search menu icon-carat-right cmu-wordmark

CERT Coordination Center

CERT/CC Vulnerability Notes Database


Published Public Updated ID CVSS Title
2001-05-17 2000-08-31 2001-06-21 VU#686403 ld.so fails to unset LD_PRELOAD before executing suid root programs
2000-10-06 2000-08-24 2000-11-29 VU#747124 ADK flaw in recent versions of PGP
2001-11-27 2000-08-10 2002-06-20 VU#635463 Microsoft SQL Server and Microsoft Data Engine (MSDE) ship with a null default password
2000-10-31 2000-08-03 2005-08-29 VU#32231 Netscape Java Security Manager fails to prevent URLConnections through netscape.net.URLConnection Class
2000-11-02 2000-08-03 2000-12-13 VU#31554 Adobe Acrobat products have buffer overflow in the CIDFont /Registry and /Ordering entries
2001-05-09 2000-08-02 2001-05-10 VU#31607 Microsoft Windows 2000 Service Control Manager creates predictably named pipes
2000-09-26 2000-07-27 2000-11-29 VU#32650 Denial of Service Attack in NetBIOS Services
2001-05-25 2000-07-27 2002-09-13 VU#25701 Linux gpm daemon allows arbitrary file removal
2000-10-06 2000-07-20 2002-03-05 VU#38950 MS Outlook "Cache Bypass" allows attackers to circumvent Internet Zone security policy
2000-10-30 2000-07-16 2000-11-29 VU#34043 rpc.statd vulnerable to remote root compromise via format string stack overwrite
2001-06-15 2000-07-14 2001-08-07 VU#28565 Microsoft Internet Information Server (IIS) discloses contents of files via crafted request containing "+.htr"
2003-08-21 2000-07-11 2003-08-21 VU#26825 Cisco Secure PIX Firewall TCP Reset Vulnerability
2001-10-26 2000-07-10 2002-08-10 VU#131923 OpenSSL PRNG contains design flaw that allows a user to determine internal state and predict future output
2001-06-18 2000-07-03 2001-06-18 VU#35842 man 'makewhatis' insecurely uses /tmp
2000-10-25 2000-06-27 2000-11-29 VU#27857 IE 5.01 will execute VBA code contained in Access databases when triggered from HTML code contained in an IFRAME

Sponsored by CISA.