Monthly Archive: April 2000

CVE-2000-0024

IIS does not properly canonicalize URLs, potentially allowing remote attackers to bypass access restrictions in third-party software via escape characters, aka the "Escape Character Parsing" vulnerability. Date published : 2000-04-25

CVE-2000-0020

DNS PRO allows remote attackers to conduct a denial of service via a large number of connections. Date published : 2000-04-25

CVE-2000-0010

WebWho+ whois.cgi program allows remote attackers to execute commands via shell metacharacters in the TLD parameter. Date published : 2000-04-25