CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
1010 | CVE-1999-1030 | Candidate | counter.exe 2.70 allows a remote attacker to cause a denial of service (hang) via an HTTP request that ends in %0A (newline), which causes a malformed entry in the counter log that produces an access violation. | Proposed (20010912) | MODIFY(1) Frech | NOOP(3) Cole, Foat, Wall | Frech> XF:http-cgi-counter-long(2196) | Frech> XF:http-cgi-counter-long(2196) | View |
1011 | CVE-1999-1031 | Candidate | counter.exe 2.70 allows a remote attacker to cause a denial of service (hang) via a long argument. | Proposed (20010912) | MODIFY(1) Frech | NOOP(3) Cole, Foat, Wall | Frech> XF:http-cgi-counter-long(2196) | Frech> XF:http-cgi-counter-long(2196) | View |
2012 | CVE-2000-0434 | Candidate | The administrative password for the Allmanage web site administration software is stored in plaintext in a file which could be accessed by remote attackers. | Proposed (20000615) | ACCEPT(3) Levy, Ozancin, Stracener | MODIFY(1) Frech | NOOP(3) Cole, LeBlanc, Wall | Frech> XF:http-cgi-allmanage-plaintext-admin | View |
2401 | CVE-2000-0832 | Candidate | Htgrep CGI program allows remote attackers to read arbitrary files by specifying the full pathname in the hdr parameter. | Modified (20010910-01) | ACCEPT(2) Baker, Collins | MODIFY(1) Frech | NOOP(4) Armstrong, Christey, Cole, Wall | Frech> XF:htgrep-cgi-view-files(5476) | Collins> http://www.iam.unibe.ch/~scg/Src/Doc/ | Christey> The change log for htgrep acknowledges the problem, but it | says that the qry tag is also affected. CD:SF-LOC says that | multiple problems of the same type in the same version should | be combined, so this candidate should get a "soft recast" | and qry should be added to the description. | View |
2758 | CVE-2000-1191 | Candidate | htsearch program in htDig 3.2 beta, 3.1.6, 3.1.5, and earlier allows remote attackers to determine the physical path of the server by requesting a non-existent configuration file using the config parameter, which generates an error message that includes the full path. | Modified (20100819) | ACCEPT(1) Stracener | MODIFY(1) Frech | NOOP(4) Cole, Foat, Wall, Williams | Frech> XF:htdig-htsearch-path-disclosure(7367) | MISC reference should be | http://www.securiteam.com/exploits/5YQ0C000IU.html. | View |
Page 165 of 20943, showing 5 records out of 104715 total, starting on record 821, ending on 825