CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3519  CVE-2001-0711  Candidate  Cisco IOS 11.x and 12.0 with ATM support allows attackers to cause a denial of service via the undocumented Interim Local Management Interface (ILMI) SNMP community string.  Modified (20020228-01)  ACCEPT(5) Baker, Balinsky, Cole, Foat, Stracener | MODIFY(1) Frech | NOOP(2) Christey, Wall  Frech> XF:cisco-ios-modify-snmp(6169) | Christey> Change desc to say that the ILMI allows viewing/modification | of certain objects, which *then* leads to a DoS. | | Thanks to Andre Frech for noticing this. | | CERT-VN:VU#976280  View
1725  CVE-2000-0147  Candidate  snmpd in SCO OpenServer has an SNMP community string that is writable by default, which allows local attackers to modify the host"s configuration.  Modified (20000321-01)  ACCEPT(5) Baker, Bishop, Blake, Cole, Levy | MODIFY(1) Frech | NOOP(1) LeBlanc  Frech> XF:sco-openserver-snmpd  View
3422  CVE-2001-0609  Candidate  Format string vulnerability in Infodrom cfingerd 1.4.3 and earlier allows a remote attacker to gain additional privileges via a malformed ident reply that is passed to the syslog function.  Modified (20040818)  ACCEPT(5) Baker, Bishop, Cole, Frech, Ziese | NOOP(2) Foat, Wall | REVIEWING(1) Christey  Christey> A very similar vulnerability - which perhaps should be | combined with this CAN according to CD:SF-LOC - is documented | in the following references: | | BUGTRAQ:20010621 cfingerd local vulnerability (possibly root) | URL:http://www.securityfocus.com/archive/1/Pine.LNX.4.33.0106212246190.31927-100000@ace | BUGTRAQ:20010712 Happy 3 month anniversary cfingerd remote bug! | URL:http://www.securityfocus.com/archive/1/Pine.LNX.4.33.0107120434070.10330-200000@clarity.local | BID:2915 | URL:http://www.securityfocus.com/bid/2915 | Christey> DELREF DEBIAN:DSA-048 [wrong CVE]  View
3384  CVE-2001-0571  Candidate  Directory traversal vulnerability in the web server for (1) Elron Internet Manager (IM) Message Inspector and (2) Anti-Virus before 3.0.4 allows remote attackers to read arbitrary files via a .. (dot dot) in the requested URL.  Proposed (20010727)  ACCEPT(5) Baker, Bishop, Cole, Wall, Ziese | MODIFY(1) Frech | NOOP(1) Foat | REVIEWING(1) Williams  Frech> XF:elronim-antivirus-directory-traversal(6959) | XF:elronim-inspector-directory-traversal(6960) | CONFIRM:http://www.elronsw.com/connection/story194a.html  View
3381  CVE-2001-0568  Candidate  Digital Creations Zope 2.3.1 b1 and earlier allows a local attacker (Zope user) with through-the-web scripting capabilities to alter ZClasses class attributes.  Proposed (20010727)  ACCEPT(5) Baker, Bishop, Cole, Williams, Ziese | MODIFY(1) Frech | NOOP(2) Foat, Wall  Frech> XF:zope-zclass-modification(6247)  View

Page 1065 of 20943, showing 5 records out of 104715 total, starting on record 5321, ending on 5325

Actions