Vulnerabilities (CVE)

Total 397443 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2000-1006 1 Microsoft 1 Exchange Server 2026-06-16 5.0 MEDIUM N/A
Microsoft Exchange Server 5.5 does not properly handle a MIME header with a blank charset specified, which allows remote attackers to cause a denial of service via a charset="" command, aka the "Malformed MIME Header" vulnerability.
CVE-2000-1005 1 Extropia 1 Extropia Webstore 2026-06-16 5.0 MEDIUM N/A
Directory traversal vulnerability in html_web_store.cgi and web_store.cgi CGI programs in eXtropia WebStore allows remote attackers to read arbitrary files via a .. (dot dot) attack on the page parameter.
CVE-2000-1004 1 Openbsd 1 Openbsd 2026-06-16 4.6 MEDIUM N/A
Format string vulnerability in OpenBSD photurisd allows local users to execute arbitrary commands via a configuration file directory name that contains formatting characters.
CVE-2000-1003 1 Microsoft 3 Windows 95, Windows 98, Windows 98se 2026-06-16 2.6 LOW N/A
NETBIOS client in Windows 95 and Windows 98 allows a remote attacker to cause a denial of service by changing a file sharing service to return an unknown driver type, which causes the client to crash.
CVE-2000-1000 1 Aol 1 Instant Messenger 2026-06-16 5.0 MEDIUM N/A
Format string vulnerability in AOL Instant Messenger (AIM) 4.1.2010 allows remote attackers to cause a denial of service and possibly execute arbitrary commands by transferring a file whose name includes format characters.
CVE-2000-0999 1 Openbsd 1 Openssh 2026-06-16 10.0 HIGH N/A
Format string vulnerabilities in OpenBSD ssh program (and possibly other BSD-based operating systems) allow attackers to gain root privileges.
CVE-2000-0962 1 Openbsd 1 Openbsd 2026-06-16 5.0 MEDIUM N/A
The IPSEC implementation in OpenBSD 2.7 does not properly handle empty AH/ESP packets, which allows remote attackers to cause a denial of service.
CVE-2000-0937 1 Samba 1 Samba 2026-06-16 7.5 HIGH N/A
Samba Web Administration Tool (SWAT) in Samba 2.0.7 does not log login attempts in which the username is correct but the password is wrong, which allows remote attackers to conduct brute force password guessing attacks.
CVE-2000-0931 1 David Harris 1 Pegasus Mail 2026-06-16 7.5 HIGH N/A
Buffer overflow in Pegasus Mail 3.11 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long email message containing binary data.
CVE-2000-0926 1 Smartwin Technology 1 Cyberoffice Shopping Cart 2026-06-16 7.5 HIGH N/A
SmartWin CyberOffice Shopping Cart 2 (aka CyberShop) allows remote attackers to modify price information by changing the "Price" hidden form variable.
CVE-2000-0899 1 Max Feoktistov 1 Small Http Server 2026-06-16 5.0 MEDIUM N/A
Small HTTP Server 2.01 allows remote attackers to cause a denial of service by connecting to the server and sending out multiple GET, HEAD, or POST requests and closing the connection before the server responds to the requests.
CVE-2000-0898 1 Max Feoktistov 1 Small Http Server 2026-06-16 5.0 MEDIUM N/A
Small HTTP Server 2.01 does not properly process Server Side Includes (SSI) tags that contain null values, which allows local users, and possibly remote attackers, to cause the server to crash by inserting the SSI into an HTML file.
CVE-2000-0897 1 Max Feoktistov 1 Small Http Server 2026-06-16 5.0 MEDIUM N/A
Small HTTP Server 2.03 and earlier allows remote attackers to cause a denial of service by repeatedly requesting a URL that references a directory that does not contain an index.html file, which consumes memory that is not released after the request is completed.
CVE-2000-0896 1 Watchguard 1 Soho Firewall 2026-06-16 5.0 MEDIUM N/A
WatchGuard SOHO firewall allows remote attackers to cause a denial of service via a flood of fragmented IP packets, which causes the firewall to drop connections and stop forwarding packets.
CVE-2000-0895 1 Watchguard 1 Soho Firewall 2026-06-16 10.0 HIGH N/A
Buffer overflow in HTTP server on the WatchGuard SOHO firewall allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long GET request.
CVE-2000-0894 1 Watchguard 1 Soho Firewall 2026-06-16 10.0 HIGH N/A
HTTP server on the WatchGuard SOHO firewall does not properly restrict access to administrative functions such as password resets or rebooting, which allows attackers to cause a denial of service or conduct unauthorized activities.
CVE-2000-0893 1 Sgi 1 Irix 2026-06-16 5.0 MEDIUM N/A
The presence of the Distributed GL Daemon (dgld) service on port 5232 on SGI IRIX systems allows remote attackers to identify the target host as an SGI system.
CVE-2000-0892 2 Caldera, U Win 2 Openlinux, U Win 2026-06-16 2.6 LOW N/A
Some telnet clients allow remote telnet servers to request environment variables from the client that may contain sensitive information, or remote web servers to obtain the information via a telnet: URL.
CVE-2000-0891 1 Ibm 1 Lotus Notes 2026-06-16 7.5 HIGH N/A
A default ECL in Lotus Notes before 5.02 allows remote attackers to execute arbitrary commands by attaching a malicious program in an email message that is automatically executed when the user opens the email.
CVE-2000-0890 1 Freebsd 1 Freebsd 2026-06-16 1.2 LOW N/A
periodic in FreeBSD 4.1.1 and earlier, and possibly other operating systems, allows local users to overwrite arbitrary files via a symlink attack.