CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2885  CVE-2001-0064  Candidate  Webconfig, IMAP, and other services in MDaemon 3.5.0 and earlier allows remote attackers to cause a denial of service via a long URL terminated by a " " string.  Proposed (20010202)  MODIFY(1) Frech | NOOP(3) Cole, Wall, Ziese  Frech> XF:mdaemon-imap-dos(5805)  View
826  CVE-1999-0846  Candidate  Denial of service in MDaemon 2.7 via a large number of connection attempts.  Proposed (19991208)  ACCEPT(5) Armstrong, Baker, Cole, Prosser, Stracener | MODIFY(1) Frech | REVIEWING(1) Christey  Frech> XF:mdaemon-dos | Christey> CVE-1999-0844 is confirmed by MDaemon at | http://mdaemon.deerfield.com/helpdesk/hotfix.cfm but there | is no apparent confirmation for this problem, even | though it was posted the same day. | Prosser> Looks like from a follow-on message on Bugtraq from Nobuo | <http://www.securityfocus.com/templates/archive.pike?list=1&date=1999-11-28&msg=199912011604.HJI39569.BX-NOJ@lac.co.jp> Deerfield sent a reply about the | DoS problems in MDaemon 2.8.5, that also talks about fixing the 2.7 J DoS | that Nobuo initially reported. Can"t find the original message, so may have | been limited distro. Looks like an upgrade to the latest release might be | the final solution here.  View
1159  CVE-1999-1179  Candidate  Vulnerability in man.sh CGI script, included in May 1998 issue of SysAdmin Magazine, allows remote attackers to execute arbitrary commands.  Proposed (20010912)  MODIFY(1) Frech | NOOP(3) Cole, Foat, Wall  Frech> XF:mansh-execute-commands(7328)  View
1613  CVE-2000-0035  Candidate  resend command in Majordomo allows local users to gain privileges via shell metacharacters.  Proposed (20000111)  ACCEPT(3) Baker, Levy, Stracener | MODIFY(2) Cox, Frech | NOOP(1) Armstrong | REVIEWING(1) Christey  Frech> XF:majordomo-local-resend | Christey> The Bugtraq thread indicates that this problem may be | due to misconfiguration, and may extend beyond just the | resend command. | CHANGE> [Armstrong changed vote from REVIEWING to NOOP] | Christey> Include "wrapper" to facilitate search and matching? (but | double-check CVE-2000-0037). | Add "1.94.4 and earlier" as the affected version number. | ADDREF AUSCERT:AA-2000.01 | ftp://ftp.auscert.org.au/pub/auscert/advisory/AA-2000.01 | Cox> ADDREF REDHAT:RHSA-2000:005  View
3992  CVE-2001-1188  Candidate  mailto.exe in Brian Dorricott MAILTO 1.0.9 and earlier allows remote attackers to send SPAM e-mail through remote servers by modifying the sendto, email, server, subject, and resulturl hidden form fields.  Proposed (20020315)  ACCEPT(1) Green | MODIFY(1) Frech | NOOP(4) Cole, Foat, Wall, Ziese  Frech> XF:mailto-form-field-modify(9119)  View

Page 133 of 20943, showing 5 records out of 104715 total, starting on record 661, ending on 665

Actions