CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4508  CVE-2002-0114  Candidate  EMC NetWorker (formerly Legato NetWorker) before 7.0 stores passwords in plaintext in the daemon.log file, which allows local users to gain privileges by reading the password from the file. NOTE: this was originally reported for Legato NetWorker 6.1 on the Solaris 7 platform.  Proposed (20020315)  ACCEPT(2) Frech, Green | NOOP(3) Cole, Foat, Wall    View
4510  CVE-2002-0116  Candidate  Palm OS 3.5h and possibly other versions, as used in Handspring Visor and Xircom products, allows remote attackers to cause a denial of service via a TCP connect scan, e.g. from nmap.  Proposed (20020315)  ACCEPT(2) Frech, Green | NOOP(3) Cole, Foat, Wall  Green> Caused a full reset on a Visor  View
3999  CVE-2001-1195  Candidate  Novell Groupwise 5.5 and 6.0 Servlet Gateway is installed with a default username and password for the servlet manager, which allows remote attackers to gain privileges.  Proposed (20020315)  ACCEPT(4) Cole, Frech, Green, Ziese | NOOP(2) Foat, Wall    View
4000  CVE-2001-1196  Candidate  Directory traversal vulnerability in edit_action.cgi of Webmin Directory 0.91 allows attackers to gain privileges via a ".." (dot dot) in the argument.  Proposed (20020315)  ACCEPT(1) Frech | NOOP(5) Cole, Foat, Green, Wall, Ziese  Green> SINCE ROOT PRIVILEGES ARE REQUIRED TO USE THE TOOL, WHAT FURTHER | ESCALATION OF PRIVILEGE CAN OBTAINED?  View
4512  CVE-2002-0118  Candidate  Cross-site scripting vulnerability in Infopop Ultimate Bulletin Board (UBB) 6.2.0 Beta Release 1.0 allows remote attackers to execute arbitrary script and steal cookies via a message containing encoded Javascript in an IMG tag.  Proposed (20020315)  ACCEPT(2) Frech, Green | NOOP(3) Cole, Foat, Wall    View

Page 168 of 20943, showing 5 records out of 104715 total, starting on record 836, ending on 840

Actions