CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
3872 | CVE-2001-1068 | Candidate | qpopper 4.01 with PAM based authentication on Red Hat systems generates different error messages when an invalid username is provided instead of a valid name, which allows remote attackers to determine valid usernames on the system. | Proposed (20020131) | ACCEPT(3) Foat, Frech, Green | NOOP(2) Armstrong, Cole | REVIEWING(1) Wall | View | |
3874 | CVE-2001-1070 | Candidate | Sage Software MAS 200 allows remote attackers to cause a denial of service by connecting to port 10000 and entering a series of control characters. | Proposed (20020131) | ACCEPT(2) Frech, Green | NOOP(4) Armstrong, Cole, Foat, Wall | View | |
3877 | CVE-2001-1073 | Candidate | Webridge PX Application Suite allows remote attackers to obtain sensitive information via a malformed request that generates a server error message, which includes full pathname or internal IP address information in the variables (1) APPL_PHYSICAL_PATH, (2) PATH_TRANSLATED, and (3) LOCAL_ADDR. | Proposed (20020131) | ACCEPT(2) Frech, Green | NOOP(4) Armstrong, Cole, Foat, Wall | View | |
3881 | CVE-2001-1077 | Candidate | Buffer overflow in tt_printf function of rxvt 2.6.2 allows local users to gain privileges via a long (1) -T or (2) -name argument. | Proposed (20020131) | ACCEPT(5) Armstrong, Baker, Cole, Frech, Green | NOOP(2) Foat, Wall | View | |
3882 | CVE-2001-1078 | Candidate | Format string vulnerability in flog function of eXtremail 1.1.9 and earlier allows remote attackers to gain root privileges via format specifiers in the SMTP commands (1) HELO, (2) EHLO, (3) MAIL FROM, or (4) RCPT TO, and the POP3 commands (5) USER and (6) other commands that can be executed after POP3 authentication. | Proposed (20020131) | ACCEPT(5) Armstrong, Baker, Cole, Frech, Green | NOOP(2) Foat, Wall | View |
Page 179 of 20943, showing 5 records out of 104715 total, starting on record 891, ending on 895