Skip to main content

Severity archive

Critical severity CVEs

Critical

43,849 critical severity CVEs — 43,849 Critical, 126,422 High, 163,803 Medium, 18,046 Low, 1,857 Unrated across the current result set.

CVE-2000-0514

Published Jun 14, 2000

GSSFTP FTP daemon in Kerberos 5 1.1.x does not properly restrict access to some FTP commands, which allows remote attackers to cause a denial of service, and local users to gain r…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0506

Published Jun 9, 2000

The "capabilities" feature in Linux before 2.2.16 allows local users to cause a denial of service or gain privileges by setting the capabilities to prevent a setuid program from d…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0527

Published Jun 9, 2000

userreg.cgi CGI program in MailStudio 2000 2.0 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0525

Published Jun 8, 2000

OpenSSH does not properly drop privileges when the UseLogin option is enabled, which allows local users to execute arbitrary commands by providing the command to the ssh daemon.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0376

Published Jun 7, 2000

Buffer overflow in the HTTP proxy server for the i-drive Filo software allows remote attackers to execute arbitrary commands via a long HTTP GET request.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0515

Published Jun 7, 2000

The snmpd.conf configuration file for the SNMP daemon (snmpd) in HP-UX 11.0 is world writable, which allows local users to modify SNMP configuration or gain privileges.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0523

Published Jun 6, 2000

Buffer overflow in the logging feature of EServ 2.9.2 and earlier allows an attacker to execute arbitrary commands via a long MKD command.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0558

Published Jun 6, 2000

Buffer overflow in HP Openview Network Node Manager 6.1 allows remote attackers to execute arbitrary commands via the Alarm service (OVALARMSRV) on port 2345.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0557

Published Jun 5, 2000

Buffer overflow in the web interface for Cmail 2.4.7 allows remote attackers to execute arbitrary commands via a long GET request.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0490

Published Jun 1, 2000

Buffer overflow in the NetWin DSMTP 2.7q in the NetWin dmail package allows remote attackers to execute arbitrary commands via a long ETRN request.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0493

Published Jun 1, 2000

Buffer overflow in Simple Network Time Sync (SMTS) daemon allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long string.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0509

Published Jun 1, 2000

Buffer overflows in the finger and whois demonstration scripts in Sambar Server 4.3 allow remote attackers to execute arbitrary commands via a long hostname.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0488

Published May 30, 2000

Buffer overflow in ITHouse mail server 1.04 allows remote attackers to execute arbitrary commands via a long RCPT TO mail command.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0398

Published May 24, 2000

Buffer overflow in wconsole.dll in Rockliffe MailSite Management Agent allows remote attackers to execute arbitrary commands via a long query_string parameter in the HTTP GET requ…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0491

Published May 24, 2000

Buffer overflow in the XDMCP parsing code of GNOME gdm, KDE kdm, and wdm allows remote attackers to execute arbitrary commands or cause a denial of service via a long FORWARD_QUER…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0551

Published May 23, 2000

The file transfer mechanism in Danware NetOp 6.0 does not provide authentication, which allows remote attackers to access and modify arbitrary files.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0405

Published May 16, 2000

Buffer overflow in L0pht AntiSniff allows remote attackers to execute arbitrary commands via a malformed DNS response packet.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0384

Published May 8, 2000

NetStructure 7110 and 7180 have undocumented accounts (servnow, root, and wizard) whose passwords are easily guessable from the NetStructure's MAC address, which could allow remot…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0428

Published May 4, 2000

Buffer overflow in the SMTP gateway for InterScan Virus Wall 3.32 and earlier allows a remote attacker to execute arbitrary commands via a long filename for a uuencoded attachment.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort
Showing 43,626-43,650 of 43,849 CVEsPage 1746 of 1754