CVE List

Id CVE No. Status Description Phase Votes Comments Actions
119  CVE-1999-0119  Candidate  Windows NT 4.0 beta allows users to read and delete shares.  Proposed (19990728)  MODIFY(1) Frech | NOOP(2) Baker, Northcutt | REJECT(1) Wall  Wall> Reject based on beta copy. | Frech> XF:nt-beta(11) | Reconsider reject, because this beta was in widespread use.  View
574  CVE-1999-0592  Candidate  The Logon box of a Windows NT system displays the name of the last user who logged in.  Proposed (19990728)  MODIFY(1) Frech | NOOP(2) Baker, Christey | REJECT(2) Northcutt, Wall  Wall> Information gathering, not vulnerability | Northcutt> Ah a C2 weenie must have snuck this in, this can be a good thing | not just vulnerability | Frech> XF:nt-display-last-username(1353) | Use it if you will. :-) If not, let us know so I can remove the CAN | reference from our database. | Christey> MSKB:Q114463 | http://support.microsoft.com/support/kb/articles/q114/4/63.asp  View
528  CVE-1999-0531  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configuration that does not directly introduce security vulnerabilities, so it is more appropriate to cover under the Common Configuration Enumeration (CCE). Notes: the former description is: "An SMTP service supports EXPN, VRFY, HELP, ESMTP, and/or EHLO."  Modified (20080731)  MODIFY(1) Frech | NOOP(1) Christey | RECAST(1) Shostack | REJECT(1) Northcutt  Shostack> I think expn != vrfy, help, esmtp. | Frech> XF:lotus-domino-esmtp-bo(4499) (also assigned to CVE-2000-0452 and | CVE-2000-1046) | XF:smtp-expn(128) | XF:smtp-vrfy(130) | XF:smtp-helo-bo(886) | XF:smtp-vrfy-bo(887) | XF:smtp-expn-bo(888) | XF:slmail-vrfyexpn-overflow(1721) | XF:smtp-ehlo(323) | | Perhaps add RCPT? If so, add XF:smtp-rcpt(1928) | Christey> XF:smtp-vrfy(130) ?  View
578  CVE-1999-0596  Candidate  A Windows NT log file has an inappropriate maximum size or retention period.  Proposed (19990728)  MODIFY(1) Frech | NOOP(1) Baker | REJECT(2) Northcutt, Wall  Northcutt> define appropriate | Frech> XF:reg-app-log-small(2521) | XF:reg-sec-log-maxsize(2577) | XF:reg-sys-log-small(2586)  View
585  CVE-1999-0603  Candidate  In Windows NT, an inappropriate user is a member of a group, e.g. Administrator, Backup Operators, Domain Admins, Domain Guests, Power Users, Print Operators, Replicators, System Operators, etc.  Proposed (19990728)  MODIFY(1) Frech | NOOP(1) Baker | REJECT(2) Northcutt, Wall  Frech> XF:nt-system-operator | XF:nt-admin-group | XF:nt-replicator | XF:nt-print-operator | XF:nt-power-user | XF:nt-guest-in-group | XF:nt-backup-operator | XF:nt-domain-admin | XF:nt-domain-guest | XF:win2k-acct-oper-grp | XF:win2k-admin-grp | XF:win2k-backup-oper-grp | XF:win2k-certpublishers-grp | XF:win2k-dhcp-admin-grp | XF:win2k-dnsadm-grp | XF:win2k-domainadm-grp | XF:win2k-entadm-grp | XF:win2k-printoper-grp | XF:win2k-replicator-grp | XF:win2k-schemaadm-grp | XF:win2k-serveroper-grp | You asked for it... :-) Use or reject at your discretion. If rejected, | please let us know so we can remove CAN references from database.  View

Page 19847 of 20943, showing 5 records out of 104715 total, starting on record 99231, ending on 99235

Actions