CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6060  CVE-2002-1676  Candidate  BindView NetInventory 1.0, when used with NetRC 1.0, allows local users to read sensitive information (passwords) by deleting the HOSTCFG._NI file and forcing an audit, which rewrites the HOSTCFG._NI to HOSTCFG.INI and stores the passwords in cleartext until the audit is complete.  Assigned (20050621)  None (candidate not yet proposed)    View
6059  CVE-2002-1675  Candidate  Format string vulnerability in the Cio_PrintF function of cio_main.c in Unreal IRCd 3.1.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers.  Assigned (20050621)  None (candidate not yet proposed)    View
6058  CVE-2002-1674  Candidate  procfs on FreeBSD before 4.5 allows local users to cause a denial of service (kernel panic) by removing a file that the fstatfs function refers to.  Assigned (20050621)  None (candidate not yet proposed)    View
6057  CVE-2002-1673  Candidate  The web interface for Webmin 0.92 does not properly quote or filter script code in files that are displayed to the interface, which allows local users to execute script and possibly steal cookies by inserting the script into certain files or fields, such as a real user name entry in the passwd file.  Assigned (20050621)  None (candidate not yet proposed)    View
6056  CVE-2002-1672  Candidate  Webmin 0.92, when installed from an RPM, creates /var/webmin with insecure permissions (world readable), which could allow local users to read the root user"s cookie-based authentication credentials and possibly hijack the root user"s session using the credentials.  Assigned (20050621)  None (candidate not yet proposed)    View

Page 19732 of 20943, showing 5 records out of 104715 total, starting on record 98656, ending on 98660

Actions