CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2466  CVE-2000-0897  Entry  Small HTTP Server 2.03 and earlier allows remote attackers to cause a denial of service by repeatedly requesting a URL that references a directory that does not contain an index.html file, which consumes memory that is not released after the request is completed.        View
2467  CVE-2000-0898  Candidate  Small HTTP Server 2.01 does not properly process Server Side Includes (SSI) tags that contain null values, which allows local users, and possibly remote attackers, to cause the server to crash by inserting the SSI into an HTML file.  Proposed (20001219)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(4) Armstrong, Balinsky, Cole, Wall  Frech> XF:small-http-ssi-dos(5960) | Balinsky> Found no data on vendor web site to support this. | http://home.lanck.net/mf/srv/index.htm  View
2468  CVE-2000-0899  Candidate  Small HTTP Server 2.01 allows remote attackers to cause a denial of service by connecting to the server and sending out multiple GET, HEAD, or POST requests and closing the connection before the server responds to the requests.  Proposed (20001219)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(4) Armstrong, Balinsky, Cole, Wall  Frech> XF:small-http-request-dos(5523) | Balinsky> Found no data on vendor web site to support this. | http://home.lanck.net/mf/srv/index.htm  View
2469  CVE-2000-0900  Entry  Directory traversal vulnerability in ssi CGI program in thttpd 2.19 and earlier allows remote attackers to read arbitrary files via a "%2e%2e" string, a variation of the .. (dot dot) attack.        View
2470  CVE-2000-0901  Entry  Format string vulnerability in screen 3.9.5 and earlier allows local users to gain root privileges via format characters in the vbell_msg initialization variable.        View

Page 494 of 20943, showing 5 records out of 104715 total, starting on record 2466, ending on 2470

Actions