CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
3835 | CVE-2001-1031 | Candidate | Directory traversal vulnerability in Meteor FTP 1.0 allows remote attackers to read arbitrary files via (1) a .. (dot dot) in the ls/LIST command, or (2) a ... in the cd/CWD command. | Modified (20020228-01) | ACCEPT(4) Baker, Cole, Frech, Green | NOOP(2) Foat, Wall | View | |
3834 | CVE-2001-1030 | Entry | Squid before 2.3STABLE5 in HTTP accelerator mode does not enable access control lists (ACLs) when the httpd_accel_host and http_accel_with_proxy off settings are used, which allows attackers to bypass the ACLs and conduct unauthorized activities such as port scanning. | View | |||
3833 | CVE-2001-1029 | Entry | libutil in OpenSSH on FreeBSD 4.4 and earlier does not drop privileges before verifying the capabilities for reading the copyright and welcome files, which allows local users to bypass the capabilities checks and read arbitrary files by specifying alternate copyright or welcome files. | View | |||
3832 | CVE-2001-1028 | Entry | Buffer overflow in ultimate_source function of man 1.5 and earlier allows local users to gain privileges. | View | |||
3831 | CVE-2001-1027 | Entry | Buffer overflow in WindowMaker (aka wmaker) 0.64 and earlier allows remote attackers to execute arbitrary code via a long window title. | View |
Page 20177 of 20943, showing 5 records out of 104715 total, starting on record 100881, ending on 100885