CVE-2000-0419

The Office 2000 UA ActiveX Control is marked as “safe for scripting,” which allows remote attackers to conduct unauthorized activities via the “Show Me” function in Office Help, aka the “Office 2000 UA Control” vulnerability.

CVE-2000-0416

NTMail 5.x allows network users to bypass the NTMail proxy restrictions by redirecting their requests to NTMail’s web configuration server.

CVE-2000-0408

IIS 4.05 and 5.0 allow remote attackers to cause a denial of service via a long, complex URL that appears to contain a large number of file extensions, aka the “Malformed Extension Data in URL” vulnerability.

CVE-2000-0411

Matt Wright’s FormMail CGI script allows remote attackers to obtain environmental variables via the env_report parameter.

CVE-2000-0410

ColdFusion Server 4.5.1 allows remote attackers to cause a denial of service by making repeated requests to a CFCACHE tagged cache file that is not stored in memory.