CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2277  CVE-2000-0701  Candidate  The wrapper program in mailman 2.0beta3 and 2.0beta4 does not properly cleanse untrusted format strings, which allows local users to gain privileges.  Modified (20040818)  ACCEPT(3) Baker, Cole, Levy | MODIFY(1) Frech | NOOP(1) Wall  Frech> XF:gnu-mailman-format-string | You can perhaps normalize Bugtraq URL to CONFIRM:http://www.securityfocus.com/archive/1/73355.  View
1419  CVE-1999-1439  Candidate  gcc 2.7.2 allows local users to overwrite arbitrary files via a symlink attack on temporary .i, .s, or .o files.  Proposed (20010912)  ACCEPT(1) Cole | MODIFY(1) Frech | NOOP(2) Foat, Wall  Frech> XF:gnu-gcc-tmp-symlink(7338)  View
1145  CVE-1999-1165  Candidate  GNU fingerd 1.37 does not properly drop privileges before accessing user information, which could allow local users to (1) gain root privileges via a malicious program in the .fingerrc file, or (2) read arbitrary files via symbolic links from .plan, .forward, or .project files.  Proposed (20010912)  MODIFY(1) Frech | NOOP(2) Cole, Foat  Frech> XF:gnu-finger-privilege-dropping(7175)  View
1616  CVE-2000-0038  Candidate  glFtpD includes a default glftpd user account with a default password and a UID of 0.  Proposed (20000111)  ACCEPT(2) Armstrong, Stracener | MODIFY(2) Frech, Levy | NOOP(1) Baker  Frech> XF:glftpd-default-account | Levy> BID 881  View
1542  CVE-1999-1562  Candidate  gFTP FTP client 1.13, and other versions before 2.0.0, records a password in plaintext in (1) the log window, or (2) in a log file.  Modified (20050309)  MODIFY(1) Frech | NOOP(3) Cole, Foat, Wall  Frech> XF:gftp-plaintext-password(7319)  View

Page 172 of 20943, showing 5 records out of 104715 total, starting on record 856, ending on 860

Actions