CVE List

Id CVE No. Status Description Phase Votes Comments Actions
756  CVE-1999-0776  Candidate  Alibaba HTTP server allows remote attackers to read files via a .. (dot dot) attack.  Proposed (19991214)  ACCEPT(4) Frech, Levy, Ozancin, Stracener | MODIFY(1) Baker | NOOP(6) Armstrong, Blake, Cole, Landfield, LeBlanc, Wall | REVIEWING(1) Christey  Christey> This candidate is unconfirmed by the vendor. | | Posted by Arne Vidstrom. | Blake> I"d like to change my vote on this from ACCEPT to NOOP. I did some | digging and the vendor seems to have discontinued the product, so no | information is available beyond Arne"s post. Unless Andre has a copy | in his archive and can test it, I think we have to leave it out. | Wall> I agree with Blake. We have not seen the product and it has been discontinued. | CHANGE> [Christey changed vote from NOOP to REVIEWING] | Christey> If this is (or was) tested by some tool, we should ACCEPT it. | Baker> http://www.securityfocus.com/bid/270 | Christey> BID:270 | URL:http://www.securityfocus.com/bid/270  View
757  CVE-1999-0777  Entry  IIS FTP servers may allow a remote attacker to read or delete files on the server, even if they have "No Access" permissions.        View
758  CVE-1999-0778  Entry  Buffer overflow in Xi Graphics Accelerated-X server allows local users to gain root access via a long display or query parameter.        View
759  CVE-1999-0779  Entry  Denial of service in HP-UX SharedX recserv program.        View
760  CVE-1999-0780  Entry  KDE klock allows local users to kill arbitrary processes by specifying an arbitrary PID in the .kss.pid file.        View

Page 152 of 20943, showing 5 records out of 104715 total, starting on record 756, ending on 760

Actions