:*:*:*","matchCriteriaId":"A37687D5-1239-474B-994C-C638AB9B105B"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/147120","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/2009","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/147120","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/2009","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1104","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:09.327","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Variant of the \"IIS Cross-Site Scripting\" vulnerability as originally discussed in MS:MS00-060 (CVE-2000-0746) allows a malicious web site operator to embed scripts in a link to a trusted site, which are returned without quoting in an error message back to the client.  The client then executes those scripts in the same context as the trusted site."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_services:5.0:*:*:*:*:*:*:*","matchCriteriaId":"413C07EA-139F-4B7D-A58B-835BD2591FA0"}]}]}],"references":[{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-060","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-060","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1105","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:09.463","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The ixsso.query ActiveX Object is marked as safe for scripting, which allows malicious web site operators to embed a script that remotely determines the existence of files on visiting Windows 2000 systems that have Indexing Services enabled."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:P/I:N/A:N","baseScore":4.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":8.6,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:indexing_service:*:*:windows_2000:*:*:*:*:*","matchCriteriaId":"3091F662-8B47-4AB6-B82B-9E644ED7DC51"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/win2ksecadvice/2000-q4/0074.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/144270","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1933","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/win2ksecadvice/2000-q4/0074.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/144270","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1933","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1106","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:09.607","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Trend Micro InterScan VirusWall creates an \"Intscan\" share to the \"InterScan\" directory with permissions that grant Full Control permissions to the Everyone group, which allows attackers to gain privileges by modifying the VirusWall programs."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:trend_micro:interscan_viruswall:*:*:*:*:*:*:*:*","versionEndIncluding":"3.4","matchCriteriaId":"0A8C3171-8055-4B3B-97CE-D39770073914"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0016.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/147563","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/2014","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5606","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0016.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/147563","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/2014","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5606","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1107","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:09.733","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"in.identd ident server in SuSE Linux 6.x and 7.0 allows remote attackers to cause a denial of service via a long request, which causes the server to access a NULL pointer and crash."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"F163E145-09F7-4BE2-9B46-5B6713070BAB"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"124E1802-7984-45ED-8A92-393FC20662FD"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.2:*:*:*:*:*:*:*","matchCriteriaId":"1B67020A-6942-4478-B501-764147C4970D"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.3:*:*:*:*:*:*:*","matchCriteriaId":"0AD0FF64-05DF-48C2-9BB5-FD993121FB2E"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:6.4:*:*:*:*:*:*:*","matchCriteriaId":"7786607A-362E-4817-A17E-C76D6A1F737D"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"C9E7D75A-333E-4C63-9593-F64ABA5D1CE3"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0387.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/2015","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5590","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0387.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/2015","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5590","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1108","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:09.850","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"cons.saver in Midnight Commander (mc) 4.5.42 and earlier does not properly verify if an output file descriptor is a TTY, which allows local users to corrupt files by creating a symbolic link to the target file, calling mc, and specifying that link as a TTY argument."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:midnight_commander:midnight_commander:4.5.42:*:*:*:*:*:*:*","matchCriteriaId":"0A4BBBE0-E96D-4BCB-BF5B-673888C00AC3"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0192.html","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/2000/20001125","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-078.php3","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1945","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5519","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0192.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.debian.org/security/2000/20001125","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-078.php3","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1945","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5519","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1109","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:09.980","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Midnight Commander (mc) 4.5.51 and earlier does not properly process malformed directory names when a user opens a directory, which allows other local users to gain privileges by creating directories that contain special characters followed by the commands to be executed."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:midnight_commander:midnight_commander:4.5.40:*:*:*:*:*:*:*","matchCriteriaId":"EB4028BE-4173-4175-B9EF-A85A47476A60"},{"vulnerable":true,"criteria":"cpe:2.3:a:midnight_commander:midnight_commander:4.5.41:*:*:*:*:*:*:*","matchCriteriaId":"FC64619A-D8C3-4613-9A51-849DC65DC959"},{"vulnerable":true,"criteria":"cpe:2.3:a:midnight_commander:midnight_commander:4.5.42:*:*:*:*:*:*:*","matchCriteriaId":"0A4BBBE0-E96D-4BCB-BF5B-673888C00AC3"},{"vulnerable":true,"criteria":"cpe:2.3:a:midnight_commander:midnight_commander:4.5.43:*:*:*:*:*:*:*","matchCriteriaId":"D410B4E1-DA7A-4F62-A0F9-E8C5A147BD45"},{"vulnerable":true,"criteria":"cpe:2.3:a:midnight_commander:midnight_commander:4.5.44:*:*:*:*:*:*:*","matchCriteriaId":"949399A7-6E77-4F12-86EE-7B6FBAA16D4C"},{"vulnerable":true,"criteria":"cpe:2.3:a:midnight_commander:midnight_commander:4.5.45:*:*:*:*:*:*:*","matchCriteriaId":"FDE8085F-84F3-4305-A52B-FEFF05E9FD17"},{"vulnerable":true,"criteria":"cpe:2.3:a:midnight_commander:midnight_commander:4.5.46:*:*:*:*:*:*:*","matchCriteriaId":"D5DA21F1-8700-437C-8D64-70D97A508598"},{"vulnerable":true,"criteria":"cpe:2.3:a:midnight_commander:midnight_commander:4.5.47:*:*:*:*:*:*:*","matchCriteriaId":"B03CA3A4-86E2-4E10-8F56-51B814F51540"},{"vulnerable":true,"criteria":"cpe:2.3:a:midnight_commander:midnight_commander:4.5.48:*:*:*:*:*:*:*","matchCriteriaId":"F5AA5CCF-F160-4092-A7E7-29459E2528F6"},{"vulnerable":true,"criteria":"cpe:2.3:a:midnight_commander:midnight_commander:4.5.49:*:*:*:*:*:*:*","matchCriteriaId":"F2B90B64-72A2-46D3-A6CC-07052FC70740"},{"vulnerable":true,"criteria":"cpe:2.3:a:midnight_commander:midnight_commander:4.5.50:*:*:*:*:*:*:*","matchCriteriaId":"1E7739C2-C590-479E-8A0B-2EC95E836E3B"},{"vulnerable":true,"criteria":"cpe:2.3:a:midnight_commander:midnight_commander:4.5.51:*:*:*:*:*:*:*","matchCriteriaId":"25C1FE96-BC31-48D3-BB64-F132E17B8244"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0373.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.debian.org/security/2001/dsa-036","source":"cve@mitre.org"},{"url":"http://www.novell.com/linux/security/advisories/2001_011_mc.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2016","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5929","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0373.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.debian.org/security/2001/dsa-036","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.novell.com/linux/security/advisories/2001_011_mc.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2016","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5929","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1110","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:10.103","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"document.d2w CGI program in the IBM Net.Data db2www package allows remote attackers to determine the physical path of the web server by sending a nonexistent command to the program."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:net.data:7.0:*:*:*:*:*:*:*","matchCriteriaId":"1900FF78-33E3-481D-8984-E45BD83DBF75"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0384.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/2017","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0384.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/2017","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1111","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:10.223","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Telnet Service for Windows 2000 Professional does not properly terminate incomplete connection attempts, which allows remote attackers to cause a denial of service by connecting to the server and not providing any input."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/147914","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/2018","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5598","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/147914","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/2018","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5598","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1112","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:10.350","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft Windows Media Player 7 executes scripts in custom skin (.WMS) files, which could allow remote attackers to gain privileges via a skin that contains a malicious script, aka the \".WMS Script Execution\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:windows_media_player:6.4:*:*:*:*:*:*:*","matchCriteriaId":"1CE4EC55-63B7-409E-9E4D-DBC5A36D2F5A"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:windows_media_player:7:*:*:*:*:*:*:*","matchCriteriaId":"E5C9557F-DCBF-48BA-9045-AA5DF58F604A"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1976","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-090","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5575","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1976","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-090","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5575","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1113","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:10.483","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Microsoft Windows Media Player allows remote attackers to execute arbitrary commands via a malformed Active Stream Redirector (.ASX) file, aka the \".ASX Buffer Overrun\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:windows_media_player:6.4:*:*:*:*:*:*:*","matchCriteriaId":"1CE4EC55-63B7-409E-9E4D-DBC5A36D2F5A"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:windows_media_player:7:*:*:*:*:*:*:*","matchCriteriaId":"E5C9557F-DCBF-48BA-9045-AA5DF58F604A"}]}]}],"references":[{"url":"http://www.atstake.com/research/advisories/2000/a112300-1.txt","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1980","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-090","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5574","source":"cve@mitre.org"},{"url":"http://www.atstake.com/research/advisories/2000/a112300-1.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1980","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-090","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5574","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1114","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:10.633","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Unify ServletExec AS v3.0C allows remote attackers to read source code for JSP pages via an HTTP request that ends with characters such as \".\", or \"+\", or \"%20\"."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:unify:ewave_servletexec:3.0:*:*:*:*:*:*:*","matchCriteriaId":"B937CCF3-EC98-429B-A3C8-2DFA132495C2"},{"vulnerable":true,"criteria":"cpe:2.3:a:unify:ewave_servletexec:3.0c:*:*:*:*:*:*:*","matchCriteriaId":"A7944E5F-FAAC-443E-BB7C-BC42392EA209"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0285.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1970","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0285.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1970","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1115","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:10.770","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in remote web administration component (webprox.dll) of 602Pro LAN SUITE before 2000.0.1.33 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long GET request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:software602:602pro_lan_suite:*:*:*:*:*:*:*:*","versionEndIncluding":"2000a_2000.0.1.32","matchCriteriaId":"CBA64EDD-BEBD-4C51-A0AE-DEB397CBC07A"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0299.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1979","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.software602.com/products/ls/support/newbuild.html","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5583","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0299.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1979","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.software602.com/products/ls/support/newbuild.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5583","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1116","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:10.893","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in TransSoft Broker FTP Server before 4.3.0.1 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:transsoft:broker_ftp_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"E931DDE7-290F-4B14-A103-91EFB49EA169"},{"vulnerable":true,"criteria":"cpe:2.3:a:transsoft:broker_ftp_server:3.0_build_1:*:*:*:*:*:*:*","matchCriteriaId":"AA7672FB-3D77-43E7-9DA0-01DFF97FC76D"},{"vulnerable":true,"criteria":"cpe:2.3:a:transsoft:broker_ftp_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E92863B0-9FE6-474C-8D10-75040BCF91FD"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/win2ksecadvice/2000-q4/0041.html","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5388","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/win2ksecadvice/2000-q4/0041.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5388","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1117","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:11.013","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Extended Control List (ECL) feature of the Java Virtual Machine (JVM) in Lotus Notes Client R5 allows malicious web site operators to determine the existence of files on the client by measuring delays in the execution of the getSystemResource method."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-203"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:lotus_notes:r5:*:*:*:*:*:*:*","matchCriteriaId":"2F4F8C0C-B817-4E38-95E6-5896E365C75F"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0341.html","source":"cve@mitre.org","tags":["Broken Link"]},{"url":"http://www.securityfocus.com/bid/1994","source":"cve@mitre.org","tags":["Broken Link","Exploit","Third Party Advisory","VDB Entry","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0341.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"]},{"url":"http://www.securityfocus.com/bid/1994","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Exploit","Third Party Advisory","VDB Entry","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1118","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:11.143","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"24Link 1.06 web server allows remote attackers to bypass access restrictions by prepending strings such as \"/+/\" or \"/.\" to the HTTP GET request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:24link:24link:1.06:*:*:*:*:*:*:*","matchCriteriaId":"00A35EA1-0DDD-475E-B59A-10AA583AF1EE"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0369.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0369.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1119","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:11.277","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in setsenv command in IBM AIX 4.3.x and earlier allows local users to execute arbitrary commands via a long \"x=\" argument."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.2:*:*:*:*:*:*:*","matchCriteriaId":"05F20EC2-ADE6-4F96-A2E7-1DCCA819D657"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.2.1:*:*:*:*:*:*:*","matchCriteriaId":"91D7C561-4D23-430B-A7D8-137E52B08FF5"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3:*:*:*:*:*:*:*","matchCriteriaId":"11ACD012-F05F-45CD-A170-96CBAA42FFE4"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.1:*:*:*:*:*:*:*","matchCriteriaId":"55919E74-09E7-44BA-9941-D1B69BB1692F"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.2:*:*:*:*:*:*:*","matchCriteriaId":"45F3C5D8-8BC3-44EB-917A-D0BA051D3D9D"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.3:*:*:*:*:*:*:*","matchCriteriaId":"465B06C4-136D-4CD8-BA38-B6B50511624C"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97569466809056&w=2","source":"cve@mitre.org"},{"url":"http://www-1.ibm.com/support/search.wss?rs=0&q=IY08812&apar=only","source":"cve@mitre.org"},{"url":"http://www-1.ibm.com/support/search.wss?rs=0&q=IY10721&apar=only","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1676","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2032","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5621","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97569466809056&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www-1.ibm.com/support/search.wss?rs=0&q=IY08812&apar=only","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www-1.ibm.com/support/search.wss?rs=0&q=IY10721&apar=only","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1676","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2032","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5621","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1120","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:11.420","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in digest command in IBM AIX 4.3.x and earlier allows local users to execute arbitrary commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.2:*:*:*:*:*:*:*","matchCriteriaId":"05F20EC2-ADE6-4F96-A2E7-1DCCA819D657"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.2.1:*:*:*:*:*:*:*","matchCriteriaId":"91D7C561-4D23-430B-A7D8-137E52B08FF5"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3:*:*:*:*:*:*:*","matchCriteriaId":"11ACD012-F05F-45CD-A170-96CBAA42FFE4"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.1:*:*:*:*:*:*:*","matchCriteriaId":"55919E74-09E7-44BA-9941-D1B69BB1692F"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.2:*:*:*:*:*:*:*","matchCriteriaId":"45F3C5D8-8BC3-44EB-917A-D0BA051D3D9D"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.3:*:*:*:*:*:*:*","matchCriteriaId":"465B06C4-136D-4CD8-BA38-B6B50511624C"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97569466809056&w=2","source":"cve@mitre.org"},{"url":"http://www-1.ibm.com/support/search.wss?rs=0&q=IY08143&apar=only","source":"cve@mitre.org"},{"url":"http://www-1.ibm.com/support/search.wss?rs=0&q=IY08287&apar=only","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2033","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5620","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97569466809056&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www-1.ibm.com/support/search.wss?rs=0&q=IY08143&apar=only","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www-1.ibm.com/support/search.wss?rs=0&q=IY08287&apar=only","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2033","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5620","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1121","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:11.570","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in enq command in IBM AIX 4.3.x and earlier may allow local users to execute arbitrary commands via a long -M argument."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.2:*:*:*:*:*:*:*","matchCriteriaId":"05F20EC2-ADE6-4F96-A2E7-1DCCA819D657"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.2.1:*:*:*:*:*:*:*","matchCriteriaId":"91D7C561-4D23-430B-A7D8-137E52B08FF5"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3:*:*:*:*:*:*:*","matchCriteriaId":"11ACD012-F05F-45CD-A170-96CBAA42FFE4"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.1:*:*:*:*:*:*:*","matchCriteriaId":"55919E74-09E7-44BA-9941-D1B69BB1692F"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.2:*:*:*:*:*:*:*","matchCriteriaId":"45F3C5D8-8BC3-44EB-917A-D0BA051D3D9D"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.3:*:*:*:*:*:*:*","matchCriteriaId":"465B06C4-136D-4CD8-BA38-B6B50511624C"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97569466809056&w=2","source":"cve@mitre.org"},{"url":"http://www-1.ibm.com/support/search.wss?rs=0&q=IY08143&apar=only","source":"cve@mitre.org"},{"url":"http://www-1.ibm.com/support/search.wss?rs=0&q=IY08287&apar=only","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2034","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5619","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97569466809056&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www-1.ibm.com/support/search.wss?rs=0&q=IY08143&apar=only","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www-1.ibm.com/support/search.wss?rs=0&q=IY08287&apar=only","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2034","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5619","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1122","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:11.717","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in setclock command in IBM AIX 4.3.x and earlier may allow local users to execute arbitrary commands via a long argument."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.2:*:*:*:*:*:*:*","matchCriteriaId":"05F20EC2-ADE6-4F96-A2E7-1DCCA819D657"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.2.1:*:*:*:*:*:*:*","matchCriteriaId":"91D7C561-4D23-430B-A7D8-137E52B08FF5"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3:*:*:*:*:*:*:*","matchCriteriaId":"11ACD012-F05F-45CD-A170-96CBAA42FFE4"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.1:*:*:*:*:*:*:*","matchCriteriaId":"55919E74-09E7-44BA-9941-D1B69BB1692F"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.2:*:*:*:*:*:*:*","matchCriteriaId":"45F3C5D8-8BC3-44EB-917A-D0BA051D3D9D"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.3:*:*:*:*:*:*:*","matchCriteriaId":"465B06C4-136D-4CD8-BA38-B6B50511624C"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97569466809056&w=2","source":"cve@mitre.org"},{"url":"http://www-1.ibm.com/support/search.wss?rs=0&q=IY07790&apar=only","source":"cve@mitre.org"},{"url":"http://www-1.ibm.com/support/search.wss?rs=0&q=IY07831&apar=only","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2035","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=97569466809056&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www-1.ibm.com/support/search.wss?rs=0&q=IY07790&apar=only","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www-1.ibm.com/support/search.wss?rs=0&q=IY07831&apar=only","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2035","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1123","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:11.850","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in pioout command in IBM AIX 4.3.x and earlier may allow local users to execute arbitrary commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3:*:*:*:*:*:*:*","matchCriteriaId":"11ACD012-F05F-45CD-A170-96CBAA42FFE4"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.1:*:*:*:*:*:*:*","matchCriteriaId":"55919E74-09E7-44BA-9941-D1B69BB1692F"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.2:*:*:*:*:*:*:*","matchCriteriaId":"45F3C5D8-8BC3-44EB-917A-D0BA051D3D9D"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.3:*:*:*:*:*:*:*","matchCriteriaId":"465B06C4-136D-4CD8-BA38-B6B50511624C"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97569466809056&w=2","source":"cve@mitre.org"},{"url":"http://www-1.ibm.com/support/search.wss?rs=0&q=IY12638&apar=only","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2036","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5617","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97569466809056&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www-1.ibm.com/support/search.wss?rs=0&q=IY12638&apar=only","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2036","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5617","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1124","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:11.990","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in piobe command in IBM AIX 4.3.x allows local users to gain privileges via long environmental variables."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3:*:*:*:*:*:*:*","matchCriteriaId":"11ACD012-F05F-45CD-A170-96CBAA42FFE4"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.1:*:*:*:*:*:*:*","matchCriteriaId":"55919E74-09E7-44BA-9941-D1B69BB1692F"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.2:*:*:*:*:*:*:*","matchCriteriaId":"45F3C5D8-8BC3-44EB-917A-D0BA051D3D9D"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:4.3.3:*:*:*:*:*:*:*","matchCriteriaId":"465B06C4-136D-4CD8-BA38-B6B50511624C"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97569466809056&w=2","source":"cve@mitre.org"},{"url":"http://www-1.ibm.com/support/search.wss?rs=0&q=IY12638&apar=only","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2037","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5616","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97569466809056&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www-1.ibm.com/support/search.wss?rs=0&q=IY12638&apar=only","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2037","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5616","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1125","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:12.120","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"restore 0.4b15 and earlier in Red Hat Linux 6.2 trusts the pathname specified by the RSH environmental variable, which allows local users to obtain root privileges by modifying the RSH variable to point to a Trojan horse program."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:*:*:*:*:*:*","matchCriteriaId":"0633B5A6-7A88-4A96-9462-4C09D124ED36"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2e:*:*:*:*:*:*:*","matchCriteriaId":"24EEDE00-6F40-4A9A-BF74-6BE6CEAE39E0"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97336034309944&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1914","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=97336034309944&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1914","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1126","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:12.257","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in auto_parms and set_parms in HP-UX 11.00 and earlier allows remote attackers to execute arbitrary commands or cause a denial of service."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.01:*:*:*:*:*:*:*","matchCriteriaId":"53BBFE9A-6846-4625-91AC-47AA0BC0933A"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.10:*:*:*:*:*:*:*","matchCriteriaId":"38BFA923-7D80-4F01-AF9F-6F13209948AC"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.20:*:*:*:*:*:*:*","matchCriteriaId":"EDE44C49-172C-4899-8CC8-29AA99A7CD2F"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.24:*:*:*:*:*:*:*","matchCriteriaId":"4259A901-A1CF-44EE-80C4-2031D3FCADC3"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:11.00:*:*:*:*:*:*:*","matchCriteriaId":"771931F7-9180-4EBD-8627-E1CF17D24647"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:11.4:*:*:*:*:*:*:*","matchCriteriaId":"F038B325-A982-43FB-9146-E103CCFB5C41"}]}]}],"references":[{"url":"http://www.securityfocus.com/advisories/2850","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1954","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5655","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/advisories/2850","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1954","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5655","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1127","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:12.403","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"registrar in the HP resource monitor service allows local users to read and modify arbitrary files by renaming the original registrar.log log file and creating a symbolic link to the target file, to which registrar appends log information and sets the permissions to be world readable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:N","baseScore":3.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.20:*:*:*:*:*:*:*","matchCriteriaId":"EDE44C49-172C-4899-8CC8-29AA99A7CD2F"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/143845","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1919","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/143845","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1919","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1128","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:12.537","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The default configuration of McAfee VirusScan 4.5 does not quote the ImagePath variable, which improperly sets the search path and allows local users to place a Trojan horse \"common.exe\" program in the C:\\Program Files directory."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mcafee:virusscan:4.5:*:*:*:*:*:*:*","matchCriteriaId":"1EE9789B-3A6E-4F30-A85F-7A8B075DFF60"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q4/0073.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1920","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/ntbugtraq/2000-q4/0073.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1920","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1129","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:12.690","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"McAfee WebShield SMTP 4.5 allows remote attackers to cause a denial of service via a malformed recipient field."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:network_associates:webshield_smtp:4.5:*:*:*:*:*:*:*","matchCriteriaId":"27DD72FC-3FEF-43BC-8A68-3299213151F5"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0324.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1999","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0324.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1999","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1130","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:12.833","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"McAfee WebShield SMTP 4.5 allows remote attackers to bypass email content filtering rules by including Extended ASCII characters in name of the attachment."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:network_associates:webshield_smtp:4.5:*:*:*:*:*:*:*","matchCriteriaId":"27DD72FC-3FEF-43BC-8A68-3299213151F5"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0324.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1993","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0324.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1993","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1131","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:12.973","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Bill Kendrick web site guestbook (GBook) allows remote attackers to execute arbitrary commands via shell metacharacters in the _MAILTO form variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:bill_kendrick:gbook.cgi:1.0:*:*:*:*:*:*:*","matchCriteriaId":"668AB7F3-8345-4940-9C6C-952D61609267"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0144.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1940","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5509","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0144.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1940","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5509","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1132","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:13.103","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"DCForum cgforum.cgi CGI script allows remote attackers to read arbitrary files, and delete the program itself, via a malformed \"forum\" variable."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:P","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:dcscripts:dcforum:1.0:*:*:*:*:*:*:*","matchCriteriaId":"2D5C5D80-B6E6-44DC-B9D4-CE6DBC6CAA24"},{"vulnerable":true,"criteria":"cpe:2.3:a:dcscripts:dcforum:2.0:*:*:*:*:*:*:*","matchCriteriaId":"3EA26ADB-8D94-4C9E-97BB-24AE9FD47984"},{"vulnerable":true,"criteria":"cpe:2.3:a:dcscripts:dcforum:3.0:*:*:*:*:*:*:*","matchCriteriaId":"54FA798C-D639-4E2A-9D8E-300E93A097ED"},{"vulnerable":true,"criteria":"cpe:2.3:a:dcscripts:dcforum:4.0:*:*:*:*:*:*:*","matchCriteriaId":"CA418C3B-B98C-4A8E-92E9-7280A9D61B80"},{"vulnerable":true,"criteria":"cpe:2.3:a:dcscripts:dcforum:5.0:*:*:*:*:*:*:*","matchCriteriaId":"391D155A-F680-4D9E-AD43-7D6A26EF5557"},{"vulnerable":true,"criteria":"cpe:2.3:a:dcscripts:dcforum:6.0:*:*:*:*:*:*:*","matchCriteriaId":"A5FF2D08-2062-41E8-988F-40A2B6F95ED5"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0218.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.dcscripts.com/dcforum/dcfNews/124.html#1","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1646","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1951","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5533","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0218.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.dcscripts.com/dcforum/dcfNews/124.html#1","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1646","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1951","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5533","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1133","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:13.250","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Authentix Authentix100 allows remote attackers to bypass authentication by inserting a . (dot) into the URL for a protected directory."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:flicks_software:authentix:5.1c:*:*:*:*:*:*:*","matchCriteriaId":"75441BFD-B352-4E3E-8E1A-AFE46BF5BC94"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97353881829760&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97362374200478&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1907","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=97353881829760&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=97362374200478&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1907","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1134","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:13.380","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Multiple shell programs on various Unix systems, including (1) tcsh, (2) csh, (3) sh, and (4) bash, follow symlinks when processing << redirects (aka here-documents or in-here documents), which allows local users to overwrite files of other users via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:immunix:immunix:6.2:*:*:*:*:*:*:*","matchCriteriaId":"DB0F79BE-8EBF-44D8-83A1-9331669BED54"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:4.0:*:*:*:*:*:*:*","matchCriteriaId":"48F068BE-F5B3-4E43-8E6A-24AB4D2DEDF0"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:4.0es:*:*:*:*:*:*:*","matchCriteriaId":"6529EC98-7CF7-47A1-95BB-2F34066FE95D"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:4.1:*:*:*:*:*:*:*","matchCriteriaId":"FFDAB801-AAA0-4B3B-B488-52E7BA8650C5"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:4.2:*:*:*:*:*:*:*","matchCriteriaId":"612AC3B1-8E55-437F-9600-67EA1A8BAD48"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:5.0:*:*:*:*:*:*:*","matchCriteriaId":"537A5C29-D770-4755-A6AB-8916754E14DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:conectiva:linux:5.1:*:*:*:*:*:*:*","matchCriteriaId":"E3AC05A9-04DA-4ED3-94D8-3254384CB724"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux:*:*:*:*:*:*:*:*","matchCriteriaId":"4EC3F7E5-5D49-471B-A705-ADD2642E5B46"},{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux_edesktop:2.4:*:*:*:*:*:*:*","matchCriteriaId":"B211BCBF-CB17-4D32-B6FE-A34D86C4FBF9"},{"vulnerable":true,"criteria":"cpe:2.3:o:caldera:openlinux_eserver:2.3:*:*:*:*:*:*:*","matchCriteriaId":"3BE526D3-4CD8-423C-81FA-65B92F862A5E"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:11.11:*:*:*:*:*:*:*","matchCriteriaId":"EDD9BE2B-7255-4FC1-B452-E8370632B03F"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"D323A6B7-2741-4F31-B0D6-5D6FB738A2A1"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"ACAAD334-2CA7-4B3B-BA25-302E7610BC2A"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"E4853E92-5E0A-47B9-A343-D5BEE87D2C27"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:7.1:*:*:*:*:*:*:*","matchCriteriaId":"3EC1FF5D-5EAB-44D5-B281-770547C70D68"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:7.2:*:*:*:*:*:*:*","matchCriteriaId":"0A8FBD5A-2FD0-43CD-AC4B-1D6984D336FE"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:5.2:*:*:*:*:*:*:*","matchCriteriaId":"A8EED385-8C39-4A40-A507-2EFE7652FB35"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"2DFA94D5-0139-490C-8257-0751FE9FBAE4"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:*:*:*:*:*:*","matchCriteriaId":"2EC4D3AB-38FA-4D44-AF5C-2DCD15994E76"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:*:*:*:*:*:*","matchCriteriaId":"0633B5A6-7A88-4A96-9462-4C09D124ED36"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2e:*:*:*:*:*:*:*","matchCriteriaId":"24EEDE00-6F40-4A9A-BF74-6BE6CEAE39E0"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"C9E7D75A-333E-4C63-9593-F64ABA5D1CE3"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:76.tcsh-csh.asc","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"ftp://patches.sgi.com/support/free/security/advisories/20011103-02-P","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0418.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/tru64/2002-q1/0009.html","source":"cve@mitre.org"},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000350","source":"cve@mitre.org"},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000354","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97561816504170&w=2","source":"cve@mitre.org"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-042.0.txt","source":"cve@mitre.org"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-043.0.txt","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/2000/20001111a","source":"cve@mitre.org"},{"url":"http://www.kb.cert.org/vuls/id/10277","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-069.php3","source":"cve@mitre.org"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-075.php3","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-117.html","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-121.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/146657","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1926","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2006","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A4047","source":"cve@mitre.org"},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:76.tcsh-csh.asc","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"ftp://patches.sgi.com/support/free/security/advisories/20011103-02-P","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-10/0418.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/tru64/2002-q1/0009.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000350","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000354","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=97561816504170&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-042.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-043.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.debian.org/security/2000/20001111a","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.kb.cert.org/vuls/id/10277","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-069.php3","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-075.php3","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-117.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-121.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/146657","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1926","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2006","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A4047","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1135","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:13.587","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"fshd (fsh daemon) in Debian GNU/Linux allows local users to overwrite files of other users via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.1:*:*:*:*:*:*:*","matchCriteriaId":"3C67BDA1-9451-4026-AC6D-E912C882A757"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:2.2:*:*:*:*:*:*:*","matchCriteriaId":"58B90124-0543-4226-BFF4-13CCCBCCB243"}]}]}],"references":[{"url":"http://www.debian.org/security/2000/20001130","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/7208","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5633","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/2000/20001130","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/7208","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5633","source":"af854a3a-2127-422b-91ae-364da2661108"}],"evaluatorSolution":"Note: fixed in potato version"}},{"cve":{"id":"CVE-2000-1136","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:13.747","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"elvis-tiny before 1.4-10 in Debian GNU/Linux, and possibly other Linux operating systems, allows local users to overwrite files of other users via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:debian:elvis_tiny:*:*:*:*:*:*:*:*","versionEndIncluding":"1.4.9","matchCriteriaId":"724696ED-86AA-4EBB-AF0C-39A71505CE7A"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97502995616099&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1984","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5632","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97502995616099&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1984","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5632","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1137","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:13.900","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"GNU ed before 0.2-18.1 allows local users to overwrite the files of other users via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:ed:2.15:*:*:*:*:*:*:*","matchCriteriaId":"B99B8A89-1278-40CF-9ED9-2D46E7E288D9"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:ed:2.16tr:*:*:*:*:*:*:*","matchCriteriaId":"103C2F3C-3E99-4E3A-A4A9-612C693DCBEF"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:ed:2.18:*:*:*:*:*:*:*","matchCriteriaId":"2D340B1E-B564-458C-AE06-F5BE1937A4D3"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnu:ed:2.18.0:*:*:*:*:*:*:*","matchCriteriaId":"3ADD11EF-0274-4AAF-A346-FBC91156BE82"}]}]}],"references":[{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000359","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/2000/20001129","source":"cve@mitre.org"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-076.php3","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/6491","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-123.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5723","source":"cve@mitre.org"},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000359","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.debian.org/security/2000/20001129","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-076.php3","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/6491","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-123.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5723","source":"af854a3a-2127-422b-91ae-364da2661108"}],"vendorComments":[{"organization":"Red Hat","comment":"Red Hat Enterprise Linux 5 is not vulnerable to this issue as it contains a backported patch.","lastModified":"2007-03-14T00:00:00"}]}},{"cve":{"id":"CVE-2000-1138","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:14.043","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Lotus Notes R5 client R5.0.5 and earlier does not properly warn users when an S/MIME email message has been modified, which could allow an attacker to modify the email in transit without being detected."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:lotus_notes:*:*:*:*:*:*:*:*","versionEndIncluding":"5.0.5","matchCriteriaId":"76033B86-850B-4028-AB50-7A4C45D9A560"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:lotus_notes:5.0:*:*:*:*:*:*:*","matchCriteriaId":"C1D5D749-546A-4655-A0BF-0A2D4E9F51A1"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:lotus_notes:5.0.1:*:*:*:*:*:*:*","matchCriteriaId":"5C43E91B-492D-42E0-9C59-3DA83AF7367B"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:lotus_notes:5.0.2:*:*:*:*:*:*:*","matchCriteriaId":"4C944AEC-18C2-487E-8E0F-EC525D21EDF2"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:lotus_notes:5.0.3:*:*:*:*:*:*:*","matchCriteriaId":"0D4B2601-B62F-4235-BFFD-281235737450"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:lotus_notes:5.0.4:*:*:*:*:*:*:*","matchCriteriaId":"CA83054E-5E6B-48A4-8799-5C8507BFEB68"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97370725220953&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1925","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=97370725220953&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1925","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1139","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:14.187","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The installation of Microsoft Exchange 2000 before Rev. A creates a user account with a known password, which could allow attackers to gain privileges, aka the \"Exchange User Account\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-798"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:exchange_server:2000:-:*:*:*:*:*:*","matchCriteriaId":"FF429469-1B63-4BF3-A59F-F8180226BB6D"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/1958","source":"cve@mitre.org","tags":["Patch","Third Party Advisory","VDB Entry","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-088","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5537","source":"cve@mitre.org","tags":["VDB Entry"]},{"url":"http://www.securityfocus.com/bid/1958","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory","VDB Entry","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-088","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5537","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["VDB Entry"]}]}},{"cve":{"id":"CVE-2000-1140","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:14.330","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Recourse ManTrap 1.6 does not properly hide processes from attackers, which could allow attackers to determine that they are in a honeypot system by comparing the results from kill commands with the process listing in the /proc filesystem."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:recourse_technologies:mantrap:1.6.1:*:*:*:*:*:*:*","matchCriteriaId":"8D798097-939A-4884-946F-90B066426FBB"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0041.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0100.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1908","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5473","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0041.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0100.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1908","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5473","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1141","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:14.473","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Recourse ManTrap 1.6 modifies the kernel so that \"..\" does not appear in the /proc listing, which allows attackers to determine that they are in a honeypot system."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:recourse_technologies:mantrap:1.6.1:*:*:*:*:*:*:*","matchCriteriaId":"8D798097-939A-4884-946F-90B066426FBB"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0041.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0100.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=97349791405580&w=2","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5473","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0041.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0100.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=97349791405580&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5473","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1142","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:14.617","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Recourse ManTrap 1.6 generates an error when an attacker cd's to /proc/self/cwd and executes the pwd command, which allows attackers to determine that they are in a honeypot system."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:recourse_technologies:mantrap:1.6.1:*:*:*:*:*:*:*","matchCriteriaId":"8D798097-939A-4884-946F-90B066426FBB"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0041.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0100.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=97349791405580&w=2","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5949","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0041.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0100.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=97349791405580&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5949","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1143","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:14.773","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Recourse ManTrap 1.6 hides the first 4 processes that run on a Solaris system, which allows attackers to determine that they are in a honeypot system."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:recourse_technologies:mantrap:1.6.1:*:*:*:*:*:*:*","matchCriteriaId":"8D798097-939A-4884-946F-90B066426FBB"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0041.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0100.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=97349791405580&w=2","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5473","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0041.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0100.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=97349791405580&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5473","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1144","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:14.993","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Recourse ManTrap 1.6 sets up a chroot environment to hide the fact that it is running, but the inode number for the resulting \"/\" file system is higher than normal, which allows attackers to determine that they are in a chroot environment."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:recourse_technologies:mantrap:1.6.1:*:*:*:*:*:*:*","matchCriteriaId":"8D798097-939A-4884-946F-90B066426FBB"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0041.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0100.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=97349791405580&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1909","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5472","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0041.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0100.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=97349791405580&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1909","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5472","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1145","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:15.173","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Recourse ManTrap 1.6 allows attackers who have gained root access to use utilities such as crash or fsdb to read /dev/mem and raw disk devices to identify ManTrap processes or modify arbitrary data files."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:recourse_technologies:mantrap:1.6.1:*:*:*:*:*:*:*","matchCriteriaId":"8D798097-939A-4884-946F-90B066426FBB"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0041.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0100.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=97349791405580&w=2","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5950","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0041.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0100.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=97349791405580&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5950","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1146","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:15.307","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Recourse ManTrap 1.6 allows attackers to cause a denial of service via a sequence of commands that navigate into and out of the /proc/self directory and executing various commands such as ls or pwd."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:recourse_technologies:mantrap:1.6.1:*:*:*:*:*:*:*","matchCriteriaId":"8D798097-939A-4884-946F-90B066426FBB"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0041.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0100.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=97349791405580&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1913","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5528","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0041.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0100.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=97349791405580&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1913","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5528","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1147","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:15.453","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in IIS ISAPI .ASP parsing mechanism allows attackers to execute arbitrary commands via a long string to the \"LANGUAGE\" argument in a script tag."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/143070","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1911","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5510","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/143070","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1911","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5510","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1148","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:15.587","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The installation of VolanoChatPro chat server sets world-readable permissions for its configuration file and stores the server administrator passwords in plaintext, which allows local users to gain privileges on the server."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:volano_llc:volanochatpro:2.1:*:*:*:*:*:*:*","matchCriteriaId":"650D86A2-79D6-4768-852B-D30034AA882C"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0072.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0085.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1906","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5465","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0072.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0085.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1906","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5465","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1149","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:15.730","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in RegAPI.DLL used by Windows NT 4.0 Terminal Server allows remote attackers to execute arbitrary commands via a long username, aka the \"Terminal Server Login Buffer Overflow\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:terminal_server:*:*:*:*:*:*:*","matchCriteriaId":"22B1D814-7954-4E8B-B20C-410B53D9202A"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/143991","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1924","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-087","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5489","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/143991","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1924","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-087","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5489","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1150","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:15.877","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Felix IRC client in BeOS r5 pro and earlier allows remote attackers to conduct a denial of service via a message that contains a long URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:xavier_ducrohet:felix:2.3:*:*:*:*:*:*:*","matchCriteriaId":"9D2C6297-E56E-4FC8-A3F5-BB52DBCA2A5D"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0203.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0203.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1151","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:16.020","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Baxter IRC client in BeOS r5 pro and earlier allows remote attackers to conduct a denial of service via a message that contains a long URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:abisoft:baxter:x:*:*:*:*:*:*:*","matchCriteriaId":"FDAC2D3E-9060-45E0-B1C8-FC11E6CE87D8"},{"vulnerable":true,"criteria":"cpe:2.3:a:abisoft:baxter:y:*:*:*:*:*:*:*","matchCriteriaId":"63D6B63A-ADFA-4A5C-A062-D677DBFBDB4B"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0203.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0203.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1152","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:16.157","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Browser IRC client in BeOS r5 pro and earlier allows remote attackers to conduct a denial of service via a message that contains a long URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:be:beos:4.5:*:*:*:*:*:*:*","matchCriteriaId":"A78731F7-6AFC-4349-972C-929323519225"},{"vulnerable":true,"criteria":"cpe:2.3:o:be:beos:5:*:*:*:*:*:*:*","matchCriteriaId":"2B968A85-4802-4BD6-B55D-26AC23F39A1D"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0203.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0203.html","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1153","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:16.270","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"PostMaster 1.0 in BeOS r5 pro and earlier allows remote attackers to conduct a denial of service via a message that contains a long URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:kenny_carruthers:postmaster:1.0:*:*:*:*:*:*:*","matchCriteriaId":"C6BF7643-FEDE-4D18-894C-9A5C178673C5"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0203.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0203.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1154","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:16.393","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"RHConsole in RobinHood 1.1 web server in BeOS r5 pro and earlier allows remote attackers to cause a denial of service via long HTTP request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:joe_kloss:robinhood:1.1:*:*:*:*:*:*:*","matchCriteriaId":"D79B33DE-FC8A-49CB-8427-CEA24F5DC3D7"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0203.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0203.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1155","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:16.517","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"RHDaemon in RobinHood 1.1 web server in BeOS r5 pro and earlier allows remote attackers to cause a denial of service via long HTTP request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:joe_kloss:robinhood:1.1:*:*:*:*:*:*:*","matchCriteriaId":"D79B33DE-FC8A-49CB-8427-CEA24F5DC3D7"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0203.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0203.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1156","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:16.633","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"StarOffice 5.2 follows symlinks and sets world-readable permissions for the /tmp/soffice.tmp directory, which allows a local user to read files of the user who is using StarOffice."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:N","baseScore":3.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sun:staroffice:5.2:*:*:*:*:*:*:*","matchCriteriaId":"144E91CB-BC98-48B0-9507-10BFD22280F3"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0115.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1922","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5487","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0115.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1922","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5487","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1157","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:16.760","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in NAI Sniffer Agent allows remote attackers to execute arbitrary commands via a long SNMP community name."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:network_associates:sniffer_agent:3.0.10:*:*:*:*:*:*:*","matchCriteriaId":"9BB4D6E8-00A0-484E-9C3C-B21794DB30D9"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0038.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1901","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0038.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1901","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1158","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:16.903","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"NAI Sniffer Agent uses base64 encoding for authentication, which allows attackers to sniff the network and easily decrypt usernames and passwords."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:network_associates:sniffer_agent:3.0.10:*:*:*:*:*:*:*","matchCriteriaId":"9BB4D6E8-00A0-484E-9C3C-B21794DB30D9"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0038.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0038.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1159","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:17.040","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"NAI Sniffer Agent allows remote attackers to gain privileges on the agent by sniffing the initial UDP authentication packets and spoofing commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:network_associates:sniffer_agent:3.0.10:*:*:*:*:*:*:*","matchCriteriaId":"9BB4D6E8-00A0-484E-9C3C-B21794DB30D9"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0038.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1902","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0038.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1902","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1160","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:17.160","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"NAI Sniffer Agent allows remote attackers to cause a denial of service (crash) by sending a large number of login requests."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:network_associates:sniffer_agent:3.0.10:*:*:*:*:*:*:*","matchCriteriaId":"9BB4D6E8-00A0-484E-9C3C-B21794DB30D9"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0038.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1903","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0038.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1903","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1161","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:17.280","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The installation of AdCycle banner management system leaves the build.cgi program in a web-accessible directory, which allows remote attackers to execute the program and view passwords or delete databases."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:adcycle:adcycle:0.77b:*:*:*:*:*:*:*","matchCriteriaId":"91F083DD-A0E4-4976-AA90-411E997EAB2D"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0271.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1969","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0271.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1969","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1162","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:17.397","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ghostscript before 5.10-16 allows local users to overwrite files of other users via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:P/I:P/A:P","baseScore":3.7,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":1.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:aladdin_enterprises:ghostscript:4.3:*:*:*:*:*:*:*","matchCriteriaId":"563638C2-75D6-4EBB-BE65-A2DBCB9B2425"},{"vulnerable":true,"criteria":"cpe:2.3:a:aladdin_enterprises:ghostscript:5.10.10:*:*:*:*:*:*:*","matchCriteriaId":"31868FF9-396E-43F3-87CC-99653D2EEB75"},{"vulnerable":true,"criteria":"cpe:2.3:a:aladdin_enterprises:ghostscript:5.10.15:*:*:*:*:*:*:*","matchCriteriaId":"65386D8C-7D7C-464A-839D-6B4B39F724BA"},{"vulnerable":true,"criteria":"cpe:2.3:a:aladdin_enterprises:ghostscript:5.50:*:*:*:*:*:*:*","matchCriteriaId":"718E9B80-DD01-45E5-B61C-B5BA2036262F"}]}]}],"references":[{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000343","source":"cve@mitre.org"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-041.0.txt","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.debian.org/security/2000/20001123","source":"cve@mitre.org"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-074.php3","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-114.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1990","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5563","source":"cve@mitre.org"},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000343","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-041.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.debian.org/security/2000/20001123","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-074.php3","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-114.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1990","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5563","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1163","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:17.530","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ghostscript before 5.10-16 uses an empty LD_RUN_PATH environmental variable to find libraries in the current directory, which could allow local users to execute commands as other users by placing a Trojan horse library into a directory from which another user executes ghostscript."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:aladdin_enterprises:ghostscript:4.3:*:*:*:*:*:*:*","matchCriteriaId":"563638C2-75D6-4EBB-BE65-A2DBCB9B2425"},{"vulnerable":true,"criteria":"cpe:2.3:a:aladdin_enterprises:ghostscript:5.10.10:*:*:*:*:*:*:*","matchCriteriaId":"31868FF9-396E-43F3-87CC-99653D2EEB75"},{"vulnerable":true,"criteria":"cpe:2.3:a:aladdin_enterprises:ghostscript:5.10.15:*:*:*:*:*:*:*","matchCriteriaId":"65386D8C-7D7C-464A-839D-6B4B39F724BA"},{"vulnerable":true,"criteria":"cpe:2.3:a:aladdin_enterprises:ghostscript:5.10cl:*:*:*:*:*:*:*","matchCriteriaId":"5FB97AFC-64CA-4B20-8BB6-DFF70225400D"},{"vulnerable":true,"criteria":"cpe:2.3:a:aladdin_enterprises:ghostscript:5.50:*:*:*:*:*:*:*","matchCriteriaId":"718E9B80-DD01-45E5-B61C-B5BA2036262F"}]}]}],"references":[{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000343","source":"cve@mitre.org"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-041.0.txt","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/2000/20001123","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-074.php3","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1991","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5564","source":"cve@mitre.org"},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000343","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2000-041.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.debian.org/security/2000/20001123","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-074.php3","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1991","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5564","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1164","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:17.647","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WinVNC installs the WinVNC3 registry key with permissions that give Special Access (read and modify) to the Everybody group, which allows users to read and modify sensitive information such as passwords and gain access to the system."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:S/C:C/I:C/A:C","baseScore":9.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"SINGLE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":8.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:att:winvnc:3.3.3:*:*:*:*:*:*:*","matchCriteriaId":"968A0212-EE5D-4D8A-837E-41424ED5964B"},{"vulnerable":true,"criteria":"cpe:2.3:a:att:winvnc:3.3.3r7:*:*:*:*:*:*:*","matchCriteriaId":"2433C9F8-D11B-4263-8541-76C1470B41FA"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0253.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1961","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5545","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0253.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1961","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5545","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1165","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:17.767","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Balabit syslog-ng allows remote attackers to cause a denial of service (application crash) via a malformed log message that does not have a closing > in the priority specifier."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:balabit:syslog-ng:*:*:*:*:*:*:*:*","versionEndIncluding":"1.4.6","matchCriteriaId":"237C9B6B-9F31-46D9-9B2C-F4DBF3E1AA21"},{"vulnerable":true,"criteria":"cpe:2.3:a:balabit:syslog-ng:1.4.7:*:*:*:*:*:*:*","matchCriteriaId":"CDB6CA0D-295B-492F-A519-E3DDBCCB4B2F"},{"vulnerable":true,"criteria":"cpe:2.3:a:balabit:syslog-ng:1.4.8:*:*:*:*:*:*:*","matchCriteriaId":"D5C7636A-9CC1-4D42-876C-6DAE6C4503CB"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:02.syslog-ng.asc","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0300.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.balabit.hu/products/syslog-ng/","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1981","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5576","source":"cve@mitre.org"},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:02.syslog-ng.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0300.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.balabit.hu/products/syslog-ng/","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1981","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5576","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1166","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:17.910","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Twig webmail system does not properly set the \"vhosts\" variable if it is not configured on the site, which allows remote attackers to insert arbitrary PHP (PHP3) code by specifying an alternate vhosts as an argument to the index.php3 program."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:twig_development_team:twig:2.5.1:*:*:*:*:*:*:*","matchCriteriaId":"C69CBC4B-9E86-41CF-AECF-BCE1FD1A58CB"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0351.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://twig.screwdriver.net/file.php3?file=CHANGELOG","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1998","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5581","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0351.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://twig.screwdriver.net/file.php3?file=CHANGELOG","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1998","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5581","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1167","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:18.050","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ppp utility in FreeBSD 4.1.1 and earlier does not properly restrict access as specified by the \"nat deny_incoming\" command, which allows remote attackers to connect to the target system."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.5:*:*:*:*:*:*:*","matchCriteriaId":"47E02BE6-4800-4940-B269-385B66AC5077"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.5.1:*:*:*:*:*:*:*","matchCriteriaId":"7C283AD7-1C58-4CE8-A6CD-502FFE0B18BB"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.0:*:*:*:*:*:*:*","matchCriteriaId":"D0A585A1-FF82-418F-90F8-072458DB7816"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.1:*:*:*:*:*:*:*","matchCriteriaId":"AE31DFF8-06AB-489D-A0C5-509C090283B5"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.1.1:stable:*:*:*:*:*:*","matchCriteriaId":"237174A4-E030-4A0B-AD0B-5C463603EAA4"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:70.ppp-nat.asc","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1655","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1974","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5584","source":"cve@mitre.org"},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:70.ppp-nat.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/1655","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1974","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5584","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1168","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:18.170","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IBM HTTP Server 1.3.6 (based on Apache) allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long GET request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:http_server:1.3.6.3:*:*:*:*:*:*:*","matchCriteriaId":"E0C0BA13-BCB4-43EF-B4DB-B36BF27268FE"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97502498610979&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1988","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=97502498610979&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1988","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1169","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:18.290","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"OpenSSH SSH client before 2.3.0 does not properly disable X11 or agent forwarding, which could allow a malicious SSH server to gain access to the X11 display and sniff X11 events, or gain access to the ssh-agent."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:openbsd:openssh:2.2:*:*:*:*:*:*:*","matchCriteriaId":"78135400-BA1A-42AA-BE17-5588442BCF11"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0195.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0217.html","source":"cve@mitre.org"},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000345","source":"cve@mitre.org"},{"url":"http://lists.suse.com/archives/suse-security-announce/2000-Nov/0004.html","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/2000/20001118","source":"cve@mitre.org"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-068.php3","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/2114","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/6248","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-111.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1949","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5517","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0195.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0217.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000345","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://lists.suse.com/archives/suse-security-announce/2000-Nov/0004.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.debian.org/security/2000/20001118","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-068.php3","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/2114","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/6248","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-111.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1949","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5517","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1170","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:18.430","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Netsnap webcam HTTP server before 1.2.9 allows remote attackers to execute arbitrary commands via a long GET request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:pelesoft:netsnap:1.2:*:*:*:*:*:*:*","matchCriteriaId":"9965EAFF-BD57-4C1E-8933-9867E6EC6A40"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97439536016554&w=2","source":"cve@mitre.org"},{"url":"http://www.netsnap.com/new.htm","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1956","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5534","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97439536016554&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.netsnap.com/new.htm","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1956","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5534","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1171","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:18.540","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in cgiforum.pl script in CGIForum 1.0 allows remote attackers to ready arbitrary files via a .. (dot dot) attack in the \"thesection\" parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:markus_triska:cgiforum:1.0:*:*:*:*:*:*:*","matchCriteriaId":"FD95F968-93AD-471C-B0B9-C1A28996307D"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0263.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1963","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5553","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0263.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1963","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5553","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1172","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:18.653","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Gaim 0.10.3 and earlier using the OSCAR protocol allows remote attackers to conduct a denial of service and possibly execute arbitrary commands via a long HTML tag."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:rob_flynn:gaim:0.10:*:*:*:*:*:*:*","matchCriteriaId":"6D1EE775-471F-4D9F-9635-41CB581168D7"},{"vulnerable":true,"criteria":"cpe:2.3:a:rob_flynn:gaim:0.10.3:*:*:*:*:*:*:*","matchCriteriaId":"5E56639E-2F96-4110-8846-0EA887D2967B"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0204.html","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1948","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0204.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1948","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1173","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:18.767","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsys CyberPatrol uses weak encryption (trivial encoding) for credit card numbers and uses no encryption for the remainder of the information during registration, which could allow attackers to sniff network traffic and obtain this sensitive information."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsys:cyberpatrol:4.04.003:*:*:*:*:*:*:*","matchCriteriaId":"9009A873-47FF-43F8-8B2A-3E72A3E2E260"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsys:cyberpatrol:4.04.005:*:*:*:*:*:*:*","matchCriteriaId":"6CBC6E4F-4CB3-4BB2-9B49-A66962290EB2"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0323.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1977","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0323.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1977","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1174","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:18.900","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Multiple buffer overflows in AFS ACL parser for Ethereal 0.8.13 and earlier allows remote attackers to execute arbitrary commands via a packet with a long username."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ethereal_group:ethereal:*:*:*:*:*:*:*:*","versionEndIncluding":"0.8.13","matchCriteriaId":"0417AE0B-C63A-4D69-B619-9221C3574DEB"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:81.ethereal.asc","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0251.html","source":"cve@mitre.org"},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000342","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/2000/20001122a","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-116.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1972","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5557","source":"cve@mitre.org"},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:81.ethereal.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0251.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000342","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.debian.org/security/2000/20001122a","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-116.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1972","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5557","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1175","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:19.030","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in Koules 1.4 allows local users to execute arbitrary commands via a long command line argument."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:jan_hubicka:koules:1.4:*:*:*:*:*:*:*","matchCriteriaId":"9F3B11C3-9830-4E67-A3E8-956F17A4B800"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/145823","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1967","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/145823","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1967","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1176","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:19.160","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in YaBB search.pl CGI script allows remote attackers to read arbitrary files via a .. (dot dot) attack in the \"catsearch\" form field."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:yabb:yabb:2000-09-11:*:*:*:*:*:*:*","matchCriteriaId":"3135BB83-CC1C-45F4-AB13-A93A17D89290"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0110.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1921","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0110.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1921","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1177","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:19.280","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"bb-hist.sh, bb-histlog.sh, bb-hostsvc.sh, bb-rep.sh, bb-replog.sh, and bb-ack.sh in Big Brother (BB) before 1.5d3 allows remote attackers to determine the existence of files and user ID's by specifying the target file in the HISTFILE parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:bb4:big_brother_network_monitor:*:*:*:*:*:*:*:*","versionEndIncluding":"1.5d2","matchCriteriaId":"1574E39D-9780-4A0E-AA52-768B962F5D95"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0284.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://bb4.com/incident.nov21","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1971","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0284.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://bb4.com/incident.nov21","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1971","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1178","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:19.383","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Joe text editor follows symbolic links when creating a rescue copy called DEADJOE during an abnormal exit, which allows local users to overwrite the files of other users whose joe session crashes."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N","baseScore":5.5,"baseSeverity":"MEDIUM","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"HIGH","availabilityImpact":"NONE"},"exploitabilityScore":1.8,"impactScore":3.6}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-59"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:joseph_allen:joe:2.8:*:*:*:*:*:*:*","matchCriteriaId":"9894A324-ABBD-4FF4-8A51-D73381F40814"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0227.html","source":"cve@mitre.org","tags":["Broken Link","Vendor Advisory"]},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000356","source":"cve@mitre.org","tags":["Broken Link"]},{"url":"http://marc.info/?l=bugtraq&m=97500174210821&w=2","source":"cve@mitre.org","tags":["Mailing List"]},{"url":"http://www.debian.org/security/2000/20001201","source":"cve@mitre.org","tags":["Third Party Advisory"]},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-072.php3","source":"cve@mitre.org","tags":["Broken Link"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-110.html","source":"cve@mitre.org","tags":["Broken Link"]},{"url":"http://www.securityfocus.com/bid/1959","source":"cve@mitre.org","tags":["Broken Link","Exploit","Patch","Third Party Advisory","VDB Entry","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5546","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0227.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Vendor Advisory"]},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000356","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"]},{"url":"http://marc.info/?l=bugtraq&m=97500174210821&w=2","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List"]},{"url":"http://www.debian.org/security/2000/20001201","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"]},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-072.php3","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"]},{"url":"http://www.redhat.com/support/errata/RHSA-2000-110.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"]},{"url":"http://www.securityfocus.com/bid/1959","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Exploit","Patch","Third Party Advisory","VDB Entry","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5546","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]}]}},{"cve":{"id":"CVE-2000-1179","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:19.520","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Netopia ISDN Router 650-ST before 4.3.5 allows remote attackers to read system logs without authentication by directly connecting to the login screen and typing certain control characters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:netopia:650-st_isdn_router:3.3.2_firmware:*:*:*:*:*:*:*","matchCriteriaId":"9233BCCB-6E06-4F64-86CA-182A3A444675"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97440068130051&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1952","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5536","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97440068130051&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1952","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5536","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1180","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:19.630","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in cmctl program in Oracle 8.1.5 Connection Manager Control allows local users to gain privileges via a long command line argument."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:oracle8i:8.1.5:*:*:*:*:*:*:*","matchCriteriaId":"42AF8B37-C5AA-4B92-A565-214A677C3486"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97474521003453&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1968","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5551","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97474521003453&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1968","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5551","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1181","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:19.747","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Real Networks RealServer 7 and earlier allows remote attackers to obtain portions of RealServer's memory contents, possibly including sensitive information, by accessing the /admin/includes/ URL."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:realnetworks:realserver:5.0:*:*:*:*:*:*:*","matchCriteriaId":"BE671A54-2E76-467E-8945-10982B79F4CE"},{"vulnerable":true,"criteria":"cpe:2.3:a:realnetworks:realserver:6.0:*:*:*:*:*:*:*","matchCriteriaId":"AF90DED4-7EFE-4C4A-8766-E7109F76673D"},{"vulnerable":true,"criteria":"cpe:2.3:a:realnetworks:realserver:7.0:*:*:*:*:*:*:*","matchCriteriaId":"9392C48A-A1AB-43F7-8374-02BDCE6589AC"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0236.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://service.real.com/help/faq/security/memory.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/1957","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5538","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0236.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://service.real.com/help/faq/security/memory.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/1957","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5538","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1182","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:19.860","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WatchGuard Firebox II allows remote attackers to cause a denial of service by flooding the Firebox with a large number of FTP or SMTP requests, which disables proxy handling."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:watchguard:firebox_ii:4.1:*:*:*:*:*:*:*","matchCriteriaId":"D40436FD-27BA-4F22-8574-47E2C2FF9E9F"},{"vulnerable":true,"criteria":"cpe:2.3:h:watchguard:firebox_ii:4.5:*:*:*:*:*:*:*","matchCriteriaId":"8335934B-5CFC-4AF5-BD7D-10329694FF08"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0224.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1953","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5535","source":"cve@mitre.org"},{"url":"https://www.watchguard.com/support/patches.html","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0224.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1953","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5535","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://www.watchguard.com/support/patches.html","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1183","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:19.987","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in socks5 server on Linux allows attackers to execute arbitrary commands via a long connection request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:nec:socks_5:1.0r5:*:*:*:*:*:*:*","matchCriteriaId":"85476271-78BE-4958-9A84-9EDC96C16463"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0219.html","source":"cve@mitre.org","tags":["Exploit"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0219.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]}]}},{"cve":{"id":"CVE-2000-1184","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:20.093","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"telnetd in FreeBSD 4.2 and earlier, and possibly other operating systems, allows remote attackers to cause a denial of service by specifying an arbitrary large file in the TERMCAP environmental variable, which consumes resources as the server processes the file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.0:*:*:*:*:*:*:*","matchCriteriaId":"EE38C50A-81FE-412E-9717-3672FAE6A6F4"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.5.1:stable:*:*:*:*:*:*","matchCriteriaId":"29EAA113-2404-4ABB-826B-3AA2AA858D02"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.0:*:*:*:*:*:*:*","matchCriteriaId":"D0A585A1-FF82-418F-90F8-072458DB7816"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.1:*:*:*:*:*:*:*","matchCriteriaId":"AE31DFF8-06AB-489D-A0C5-509C090283B5"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.1.1:*:*:*:*:*:*:*","matchCriteriaId":"3BE1E3D8-2BB1-4FFA-9BC9-7AF347D26190"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:69.telnetd.v1.1.asc","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/6083","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5959","source":"cve@mitre.org"},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:69.telnetd.v1.1.asc","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/6083","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5959","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1185","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:20.210","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The telnet proxy in RideWay PN proxy server allows remote attackers to cause a denial of service via a flood of connections that contain malformed requests."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:itserv_incorporated:ridewaypn:6.22:*:*:*:*:*:*:*","matchCriteriaId":"E30FDDE1-7AD0-4E3F-9616-52C0E7E86858"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0201.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1938","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0201.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/1938","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1186","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:20.317","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in phf CGI program allows remote attackers to execute arbitrary commands by specifying a large number of arguments and including a long MIME header."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:phf:phf:*:*:*:*:*:*:*:*","matchCriteriaId":"C7364BB2-0BEC-451C-B39A-184DE26A00C9"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0221.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5970","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0221.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5970","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1187","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:20.427","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the HTML parser for Netscape 4.75 and earlier allows remote attackers to execute arbitrary commands via a long password value in a form field."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:communicator:*:*:*:*:*:*:*:*","versionEndIncluding":"4.75","matchCriteriaId":"FE8BCED1-674C-4050-9230-D233EFD2FD20"},{"vulnerable":true,"criteria":"cpe:2.3:a:netscape:navigator:*:*:*:*:*:*:*:*","versionEndIncluding":"4.75","matchCriteriaId":"B5B287C2-FD02-4927-BC55-991FEDDD16BD"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:66.netscape.asc","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000344","source":"cve@mitre.org"},{"url":"http://lists.suse.com/archives/suse-security-announce/2000-Nov/0005.html","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97500270012529&w=2","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/7207","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-109.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5542","source":"cve@mitre.org"},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:66.netscape.asc","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000344","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://lists.suse.com/archives/suse-security-announce/2000-Nov/0005.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=97500270012529&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/7207","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-109.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5542","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1188","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:20.543","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in Quikstore shopping cart program allows remote attackers to read arbitrary files via a .. (dot dot) attack in the \"page\" parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:i-soft:quikstore:2.0:*:*:*:*:*:*:*","matchCriteriaId":"377E6491-A9EF-497D-A0B4-14C2A3040848"},{"vulnerable":true,"criteria":"cpe:2.3:a:i-soft:quikstore:2.9.5:*:*:*:*:*:*:*","matchCriteriaId":"E8BE6EC1-575F-4250-ACB4-A36248B1960B"},{"vulnerable":true,"criteria":"cpe:2.3:a:i-soft:quikstore:2.9.10:*:*:*:*:*:*:*","matchCriteriaId":"BAB0C3AB-8616-41DB-BE82-B755D3DC6041"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0283.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-11/0283.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2000-1189","sourceIdentifier":"cve@mitre.org","published":"2001-01-09T05:00:00.000","lastModified":"2026-06-16T21:53:20.653","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in pam_localuser PAM module in Red Hat Linux 7.x and 6.x allows attackers to gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:alpha:*:*:*:*:*","matchCriteriaId":"6931FB54-A163-4CE3-BBD9-D345AA0977A6"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:i386:*:*:*:*:*","matchCriteriaId":"89F65C9D-BD68-4A86-BFDC-E7CE76F13948"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.0:*:sparc:*:*:*:*:*","matchCriteriaId":"5ABD1331-277C-4C31-8186-978243C62255"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:alpha:*:*:*:*:*","matchCriteriaId":"C89454B9-4F45-4A42-A06D-ED42D893C544"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:i386:*:*:*:*:*","matchCriteriaId":"B72D6205-DFA4-41D9-B3B6-0B7DA756CD8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.1:*:sparc:*:*:*:*:*","matchCriteriaId":"1E64093E-7D53-4238-95C3-48ED5A0FFD97"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:alpha:*:*:*:*:*","matchCriteriaId":"344610A8-DB6D-4407-9304-916C419F648C"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:i386:*:*:*:*:*","matchCriteriaId":"B7EC2B95-4715-4EC9-A10A-2542501F8A61"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:6.2:*:sparc:*:*:*:*:*","matchCriteriaId":"64775BEF-2E53-43CA-8639-A7E54F6F4222"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:7.0:*:alpha:*:*:*:*:*","matchCriteriaId":"FD6576E2-9F26-4857-9F28-F51899F1EF48"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:linux:7.0:*:i386:*:*:*:*:*","matchCriteriaId":"4DC9842D-E23B-4B9F-A7BF-57C3BA3DE398"}]}]}],"references":[{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000358","source":"cve@mitre.org"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-082.php3","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-120.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5747","source":"cve@mitre.org"},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000358","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-082.php3","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-120.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5747","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-1464","sourceIdentifier":"cve@mitre.org","published":"2001-01-10T05:00:00.000","lastModified":"2026-06-16T21:56:19.633","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Crystal Reports, when displaying data for a password protected database using HTML pages, embeds the username and password in cleartext in the HTML page and the URL, which allows remote attackers to obtain passwords."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:businessobjects:crystal_reports:*:*:*:*:*:*:*:*","matchCriteriaId":"83BE8A19-C454-4594-B168-39616DE7CCFA"}]}]}],"references":[{"url":"http://www.kb.cert.org/vuls/id/403307","source":"cve@mitre.org","tags":["Exploit","Third Party Advisory","US Government Resource"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7928","source":"cve@mitre.org"},{"url":"http://www.kb.cert.org/vuls/id/403307","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Third Party Advisory","US Government Resource"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/7928","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-1044","sourceIdentifier":"cve@mitre.org","published":"2001-01-11T05:00:00.000","lastModified":"2026-06-16T21:55:28.450","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Basilix Webmail 0.9.7beta, and possibly other versions, stores *.class and *.inc files under the document root and does not restrict access, which could allows remote attackers to obtain sensitive information such as MySQL passwords and usernames from the mysql.class file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:basilix:basilix_webmail:0.9.7_beta:*:*:*:*:*:*:*","matchCriteriaId":"477EE6E0-941F-4667-B879-A523B012CE6E"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/155897","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/2198","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5934","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/155897","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/2198","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5934","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-1385","sourceIdentifier":"cve@mitre.org","published":"2001-01-12T05:00:00.000","lastModified":"2026-06-16T21:56:10.023","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Apache module for PHP 4.0.0 through PHP 4.0.4, when disabled with the 'engine = off' option for a virtual host, may disable PHP for other virtual hosts, which could cause Apache to serve the source code of PHP scripts."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:4.0:*:*:*:*:*:*:*","matchCriteriaId":"EDBEC461-D553-41B7-8D85-20B6A933C21C"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:4.0.1:*:*:*:*:*:*:*","matchCriteriaId":"78BAA18C-E5A0-4210-B64B-709BBFF31EEC"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:4.0.3:*:*:*:*:*:*:*","matchCriteriaId":"57B59616-A309-40B4-94B1-50A7BC00E35C"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:4.0.4:*:*:*:*:*:*:*","matchCriteriaId":"0F39A1B1-416E-4436-8007-733B66904A14"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:7.2:*:*:*:*:*:*:*","matchCriteriaId":"0A8FBD5A-2FD0-43CD-AC4B-1D6984D336FE"}]}]}],"references":[{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000373","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97957961212852","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/2001/dsa-020","source":"cve@mitre.org"},{"url":"http://www.iss.net/security_center/static/5939.php","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.linux-mandrake.com/en/security/2001/MDKSA-2001-013.php3","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-136.html","source":"cve@mitre.org","tags":["Patch"]},{"url":"http://www.securityfocus.com/bid/2205","source":"cve@mitre.org"},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000373","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=97957961212852","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.debian.org/security/2001/dsa-020","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.iss.net/security_center/static/5939.php","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.linux-mandrake.com/en/security/2001/MDKSA-2001-013.php3","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-136.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"http://www.securityfocus.com/bid/2205","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-1416","sourceIdentifier":"cve@mitre.org","published":"2001-01-18T05:00:00.000","lastModified":"2026-06-16T21:56:13.870","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Multiple cross-site scripting (XSS) vulnerabilities in the log messages in certain Alpha versions of AOL Instant Messenger (AIM) 4.4 allow remote attackers to execute arbitrary web script or HTML via an image in the (1) DATA, (2) STYLE, or (3) BINARY tags."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:aol:instant_messenger:4.4a:*:*:*:*:*:*:*","matchCriteriaId":"3E32896E-5207-489A-BEBD-4636E03833A8"}]}]}],"references":[{"url":"http://www.kb.cert.org/vuls/id/541384","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://www.kb.cert.org/vuls/id/JARL-56TPBQ","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://www.windowsitpro.com/Articles/Index.cfm?ArticleID=19811&DisplayTab=Article","source":"cve@mitre.org"},{"url":"http://www.kb.cert.org/vuls/id/541384","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"http://www.kb.cert.org/vuls/id/JARL-56TPBQ","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"http://www.windowsitpro.com/Articles/Index.cfm?ArticleID=19811&DisplayTab=Article","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-1436","sourceIdentifier":"cve@mitre.org","published":"2001-01-18T05:00:00.000","lastModified":"2026-06-16T21:56:16.347","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Dallas Semiconductor iButton DS1991 returns predictable values when given an incorrect password, which makes it easier for users with physical access to conduct dictionary attacks against the device password."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:dallas_semiconductor:ibutton:ds1991:*:*:*:*:*:*:*","matchCriteriaId":"A1EDB796-0619-47EB-ADB0-927D23C18515"}]}]}],"references":[{"url":"http://www.atstake.com/research/advisories/2001/a011801-1.txt","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.kb.cert.org/vuls/id/178560","source":"cve@mitre.org","tags":["Exploit","Third Party Advisory","US Government Resource"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/10625","source":"cve@mitre.org"},{"url":"http://www.atstake.com/research/advisories/2001/a011801-1.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.kb.cert.org/vuls/id/178560","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Third Party Advisory","US Government Resource"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/10625","source":"af854a3a-2127-422b-91ae-364da2661108"}],"evaluatorSolution":"New version DS1963S corrects problem."}},{"cve":{"id":"CVE-2001-1469","sourceIdentifier":"cve@mitre.org","published":"2001-01-18T05:00:00.000","lastModified":"2026-06-16T21:56:20.200","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The RC4 stream cipher as used by SSH1 allows remote attackers to modify messages without detection by XORing the original message's cyclic redundancy check (CRC) with the CRC of a mask consisting of all the bits of the original message that were modified."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.24:*:*:*:*:*:*:*","matchCriteriaId":"B0EDBA45-FDEE-4D4B-A6FF-7E953B523DAE"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.25:*:*:*:*:*:*:*","matchCriteriaId":"7AF5BDEF-E86B-4F4D-AF6D-B27044A96B1E"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.26:*:*:*:*:*:*:*","matchCriteriaId":"7D0FF07F-E13B-425F-9892-C50B326B2944"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.27:*:*:*:*:*:*:*","matchCriteriaId":"338EDA76-05D6-48C0-952E-6244A5F206F3"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.28:*:*:*:*:*:*:*","matchCriteriaId":"F719468E-A218-4EB5-9F8D-7841E84F44C8"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.29:*:*:*:*:*:*:*","matchCriteriaId":"1E4FCD36-0009-4A93-A190-8FDD11C672CA"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.30:*:*:*:*:*:*:*","matchCriteriaId":"71727854-1B75-465F-AF8C-DFE6EFF46B40"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.31:*:*:*:*:*:*:*","matchCriteriaId":"64B76EA2-D3A6-4751-ADE6-998C2A7B44FA"}]}]}],"references":[{"url":"http://www.kb.cert.org/vuls/id/25309","source":"cve@mitre.org","tags":["Exploit","US Government Resource"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6449","source":"cve@mitre.org"},{"url":"http://www.kb.cert.org/vuls/id/25309","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","US Government Resource"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6449","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-1470","sourceIdentifier":"cve@mitre.org","published":"2001-01-18T05:00:00.000","lastModified":"2026-06-16T21:56:20.320","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The IDEA cipher as implemented by SSH1 does not protect the final block of a message against modification, which allows remote attackers to modify the block without detection by changing its cyclic redundancy check (CRC) to match the modifications to the message."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.24:*:*:*:*:*:*:*","matchCriteriaId":"B0EDBA45-FDEE-4D4B-A6FF-7E953B523DAE"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.25:*:*:*:*:*:*:*","matchCriteriaId":"7AF5BDEF-E86B-4F4D-AF6D-B27044A96B1E"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.26:*:*:*:*:*:*:*","matchCriteriaId":"7D0FF07F-E13B-425F-9892-C50B326B2944"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.27:*:*:*:*:*:*:*","matchCriteriaId":"338EDA76-05D6-48C0-952E-6244A5F206F3"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.28:*:*:*:*:*:*:*","matchCriteriaId":"F719468E-A218-4EB5-9F8D-7841E84F44C8"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.29:*:*:*:*:*:*:*","matchCriteriaId":"1E4FCD36-0009-4A93-A190-8FDD11C672CA"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.30:*:*:*:*:*:*:*","matchCriteriaId":"71727854-1B75-465F-AF8C-DFE6EFF46B40"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.31:*:*:*:*:*:*:*","matchCriteriaId":"64B76EA2-D3A6-4751-ADE6-998C2A7B44FA"}]}]}],"references":[{"url":"http://www.kb.cert.org/vuls/id/315308","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6472","source":"cve@mitre.org"},{"url":"http://www.kb.cert.org/vuls/id/315308","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6472","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-1473","sourceIdentifier":"cve@mitre.org","published":"2001-01-18T05:00:00.000","lastModified":"2026-06-16T21:56:20.683","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The SSH-1 protocol allows remote servers to conduct man-in-the-middle attacks and replay a client challenge response to a target server by creating a Session ID that matches the Session ID of the target, but which uses a public key pair that is weaker than the target's public key, which allows the attacker to compute the corresponding private key and use the target's Session ID with the compromised key pair to masquerade as the target."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-310"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.24:*:*:*:*:*:*:*","matchCriteriaId":"B0EDBA45-FDEE-4D4B-A6FF-7E953B523DAE"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.25:*:*:*:*:*:*:*","matchCriteriaId":"7AF5BDEF-E86B-4F4D-AF6D-B27044A96B1E"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.26:*:*:*:*:*:*:*","matchCriteriaId":"7D0FF07F-E13B-425F-9892-C50B326B2944"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.27:*:*:*:*:*:*:*","matchCriteriaId":"338EDA76-05D6-48C0-952E-6244A5F206F3"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.28:*:*:*:*:*:*:*","matchCriteriaId":"F719468E-A218-4EB5-9F8D-7841E84F44C8"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.29:*:*:*:*:*:*:*","matchCriteriaId":"1E4FCD36-0009-4A93-A190-8FDD11C672CA"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.30:*:*:*:*:*:*:*","matchCriteriaId":"71727854-1B75-465F-AF8C-DFE6EFF46B40"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.31:*:*:*:*:*:*:*","matchCriteriaId":"64B76EA2-D3A6-4751-ADE6-998C2A7B44FA"}]}]}],"references":[{"url":"http://www.kb.cert.org/vuls/id/684820","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6603","source":"cve@mitre.org"},{"url":"http://www.kb.cert.org/vuls/id/684820","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6603","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-1474","sourceIdentifier":"cve@mitre.org","published":"2001-01-18T05:00:00.000","lastModified":"2026-06-16T21:56:20.800","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"SSH before 2.0 disables host key checking when connecting to the localhost, which allows remote attackers to silently redirect connections to the localhost by poisoning the client's DNS cache."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.24:*:*:*:*:*:*:*","matchCriteriaId":"B0EDBA45-FDEE-4D4B-A6FF-7E953B523DAE"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.25:*:*:*:*:*:*:*","matchCriteriaId":"7AF5BDEF-E86B-4F4D-AF6D-B27044A96B1E"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.26:*:*:*:*:*:*:*","matchCriteriaId":"7D0FF07F-E13B-425F-9892-C50B326B2944"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.27:*:*:*:*:*:*:*","matchCriteriaId":"338EDA76-05D6-48C0-952E-6244A5F206F3"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.28:*:*:*:*:*:*:*","matchCriteriaId":"F719468E-A218-4EB5-9F8D-7841E84F44C8"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.29:*:*:*:*:*:*:*","matchCriteriaId":"1E4FCD36-0009-4A93-A190-8FDD11C672CA"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.30:*:*:*:*:*:*:*","matchCriteriaId":"71727854-1B75-465F-AF8C-DFE6EFF46B40"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.31:*:*:*:*:*:*:*","matchCriteriaId":"64B76EA2-D3A6-4751-ADE6-998C2A7B44FA"}]}]}],"references":[{"url":"http://www.kb.cert.org/vuls/id/786900","source":"cve@mitre.org","tags":["Third Party Advisory","US Government Resource"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6604","source":"cve@mitre.org"},{"url":"http://www.kb.cert.org/vuls/id/786900","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","US Government Resource"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6604","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-1475","sourceIdentifier":"cve@mitre.org","published":"2001-01-18T05:00:00.000","lastModified":"2026-06-16T21:56:20.910","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"SSH before 2.0, when using RC4 and password authentication, allows remote attackers to replay messages until a new server key (VK) is generated."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.24:*:*:*:*:*:*:*","matchCriteriaId":"B0EDBA45-FDEE-4D4B-A6FF-7E953B523DAE"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.25:*:*:*:*:*:*:*","matchCriteriaId":"7AF5BDEF-E86B-4F4D-AF6D-B27044A96B1E"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.26:*:*:*:*:*:*:*","matchCriteriaId":"7D0FF07F-E13B-425F-9892-C50B326B2944"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.27:*:*:*:*:*:*:*","matchCriteriaId":"338EDA76-05D6-48C0-952E-6244A5F206F3"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.28:*:*:*:*:*:*:*","matchCriteriaId":"F719468E-A218-4EB5-9F8D-7841E84F44C8"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.29:*:*:*:*:*:*:*","matchCriteriaId":"1E4FCD36-0009-4A93-A190-8FDD11C672CA"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.30:*:*:*:*:*:*:*","matchCriteriaId":"71727854-1B75-465F-AF8C-DFE6EFF46B40"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.31:*:*:*:*:*:*:*","matchCriteriaId":"64B76EA2-D3A6-4751-ADE6-998C2A7B44FA"}]}]}],"references":[{"url":"http://www.kb.cert.org/vuls/id/665372","source":"cve@mitre.org","tags":["Patch","US Government Resource"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6490","source":"cve@mitre.org"},{"url":"http://www.kb.cert.org/vuls/id/665372","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","US Government Resource"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6490","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-1476","sourceIdentifier":"cve@mitre.org","published":"2001-01-18T05:00:00.000","lastModified":"2026-06-16T21:56:21.023","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"SSH before 2.0, with RC4 encryption and the \"disallow NULL passwords\" option enabled, makes it easier for remote attackers to guess portions of user passwords by replaying user sessions with certain modifications, which trigger different messages depending on whether the guess is correct or not."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.24:*:*:*:*:*:*:*","matchCriteriaId":"B0EDBA45-FDEE-4D4B-A6FF-7E953B523DAE"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.25:*:*:*:*:*:*:*","matchCriteriaId":"7AF5BDEF-E86B-4F4D-AF6D-B27044A96B1E"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.26:*:*:*:*:*:*:*","matchCriteriaId":"7D0FF07F-E13B-425F-9892-C50B326B2944"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.27:*:*:*:*:*:*:*","matchCriteriaId":"338EDA76-05D6-48C0-952E-6244A5F206F3"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.28:*:*:*:*:*:*:*","matchCriteriaId":"F719468E-A218-4EB5-9F8D-7841E84F44C8"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.29:*:*:*:*:*:*:*","matchCriteriaId":"1E4FCD36-0009-4A93-A190-8FDD11C672CA"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.30:*:*:*:*:*:*:*","matchCriteriaId":"71727854-1B75-465F-AF8C-DFE6EFF46B40"},{"vulnerable":true,"criteria":"cpe:2.3:a:ssh:ssh:1.2.31:*:*:*:*:*:*:*","matchCriteriaId":"64B76EA2-D3A6-4751-ADE6-998C2A7B44FA"}]}]}],"references":[{"url":"http://www.kb.cert.org/vuls/id/565052","source":"cve@mitre.org","tags":["Exploit","Patch","US Government Resource"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6490","source":"cve@mitre.org"},{"url":"http://www.kb.cert.org/vuls/id/565052","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","US Government Resource"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6490","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-1275","sourceIdentifier":"cve@mitre.org","published":"2001-01-19T05:00:00.000","lastModified":"2026-06-16T21:55:56.843","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"MySQL before 3.23.31 allows users with a MySQL account to use the SHOW GRANTS command to obtain the encrypted administrator password from the mysql.user table and possibly gain privileges via password cracking."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:mysql:*:*:*:*:*:*:*:*","versionEndIncluding":"3.23.31","matchCriteriaId":"855E9D1D-FA02-458F-8207-5ACC3C0A68CB"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=98089552030459&w=2","source":"cve@mitre.org"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2001-006.0.txt","source":"cve@mitre.org"},{"url":"http://www.linux-mandrake.com/en/security/2001/MDKSA-2001-014.php3","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2001-003.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=98089552030459&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2001-006.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.linux-mandrake.com/en/security/2001/MDKSA-2001-014.php3","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2001-003.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2001-1274","sourceIdentifier":"cve@mitre.org","published":"2001-01-23T05:00:00.000","lastModified":"2026-06-16T21:55:56.693","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in MySQL before 3.23.31 allows attackers to cause a denial of service and possibly gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:mysql:*:*:*:*:*:*:*:*","versionEndIncluding":"3.23.31","matchCriteriaId":"855E9D1D-FA02-458F-8207-5ACC3C0A68CB"}]}]}],"references":[{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000375","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=98089552030459&w=2","source":"cve@mitre.org"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2001-006.0.txt","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.debian.org/security/2001/dsa-013","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.linux-mandrake.com/en/security/2001/MDKSA-2001-014.php3","source":"cve@mitre.org"},{"url":"http://www.mysql.com/documentation/mysql/bychapter/manual_News.html#News-3.23.3","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2001-003.html","source":"cve@mitre.org"},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000375","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=98089552030459&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.calderasystems.com/support/security/advisories/CSSA-2001-006.0.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.debian.org/security/2001/dsa-013","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.linux-mandrake.com/en/security/2001/MDKSA-2001-014.php3","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.mysql.com/documentation/mysql/bychapter/manual_News.html#News-3.23.3","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2001-003.html","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-1422","sourceIdentifier":"cve@mitre.org","published":"2001-01-23T05:00:00.000","lastModified":"2026-06-16T21:56:14.617","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WinVNC 3.3.3 and earlier generates the same challenge string for multiple connections, which allows remote attackers to bypass VNC authentication by sniffing the challenge and response of other users."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:att:winvnc:*:*:*:*:*:*:*:*","versionEndIncluding":"3.3.3","matchCriteriaId":"EFABAC7C-B650-4B95-A7E3-D058E28B1FDF"}]}]}],"references":[{"url":"http://www.kb.cert.org/vuls/id/303080","source":"cve@mitre.org","tags":["Third Party Advisory","US Government Resource"]},{"url":"http://www.securityfocus.com/bid/2275","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www1.corest.com/common/showdoc.php?idxseccion=10&idx=117","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5992","source":"cve@mitre.org"},{"url":"http://www.kb.cert.org/vuls/id/303080","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","US Government Resource"]},{"url":"http://www.securityfocus.com/bid/2275","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www1.corest.com/common/showdoc.php?idxseccion=10&idx=117","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5992","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-1357","sourceIdentifier":"cve@mitre.org","published":"2001-02-07T05:00:00.000","lastModified":"2026-06-16T21:56:06.673","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Multiple vulnerabilities in phpMyChat before 0.14.5 exist in (1) input.php3, (2) handle_inputH.php3, or (3) index.lib.php3 with unknown consequences, possibly related to user spoofing or improperly initialized variables."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:phpheaven:phpmychat:*:*:*:*:*:*:*:*","versionEndIncluding":"0.14.5","matchCriteriaId":"A272D41D-842A-4F43-91D1-750A17276D07"}]}]}],"references":[{"url":"http://www.phpheaven.net/projects/phpMyChat/changes.php3","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.phpheaven.net/projects/phpMyChat/changes.php3","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2001-1358","sourceIdentifier":"cve@mitre.org","published":"2001-02-07T05:00:00.000","lastModified":"2026-06-16T21:56:06.800","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerabilities in phpMyChat before 0.14.4 allow local and possibly remote attackers to gain privileges by specifying an alternate library file in the L (localization) parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:phpheaven:phpmychat:*:*:*:*:*:*:*:*","versionEndIncluding":"0.14.4","matchCriteriaId":"F9629517-2243-418C-9396-AD4CF4D6A708"}]}]}],"references":[{"url":"http://www.phpheaven.net/projects/phpMyChat/changes.php3","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.phpheaven.net/projects/phpMyChat/changes.php3","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2001-1468","sourceIdentifier":"cve@mitre.org","published":"2001-02-07T05:00:00.000","lastModified":"2026-06-16T21:56:20.080","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"PHP remote file inclusion vulnerability in checklogin.php in phpSecurePages 0.24 and earlier allows remote attackers to execute arbitrary PHP code by modifying the cfgProgDir parameter to reference a URL on a remote web server that contains the code."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:secure_reality:phpsecurepages:0.11_beta:*:*:*:*:*:*:*","matchCriteriaId":"039E1A02-C2D5-44EE-BF21-5534DE5BF965"},{"vulnerable":true,"criteria":"cpe:2.3:a:secure_reality:phpsecurepages:0.12_beta:*:*:*:*:*:*:*","matchCriteriaId":"317871E0-8C5F-4F23-A42E-A7CCC4CC4228"},{"vulnerable":true,"criteria":"cpe:2.3:a:secure_reality:phpsecurepages:0.13_beta:*:*:*:*:*:*:*","matchCriteriaId":"725E97D6-D50A-4301-A9CA-84BEE2E01997"},{"vulnerable":true,"criteria":"cpe:2.3:a:secure_reality:phpsecurepages:0.14_beta:*:*:*:*:*:*:*","matchCriteriaId":"A5514AF7-1F42-43A7-A2C3-21A4B48F316A"},{"vulnerable":true,"criteria":"cpe:2.3:a:secure_reality:phpsecurepages:0.15_beta:*:*:*:*:*:*:*","matchCriteriaId":"227194A8-E005-41A4-A31F-275B401141C6"},{"vulnerable":true,"criteria":"cpe:2.3:a:secure_reality:phpsecurepages:0.16_beta:*:*:*:*:*:*:*","matchCriteriaId":"3CF7AC7E-1DCD-40D1-818E-BBD8701988E7"},{"vulnerable":true,"criteria":"cpe:2.3:a:secure_reality:phpsecurepages:0.17_beta:*:*:*:*:*:*:*","matchCriteriaId":"80661A8D-D2A7-4CE5-A1C0-6B07E9C47751"},{"vulnerable":true,"criteria":"cpe:2.3:a:secure_reality:phpsecurepages:0.18_beta:*:*:*:*:*:*:*","matchCriteriaId":"3DDBE8FF-3A12-4EAE-BC01-F79BE6E1941E"},{"vulnerable":true,"criteria":"cpe:2.3:a:secure_reality:phpsecurepages:0.19_beta:*:*:*:*:*:*:*","matchCriteriaId":"A40AC697-4EC4-4286-A53C-6B9BD1676B26"},{"vulnerable":true,"criteria":"cpe:2.3:a:secure_reality:phpsecurepages:0.20_beta:*:*:*:*:*:*:*","matchCriteriaId":"391C1EB3-4EE8-4FEC-9F72-AADF62EFB6E9"},{"vulnerable":true,"criteria":"cpe:2.3:a:secure_reality:phpsecurepages:0.21_beta:*:*:*:*:*:*:*","matchCriteriaId":"5563861B-AFFE-4729-9AA1-86673C66D0B9"},{"vulnerable":true,"criteria":"cpe:2.3:a:secure_reality:phpsecurepages:0.22_beta:*:*:*:*:*:*:*","matchCriteriaId":"8E7DC8AC-BE3C-4ED0-AB37-3FC58130FCA7"},{"vulnerable":true,"criteria":"cpe:2.3:a:secure_reality:phpsecurepages:0.23_beta:*:*:*:*:*:*:*","matchCriteriaId":"13436D19-DC78-426D-835E-C83476BC7B30"},{"vulnerable":true,"criteria":"cpe:2.3:a:secure_reality:phpsecurepages:0.24_beta:*:*:*:*:*:*:*","matchCriteriaId":"DB5EBCFD-4E69-40EB-AAA8-39BB988E9958"}]}]}],"references":[{"url":"http://securitytracker.com/id?1001408","source":"cve@mitre.org"},{"url":"http://www.kb.cert.org/vuls/id/391347","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://www.securityfocus.com/bid/2970","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6774","source":"cve@mitre.org"},{"url":"http://securitytracker.com/id?1001408","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.kb.cert.org/vuls/id/391347","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"http://www.securityfocus.com/bid/2970","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6774","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-1453","sourceIdentifier":"cve@mitre.org","published":"2001-02-09T05:00:00.000","lastModified":"2026-06-16T21:56:18.317","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in libmysqlclient.so in MySQL 3.23.33 and earlier allows remote attackers to execute arbitrary code via a long host parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:mysql:3.23.32:*:*:*:*:*:*:*","matchCriteriaId":"EA2F4EA8-64A3-4E11-A6A3-5179738157D2"}]}]}],"references":[{"url":"http://dev.mysql.com/doc/mysql/en/news-3-23-33.html","source":"cve@mitre.org"},{"url":"http://www.kb.cert.org/vuls/id/123384","source":"cve@mitre.org","tags":["US Government Resource"]},{"url":"http://www.securityfocus.com/archive/1/161917","source":"cve@mitre.org","tags":["Exploit"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6418","source":"cve@mitre.org"},{"url":"http://dev.mysql.com/doc/mysql/en/news-3-23-33.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.kb.cert.org/vuls/id/123384","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]},{"url":"http://www.securityfocus.com/archive/1/161917","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6418","source":"af854a3a-2127-422b-91ae-364da2661108"}],"evaluatorSolution":"Upgrade to the latest version of MySQL (3.23.33 or later) for fix."}},{"cve":{"id":"CVE-2001-1454","sourceIdentifier":"cve@mitre.org","published":"2001-02-09T05:00:00.000","lastModified":"2026-06-16T21:56:18.440","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in MySQL before 3.23.33 allows remote attackers to execute arbitrary code via a long drop database request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:mysql:*:*:*:*:*:*:*:*","versionEndIncluding":"3.23.32","matchCriteriaId":"FA7460C7-3377-46EE-8194-05DC7B98744E"}]}]}],"references":[{"url":"http://dev.mysql.com/doc/mysql/en/news-3-23-33.html","source":"cve@mitre.org"},{"url":"http://www.kb.cert.org/vuls/id/367320","source":"cve@mitre.org","tags":["Third Party Advisory","US Government Resource"]},{"url":"http://www.securityfocus.com/archive/1/161917","source":"cve@mitre.org","tags":["Exploit"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6419","source":"cve@mitre.org"},{"url":"http://dev.mysql.com/doc/mysql/en/news-3-23-33.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.kb.cert.org/vuls/id/367320","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","US Government Resource"]},{"url":"http://www.securityfocus.com/archive/1/161917","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6419","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0889","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:52:40.987","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Two Sun security certificates have been compromised, which could allow attackers to insert malicious code such as applets and make it appear that it is signed by Sun."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"references":[{"url":"http://sunsolve.Sun.COM/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/198&type=0&nav=sec.sba","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.cert.org/advisories/CA-2000-19.html","source":"cve@mitre.org","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://sunsolve.Sun.COM/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/198&type=0&nav=sec.sba","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.cert.org/advisories/CA-2000-19.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory","US Government Resource"]}]}},{"cve":{"id":"CVE-2000-0894","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:52:41.627","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"HTTP server on the WatchGuard SOHO firewall does not properly restrict access to administrative functions such as password resets or rebooting, which allows attackers to cause a denial of service or conduct unauthorized activities."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:watchguard:soho_firewall:1.6:*:*:*:*:*:*:*","matchCriteriaId":"E378C1F1-5C90-4F3C-8967-0AFA959B5690"},{"vulnerable":true,"criteria":"cpe:2.3:h:watchguard:soho_firewall:2.1.3:*:*:*:*:*:*:*","matchCriteriaId":"EF1982BC-5E49-401B-AB99-A75C7E319DC4"}]}]}],"references":[{"url":"http://www.osvdb.org/4404","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2119","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://xforce.iss.net/alerts/advise70.php","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5554","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/4404","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2119","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://xforce.iss.net/alerts/advise70.php","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5554","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0895","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:52:41.840","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in HTTP server on the WatchGuard SOHO firewall allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long GET request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:watchguard:soho_firewall:1.6:*:*:*:*:*:*:*","matchCriteriaId":"E378C1F1-5C90-4F3C-8967-0AFA959B5690"},{"vulnerable":true,"criteria":"cpe:2.3:h:watchguard:soho_firewall:2.1.3:*:*:*:*:*:*:*","matchCriteriaId":"EF1982BC-5E49-401B-AB99-A75C7E319DC4"}]}]}],"references":[{"url":"http://www.osvdb.org/4403","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2114","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://xforce.iss.net/alerts/advise70.php","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5218","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/4403","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2114","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://xforce.iss.net/alerts/advise70.php","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5218","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-0896","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:52:42.733","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"WatchGuard SOHO firewall allows remote attackers to cause a denial of service via a flood of fragmented IP packets, which causes the firewall to drop connections and stop forwarding packets."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:watchguard:soho_firewall:1.6:*:*:*:*:*:*:*","matchCriteriaId":"E378C1F1-5C90-4F3C-8967-0AFA959B5690"}]}]}],"references":[{"url":"http://www.osvdb.org/1690","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2113","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://xforce.iss.net/alerts/advise70.php","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5749","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1690","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2113","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://xforce.iss.net/alerts/advise70.php","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5749","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2000-1090","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:07.667","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Microsoft IIS for Far East editions 4.0 and 5.0 allows remote attackers to read source code for parsed pages via a malformed URL that uses the lead-byte of a double-byte character."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:far_east:*:*:*","matchCriteriaId":"AD94A633-41F4-4515-88C5-818A1BEDED11"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:5.0:*:*:*:far_east:*:*:*","matchCriteriaId":"C8F1F3C9-EF3A-4723-825F-0A728837D0C5"}]}]}],"references":[{"url":"http://www.nsfocus.com/english/homepage/sa_08.htm","source":"cve@mitre.org","tags":["Broken Link"]},{"url":"http://www.securityfocus.com/bid/2100","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5729","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://www.nsfocus.com/english/homepage/sa_08.htm","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"]},{"url":"http://www.securityfocus.com/bid/2100","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5729","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]}]}},{"cve":{"id":"CVE-2001-0003","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:28.227","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Web Extender Client (WEC) in Microsoft Office 2000, Windows 2000, and Windows Me does not properly process Internet Explorer security settings for NTLM authentication, which allows attackers to obtain NTLM credentials and possibly obtain the password, aka the \"Web Client NTLM Authentication\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:office:2000:*:*:*:*:*:*:*","matchCriteriaId":"A9A82D13-513C-46FA-AF51-0582233E230A"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_me:*:*:*:*:*:*:*:*","matchCriteriaId":"799DA395-C7F8-477C-8BC7-5B4B88FB7503"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:*:*:*:*:*:*:*:*","matchCriteriaId":"ED27882B-A02A-4D5F-9117-A47976C676E0"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/2199","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-001","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5920","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2199","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-001","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5920","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-0004","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:28.340","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IIS 5.0 and 4.0 allows remote attackers to read the source code for executable web server programs by appending \"%3F+.htr\" to the requested URL, which causes the files to be parsed by the .HTR ISAPI extension, aka a variant of the \"File Fragment Reading via .HTR\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_services:5.0:*:*:*:*:*:*:*","matchCriteriaId":"413C07EA-139F-4B7D-A58B-835BD2591FA0"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97897954625305&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2313","source":"cve@mitre.org"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-004","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5903","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97897954625305&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2313","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-004","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5903","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-0005","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:28.460","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the parsing mechanism of the file loader in Microsoft PowerPoint 2000 allows attackers to execute arbitrary commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:C/I:C/A:C","baseScore":6.2,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"MEDIUM","exploitabilityScore":1.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:powerpoint:2000:*:*:*:*:*:*:*","matchCriteriaId":"3E392539-ABF6-4B5C-AEC3-C54B51E0DB70"}]}]}],"references":[{"url":"http://www.atstake.com/research/advisories/2001/a012301-1.txt","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-002","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5996","source":"cve@mitre.org"},{"url":"http://www.atstake.com/research/advisories/2001/a012301-1.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-002","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5996","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-0006","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:28.590","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The Winsock2ProtocolCatalogMutex mutex in Windows NT 4.0 has inappropriate Everyone/Full Control permissions, which allows local users to modify the permissions to \"No Access\" and disable Winsock network connectivity to cause a denial of service, aka the \"Winsock Mutex\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H","baseScore":7.1,"baseSeverity":"HIGH","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":1.8,"impactScore":5.2}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}],"ssvcV203":[{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","ssvcData":{"timestamp":"2024-01-31T15:50:22.565040Z","id":"CVE-2001-0006","options":[{"exploitation":"none"},{"automatable":"no"},{"technicalImpact":"partial"}],"role":"CISA Coordinator","version":"2.0.3"}}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-732"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E53CDA8E-50A8-4509-B070-CCA5604FFB21"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=98075221915234&w=2","source":"cve@mitre.org","tags":["Mailing List"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-003","source":"cve@mitre.org","tags":["Patch","Release Notes","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6006","source":"cve@mitre.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://marc.info/?l=bugtraq&m=98075221915234&w=2","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-003","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Release Notes","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6006","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]}]}},{"cve":{"id":"CVE-2001-0007","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:28.713","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in NetScreen Firewall WebUI allows remote attackers to cause a denial of service via a long URL request to the web administration interface."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:netscreen:screen_os:1.73r:*:*:*:*:*:*:*","matchCriteriaId":"D49AEABB-6F58-476F-B821-C1483431F571"},{"vulnerable":true,"criteria":"cpe:2.3:o:netscreen:screen_os:2.1r6:*:*:*:*:*:*:*","matchCriteriaId":"8619A140-7224-45E5-B3DD-CD4FE17EF6C2"},{"vulnerable":true,"criteria":"cpe:2.3:o:netscreen:screen_os:2.5r1:*:*:*:*:*:*:*","matchCriteriaId":"2426A7E0-1A22-452B-9620-5ADAEC7BEA25"},{"vulnerable":true,"criteria":"cpe:2.3:o:netscreen:screen_os:2.10r3:*:*:*:*:*:*:*","matchCriteriaId":"F125EE39-6EC4-477A-8F77-79DE2C4EB9E6"}]}]}],"references":[{"url":"http://www.osvdb.org/1707","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/155149","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/2176","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5908","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1707","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/155149","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/2176","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5908","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-0008","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:28.833","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Backdoor account in Interbase database server allows remote attackers to overwrite arbitrary files using stored procedures."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:borland_software:interbase:4.0:*:*:*:*:*:*:*","matchCriteriaId":"E61E2866-38F1-45C0-8B5D-A07CA430BDDB"},{"vulnerable":true,"criteria":"cpe:2.3:a:borland_software:interbase:5.0:*:*:*:*:*:*:*","matchCriteriaId":"0D2666FC-B03C-47A5-BA04-A08DC28C7C73"},{"vulnerable":true,"criteria":"cpe:2.3:a:borland_software:interbase:6.0:*:*:*:*:*:*:*","matchCriteriaId":"5FE98699-E21E-4D1C-BD43-F7F62D9AE7BF"},{"vulnerable":true,"criteria":"cpe:2.3:a:firebirdsql:firebird:*:*:*:*:*:*:*:*","versionEndIncluding":"0.9.3","matchCriteriaId":"223711C1-58BB-4755-8848-170CB3FF81E8"}]}]}],"references":[{"url":"http://www.cert.org/advisories/CA-2001-01.html","source":"cve@mitre.org","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.securityfocus.com/bid/2192","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5911","source":"cve@mitre.org"},{"url":"http://www.cert.org/advisories/CA-2001-01.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.securityfocus.com/bid/2192","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5911","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-0009","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:28.943","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in Lotus Domino 5.0.5 web server allows remote attackers to read arbitrary files via a .. attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:lotus:domino_server:5.0.2:*:*:*:*:*:*:*","matchCriteriaId":"2315A7CA-A4B9-4ED7-9AE6-3EDD8E71CDCA"},{"vulnerable":true,"criteria":"cpe:2.3:a:lotus:domino_server:5.0.3:*:*:*:*:*:*:*","matchCriteriaId":"A931FC25-3DB6-4FFA-8BA0-AD42BF1D0081"},{"vulnerable":true,"criteria":"cpe:2.3:a:lotus:domino_server:5.0.5:*:*:*:*:*:*:*","matchCriteriaId":"A1ACF560-9785-4DAB-8116-48AD32B9FAB5"},{"vulnerable":true,"criteria":"cpe:2.3:a:lotus:domino_server:5.0.6:*:*:*:*:*:*:*","matchCriteriaId":"043CC5CD-9D1B-4A79-811D-BC6BD5594CFC"}]}]}],"references":[{"url":"http://www.osvdb.org/1703","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/154537","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/155124","source":"cve@mitre.org","tags":["Patch"]},{"url":"http://www.securityfocus.com/bid/2173","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5899","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1703","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/154537","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/archive/1/155124","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"http://www.securityfocus.com/bid/2173","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5899","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-0010","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:29.060","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in transaction signature (TSIG) handling code in BIND 8 allows remote attackers to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2:*:*:*:*:*:*:*","matchCriteriaId":"52D1DAE0-DB4D-475F-B11B-29AA3A00DB60"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.1:*:*:*:*:*:*:*","matchCriteriaId":"93BB48F5-A635-402E-AE7F-B8AB90ED0C70"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.2:*:*:*:*:*:*:*","matchCriteriaId":"C5FE281A-610F-42CA-B741-53F2D70A3F38"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.2:p1:*:*:*:*:*:*","matchCriteriaId":"BBBF703F-D43B-4C29-8AFB-DDDB51CDEF7B"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.2:p2:*:*:*:*:*:*","matchCriteriaId":"BEED8045-CEA2-4EBE-A864-22D1B6103F53"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.2:p3:*:*:*:*:*:*","matchCriteriaId":"C3B798F1-769E-4DBE-B99D-BFEA5F9B4DB0"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.2:p4:*:*:*:*:*:*","matchCriteriaId":"64C3DB3B-4C8E-4647-A61B-ECED4EB63439"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.2:p5:*:*:*:*:*:*","matchCriteriaId":"30D2ACB3-BE6D-4948-AFC3-16EAD173F595"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.2:p6:*:*:*:*:*:*","matchCriteriaId":"B3255FB4-D84E-487B-B53A-4EA01D6613A3"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.2:p7:*:*:*:*:*:*","matchCriteriaId":"A2D4EDEB-E366-4F40-B896-7AF14540A14C"}]}]}],"references":[{"url":"http://www.cert.org/advisories/CA-2001-02.html","source":"cve@mitre.org","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.debian.org/security/2001/dsa-026","source":"cve@mitre.org"},{"url":"http://www.nai.com/research/covert/advisories/047.asp","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2001-007.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2302","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.cert.org/advisories/CA-2001-02.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.debian.org/security/2001/dsa-026","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.nai.com/research/covert/advisories/047.asp","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2001-007.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2302","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2001-0011","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:29.170","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in nslookupComplain function in BIND 4 allows remote attackers to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:4.9.3:*:*:*:*:*:*:*","matchCriteriaId":"94C41E69-3034-4E30-A99E-A2C3EE9AE337"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:4.9.5:*:*:*:*:*:*:*","matchCriteriaId":"AB7F1274-7E0E-40C8-8006-ACFDBE757D35"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:4.9.5:p1:*:*:*:*:*:*","matchCriteriaId":"F96CB4CD-5044-4A08-A6BE-1201C4141851"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:4.9.6:*:*:*:*:*:*:*","matchCriteriaId":"8257C916-6F4D-4B7E-8EED-B2789B3B35AC"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:4.9.7:*:*:*:*:*:*:*","matchCriteriaId":"B959A2AB-703C-4354-8E23-809D2D13EC06"}]}]}],"references":[{"url":"http://www.cert.org/advisories/CA-2001-02.html","source":"cve@mitre.org","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.nai.com/research/covert/advisories/047.asp","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2001-007.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2307","source":"cve@mitre.org"},{"url":"http://www.cert.org/advisories/CA-2001-02.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.nai.com/research/covert/advisories/047.asp","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2001-007.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2307","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-0012","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:29.280","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"BIND 4 and BIND 8 allow remote attackers to access sensitive information such as environment variables."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:4.9.3:*:*:*:*:*:*:*","matchCriteriaId":"94C41E69-3034-4E30-A99E-A2C3EE9AE337"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:4.9.5:*:*:*:*:*:*:*","matchCriteriaId":"AB7F1274-7E0E-40C8-8006-ACFDBE757D35"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:4.9.5:p1:*:*:*:*:*:*","matchCriteriaId":"F96CB4CD-5044-4A08-A6BE-1201C4141851"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:4.9.6:*:*:*:*:*:*:*","matchCriteriaId":"8257C916-6F4D-4B7E-8EED-B2789B3B35AC"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:4.9.7:*:*:*:*:*:*:*","matchCriteriaId":"B959A2AB-703C-4354-8E23-809D2D13EC06"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2:*:*:*:*:*:*:*","matchCriteriaId":"52D1DAE0-DB4D-475F-B11B-29AA3A00DB60"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.1:*:*:*:*:*:*:*","matchCriteriaId":"93BB48F5-A635-402E-AE7F-B8AB90ED0C70"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.2:*:*:*:*:*:*:*","matchCriteriaId":"C5FE281A-610F-42CA-B741-53F2D70A3F38"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.2:p1:*:*:*:*:*:*","matchCriteriaId":"BBBF703F-D43B-4C29-8AFB-DDDB51CDEF7B"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.2:p2:*:*:*:*:*:*","matchCriteriaId":"BEED8045-CEA2-4EBE-A864-22D1B6103F53"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.2:p3:*:*:*:*:*:*","matchCriteriaId":"C3B798F1-769E-4DBE-B99D-BFEA5F9B4DB0"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.2:p4:*:*:*:*:*:*","matchCriteriaId":"64C3DB3B-4C8E-4647-A61B-ECED4EB63439"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.2:p5:*:*:*:*:*:*","matchCriteriaId":"30D2ACB3-BE6D-4948-AFC3-16EAD173F595"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.2:p6:*:*:*:*:*:*","matchCriteriaId":"B3255FB4-D84E-487B-B53A-4EA01D6613A3"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:8.2.2:p7:*:*:*:*:*:*","matchCriteriaId":"A2D4EDEB-E366-4F40-B896-7AF14540A14C"}]}]}],"references":[{"url":"http://www.cert.org/advisories/CA-2001-02.html","source":"cve@mitre.org","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.debian.org/security/2001/dsa-026","source":"cve@mitre.org"},{"url":"http://www.nai.com/research/covert/advisories/047.asp","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2001-007.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2321","source":"cve@mitre.org"},{"url":"http://www.cert.org/advisories/CA-2001-02.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.debian.org/security/2001/dsa-026","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.nai.com/research/covert/advisories/047.asp","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2001-007.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2321","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-0013","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:29.393","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Format string vulnerability in nslookupComplain function in BIND 4 allows remote attackers to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:4.9.3:*:*:*:*:*:*:*","matchCriteriaId":"94C41E69-3034-4E30-A99E-A2C3EE9AE337"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:4.9.5:*:*:*:*:*:*:*","matchCriteriaId":"AB7F1274-7E0E-40C8-8006-ACFDBE757D35"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:4.9.5:p1:*:*:*:*:*:*","matchCriteriaId":"F96CB4CD-5044-4A08-A6BE-1201C4141851"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:4.9.6:*:*:*:*:*:*:*","matchCriteriaId":"8257C916-6F4D-4B7E-8EED-B2789B3B35AC"},{"vulnerable":true,"criteria":"cpe:2.3:a:isc:bind:4.9.7:*:*:*:*:*:*:*","matchCriteriaId":"B959A2AB-703C-4354-8E23-809D2D13EC06"}]}]}],"references":[{"url":"http://www.cert.org/advisories/CA-2001-02.html","source":"cve@mitre.org","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.nai.com/research/covert/advisories/047.asp","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2001-007.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2309","source":"cve@mitre.org"},{"url":"http://www.cert.org/advisories/CA-2001-02.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.nai.com/research/covert/advisories/047.asp","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2001-007.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2309","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-0014","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:29.520","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Remote Data Protocol (RDP) in Windows 2000 Terminal Service does not properly handle certain malformed packets, which allows remote attackers to cause a denial of service, aka the \"Invalid RDP Data\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/2326","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-006","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2326","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-006","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-0019","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:30.067","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Arrowpoint (aka Cisco Content Services, or CSS) allows local users to cause a denial of service via a long argument to the \"show script,\" \"clear script,\" \"show archive,\" \"clear archive,\" \"show log,\" or \"clear log\" commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:arrowpoint:*:*:*:*:*:*:*:*","matchCriteriaId":"3778D7E6-2BF2-48CB-98FA-6A0081A18628"},{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:content_services_switch:*:*:*:*:*:*:*:*","matchCriteriaId":"F0B6E5B4-B2BF-475E-971B-4F5D2C36847F"}]}]}],"references":[{"url":"http://www.atstake.com/research/advisories/2001/a013101-1.txt","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.cisco.com/warp/public/707/arrowpoint-cli-filesystem-pub.shtml","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.atstake.com/research/advisories/2001/a013101-1.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.cisco.com/warp/public/707/arrowpoint-cli-filesystem-pub.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2001-0020","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:30.173","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in Arrowpoint (aka Cisco Content Services, or CSS) allows local unprivileged users to read arbitrary files via a .. (dot dot) attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:arrowpoint:*:*:*:*:*:*:*:*","matchCriteriaId":"3778D7E6-2BF2-48CB-98FA-6A0081A18628"},{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:content_services_switch:*:*:*:*:*:*:*:*","matchCriteriaId":"F0B6E5B4-B2BF-475E-971B-4F5D2C36847F"}]}]}],"references":[{"url":"http://www.atstake.com/research/advisories/2001/a013101-1.txt","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.cisco.com/warp/public/707/arrowpoint-cli-filesystem-pub.shtml","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"http://www.osvdb.org/1757","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2331","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6031","source":"cve@mitre.org"},{"url":"http://www.atstake.com/research/advisories/2001/a013101-1.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.cisco.com/warp/public/707/arrowpoint-cli-filesystem-pub.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"http://www.osvdb.org/1757","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2331","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6031","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-0022","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:30.413","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"simplestguest.cgi CGI program by Leif Wright allows remote attackers to execute arbitrary commands via shell metacharacters in the guestbook parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:leif_m._wright:simplestguest.cgi:2.0:*:*:*:*:*:*:*","matchCriteriaId":"AC5876FF-1FA9-44CD-8459-77B50621A40D"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0168.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/2106","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5743","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0168.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/2106","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5743","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-0023","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:30.530","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"everythingform.cgi CGI program by Leif Wright allows remote attackers to execute arbitrary commands via shell metacharacters in the config parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:leif_m._wright:everythingform.cgi:2.0:*:*:*:*:*:*:*","matchCriteriaId":"2BC91451-B220-4C16-B6D4-5E3EA7652CFD"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0137.html","source":"cve@mitre.org","tags":["Exploit"]},{"url":"http://www.securityfocus.com/bid/2101","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5736","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0137.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]},{"url":"http://www.securityfocus.com/bid/2101","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5736","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-0024","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:30.653","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"simplestmail.cgi CGI program by Leif Wright allows remote attackers to execute arbitrary commands via shell metacharacters in the MyEmail parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:leif_m._wright:simplestmail.cgi:1.0:*:*:*:*:*:*:*","matchCriteriaId":"1E5B57D3-FDEA-4614-A98D-6122A4D781B2"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0136.html","source":"cve@mitre.org","tags":["Exploit"]},{"url":"http://www.securityfocus.com/bid/2102","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5739","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0136.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]},{"url":"http://www.securityfocus.com/bid/2102","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5739","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-0025","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:30.770","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"ad.cgi CGI program by Leif Wright allows remote attackers to execute arbitrary commands via shell metacharacters in the file parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:leif_m._wright:ad.cgi:1.0:*:*:*:*:*:*:*","matchCriteriaId":"4A6E8C0D-736A-4A39-A2FF-CA62802BD98B"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0143.html","source":"cve@mitre.org","tags":["Exploit"]},{"url":"http://www.securityfocus.com/bid/2103","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5741","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0143.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]},{"url":"http://www.securityfocus.com/bid/2103","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5741","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-0026","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:30.870","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"rp-pppoe PPPoE client allows remote attackers to cause a denial of service via the Clamp MSS option and a TCP packet with a zero-length TCP option."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:roaring_penguin:pppoe:2.0:*:*:*:*:*:*:*","matchCriteriaId":"D4987DF5-2103-4DE5-B9E9-EB5C4F45FC30"},{"vulnerable":true,"criteria":"cpe:2.3:a:roaring_penguin:pppoe:2.1:*:*:*:*:*:*:*","matchCriteriaId":"AB466A5D-5780-404E-A0D8-2067AAC7FB0B"},{"vulnerable":true,"criteria":"cpe:2.3:a:roaring_penguin:pppoe:2.2:*:*:*:*:*:*:*","matchCriteriaId":"23FD6CEB-50A7-4393-AD93-969ED061056A"},{"vulnerable":true,"criteria":"cpe:2.3:a:roaring_penguin:pppoe:2.3:*:*:*:*:*:*:*","matchCriteriaId":"ECC9D679-A382-4974-A108-01B0AA10E30B"},{"vulnerable":true,"criteria":"cpe:2.3:a:roaring_penguin:pppoe:2.4:*:*:*:*:*:*:*","matchCriteriaId":"14063113-5A73-4BC5-8237-8AF568C3B247"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0134.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000357","source":"cve@mitre.org"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-084.php3","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-130.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/2098","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5727","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0134.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000357","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.linux-mandrake.com/en/security/MDKSA-2000-084.php3","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-130.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/2098","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5727","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-0027","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:30.993","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"mod_sqlpw module in ProFTPD does not reset a cached password when a user uses the \"user\" command to change accounts, which allows authenticated attackers to gain privileges of other users."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:proftpd_project:proftpd:*:*:*:*:*:*:*:*","matchCriteriaId":"1820DABA-99C8-4DE4-BAEB-B6243B9BC417"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0139.html","source":"cve@mitre.org","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5737","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0139.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5737","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-0028","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:31.100","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in the HTML parsing code in oops WWW proxy server 1.5.2 and earlier allows remote attackers to execute arbitrary commands via a large number of \" (quotation) characters."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:igor_khasilev:oops_proxy_server:1.4.22:*:*:*:*:*:*:*","matchCriteriaId":"54A3BBF8-DC08-42C7-B6A0-F2605EF3972E"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0127.html","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/freebsd/2000-12/0418.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/2099","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5725","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0127.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/freebsd/2000-12/0418.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/2099","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5725","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-0029","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:31.220","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in oops WWW proxy server 1.4.6 (and possibly other versions) allows remote attackers to execute arbitrary commands via a long host or domain name that is obtained from a reverse DNS lookup."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:igor_khasilev:oops_proxy_server:1.4.22:*:*:*:*:*:*:*","matchCriteriaId":"54A3BBF8-DC08-42C7-B6A0-F2605EF3972E"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0158.html","source":"cve@mitre.org","tags":["Exploit"]},{"url":"http://www.securityfocus.com/bid/2099","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://zipper.paco.net/~igor/oops/ChangeLog","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6122","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0158.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]},{"url":"http://www.securityfocus.com/bid/2099","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://zipper.paco.net/~igor/oops/ChangeLog","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6122","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-0048","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:33.457","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The \"Configure Your Server\" tool in Microsoft 2000 domain controllers installs a blank password for the Directory Service Restore Mode, which allows attackers with physical access to the controller to install malicious programs, aka the \"Directory Service Restore Mode Password\" vulnerability."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*","matchCriteriaId":"4E545C63-FE9C-4CA1-AF0F-D999D84D2AFD"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/2133","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-099","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2133","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-099","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-0053","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:34.030","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"One-byte buffer overflow in replydirname function in BSD-based ftpd allows remote attackers to gain root privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:david_madore:ftpd-bsd:0.2.3:*:*:*:*:*:*:*","matchCriteriaId":"69797605-EFF0-4CFA-8B45-6A93ABE4304A"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4:*:*:*:*:*:*:*","matchCriteriaId":"C422E343-ADF2-427D-865D-B5C35431EFD1"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.1:*:*:*:*:*:*:*","matchCriteriaId":"1C288A88-11C6-429E-A109-0395D0989264"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.4.2:*:*:*:*:*:*:*","matchCriteriaId":"516C6D9A-7483-4E36-A2E0-42698161AD31"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.5:*:*:*:*:*:*:*","matchCriteriaId":"E10D9BF9-FCC7-4680-AD3A-95757FC005EA"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.4:*:*:*:*:*:*:*","matchCriteriaId":"FEBE290B-5EC6-4BBA-B645-294C150E417A"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.5:*:*:*:*:*:*:*","matchCriteriaId":"ACE7FDFB-C6A6-4B58-B0B4-236E4EA76EF6"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.6:*:*:*:*:*:*:*","matchCriteriaId":"0DF053A1-C252-427E-9EEF-27240F422976"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.7:*:*:*:*:*:*:*","matchCriteriaId":"48A9C344-45AA-47B9-B35A-1A62E220D9C6"},{"vulnerable":true,"criteria":"cpe:2.3:o:openbsd:openbsd:2.8:*:*:*:*:*:*:*","matchCriteriaId":"80EB24F0-46A7-481B-83ED-8BB012AE0C8E"}]}]}],"references":[{"url":"ftp://ftp.NetBSD.ORG/pub/NetBSD/misc/security/advisories/NetBSD-SA2000-018.txt.asc","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0275.html","source":"cve@mitre.org","tags":["Patch"]},{"url":"http://www.openbsd.org/advisories/ftpd_replydirname.txt","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/2124","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5776","source":"cve@mitre.org"},{"url":"ftp://ftp.NetBSD.ORG/pub/NetBSD/misc/security/advisories/NetBSD-SA2000-018.txt.asc","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0275.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"http://www.openbsd.org/advisories/ftpd_replydirname.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/2124","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5776","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-0059","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:34.720","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"patchadd in Solaris allows local users to overwrite arbitrary files via a symlink attack."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:H/Au:N/C:C/I:C/A:C","baseScore":6.2,"accessVector":"LOCAL","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"MEDIUM","exploitabilityScore":1.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:*","matchCriteriaId":"08003947-A4F1-44AC-84C6-9F8D097EB759"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=97720205217707&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2127","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5789","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=97720205217707&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2127","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5789","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-0060","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:34.827","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Format string vulnerability in stunnel 3.8 and earlier allows attackers to execute arbitrary commands via a malformed ident username."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:stunnel:stunnel:3.3:*:*:*:*:*:*:*","matchCriteriaId":"2E4A0103-713D-4E56-B32F-EB1649F26EE7"},{"vulnerable":true,"criteria":"cpe:2.3:a:stunnel:stunnel:3.4a:*:*:*:*:*:*:*","matchCriteriaId":"7D009335-E83C-4B35-ADB0-CBD6B82C0EA3"},{"vulnerable":true,"criteria":"cpe:2.3:a:stunnel:stunnel:3.7:*:*:*:*:*:*:*","matchCriteriaId":"185B6AF8-18E7-4E6A-A7B9-60DFB17F33E2"},{"vulnerable":true,"criteria":"cpe:2.3:a:stunnel:stunnel:3.8:*:*:*:*:*:*:*","matchCriteriaId":"400FE849-D547-44DE-B06F-5B68E5B20E07"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0337.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000363","source":"cve@mitre.org"},{"url":"http://www.debian.org/security/2001/dsa-009","source":"cve@mitre.org"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-129.html","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/151719","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/2128","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5807","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0337.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000363","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.debian.org/security/2001/dsa-009","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.redhat.com/support/errata/RHSA-2000-129.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/archive/1/151719","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/2128","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5807","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-0061","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:34.950","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"procfs in FreeBSD and possibly other operating systems does not properly restrict access to per-process mem and ctl files, which allows local users to gain root privileges by forking a child process and executing a privileged process from the child, while the parent retains access to the child's address space."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.5.1:*:*:*:*:*:*:*","matchCriteriaId":"7C283AD7-1C58-4CE8-A6CD-502FFE0B18BB"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.1:*:*:*:*:*:*:*","matchCriteriaId":"AE31DFF8-06AB-489D-A0C5-509C090283B5"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.1.1:*:*:*:*:*:*:*","matchCriteriaId":"3BE1E3D8-2BB1-4FFA-9BC9-7AF347D26190"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.2:*:*:*:*:*:*:*","matchCriteriaId":"DF49BF03-C25E-4737-84D5-892895C86C58"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:77.procfs.v1.1.asc","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1697","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2130","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6106","source":"cve@mitre.org"},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:77.procfs.v1.1.asc","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1697","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2130","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6106","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-0062","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:35.060","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"procfs in FreeBSD and possibly other operating systems allows local users to cause a denial of service by calling mmap on the process' own mem file, which causes the kernel to hang."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:N/A:P","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.5.1:*:*:*:*:*:*:*","matchCriteriaId":"7C283AD7-1C58-4CE8-A6CD-502FFE0B18BB"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.1:*:*:*:*:*:*:*","matchCriteriaId":"AE31DFF8-06AB-489D-A0C5-509C090283B5"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.1.1:*:*:*:*:*:*:*","matchCriteriaId":"3BE1E3D8-2BB1-4FFA-9BC9-7AF347D26190"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.2:*:*:*:*:*:*:*","matchCriteriaId":"DF49BF03-C25E-4737-84D5-892895C86C58"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:77.procfs.v1.1.asc","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1698","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/6082","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2131","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6107","source":"cve@mitre.org"},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:77.procfs.v1.1.asc","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1698","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/6082","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2131","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6107","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-0063","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:35.173","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"procfs in FreeBSD and possibly other operating systems allows local users to bypass access control restrictions for a jail environment and gain additional privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:3.5.1:*:*:*:*:*:*:*","matchCriteriaId":"7C283AD7-1C58-4CE8-A6CD-502FFE0B18BB"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.1:*:*:*:*:*:*:*","matchCriteriaId":"AE31DFF8-06AB-489D-A0C5-509C090283B5"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.1.1:*:*:*:*:*:*:*","matchCriteriaId":"3BE1E3D8-2BB1-4FFA-9BC9-7AF347D26190"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:4.2:*:*:*:*:*:*:*","matchCriteriaId":"DF49BF03-C25E-4737-84D5-892895C86C58"}]}]}],"references":[{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:77.procfs.v1.1.asc","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1691","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/2132","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6108","source":"cve@mitre.org"},{"url":"ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:77.procfs.v1.1.asc","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.osvdb.org/1691","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/2132","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6108","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-0064","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:35.283","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Webconfig, IMAP, and other services in MDaemon 3.5.0 and earlier allows remote attackers to cause a denial of service via a long URL terminated by a \"\\r\\n\" string."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:alt-n:mdaemon:3.5.0:*:*:*:*:*:*:*","matchCriteriaId":"96A1816E-0E48-4879-86A4-22E7FCCAC598"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0315.html","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/2134","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0315.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/2134","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-2001-0065","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:35.400","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in bftpd 1.0.13 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long SITE CHOWN command."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:max-wilhelm_bruker:bftpd:1.0.13:*:*:*:*:*:*:*","matchCriteriaId":"B508E121-2F5C-4E67-9D07-D70680A9DE13"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0189.html","source":"cve@mitre.org","tags":["Exploit"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5775","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0189.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5775","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-0067","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:35.663","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The installation of J-Pilot creates the .jpilot directory with the user's umask, which could allow local attackers to read other users' PalmOS backup information if their umasks are not securely set."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:judd_montgomery:jpilot:*:*:*:*:*:*:*:*","matchCriteriaId":"AA0230FD-597A-4C98-857A-C96FD6B9CCE4"}]}]}],"references":[{"url":"http://www.linux-mandrake.com/en/security/2000/MDKSA-2000-081.php3","source":"cve@mitre.org","tags":["Patch"]},{"url":"http://www.securityfocus.com/templates/archive.pike?mid=150957&end=2001-02-03&fromthread=1&start=2001-01-28&threads=0&list=1&","source":"cve@mitre.org","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5762","source":"cve@mitre.org"},{"url":"http://www.linux-mandrake.com/en/security/2000/MDKSA-2000-081.php3","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"http://www.securityfocus.com/templates/archive.pike?mid=150957&end=2001-02-03&fromthread=1&start=2001-01-28&threads=0&list=1&","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5762","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2001-0068","sourceIdentifier":"cve@mitre.org","published":"2001-02-12T05:00:00.000","lastModified":"2026-06-16T21:53:35.767","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Mac OS Runtime for Java (MRJ) 2.2.3 allows remote attackers to use malicious applets to read files outside of the CODEBASE context via the ARCHIVE applet parameter."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:N/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:apple:mac_os_runtime_for_java:2.2.3:*:java:*:*:*:*:*","matchCriteriaId":"FC779484-CD37-485F-93B5-18890B641572"}]}]}],"references":[{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0241.html","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5784","source":"cve@mitre.org"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2000-12/0241.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5784","source":"af854a3a-2127-422b-91ae-364da2661108"}]}}]}