CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2028  CVE-2000-0450  Candidate  Vulnerability in bbd server in Big Brother System and Network Monitor allows an attacker to execute arbitrary commands.  Proposed (20000615)  ACCEPT(3) Levy, Ozancin, Stracener | MODIFY(1) Frech | NOOP(3) Christey, Cole, Wall | RECAST(1) LeBlanc  LeBlanc> I have no idea what this one is talking about from the description. I also | don"t think it involves "Network Monitor", which is a component of Windows | NT/Windows 2000. This should be clarified. | Frech> XF:big-brother-bbd-bo | Christey> The original advisory, as forwarded to Bugtraq, does not | provide any details, so the description is necessarily vague. | Also, the home page at http://bb4.com has it referring to | itself as "Big Brother System and Network Monitor," so | "Network Monitor" is apparently part of the name of the product. | | Change this description to mention version 1.4g, to distinguish | from other Big Brother vulnerabilities.  View
67564  CVE-2014-0155  Candidate  The ioapic_deliver function in virt/kvm/ioapic.c in the Linux kernel through 3.14.1 does not properly validate the kvm_irq_delivery_to_apic return value, which allows guest OS users to cause a denial of service (host OS crash) via a crafted entry in the redirection table of an I/O APIC. NOTE: the affected code was moved to the ioapic_service function before the vulnerability was announced.  Assigned (20131203)  None (candidate not yet proposed)    View
67820  CVE-2014-0411  Candidate  Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45; JRockit R27.7.7 and R28.2.9; Java SE Embedded 7u45; and OpenJDK 7 allows remote attackers to affect confidentiality and integrity via vectors related to JSSE. NOTE: the previous information is from the January 2014 CPU. Oracle has not commented on third-party claims that this issue allows remote attackers to obtain sensitive information about encryption keys via a timing discrepancy during the TLS/SSL handshake.  Assigned (20131212)  None (candidate not yet proposed)    View
2540  CVE-2000-0971  Candidate  Avirt Mail 4.0 and 4.2 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long "RCPT TO" or "MAIL FROM" command.  Proposed (20001129)  ACCEPT(3) Cole, Frech, Mell | NOOP(2) Armstrong, Christey  Christey> Fix typo: "possible" should be "possibly" | Christey> fix typo: "and possible"  View
68076  CVE-2014-0667  Candidate  The RMI interface in Cisco Secure Access Control System (ACS) does not properly enforce authorization requirements, which allows remote authenticated users to read arbitrary files via a request to this interface, aka Bug ID CSCud75169.  Assigned (20140102)  None (candidate not yet proposed)    View

Page 19355 of 20943, showing 5 records out of 104715 total, starting on record 96771, ending on 96775

Actions