CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8200  CVE-2003-1376  Candidate  WinZip 8.0 uses weak random number generation for password protected ZIP files, which allows local users to brute force the encryption keys and extract the data from the zip file by guessing the state of the stream coder.  Assigned (20071018)  None (candidate not yet proposed)    View
2731  CVE-2000-1164  Entry  WinVNC installs the WinVNC3 registry key with permissions that give Special Access (read and modify) to the Everybody group, which allows users to read and modify sensitive information such as passwords and gain access to the system.        View
4225  CVE-2001-1422  Candidate  WinVNC 3.3.3 and earlier generates the same challenge string for multiple connections, which allows remote attackers to bypass VNC authentication by sniffing the challenge and response of other users.  Assigned (20050320)  None (candidate not yet proposed)    View
2365  CVE-2000-0789  Candidate  WinU 5.x and earlier uses weak encryption to store its configuration password, which allows local users to decrypt the password and gain privileges.  Proposed (20000921)  ACCEPT(1) Williams | MODIFY(2) Baker, Frech | NOOP(3) Christey, Cole, Wall | REVIEWING(1) Levy  Frech> XF:winu-backdoor(5376) | Christey> ADDREF BID:1741 | ADDREF URL:http://www.securityfocus.com/bid/1741 | Baker> Since there are apparently two different methods of weak encryption, perhaps the description should read " ... used weak encryption methods.."  View
2557  CVE-2000-0988  Candidate  WinU 1.0 through 5.1 has a backdoor password that allows remote attackers to gain access to its administrative interface and modify configuration.  Proposed (20001129)  ACCEPT(4) Armstrong, Cole, Frech, Mell    View

Page 164 of 20943, showing 5 records out of 104715 total, starting on record 816, ending on 820

Actions