Filtered by vendor Ibm Subscriptions
Total 7471 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2000-1117 1 Ibm 1 Lotus Notes 2024-11-20 N/A
The Extended Control List (ECL) feature of the Java Virtual Machine (JVM) in Lotus Notes Client R5 allows malicious web site operators to determine the existence of files on the client by measuring delays in the execution of the getSystemResource method.
CVE-2000-1110 1 Ibm 1 Net.data 2024-11-20 N/A
document.d2w CGI program in the IBM Net.Data db2www package allows remote attackers to determine the physical path of the web server by sending a nonexistent command to the program.
CVE-2000-1038 1 Ibm 1 As400 Firewall 2024-11-20 N/A
The web administration interface for IBM AS/400 Firewall allows remote attackers to cause a denial of service via an empty GET request.
CVE-2000-0891 1 Ibm 1 Lotus Notes 2024-11-20 N/A
A default ECL in Lotus Notes before 5.02 allows remote attackers to execute arbitrary commands by attaching a malicious program in an email message that is automatically executed when the user opens the email.
CVE-2000-0873 1 Ibm 1 Aix 2024-11-20 N/A
netstat in AIX 4.x.x does not properly restrict access to the -Zi option, which allows local users to clear network interface statistics and possibly hide evidence of unusual network activities.
CVE-2000-0848 1 Ibm 1 Websphere Application Server 2024-11-20 N/A
Buffer overflow in IBM WebSphere web application server (WAS) allows remote attackers to execute arbitrary commands via a long Host: request header.
CVE-2000-0844 13 Caldera, Conectiva, Debian and 10 more 16 Openlinux, Openlinux Ebuilder, Openlinux Eserver and 13 more 2024-11-20 N/A
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen.
CVE-2000-0761 1 Ibm 1 Os2 Ftp Server 2024-11-20 N/A
OS2/Warp 4.5 FTP server allows remote attackers to cause a denial of service via a long username.
CVE-2000-0677 1 Ibm 1 Net.data 2024-11-20 N/A
Buffer overflow in IBM Net.Data db2www CGI program allows remote attackers to execute arbitrary commands via a long PATH_INFO environmental variable.
CVE-2000-0652 1 Ibm 1 Websphere Application Server 2024-11-20 N/A
IBM WebSphere allows remote attackers to read source code for executable web files by directly calling the default InvokerServlet using a URL which contains the "/servlet/file" string.
CVE-2000-0505 2 Apache, Ibm 2 Http Server, Http Server 2024-11-20 N/A
The Apache 1.3.x HTTP server for Windows platforms allows remote attackers to list directory contents by requesting a URL containing a large number of / characters.
CVE-2000-0497 1 Ibm 1 Websphere Application Server 2024-11-20 7.5 High
IBM WebSphere server 3.0.2 allows a remote attacker to view source code of a JSP program by requesting a URL which provides the JSP extension in upper case.
CVE-2000-0466 1 Ibm 1 Aix 2024-11-20 N/A
AIX cdmount allows local users to gain root privileges via shell metacharacters.
CVE-2000-0441 1 Ibm 1 Aix 2024-11-20 N/A
Vulnerability in AIX 3.2.x and 4.x allows local users to gain write access to files on locally or remotely mounted AIX filesystems.
CVE-2000-0249 1 Ibm 1 Aix 2024-11-20 N/A
The AIX Fast Response Cache Accelerator (FRCA) allows local users to modify arbitrary files via the configuration capability in the frcactrl program.
CVE-2000-0080 1 Ibm 1 Aix 2024-11-20 N/A
AIX techlibss allows local users to overwrite files via a symlink attack.
CVE-2000-0027 1 Ibm 1 Network Station Manager 2024-11-20 N/A
IBM Network Station Manager NetStation allows local users to gain privileges via a symlink attack.
CVE-1999-1589 1 Ibm 1 Aix 2024-11-20 N/A
Unspecified vulnerability in crontab in IBM AIX 3.2 allows local users to gain root privileges via unknown attack vectors.
CVE-1999-1583 1 Ibm 1 Aix 2024-11-20 N/A
Buffer overflow in nslookup for AIX 4.3 allows local users to execute arbitrary code via a long hostname command line argument.
CVE-1999-1574 1 Ibm 1 Aix 2024-11-20 N/A
Buffer overflow in the lex routines of nslookup for AIX 4.3 may allow attackers to cause a core dump and possibly execute arbitrary code via "long input strings."