Exploitdb Exploits

3,138 exploits tracked across all sources.

Sort: Activity Stars
CVE-2000-0317 EXPLOITDB c VERIFIED
Solaris 7 - Local Buffer Overflow via lpset -r Option
Buffer overflow in Solaris 7 lpset allows local users to gain root privileges via a long -r option.
by Theodor Ragnar Gislason
CVE-2000-0317 EXPLOITDB c VERIFIED
Solaris 7 - Local Buffer Overflow via lpset -r Option
Buffer overflow in Solaris 7 lpset allows local users to gain root privileges via a long -r option.
by Theodor Ragnar Gislason
CVE-2000-0317 EXPLOITDB c VERIFIED
Solaris 7 - Local Buffer Overflow via lpset -r Option
Buffer overflow in Solaris 7 lpset allows local users to gain root privileges via a long -r option.
by DiGiT
CVE-2000-0527 EXPLOITDB c VERIFIED
MailStudio 2000 2.0 and earlier - Remote Command Execution via userreg.cgi Shell Metacharacters
userreg.cgi CGI program in MailStudio 2000 2.0 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters.
by fygrave
CVE-2000-0295 EXPLOITDB c VERIFIED
LCDproc - Buffer Overflow via screen_add Command
Buffer overflow in LCDproc allows remote attackers to gain root privileges via the screen_add command.
by Andrew Hobgood
EIP-2026-117580 EXPLOITDB c VERIFIED
Microsoft Windows Server 2000/95/98/NT 4.0 - Long Filename Extension
by Laurent Eschenauer
CVE-2000-0286 EXPLOITDB c VERIFIED
Redhat Linux - Denial of Service
X fontserver xfs allows local users to cause a denial of service via malformed input to the server.
by Michal Zalewski
CVE-2000-0250 EXPLOITDB c VERIFIED
QNX - Weak Password Encryption
The crypt function in QNX uses weak encryption, which allows local users to decrypt passwords.
by Sean
CVE-2000-0275 EXPLOITDB c VERIFIED
CRYPTOCard CryptoAdmin for PalmOS - Info Disclosure
CRYPTOCard CryptoAdmin for PalmOS uses weak encryption to store a user's PIN number, which allows an attacker with access to the .PDB file to generate valid PT-1 tokens after cracking the PIN.
by kingpin
CVE-2000-0274 EXPLOITDB c VERIFIED
Linux Trustees Kernel Patch - Denial of Service via Long Filename Access
The Linux trustees kernel patch allows attackers to cause a denial of service by accessing a file or directory with a long name.
by Andrey E. Lerman
CVE-2000-0389 EXPLOITDB c VERIFIED
Cygnus Network Security - Buffer Overflow
Buffer overflow in krb_rd_req function in Kerberos 4 and 5 allows remote attackers to gain root privileges.
by Jim Paris
CVE-2000-0300 EXPLOITDB c VERIFIED
Symantec pcAnywhere 9.x - Weak Encryption
The default encryption method of PcAnywhere 9.x uses weak encryption, which allows remote attackers to sniff and decrypt PcAnywhere or NT domain accounts.
by Pascal Longpre
CVE-2000-1196 EXPLOITDB c VERIFIED
Netscape PublishingXpert <2.5 - Info Disclosure
PSCOErrPage.htm in Netscape PublishingXpert 2.5 before SP2 allows remote attackers to read arbitrary files by specifying the target file in the errPagePath parameter.
by \x00\x00
CVE-2000-0244 EXPLOITDB c VERIFIED
Citrix MetaFrame - Weak Encryption for User Authentication
The Citrix ICA (Independent Computing Architecture) protocol uses weak encryption (XOR) for user authentication.
by Dug Song
CVE-2000-0245 EXPLOITDB c VERIFIED
SGI IRIX - Unauthenticated User Account Creation via Objectserver Daemon
Vulnerability in SGI IRIX objectserver daemon allows remote attackers to create user accounts.
by Last Stage of Delirium
CVE-2000-0227 EXPLOITDB c VERIFIED
Linux Kernel 2.2.x - Denial of Service via Unix Domain Socket Exhaustion
The Linux 2.2.x kernel does not restrict the number of Unix domain sockets as defined by the wmem_max parameter, which allows local users to cause a denial of service by requesting a large number of sockets.
by Jay Fenlason
CVE-2000-0236 EXPLOITDB c VERIFIED
Netscape Enterprise Server - Info Disclosure
Netscape Enterprise Server with Directory Indexing enabled allows remote attackers to list server directories via web publishing tags such as ?wp-ver-info and ?wp-cs-dump.
by Gabriel Maggiotti
CVE-2000-0052 EXPLOITDB c VERIFIED
Red Hat userhelper - Privilege Escalation
Red Hat userhelper program in the usermode package allows local users to gain root access via PAM and a .. (dot dot) attack.
by Elias Levy
CVE-2000-0198 EXPLOITDB c VERIFIED
MERCUR Mail Server Suite - Denial of Service via Buffer Overflow in POP3 and IMAP Servers
Buffer overflow in POP3 and IMAP servers in the MERCUR mail server suite allows remote attackers to cause a denial of service.
by Ussr Labs
CVE-2000-0230 EXPLOITDB c VERIFIED
halloween_linux - Buffer Overflow via HOME Environmental Variable
Buffer overflow in imwheel allows local users to gain root privileges via the imwheel-solo script and a long HOME environmental variable.
by S. Krahmer & Stealth
CVE-2000-0230 EXPLOITDB c VERIFIED
halloween_linux - Buffer Overflow via HOME Environmental Variable
Buffer overflow in imwheel allows local users to gain root privileges via the imwheel-solo script and a long HOME environmental variable.
by funkysh
CVE-2000-0223 EXPLOITDB c VERIFIED
wmcdplay - Buffer Overflow via Long Parameter
Buffer overflow in the wmcdplay CD player program for the WindowMaker desktop allows local users to gain root privileges via a long parameter.
by Krahmer
EIP-2026-103881 EXPLOITDB c VERIFIED
Check Point Software Firewall-1 3.0/1 4.0 / Cisco PIX Firewall 4.x/5.x - 'ALG' Client
by Dug Song
CVE-2000-0183 EXPLOITDB c VERIFIED
ircii 4.4 - Remote Code Execution via DCC Chat Buffer Overflow
Buffer overflow in ircII 4.4 IRC client allows remote attackers to execute commands via the DCC chat capability.
by bladi
CVE-2000-1078 EXPLOITDB c VERIFIED
ICQ Web Front HTTPd - Denial of Service via URL with '?' Character
ICQ Web Front HTTPd allows remote attackers to cause a denial of service by requesting a URL that contains a "?" character.
by Charles Chear