CVE List

Id CVE No. Status Description Phase Votes Comments Actions
921  CVE-1999-0941  Candidate  Mutt mail client allows a remote attacker to execute commands via shell metacharacters.  Proposed (19991222)  ACCEPT(1) Stracener | NOOP(2) Baker, Christey | REJECT(1) Frech | REVIEWING(1) Levy  Frech> References are vague, but seem to be identical to CVE-1999-0940 | (XF:mutt-text-enriched-mime-bo). According to the references, the malformed | messages consist of metacharacters. In addition, -0941"s reference and | -0940"s SuSE reference both refer to fixes in 1.0pre3 release. Will | reconsider vote if other clearer references are forthcoming. | Christey> Modify to mention that the metachar"s are in the Content-Type header. | http://marc.theaimsgroup.com/?l=bugtraq&m=90221104526154&w=2  View
922  CVE-1999-0942  Entry  UnixWare dos7utils allows a local user to gain root privileges by using the STATICMERGE environmental variable to find a script which it executes.        View
923  CVE-1999-0943  Entry  Buffer overflow in OpenLink 3.2 allows remote attackers to gain privileges via a long GET request to the web configurator.        View
924  CVE-1999-0944  Candidate  IBM WebSphere ikeyman tool uses weak encryption to store a password for a key database that is used for SSL connections.  Proposed (19991222)  ACCEPT(2) Baker, Stracener | MODIFY(1) Frech | NOOP(2) Bollinger, Christey | REVIEWING(1) Levy  Frech> XF:websphere-database-pwd-accessible | Christey> ADDREF BID:1763 | URL:http://www.securityfocus.com/bid/1763  View
925  CVE-1999-0945  Entry  Buffer overflow in Internet Mail Service (IMS) for Microsoft Exchange 5.5 and 5.0 allows remote attackers to conduct a denial of service via AUTH or AUTHINFO commands.        View

Page 185 of 20943, showing 5 records out of 104715 total, starting on record 921, ending on 925

Actions