CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
3049 | CVE-2001-0228 | Candidate | Directory traversal vulnerability in GoAhead web server 2.1 and earlier allows remote attackers to read arbitrary files via a .. attack in an HTTP GET request. | Proposed (20010309) | MODIFY(1) Frech | NOOP(2) Lawler, Ziese | Frech> XF:goahead-directory-traversal(6046) | View |
3053 | CVE-2001-0232 | Candidate | newsdesk.cgi in News Desk 1.2 allows remote attackers to read arbitrary files via shell metacharacters. | Proposed (20010309) | MODIFY(1) Frech | NOOP(2) Lawler, Ziese | CHANGE> [Frech changed vote from REVIEWING to MODIFY] | Frech> XF:newsdesk-metacharacter-command-execution(8377) | View |
1 | CVE-1999-0001 | Candidate | ip_input.c in BSD-derived TCP/IP implementations allows remote attackers to cause a denial of service (crash or hang) via crafted packets. | Modified (20051217) | MODIFY(1) Frech | NOOP(2) Northcutt, Wall | REVIEWING(1) Christey | Christey> A Bugtraq posting indicates that the bug has to do with | "short packets with certain options set," so the description | should be modified accordingly. | | But is this the same as CVE-1999-0052? That one is related | to nestea (CVE-1999-0257) and probably the one described in | BUGTRAQ:19981023 nestea v2 against freebsd 3.0-Release | The patch for nestea is in ip_input.c around line 750. | The patches for CVE-1999-0001 are in lines 388&446. So, | CVE-1999-0001 is different from CVE-1999-0257 and CVE-1999-0052. | The FreeBSD patch for CVE-1999-0052 is in line 750. | So, CVE-1999-0257 and CVE-1999-0052 may be the same, though | CVE-1999-0052 should be RECAST since this bug affects Linux | and other OSes besides FreeBSD. | Frech> XF:teardrop(338) | This assignment was based solely on references to the CERT advisory. | Christey> The description for BID:190, which links to CVE-1999-0052 (a | FreeBSD advisory), notes that the patches provided by FreeBSD in | CERT:CA-1998-13 suggest a connection between CVE-1999-0001 and | CVE-1999-0052. CERT:CA-1998-13 is too vague to be sure without | further analysis. | View |
3598 | CVE-2001-0791 | Candidate | Trend Micro InterScan VirusWall for Windows NT allows remote attackers to make configuration changes by directly calling certain CGI programs, which do not restrict access. | Proposed (20011012) | MODIFY(1) Frech | NOOP(3) Armstrong, Cole, Foat | REVIEWING(1) Wall | Frech> XF:interscan-viruswall-change-configuration(6641) | View |
2750 | CVE-2000-1183 | Candidate | Buffer overflow in socks5 server on Linux allows attackers to execute arbitrary commands via a long connection request. | Proposed (20001219) | MODIFY(1) Frech | NOOP(3) Armstrong, Cole, Wall | CHANGE> [Armstrong changed vote from REVIEWING to NOOP] | CHANGE> [Frech changed vote from REVIEWING to MODIFY] | Frech> XF:linux-socks5-connection-bo(8376) | View |
Page 1105 of 20943, showing 5 records out of 104715 total, starting on record 5521, ending on 5525