CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
3083 | CVE-2001-0262 | Candidate | Buffer overflow in Netscape SmartDownload 1.3 allows remote attackers (malicious web pages) to execute arbitrary commands via a long URL. | Proposed (20010524) | ACCEPT(3) Baker, Cole, Williams | MODIFY(1) Frech | NOOP(4) Christey, Renaud, Wall, Ziese | Frech> XF:netscape-smartdownload-sdph20-bo(6403) | Christey> BUGTRAQ:20010418 Netscape SmartDownload 1.3 Buffer Overflow Vulnerability | URL:http://www.securityfocus.com/archive/1/177589 | Add sdph20.dll as affected component in description, as | indicated by above post. | Christey> Consider adding BID:2615 | View |
1512 | CVE-1999-1532 | Candidate | Netscape Messaging Server 3.54, 3.55, and 3.6 allows a remote attacker to cause a denial of service (memory exhaustion) via a series of long RCPT TO commands. | Modified (20011126-01) | MODIFY(1) Frech | NOOP(3) Cole, Foat, Wall | Frech> XF:netscape-messaging-rcptto-dos(8340) | Description ends with a comma and not a period, possibly | indicating that the sentence is not complete, | View |
982 | CVE-1999-1002 | Candidate | Netscape Navigator uses weak encryption for storing a user"s Netscape mail password. | Modified (20030619-01) | ACCEPT(4) Baker, Cole, Stracener, Wall | MODIFY(1) Frech | NOOP(1) Christey | Frech> XF:netscape-mail-encryption(3921) | Christey> CHANGEREF make the RCA URL a "MISC" reference | View |
1110 | CVE-1999-1130 | Candidate | Default configuration of the search engine in Netscape Enterprise Server 3.5.1, and possibly other versions, allows remote attackers to read the source of JHTML files by specifying a search command using the HTML-tocrec-demo1.pat pattern file. | Proposed (20010912) | ACCEPT(1) Cole | MODIFY(1) Frech | NOOP(2) Foat, Wall | Frech> XF:netscape-enterprise-view-jhtml(8352) | View |
3554 | CVE-2001-0747 | Candidate | Buffer overflow in iPlanet Web Server (iWS) Enterprise Edition 4.1, service packs 3 through 7, allows remote attackers to cause a denial of sevice and possibly execute arbitrary code via a long method name in an HTTP request. | Proposed (20011012) | ACCEPT(5) Armstrong, Baker, Cole, Foat, Wall | MODIFY(1) Frech | NOOP(1) Christey | Frech> XF:netscape-enterprise-uri-bo(6554) | Christey> HP:HPSBUX0106-152 might address CVE-2001-0746 or | CVE-2001-0747, or maybe neither, but only HP knows for sure. | See: http://archives.neohapsis.com/archives/hp/2001-q2/0059.html | Christey> I am about to create a separate candidate for the HP advisory. | Obviously that advisory is affected by CD:VAGUE. | View |
Page 125 of 20943, showing 5 records out of 104715 total, starting on record 621, ending on 625