CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
756 | CVE-1999-0776 | Candidate | Alibaba HTTP server allows remote attackers to read files via a .. (dot dot) attack. | Proposed (19991214) | ACCEPT(4) Frech, Levy, Ozancin, Stracener | MODIFY(1) Baker | NOOP(6) Armstrong, Blake, Cole, Landfield, LeBlanc, Wall | REVIEWING(1) Christey | Christey> This candidate is unconfirmed by the vendor. | | Posted by Arne Vidstrom. | Blake> I"d like to change my vote on this from ACCEPT to NOOP. I did some | digging and the vendor seems to have discontinued the product, so no | information is available beyond Arne"s post. Unless Andre has a copy | in his archive and can test it, I think we have to leave it out. | Wall> I agree with Blake. We have not seen the product and it has been discontinued. | CHANGE> [Christey changed vote from NOOP to REVIEWING] | Christey> If this is (or was) tested by some tool, we should ACCEPT it. | Baker> http://www.securityfocus.com/bid/270 | Christey> BID:270 | URL:http://www.securityfocus.com/bid/270 | View |
757 | CVE-1999-0777 | Entry | IIS FTP servers may allow a remote attacker to read or delete files on the server, even if they have "No Access" permissions. | View | |||
758 | CVE-1999-0778 | Entry | Buffer overflow in Xi Graphics Accelerated-X server allows local users to gain root access via a long display or query parameter. | View | |||
759 | CVE-1999-0779 | Entry | Denial of service in HP-UX SharedX recserv program. | View | |||
760 | CVE-1999-0780 | Entry | KDE klock allows local users to kill arbitrary processes by specifying an arbitrary PID in the .kss.pid file. | View |
Page 152 of 20943, showing 5 records out of 104715 total, starting on record 756, ending on 760