CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
3771 | CVE-2001-0966 | Candidate | Directory traversal vulnerability in Nudester 1.10 and earlier allows remote attackers to read or write arbitrary files via a .. (dot dot) in the CD (CWD) command. | Proposed (20020131) | ACCEPT(1) Green | MODIFY(1) Frech | NOOP(4) Armstrong, Cole, Foat, Wall | Frech> XF:nudester-sniffer-full-access(7032) | View |
1344 | CVE-1999-1364 | Candidate | Windows NT 4.0 allows local users to cause a denial of service (crash) via an illegal kernel mode address to the functions (1) GetThreadContext or (2) SetThreadContext. | Modified (20020218-01) | ACCEPT(3) Cole, Foat, Wall | MODIFY(1) Frech | Frech> XF:nt-threadcontext-dos(7421) | View |
585 | CVE-1999-0603 | Candidate | In Windows NT, an inappropriate user is a member of a group, e.g. Administrator, Backup Operators, Domain Admins, Domain Guests, Power Users, Print Operators, Replicators, System Operators, etc. | Proposed (19990728) | MODIFY(1) Frech | NOOP(1) Baker | REJECT(2) Northcutt, Wall | Frech> XF:nt-system-operator | XF:nt-admin-group | XF:nt-replicator | XF:nt-print-operator | XF:nt-power-user | XF:nt-guest-in-group | XF:nt-backup-operator | XF:nt-domain-admin | XF:nt-domain-guest | XF:win2k-acct-oper-grp | XF:win2k-admin-grp | XF:win2k-backup-oper-grp | XF:win2k-certpublishers-grp | XF:win2k-dhcp-admin-grp | XF:win2k-dnsadm-grp | XF:win2k-domainadm-grp | XF:win2k-entadm-grp | XF:win2k-printoper-grp | XF:win2k-replicator-grp | XF:win2k-schemaadm-grp | XF:win2k-serveroper-grp | You asked for it... :-) Use or reject at your discretion. If rejected, | please let us know so we can remove CAN references from database. | View |
634 | CVE-1999-0652 | Candidate | ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configuration that does not directly introduce security vulnerabilities, so it is more appropriate to cover under the Common Configuration Enumeration (CCE). Notes: the former description is: "A database service is running, e.g. a SQL server, Oracle, or mySQL." | Modified (20080731) | ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(1) Wall | REJECT(1) Northcutt | Frech> XF:nt-sql-server(1289) | XF:msql-detect(2211) | XF:oracle-detect(2388) | XF:sybase-detect-namedpipes(1461) | View |
514 | CVE-1999-0517 | Candidate | An SNMP community name is the default (e.g. public), null, or missing. | Proposed (19990714) | ACCEPT(4) Baker, Meunier, Northcutt, Shostack | MODIFY(1) Frech | REVIEWING(1) Christey | Frech> XF:nt-snmp | XF:snmp-comm | XF:snmp-set-any | XF:snmp-get-public | XF:snmp-set-public | XF:snmp-get-any | Christey> This candidate is affected by the CD:CF-PASS content decision, | which determines the appropriate level of abstraction to | use for password problems. CD:CF-PASS needs to be accepted | by the Editorial Board before this candidate can be | converted into a CVE entry; the final version of CD:CF-PASS | may require using a different LOA than this candidate is | currently using. | Christey> Consider adding BID:2112 | View |
Page 120 of 20943, showing 5 records out of 104715 total, starting on record 596, ending on 600