CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
3456 | CVE-2001-0647 | Candidate | Orange Web Server 2.1, based on GoAhead, allows a remote attacker to perform a denial of service via an HTTP GET request that does not include the HTTP version. | Modified (20071219) | ACCEPT(2) Foat, Williams | MODIFY(1) Frech | NOOP(4) Christey, Cole, Stracener, Wall | Frech> XF:orange-http-echo-dos(6164) | Christey> Need to clean up BID, add other Bugtraq ref. | View |
1105 | CVE-1999-1125 | Candidate | Oracle Webserver 2.1 and earlier runs setuid root, but the configuration file is owned by the oracle account, which allows any local or remote attacker who obtains access to the oracle account to gain privileges or modify arbitrary files by modifying the configuration file. | Proposed (20010912) | MODIFY(1) Frech | NOOP(2) Cole, Foat | Frech> XF:oracle-webserver-gain-root(7174) | View |
1048 | CVE-1999-1068 | Candidate | Oracle Webserver 2.1, when serving PL/SQL stored procedures, allows remote attackers to cause a denial of service via a long HTTP GET request. | Proposed (20010912) | MODIFY(1) Frech | NOOP(2) Cole, Foat | Frech> XF:oracle-webserver-dos(1812) | View |
1527 | CVE-1999-1547 | Candidate | Oracle Web Listener 2.1 allows remote attackers to bypass access restrictions by replacing a character in the URL with its HTTP-encoded (hex) equivalent. | Proposed (20010912) | MODIFY(1) Frech | NOOP(3) Cole, Foat, Wall | Frech> XF:oracle-weblistener-bypass-restrictions(8355) | View |
764 | CVE-1999-0784 | Candidate | Denial of service in Oracle TNSLSNR SQL*Net Listener via a malformed string to the listener port, aka NERP. | Proposed (20010214) | ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(1) Cole | Frech> XF:oracle-tnslsnr-dos(1551) | View |
Page 112 of 20943, showing 5 records out of 104715 total, starting on record 556, ending on 560