CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4247  CVE-2001-1444  Candidate  The Kerberos Telnet protocol, as implemented by KTH Kerberos IV and Kerberos V (Heimdal), does not encrypt authentication and encryption options sent from the server, which allows remote attackers to downgrade authentication and encryption mechanisms via a man-in-the-middle attack.  Assigned (20050421)  None (candidate not yet proposed)    View
4248  CVE-2001-1445  Candidate  Unknown vulnerability in the SMTP server in Lotus Domino 5.0 through 5.7 allows remote attackers to bypass mail relaying restrictions via crafted e-mail addresses in "RCPT TO" commands.  Assigned (20050421)  None (candidate not yet proposed)    View
4249  CVE-2001-1446  Candidate  Find-By-Content in Mac OS X 10.0 through 10.0.4 creates world-readable index files named .FBCIndex in every directory, which allows remote attackers to learn the contents of files in web accessible directories.  Assigned (20050421)  None (candidate not yet proposed)    View
4250  CVE-2001-1447  Candidate  NetInfo Manager for Mac OS X 10.0 through 10.1 allows local users to gain root privileges by opening applications using the (1) "recent items" and (2) "services" menus, which causes the applications to run with root privileges.  Assigned (20050421)  None (candidate not yet proposed)    View
4251  CVE-2001-1448  Candidate  Magic eDeveloper Enterprise Edition 8.30-5 and earlier allows local users to overwrite arbitrary files and possibly execute code via a symlink attack on temporary files created by the (1) mkuserproc, (2) mgrnt, and (3) mgdatasrvr.sc scripts.  Assigned (20050421)  None (candidate not yet proposed)    View

Page 19532 of 20943, showing 5 records out of 104715 total, starting on record 97656, ending on 97660

Actions