CVE List

Id CVE No. Status Description Phase Votes Comments Actions
1904  CVE-2000-0326  Candidate  Meeting Maker uses weak encryption (a polyalphabetic substitution cipher) for passwords, which allows remote attackers to sniff and decrypt passwords for Meeting Maker accounts.  Proposed (20000518)  ACCEPT(2) Baker, Levy | MODIFY(1) Frech | NOOP(4) Christey, Cole, LeBlanc, Wall  Frech> XF:meetingmaker-weak-encryption | Christey> Add original Bugtraq reference at: | http://archives.neohapsis.com/archives/bugtraq/2000-04/0223.html | Also ADDREF XF:meetingmaker-weak-encryption  View
2181  CVE-2000-0605  Candidate  Blackboard CourseInfo 4.0 stores the local and SQL administrator user names and passwords in cleartext in a registry key whose access control allows users to access the passwords.  Proposed (20000719)  ACCEPT(2) Baker, Levy | MODIFY(1) Frech | NOOP(4) Christey, Cole, LeBlanc, Magdych | REVIEWING(1) Wall  Christey> ADDREF NTBUGTRAQ:20000718 Security Fix for Blackboard CourseInfo 4.0 | URL:http://archives.neohapsis.com/archives/ntbugtraq/2000-q3/0040.html | Frech> XF:blackboard-courseinfo-plaintext(4904) | Christey> Vendor acknowledgement is at: | BUGTRAQ:20000719 Security Fix for Blackboard CourseInfo 4.0 | URL:http://www.securityfocus.com/frames/?content=/templates/archive.pike%3Flist%3D1%26msg%3D20000719151904.I17986@securityfocus.com | CHANGE> [Magdych changed vote from REVIEWING to NOOP]  View
2221  CVE-2000-0645  Candidate  WFTPD and WFTPD Pro 2.41 allows remote attackers to cause a denial of service by using the RESTART (REST) command and writing beyond the end of a file, or writing to a file that does not exist, via commands such as STORE UNIQUE (STOU), STORE (STOR), or APPEND (APPE).  Proposed (20000803)  ACCEPT(2) Baker, Levy | MODIFY(1) Frech | NOOP(3) Cole, LeBlanc, Wall  Frech> XF:wftpd-rest-dos(5004)  View
2222  CVE-2000-0646  Candidate  WFTPD and WFTPD Pro 2.41 allows remote attackers to obtain the real pathname for a file by executing a STATUS (STAT) command while the file is being transferred.  Proposed (20000803)  ACCEPT(2) Baker, Levy | MODIFY(1) Frech | NOOP(3) Cole, LeBlanc, Wall  Frech> XF:wftpd-stat-info(5005)  View
2223  CVE-2000-0647  Candidate  WFTPD and WFTPD Pro 2.41 allows remote attackers to cause a denial of service by executing an MLST command before logging into the server.  Proposed (20000803)  ACCEPT(2) Baker, Levy | MODIFY(1) Frech | NOOP(3) Cole, LeBlanc, Wall  Frech> XF:wftpd-mlst-dos(5006)  View

Page 20146 of 20943, showing 5 records out of 104715 total, starting on record 100726, ending on 100730

Actions