search menu icon-carat-right cmu-wordmark

CERT Coordination Center

CERT/CC Vulnerability Notes Database


Published Public Updated ID CVSS Title
2001-07-24 2000-09-26 2001-07-31 VU#664141 Debian glibc 2 symlink issue could allow arbitrary file overwriting
2000-09-26 2000-09-26 2001-10-25 VU#22404 telnet and rlogin URLs disclose sensitive information, including Environment variables
2000-12-04 2000-09-25 2003-01-27 VU#382365 LPRng can pass user-supplied input as a format string parameter to syslog() calls
2001-05-17 2000-08-31 2001-06-21 VU#686403 ld.so fails to unset LD_PRELOAD before executing suid root programs
2000-10-06 2000-08-24 2000-11-29 VU#747124 ADK flaw in recent versions of PGP
2001-11-27 2000-08-10 2002-06-20 VU#635463 Microsoft SQL Server and Microsoft Data Engine (MSDE) ship with a null default password
2000-10-31 2000-08-03 2005-08-29 VU#32231 Netscape Java Security Manager fails to prevent URLConnections through netscape.net.URLConnection Class
2000-11-02 2000-08-03 2000-12-13 VU#31554 Adobe Acrobat products have buffer overflow in the CIDFont /Registry and /Ordering entries
2001-05-09 2000-08-02 2001-05-10 VU#31607 Microsoft Windows 2000 Service Control Manager creates predictably named pipes
2000-09-26 2000-07-27 2000-11-29 VU#32650 Denial of Service Attack in NetBIOS Services
2001-05-25 2000-07-27 2002-09-13 VU#25701 Linux gpm daemon allows arbitrary file removal
2000-10-06 2000-07-20 2002-03-05 VU#38950 MS Outlook "Cache Bypass" allows attackers to circumvent Internet Zone security policy
2000-10-30 2000-07-16 2000-11-29 VU#34043 rpc.statd vulnerable to remote root compromise via format string stack overwrite
2001-06-15 2000-07-14 2001-08-07 VU#28565 Microsoft Internet Information Server (IIS) discloses contents of files via crafted request containing "+.htr"
2003-08-21 2000-07-11 2003-08-21 VU#26825 Cisco Secure PIX Firewall TCP Reset Vulnerability

Sponsored by CISA.