CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3575  CVE-2001-0768  Candidate  GuildFTPd 0.9.7 stores user names and passwords in plaintext in the default.usr file, which allows local users to gain privileges as other FTP users by reading the file.  Proposed (20011012)  ACCEPT(2) Baker, Frech | NOOP(5) Armstrong, Christey, Cole, Foat, Wall  Baker> Vendor added password encryption in latest version, 0.996, and you can see the comments in the changes log, at the following URL: | | www.nitrolic.com/main.htm | Christey> Email ack received from guildftpd@nitrolic.com on 3/8/2002  View
3578  CVE-2001-0771  Candidate  Spytech SpyAnywhere 1.50 allows remote attackers to gain administrator access via a single character in the "loginpass" field.  Proposed (20011012)  ACCEPT(1) Frech | NOOP(5) Armstrong, Christey, Cole, Foat, Wall  Christey> fix typo: "a a"  View
3583  CVE-2001-0776  Candidate  Buffer overflow in DynFX MailServer version 2.10 allows remote attackers to conduct a denial of service via a long username to the POP3 service.  Proposed (20011012)  ACCEPT(2) Armstrong, Frech | NOOP(3) Cole, Foat, Wall    View
1280  CVE-1999-1300  Candidate  Vulnerability in accton in Cray UNICOS 6.1 and 6.0 allows local users to read arbitrary files and modify system accounting configuration.  Proposed (20010912)  ACCEPT(4) Armstrong, Cole, Foat, Stracener | MODIFY(1) Frech | NOOP(1) Wall  Frech> XF: unicos-accton-read-files(7210)  View
1537  CVE-1999-1557  Candidate  Buffer overflow in the login functions in IMAP server (imapd) in Ipswitch IMail 5.0 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via (1) a long user name or (2) a long password.  Proposed (20010912)  ACCEPT(2) Cole, Frech | NOOP(2) Foat, Wall    View

Page 201 of 20943, showing 5 records out of 104715 total, starting on record 1001, ending on 1005

Actions