search menu icon-carat-right cmu-wordmark

CERT Coordination Center

CERT/CC Vulnerability Notes Database


Published Public Updated ID CVSS Title
2000-10-30 2000-07-16 2000-11-29 VU#34043 rpc.statd vulnerable to remote root compromise via format string stack overwrite
2000-10-06 2000-07-20 2002-03-05 VU#38950 MS Outlook "Cache Bypass" allows attackers to circumvent Internet Zone security policy
2000-09-26 2000-07-27 2000-11-29 VU#32650 Denial of Service Attack in NetBIOS Services
2001-05-25 2000-07-27 2002-09-13 VU#25701 Linux gpm daemon allows arbitrary file removal
2001-05-09 2000-08-02 2001-05-10 VU#31607 Microsoft Windows 2000 Service Control Manager creates predictably named pipes
2000-10-31 2000-08-03 2005-08-29 VU#32231 Netscape Java Security Manager fails to prevent URLConnections through netscape.net.URLConnection Class
2000-11-02 2000-08-03 2000-12-13 VU#31554 Adobe Acrobat products have buffer overflow in the CIDFont /Registry and /Ordering entries
2001-11-27 2000-08-10 2002-06-20 VU#635463 Microsoft SQL Server and Microsoft Data Engine (MSDE) ship with a null default password
2000-10-06 2000-08-24 2000-11-29 VU#747124 ADK flaw in recent versions of PGP
2001-05-17 2000-08-31 2001-06-21 VU#686403 ld.so fails to unset LD_PRELOAD before executing suid root programs
2000-12-04 2000-09-25 2003-01-27 VU#382365 LPRng can pass user-supplied input as a format string parameter to syslog() calls
2000-12-14 2000-09-26 2001-01-17 VU#800893 Microsoft Internet Explorer vulnerable to file disclosure via code containing GetObject() function
2000-09-26 2000-09-26 2001-10-25 VU#22404 telnet and rlogin URLs disclose sensitive information, including Environment variables
2001-07-24 2000-09-26 2001-07-31 VU#664141 Debian glibc 2 symlink issue could allow arbitrary file overwriting
2000-11-07 2000-10-03 2001-03-30 VU#369427 Format string vulnerability in libutil pw_error(3) function

Sponsored by CISA.