CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
4307 | CVE-2001-1507 | Candidate | OpenSSH before 3.0.1 with Kerberos V enabled does not properly authenticate users, which could allow remote attackers to login unchallenged. | Assigned (20050714) | None (candidate not yet proposed) | View | |
4308 | CVE-2001-1508 | Candidate | Buffer overflow in lpstat in SCO OpenServer 5.0 through 5.0.6a allows local users to execute arbitrary code as group bin via a long command line argument. | Assigned (20050714) | None (candidate not yet proposed) | View | |
4309 | CVE-2001-1509 | Candidate | geteuid in Itanium Architecture (IA) running on HP-UX 11.20 does not properly identify a user"s effective user id, which could allow local users to gain privileges. | Assigned (20050714) | None (candidate not yet proposed) | View | |
4310 | CVE-2001-1510 | Candidate | Allaire JRun 2.3.3, 3.0 and 3.1 running on IIS 4.0 and 5.0, iPlanet, Apache, JRun web server (JWS), and possibly other web servers allows remote attackers to read arbitrary files and directories by appending (1) "%3f.jsp", (2) "?.jsp" or (3) "?" to the requested URL. | Assigned (20050714) | None (candidate not yet proposed) | View | |
4311 | CVE-2001-1511 | Candidate | JRun 3.0 and 3.1 running on JRun Web Server (JWS) and IIS allows remote attackers to read arbitrary JavaServer Pages (JSP) source code via a request URL containing the source filename ending in (1) "jsp%00" or (2) "js%2570". | Assigned (20050714) | None (candidate not yet proposed) | View |
Page 19118 of 20943, showing 5 records out of 104715 total, starting on record 95586, ending on 95590