CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
4508 | CVE-2002-0114 | Candidate | EMC NetWorker (formerly Legato NetWorker) before 7.0 stores passwords in plaintext in the daemon.log file, which allows local users to gain privileges by reading the password from the file. NOTE: this was originally reported for Legato NetWorker 6.1 on the Solaris 7 platform. | Proposed (20020315) | ACCEPT(2) Frech, Green | NOOP(3) Cole, Foat, Wall | View | |
4510 | CVE-2002-0116 | Candidate | Palm OS 3.5h and possibly other versions, as used in Handspring Visor and Xircom products, allows remote attackers to cause a denial of service via a TCP connect scan, e.g. from nmap. | Proposed (20020315) | ACCEPT(2) Frech, Green | NOOP(3) Cole, Foat, Wall | Green> Caused a full reset on a Visor | View |
3999 | CVE-2001-1195 | Candidate | Novell Groupwise 5.5 and 6.0 Servlet Gateway is installed with a default username and password for the servlet manager, which allows remote attackers to gain privileges. | Proposed (20020315) | ACCEPT(4) Cole, Frech, Green, Ziese | NOOP(2) Foat, Wall | View | |
4000 | CVE-2001-1196 | Candidate | Directory traversal vulnerability in edit_action.cgi of Webmin Directory 0.91 allows attackers to gain privileges via a ".." (dot dot) in the argument. | Proposed (20020315) | ACCEPT(1) Frech | NOOP(5) Cole, Foat, Green, Wall, Ziese | Green> SINCE ROOT PRIVILEGES ARE REQUIRED TO USE THE TOOL, WHAT FURTHER | ESCALATION OF PRIVILEGE CAN OBTAINED? | View |
4512 | CVE-2002-0118 | Candidate | Cross-site scripting vulnerability in Infopop Ultimate Bulletin Board (UBB) 6.2.0 Beta Release 1.0 allows remote attackers to execute arbitrary script and steal cookies via a message containing encoded Javascript in an IMG tag. | Proposed (20020315) | ACCEPT(2) Frech, Green | NOOP(3) Cole, Foat, Wall | View |
Page 168 of 20943, showing 5 records out of 104715 total, starting on record 836, ending on 840