VRT 391,192 CVEs tracked · 15,442 in RASP scope · data as of 16 hours ago
Reset
More filters (2)
Columns
Published from 2000-01-01Published to 2000-12-31
Overview 5 matches, all in RASP scope · 0 protected · 0 KEV · 3 public PoC · 0 CISA SSVC · 1 EPSS ≥ 0.5 · 0 disputed
5matches, all in RASP scope 0protected0.0% 0KEV0.0% 3public PoC60.0% 0CISA SSVC0.0% 1EPSS ≥ 0.520.0% 0disputed0.0%
Critical 0 0.0% High 1 20.0% Medium 4 80.0% Low 0 0.0% None 0 0.0% Unknown 0 0.0%
Protected by RASP 0 0.0% Rule in development 0 0.0% Mitigation candidate 3 60.0% No exploit published 0 0.0% No fix identified 2 40.0% Mitigated by environment configuration 0 0.0% Queued for review 0 0.0% Not applicable 0 0.0% Out of RASP scope 0 0.0% Rejected 0 0.0%
blocked by ARMR today 0 0.0% not blocked 5 100.0% not established 0 0.0% unrecorded 0 0.0%
Exploited in the wild 0 0.0% Working exploit published 3 60.0% Proof of concept only 0 0.0% Forecast only 0 0.0% No public exploit 2 40.0%
split by peak 2 / month
Unknown: 0None: 0Low: 0Medium: 4High: 1Critical: 0 Rejected: 0Out of RASP scope: 0Not applicable: 0Queued for review: 0Mitigated by environment configuration: 0No fix identified: 2No exploit published: 0Mitigation candidate: 3Rule in development: 0Protected by RASP: 0 unrecorded: 0not established: 0not blocked: 5blocked by ARMR today: 0 No public exploit: 2Forecast only: 0Proof of concept only: 0Working exploit published: 3Exploited in the wild: 0 June 2000: 1 CVE July 2000: 2 CVEs August 2000: 0 CVEs September 2000: 0 CVEs October 2000: 2 CVEs
Jun 00Jul 00Aug 00Sep 00Oct 00
5 matches CSV JSON
CVE Severity Published Status Exploitation Description
CVE-2000-0760 Medium 2000-10-20 Mitigation candidate Working exploit published The Snoop servlet in Jakarta Tomcat 3.1 and 3.0 under Apache reveals sensitive system information when a remote attacker requests a nonexistent URL with a .snp extension.
CVE-2000-0759 Medium 2000-10-20 Mitigation candidate Working exploit published Jakarta Tomcat 3.1 under Apache reveals physical path information when a remote attacker requests a URL that does not exist, which generates an error message that includes the physical path.
CVE-2000-0652 Medium 2000-07-24 Mitigation candidate Working exploit published IBM WebSphere allows remote attackers to read source code for executable web files by directly calling the default InvokerServlet using a URL which contains the "/servlet/file" string.
CVE-2000-0672 Medium 2000-07-20 No fix identified No public exploit The default configuration of Jakarta Tomcat does not restrict access to the /admin context, which allows remote attackers to read arbitrary files by directly calling the administrative servlets to add a context for the root directory.
CVE-2000-0497 High 2000-06-08 No fix identified No public exploit IBM WebSphere server 3.0.2 allows a remote attacker to view source code of a JSP program by requesting a URL which provides the JSP extension in upper case.