CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2725  CVE-2000-1158  Candidate  NAI Sniffer Agent uses base64 encoding for authentication, which allows attackers to sniff the network and easily decrypt usernames and passwords.  Proposed (20001219)  MODIFY(1) Frech | NOOP(2) Cole, Wall  Frech> XF:sniffer-agent-weak-authentication(5951)  View
2739  CVE-2000-1172  Candidate  Buffer overflow in Gaim 0.10.3 and earlier using the OSCAR protocol allows remote attackers to conduct a denial of service and possibly execute arbitrary commands via a long HTML tag.  Proposed (20001219)  MODIFY(1) Frech | NOOP(2) Cole, Wall  Frech> XF:gaim-remote-bo(5511)  View
2743  CVE-2000-1176  Candidate  Directory traversal vulnerability in YaBB search.pl CGI script allows remote attackers to read arbitrary files via a .. (dot dot) attack in the "catsearch" form field.  Proposed (20001219)  MODIFY(1) Frech | NOOP(2) Cole, Wall  Frech> XF:yabb-search-format-string(5501)  View
1048  CVE-1999-1068  Candidate  Oracle Webserver 2.1, when serving PL/SQL stored procedures, allows remote attackers to cause a denial of service via a long HTTP GET request.  Proposed (20010912)  MODIFY(1) Frech | NOOP(2) Cole, Foat  Frech> XF:oracle-webserver-dos(1812)  View
1105  CVE-1999-1125  Candidate  Oracle Webserver 2.1 and earlier runs setuid root, but the configuration file is owned by the oracle account, which allows any local or remote attacker who obtains access to the oracle account to gain privileges or modify arbitrary files by modifying the configuration file.  Proposed (20010912)  MODIFY(1) Frech | NOOP(2) Cole, Foat  Frech> XF:oracle-webserver-gain-root(7174)  View

Page 19844 of 20943, showing 5 records out of 104715 total, starting on record 99216, ending on 99220

Actions