CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2868  CVE-2001-0047  Candidate  The default permissions for the MTS Package Administration registry key in Windows NT 4.0 allows local users to install or modify arbitrary Microsoft Transaction Server (MTS) packages and gain privileges, aka one of the "Registry Permissions" vulnerabilities.  Modified (20061101)  ACCEPT(4) Baker, Cole, Frech, Wall | NOOP(1) Ziese    View
6925  CVE-2003-0096  Candidate  Multiple buffer overflows in Oracle 9i Database release 2, Release 1, 8i, 8.1.7, and 8.0.6 allow remote attackers to execute arbitrary code via (1) a long conversion string argument to the TO_TIMESTAMP_TZ function, (2) a long time zone argument to the TZ_OFFSET function, or (3) a long DIRECTORY parameter to the BFILENAME function.  Modified (20071016)  ACCEPT(4) Baker, Cole, Frech, Wall | NOOP(2) Christey, Cox  Christey> Modify the description to omit 8.0.6, as the Oracle advisory | does not list it. (However, NGSSoftware does, perhaps as the | result of a typo or cut-and-paste error in their advisory). | | CIAC:N-046 | URL:http://www.ciac.org/ciac/bulletins/n-046.shtml | BID:6850 | URL:http://www.securityfocus.com/bid/6850 | BID:6847 | URL:http://www.securityfocus.com/bid/6847 | BID:6848 | URL:http://www.securityfocus.com/bid/6848 | MISC:http://www.nextgenss.com/advisories/ora-bfilebo.txt | MISC:http://www.nextgenss.com/advisories/ora-tzofstbo.txt | MISC:http://www.nextgenss.com/advisories/ora-tmstmpbo.txt  View
3190  CVE-2001-0372  Candidate  Akopia Interchange 4.5.3 through 4.6.3 installs demo stores with a default group account :backup with no password, which allows a remote attacker to gain administrative access via the demo stores (1) barry, (2) basic, or (3) construct.  Modified (20010910-01)  ACCEPT(4) Baker, Cole, Frech, Ziese | NOOP(2) Oliver, Wall    View
3192  CVE-2001-0374  Candidate  The HTTP server in Compaq web-enabled management software for (1) Foundation Agents, (2) Survey, (3) Power Manager, (4) Availability Agents, (5) Intelligent Cluster Administrator, and (6) Insight Manager can be used as a generic proxy server, which allows remote attackers to bypass access restrictions via the management port, 2301.  Proposed (20010524)  ACCEPT(4) Baker, Cole, Frech, Ziese | NOOP(2) Oliver, Wall    View
5939  CVE-2002-1555  Candidate  Cisco ONS15454 and ONS15327 running ONS before 3.4 uses a "public" SNMP community string that cannot be changed, which allows remote attackers to obtain sensitive information.  Proposed (20030317)  ACCEPT(4) Baker, Cole, Green, Jones | NOOP(1) Cox    View

Page 1024 of 20943, showing 5 records out of 104715 total, starting on record 5116, ending on 5120

Actions