CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
2277 | CVE-2000-0701 | Candidate | The wrapper program in mailman 2.0beta3 and 2.0beta4 does not properly cleanse untrusted format strings, which allows local users to gain privileges. | Modified (20040818) | ACCEPT(3) Baker, Cole, Levy | MODIFY(1) Frech | NOOP(1) Wall | Frech> XF:gnu-mailman-format-string | You can perhaps normalize Bugtraq URL to CONFIRM:http://www.securityfocus.com/archive/1/73355. | View |
1419 | CVE-1999-1439 | Candidate | gcc 2.7.2 allows local users to overwrite arbitrary files via a symlink attack on temporary .i, .s, or .o files. | Proposed (20010912) | ACCEPT(1) Cole | MODIFY(1) Frech | NOOP(2) Foat, Wall | Frech> XF:gnu-gcc-tmp-symlink(7338) | View |
1145 | CVE-1999-1165 | Candidate | GNU fingerd 1.37 does not properly drop privileges before accessing user information, which could allow local users to (1) gain root privileges via a malicious program in the .fingerrc file, or (2) read arbitrary files via symbolic links from .plan, .forward, or .project files. | Proposed (20010912) | MODIFY(1) Frech | NOOP(2) Cole, Foat | Frech> XF:gnu-finger-privilege-dropping(7175) | View |
1616 | CVE-2000-0038 | Candidate | glFtpD includes a default glftpd user account with a default password and a UID of 0. | Proposed (20000111) | ACCEPT(2) Armstrong, Stracener | MODIFY(2) Frech, Levy | NOOP(1) Baker | Frech> XF:glftpd-default-account | Levy> BID 881 | View |
1542 | CVE-1999-1562 | Candidate | gFTP FTP client 1.13, and other versions before 2.0.0, records a password in plaintext in (1) the log window, or (2) in a log file. | Modified (20050309) | MODIFY(1) Frech | NOOP(3) Cole, Foat, Wall | Frech> XF:gftp-plaintext-password(7319) | View |
Page 172 of 20943, showing 5 records out of 104715 total, starting on record 856, ending on 860