CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3049  CVE-2001-0228  Candidate  Directory traversal vulnerability in GoAhead web server 2.1 and earlier allows remote attackers to read arbitrary files via a .. attack in an HTTP GET request.  Proposed (20010309)  MODIFY(1) Frech | NOOP(2) Lawler, Ziese  Frech> XF:goahead-directory-traversal(6046)  View
3053  CVE-2001-0232  Candidate  newsdesk.cgi in News Desk 1.2 allows remote attackers to read arbitrary files via shell metacharacters.  Proposed (20010309)  MODIFY(1) Frech | NOOP(2) Lawler, Ziese  CHANGE> [Frech changed vote from REVIEWING to MODIFY] | Frech> XF:newsdesk-metacharacter-command-execution(8377)  View
CVE-1999-0001  Candidate  ip_input.c in BSD-derived TCP/IP implementations allows remote attackers to cause a denial of service (crash or hang) via crafted packets.  Modified (20051217)  MODIFY(1) Frech | NOOP(2) Northcutt, Wall | REVIEWING(1) Christey  Christey> A Bugtraq posting indicates that the bug has to do with | "short packets with certain options set," so the description | should be modified accordingly. | | But is this the same as CVE-1999-0052? That one is related | to nestea (CVE-1999-0257) and probably the one described in | BUGTRAQ:19981023 nestea v2 against freebsd 3.0-Release | The patch for nestea is in ip_input.c around line 750. | The patches for CVE-1999-0001 are in lines 388&446. So, | CVE-1999-0001 is different from CVE-1999-0257 and CVE-1999-0052. | The FreeBSD patch for CVE-1999-0052 is in line 750. | So, CVE-1999-0257 and CVE-1999-0052 may be the same, though | CVE-1999-0052 should be RECAST since this bug affects Linux | and other OSes besides FreeBSD. | Frech> XF:teardrop(338) | This assignment was based solely on references to the CERT advisory. | Christey> The description for BID:190, which links to CVE-1999-0052 (a | FreeBSD advisory), notes that the patches provided by FreeBSD in | CERT:CA-1998-13 suggest a connection between CVE-1999-0001 and | CVE-1999-0052. CERT:CA-1998-13 is too vague to be sure without | further analysis.  View
3598  CVE-2001-0791  Candidate  Trend Micro InterScan VirusWall for Windows NT allows remote attackers to make configuration changes by directly calling certain CGI programs, which do not restrict access.  Proposed (20011012)  MODIFY(1) Frech | NOOP(3) Armstrong, Cole, Foat | REVIEWING(1) Wall  Frech> XF:interscan-viruswall-change-configuration(6641)  View
2750  CVE-2000-1183  Candidate  Buffer overflow in socks5 server on Linux allows attackers to execute arbitrary commands via a long connection request.  Proposed (20001219)  MODIFY(1) Frech | NOOP(3) Armstrong, Cole, Wall  CHANGE> [Armstrong changed vote from REVIEWING to NOOP] | CHANGE> [Frech changed vote from REVIEWING to MODIFY] | Frech> XF:linux-socks5-connection-bo(8376)  View

Page 1105 of 20943, showing 5 records out of 104715 total, starting on record 5521, ending on 5525

Actions