CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3739  CVE-2001-0933  Candidate  Cooolsoft PowerFTP Server 2.03 allows remote attackers to list the contents of arbitrary drives via a ls (LIST) command that includes the drive letter as an argument, e.g. "ls C:".  Proposed (20020131)  ACCEPT(1) Foat | MODIFY(1) Frech | NOOP(3) Armstrong, Cole, Wall  Frech> XF:powerftp-dot-directory-traversal(7615)  View
3112  CVE-2001-0291  Candidate  Buffer overflow in post-query sample CGI program allows remote attackers to execute arbitrary commands via an HTTP POST request that contains at least 10001 parameters.  Proposed (20010404)  MODIFY(1) Frech | NOOP(3) Cole, Wall, Ziese | REVIEWING(1) Bishop  Frech> XF:postquery-http-post-bo(6510)  View
2720  CVE-2000-1153  Candidate  PostMaster 1.0 in BeOS r5 pro and earlier allows remote attackers to conduct a denial of service via a message that contains a long URL.  Proposed (20001219)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(3) Armstrong, Cole, Wall  Frech> XF:postmaster-long-url-bo(5522)  View
842  CVE-1999-0862  Candidate  Insecure directory permissions in RPM distribution for PostgreSQL allows local users to gain privileges by reading a plaintext password file.  Proposed (19991208)  ACCEPT(3) Armstrong, Cole, Stracener | MODIFY(1) Frech | NOOP(1) Baker | REVIEWING(1) Prosser  Frech> XF:postgresql-insecure-perms  View
2667  CVE-2000-1100  Candidate  The default configuration for PostACI webmail system installs the /includes/global.inc configuration file within the web root, which allows remote attackers to read sensitive information such as database usernames and passwords via a direct HTTP GET request.  Proposed (20001219)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(2) Cole, Wall  Frech> XF:postaci-webmail-reveal-passwords(5612)  View

Page 103 of 20943, showing 5 records out of 104715 total, starting on record 511, ending on 515

Actions