CVE List

Id CVE No. Status Description Phase Votes Comments Actions
891  CVE-1999-0911  Candidate  Buffer overflow in ProFTPD, wu-ftpd, and beroftpd allows remote attackers to gain root access via a series of MKD and CWD commands that create nested directories.  Modified (20050309)  ACCEPT(5) Baker, Blake, Cole, Prosser, Stracener | MODIFY(1) Frech | REVIEWING(1) Christey  Frech> XF:proftpd-long-dir-bo(3399) | Christey> Not absolutely sure if this isn"t the same as Palmetto | (CVE-1999-0368), which describes a similar type of overflow. | | NETBSD:NetBSD-SA1999-003 may refer to CVE-1999-0368: | ADDREF URL:ftp://ftp.NetBSD.ORG/pub/NetBSD/misc/security/advisories/NetBSD-SA1999-003.txt.asc | Christey> ADDREF CIAC:J-068 | Include version numbers; too many wu-ftp/etc. problems | were published in summer/fall 1999  View
892  CVE-1999-0912  Entry  FreeBSD VFS cache (vfs_cache) allows local users to cause a denial of service by opening a large number of files.        View
893  CVE-1999-0913  Candidate  dfire.cgi script in Dragon-Fire IDS allows remote users to execute commands via shell metacharacters.  Proposed (19991214)  ACCEPT(2) Blake, Stracener | MODIFY(1) Frech | NOOP(4) Armstrong, Baker, Cole, LeBlanc | REVIEWING(1) Christey  Christey> Some voters should use ABSTAIN. | Frech> XF:dragon-fire-ids-metachar(3834) | CHANGE> [Armstrong changed vote from REVIEWING to NOOP]  View
894  CVE-1999-0914  Entry  Buffer overflow in the FTP client in the Debian GNU/Linux netstd package.        View
895  CVE-1999-0915  Entry  URL Live! web server allows remote attackers to read arbitrary files via a .. (dot dot) attack.        View

Page 179 of 20943, showing 5 records out of 104715 total, starting on record 891, ending on 895

Actions