CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2666  CVE-2000-1099  Entry  Java Runtime Environment in Java Development Kit (JDK) 1.2.2_05 and earlier can allow an untrusted Java class to call into a disallowed class, which could allow an attacker to escape the Java sandbox and conduct unauthorized activities.        View
2667  CVE-2000-1100  Candidate  The default configuration for PostACI webmail system installs the /includes/global.inc configuration file within the web root, which allows remote attackers to read sensitive information such as database usernames and passwords via a direct HTTP GET request.  Proposed (20001219)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(2) Cole, Wall  Frech> XF:postaci-webmail-reveal-passwords(5612)  View
2668  CVE-2000-1101  Entry  Directory traversal vulnerability in Winsock FTPd (WFTPD) 3.00 and 2.41 with the "Restrict to home directory" option enabled allows local users to escape the home directory via a "/../" string, a variation of the .. (dot dot) attack.        View
2669  CVE-2000-1102  Candidate  PTlink IRCD 3.5.3 and PTlink Services 1.8.1 allow remote attackers to cause a denial of service (server crash) via "mode +owgscfxeb" and "oper" commands.  Proposed (20001219)  ACCEPT(2) Baker, Cole | MODIFY(1) Frech | NOOP(1) Wall  Frech> XF:ptlink-ircd-mode-dos(5589)  View
2670  CVE-2000-1103  Candidate  rcvtty in BSD 3.0 and 4.0 does not properly drop privileges before executing a script, which allows local attackers to gain privileges by specifying an alternate Trojan horse script on the command line.  Proposed (20001219)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(2) Cole, Wall  Frech> XF:rcvtty-elevate-privileges(5587)  View

Page 534 of 20943, showing 5 records out of 104715 total, starting on record 2666, ending on 2670

Actions