CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2787  CVE-2000-1220  Candidate  The line printer daemon (lpd) in the lpr package in multiple Linux operating systems allows local users to gain root privileges by causing sendmail to execute with arbitrary command line arguments, as demonstrated using the -C option to specify a configuration file.  Assigned (20050421)  None (candidate not yet proposed)    View
2788  CVE-2000-1221  Candidate  The line printer daemon (lpd) in the lpr package in multiple Linux operating systems authenticates by comparing the reverse-resolved hostname of the local machine to the hostname of the print server as returned by gethostname, which allows remote attackers to bypass intended access controls by modifying the DNS for the attacking IP.  Assigned (20050421)  None (candidate not yet proposed)    View
2789  CVE-2000-1222  Candidate  AIX sysback before 4.2.1.13 uses a relative path to find and execute the hostname program, which allows local users to gain privileges by modifying the path to point to a malicious hostname program.  Assigned (20050421)  None (candidate not yet proposed)    View
2790  CVE-2000-1223  Candidate  quikstore.cgi in Quikstore Shopping Cart allows remote attackers to execute arbitrary commands via shell metacharacters in the URL portion of an HTTP GET request.  Assigned (20050421)  None (candidate not yet proposed)    View
12380  CVE-2005-1174  Candidate  MIT Kerberos 5 (krb5) 1.3 through 1.4.1 Key Distribution Center (KDC) allows remote attackers to cause a denial of service (application crash) via a certain valid TCP connection that causes a free of unallocated memory.  Assigned (20050419)  None (candidate not yet proposed)    View

Page 19540 of 20943, showing 5 records out of 104715 total, starting on record 97696, ending on 97700

Actions