CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4262  CVE-2001-1459  Candidate  OpenSSH 2.9 and earlier does not initiate a Pluggable Authentication Module (PAM) session if commands are executed with no pty, which allows local users to bypass resource limits (rlimits) set in pam.d.  Assigned (20050421)  None (candidate not yet proposed)    View
4263  CVE-2001-1460  Candidate  SQL injection vulnerability in article.php in PostNuke 0.62 through 0.64 allows remote attackers to bypass authentication via the user parameter.  Assigned (20050421)  None (candidate not yet proposed)    View
4264  CVE-2001-1461  Candidate  Directory traversal vulnerability in WebID in RSA Security SecurID 5.0 as used by ACE/Agent for Windows, Windows NT and Windows 2000 allows attackers to access restricted resources via URL-encoded (1) /.. or (2) .. sequences.  Assigned (20050421)  None (candidate not yet proposed)    View
4265  CVE-2001-1462  Candidate  WebID in RSA Security SecurID 5.0 as used by ACE/Agent for Windows, Windows NT and Windows 2000 allows attackers to cause the WebID agent to enter debug mode via a URL containing null characters, which may allow attackers to obtain sensitive information.  Assigned (20050421)  None (candidate not yet proposed)    View
4266  CVE-2001-1463  Candidate  The remote administration client for RhinoSoft Serv-U 3.0 sends the user password in plaintext even when S/KEY One-Time Password (OTP) authentication is enabled, which allows remote attackers to sniff passwords.  Assigned (20050421)  None (candidate not yet proposed)    View

Page 19535 of 20943, showing 5 records out of 104715 total, starting on record 97671, ending on 97675

Actions