CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4307  CVE-2001-1507  Candidate  OpenSSH before 3.0.1 with Kerberos V enabled does not properly authenticate users, which could allow remote attackers to login unchallenged.  Assigned (20050714)  None (candidate not yet proposed)    View
4308  CVE-2001-1508  Candidate  Buffer overflow in lpstat in SCO OpenServer 5.0 through 5.0.6a allows local users to execute arbitrary code as group bin via a long command line argument.  Assigned (20050714)  None (candidate not yet proposed)    View
4309  CVE-2001-1509  Candidate  geteuid in Itanium Architecture (IA) running on HP-UX 11.20 does not properly identify a user"s effective user id, which could allow local users to gain privileges.  Assigned (20050714)  None (candidate not yet proposed)    View
4310  CVE-2001-1510  Candidate  Allaire JRun 2.3.3, 3.0 and 3.1 running on IIS 4.0 and 5.0, iPlanet, Apache, JRun web server (JWS), and possibly other web servers allows remote attackers to read arbitrary files and directories by appending (1) "%3f.jsp", (2) "?.jsp" or (3) "?" to the requested URL.  Assigned (20050714)  None (candidate not yet proposed)    View
4311  CVE-2001-1511  Candidate  JRun 3.0 and 3.1 running on JRun Web Server (JWS) and IIS allows remote attackers to read arbitrary JavaServer Pages (JSP) source code via a request URL containing the source filename ending in (1) "jsp%00" or (2) "js%2570".  Assigned (20050714)  None (candidate not yet proposed)    View

Page 19118 of 20943, showing 5 records out of 104715 total, starting on record 95586, ending on 95590

Actions