CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3391  CVE-2001-0578  Candidate  Buffer overflow in lpforms in SCO OpenServer 5.0-5.0.6 can allow a local attacker to gain additional privileges via a long first argument to the lpforms command.  Modified (20020225-01)  ACCEPT(2) Frech, Williams | MODIFY(1) Bishop | NOOP(4) Cole, Foat, Wall, Ziese | RECAST(1) Baker  Bishop> recommend combining as stated in analysis | Baker> Merge with CVE-2001-0575, which has vendor acknowledgement, and includes this as one of the binaries with the same problem.  View
3400  CVE-2001-0587  Candidate  deliver program in MMDF 2.43.3b in SCO OpenServer 5.0.6 can allow a local attacker to gain additional privileges via a buffer overflow in the first argument to the command.  Modified (20020225-01)  ACCEPT(4) Baker, Bishop, Frech, Williams | NOOP(5) Christey, Cole, Foat, Wall, Ziese  Frech> CONFIRM:ftp://ftp.sco.com/SSE/sse072b.ltr | Christey> SCO fixed a number of mail-related issues. This is affected | by CD:SF-EXEC. There may be related CANs.  View
3419  CVE-2001-0606  Candidate  Vulnerability in iPlanet Web Server 4.X in HP-UX 11.04 (VVOS) with VirtualVault A.04.00 allows a remote attacker to create a denial of service via the HTTPS service.  Modified (20020225-01)  ACCEPT(6) Baker, Bishop, Cole, Wall, Williams, Ziese | MODIFY(1) Frech | NOOP(1) Foat  Frech> XF:hp-virtualvault-iws-dos(6110) | CHANGE> [Williams changed vote from REVIEWING to ACCEPT]  View
3421  CVE-2001-0608  Candidate  HP architected interface facility (AIF) as includes with MPE/iX 5.5 through 6.5 running on a HP3000 allows an attacker to gain additional privileges and gain access to databases via the AIF - AIFCHANGELOGON program.  Modified (20020225-01)  ACCEPT(5) Baker, Bishop, Cole, Williams, Ziese | MODIFY(1) Frech | NOOP(2) Foat, Wall  Frech> XF:hp-aif-gain-privileges(6951)  View
3613  CVE-2001-0807  Candidate  Internet Explorer 5.0, and possibly other versions, may allow remote attackers (malicious web pages) to read known text files from a client"s hard drive via a SCRIPT tag with a SRC value that points to the text file.  Modified (20020226-01)  ACCEPT(3) Baker, Cole, Prosser | MODIFY(1) Frech | NOOP(3) Armstrong, Bishop, Foat | REVIEWING(2) Christey, Wall  Frech> XF:ie-local-file-disclosure(6688) | Prosser> Legacy product, users should have updated. | Courtesy of Microsoft Security Response Center <secure@microsoft.com>: | | IE 5 is no longer supported - so unless this repro"s on 5.01 or 5.5, we wouldn"t consider doing anything for this. | Christey> ADDREF BID:2836 | URL:http://www.securityfocus.com/bid/2836 | CHANGE> [Christey changed vote from NOOP to REVIEWING]  View

Page 20392 of 20943, showing 5 records out of 104715 total, starting on record 101956, ending on 101960

Actions