CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
8200 | CVE-2003-1376 | Candidate | WinZip 8.0 uses weak random number generation for password protected ZIP files, which allows local users to brute force the encryption keys and extract the data from the zip file by guessing the state of the stream coder. | Assigned (20071018) | None (candidate not yet proposed) | View | |
2731 | CVE-2000-1164 | Entry | WinVNC installs the WinVNC3 registry key with permissions that give Special Access (read and modify) to the Everybody group, which allows users to read and modify sensitive information such as passwords and gain access to the system. | View | |||
4225 | CVE-2001-1422 | Candidate | WinVNC 3.3.3 and earlier generates the same challenge string for multiple connections, which allows remote attackers to bypass VNC authentication by sniffing the challenge and response of other users. | Assigned (20050320) | None (candidate not yet proposed) | View | |
2365 | CVE-2000-0789 | Candidate | WinU 5.x and earlier uses weak encryption to store its configuration password, which allows local users to decrypt the password and gain privileges. | Proposed (20000921) | ACCEPT(1) Williams | MODIFY(2) Baker, Frech | NOOP(3) Christey, Cole, Wall | REVIEWING(1) Levy | Frech> XF:winu-backdoor(5376) | Christey> ADDREF BID:1741 | ADDREF URL:http://www.securityfocus.com/bid/1741 | Baker> Since there are apparently two different methods of weak encryption, perhaps the description should read " ... used weak encryption methods.." | View |
2557 | CVE-2000-0988 | Candidate | WinU 1.0 through 5.1 has a backdoor password that allows remote attackers to gain access to its administrative interface and modify configuration. | Proposed (20001129) | ACCEPT(4) Armstrong, Cole, Frech, Mell | View |
Page 164 of 20943, showing 5 records out of 104715 total, starting on record 816, ending on 820