CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3905  CVE-2001-1101  Candidate  The Log Viewer function in the Check Point FireWall-1 GUI for Solaris 3.0b through 4.1 SP2 does not check for the existence of ".log" files when saving files, which allows (1) remote authenticated users to overwrite arbitrary files ending in ".log", or (2) local users to overwrite arbitrary files via a symlink attack.  Proposed (20020315)  ACCEPT(2) Frech, Green | NOOP(5) Armstrong, Cole, Foat, Wall, Ziese    View
3906  CVE-2001-1102  Candidate  Check Point FireWall-1 3.0b through 4.1 for Solaris allows local users to overwrite arbitrary files via a symlink attack on temporary policy files that end in a .cpp extension, which are set world-writable.  Proposed (20020315)  ACCEPT(2) Frech, Green | NOOP(6) Armstrong, Christey, Cole, Foat, Wall, Ziese  Christey> NOTE: CVE-2001-1171 was discovered to be a duplicate of this | issue. Use this candidate (CVE-2001-1102) instead of the | other one.  View
3908  CVE-2001-1104  Candidate  SonicWALL SOHO uses easily predictable TCP sequence numbers, which allows remote attackers to spoof or hijack sessions.  Proposed (20020315)  ACCEPT(1) Foat | MODIFY(1) Frech | NOOP(5) Armstrong, Cole, Green, Wall, Ziese  CHANGE> [Frech changed vote from REVIEWING to MODIFY] | Frech> XF:tcp-seq-predict(139)  View
3909  CVE-2001-1105  Candidate  RSA BSAFE SSL-J 3.0, 3.0.1 and 3.1, as used in Cisco iCND 2.0, caches session IDs from failed login attempts, which could allow remote attackers to bypass SSL client authentication and gain access to sensitive data by logging in after an initial failure.  Proposed (20020315)  ACCEPT(6) Armstrong, Baker, Cole, Frech, Green, Ziese | NOOP(2) Foat, Wall    View
3911  CVE-2001-1107  Candidate  SnapStream PVS 1.2a stores its passwords in plaintext in the file SSD.ini, which could allow a remote attacker to gain privileges on the server.  Proposed (20020315)  ACCEPT(5) Armstrong, Baker, Frech, Green, Ziese | NOOP(3) Cole, Foat, Wall    View

Page 156 of 20943, showing 5 records out of 104715 total, starting on record 776, ending on 780

Actions