CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3245  CVE-2001-0427  Entry  Cisco VPN 3000 series concentrators before 2.5.2(F) allow remote attackers to cause a denial of service via a flood of invalid login requests to (1) the SSL service, or (2) the telnet service, which do not properly disconnect the user after several failed login attempts.        View
3244  CVE-2001-0426  Candidate  Buffer overflow in dtsession on Solaris, and possibly other operating systems, allows local users to gain privileges via a long LANG environmental variable.  Proposed (20010524)  ACCEPT(1) Dik | MODIFY(1) Frech | NOOP(2) Cole, Wall | REVIEWING(1) Ziese  Frech> XF:solaris-dtsession-bo(6366) | Dik> sun bug: 4448598  View
3243  CVE-2001-0425  Candidate  AdLibrary.pm in AdCycle 0.78b allows remote attackers to gain privileges to AdCycle via a malformed Agent: header in the HTTP request, which is inserted into a resulting SQL query that is used to verify login information.  Proposed (20010524)  MODIFY(1) Frech | NOOP(4) Cole, Oliver, Wall, Ziese  Frech> XF:adcycle-adlibrarypm-unauthorized-access(6618)  View
3242  CVE-2001-0424  Candidate  BubbleMon 1.31 does not properly drop group privileges before executing programs, which allows local users to execute arbitrary commands with the kmem group id.  Proposed (20010524)  MODIFY(1) Frech | NOOP(3) Cole, Wall, Ziese  Frech> XF:bubblemon-elevate-privileges(6378)  View
3241  CVE-2001-0423  Entry  Buffer overflow in ipcs in Solaris 7 x86 allows local users to execute arbitrary code via a long TZ (timezone) environmental variable, a different vulnerability than CAN-2002-0093.        View

Page 20295 of 20943, showing 5 records out of 104715 total, starting on record 101471, ending on 101475

Actions