CVE List

Id CVE No. Status Description Phase Votes Comments Actions
756  CVE-1999-0776  Candidate  Alibaba HTTP server allows remote attackers to read files via a .. (dot dot) attack.  Proposed (19991214)  ACCEPT(4) Frech, Levy, Ozancin, Stracener | MODIFY(1) Baker | NOOP(6) Armstrong, Blake, Cole, Landfield, LeBlanc, Wall | REVIEWING(1) Christey  Christey> This candidate is unconfirmed by the vendor. | | Posted by Arne Vidstrom. | Blake> I"d like to change my vote on this from ACCEPT to NOOP. I did some | digging and the vendor seems to have discontinued the product, so no | information is available beyond Arne"s post. Unless Andre has a copy | in his archive and can test it, I think we have to leave it out. | Wall> I agree with Blake. We have not seen the product and it has been discontinued. | CHANGE> [Christey changed vote from NOOP to REVIEWING] | Christey> If this is (or was) tested by some tool, we should ACCEPT it. | Baker> http://www.securityfocus.com/bid/270 | Christey> BID:270 | URL:http://www.securityfocus.com/bid/270  View
66292  CVE-2013-6345  Candidate  Unspecified vulnerability in the ZCC page in Novell ZENworks Configuration Management (ZCM) before 11.2.4 has unknown impact and attack vectors related to an "Application Exception."  Assigned (20131102)  None (candidate not yet proposed)    View
66548  CVE-2013-6601  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20131104)  None (candidate not yet proposed)    View
66804  CVE-2013-6857  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20131122)  None (candidate not yet proposed)    View
1524  CVE-1999-1544  Candidate  Buffer overflow in FTP server in Microsoft IIS 3.0 and 4.0 allows local and sometimes remote attackers to cause a denial of service via a long NLST (ls) command.  Proposed (20010912)  ACCEPT(1) Wall | NOOP(2) Cole, Foat | REJECT(1) Frech  Frech> Dupe CVE-1999-0349  View

Page 19990 of 20943, showing 5 records out of 104715 total, starting on record 99946, ending on 99950

Actions