CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
2365 | CVE-2000-0789 | Candidate | WinU 5.x and earlier uses weak encryption to store its configuration password, which allows local users to decrypt the password and gain privileges. | Proposed (20000921) | ACCEPT(1) Williams | MODIFY(2) Baker, Frech | NOOP(3) Christey, Cole, Wall | REVIEWING(1) Levy | Frech> XF:winu-backdoor(5376) | Christey> ADDREF BID:1741 | ADDREF URL:http://www.securityfocus.com/bid/1741 | Baker> Since there are apparently two different methods of weak encryption, perhaps the description should read " ... used weak encryption methods.." | View |
2364 | CVE-2000-0788 | Entry | The Mail Merge tool in Microsoft Word does not prompt the user before executing Visual Basic (VBA) scripts in an Access database, which could allow an attacker to execute arbitrary commands. | View | |||
2363 | CVE-2000-0787 | Entry | IRC Xchat client versions 1.4.2 and earlier allows remote attackers to execute arbitrary commands by encoding shell metacharacters into a URL which XChat uses to launch a web browser. | View | |||
2362 | CVE-2000-0786 | Entry | GNU userv 1.0.0 and earlier does not properly perform file descriptor swapping, which can corrupt the USERV_GROUPS and USERV_GIDS environmental variables and allow local users to bypass some access restrictions. | View | |||
2361 | CVE-2000-0785 | Candidate | WircSrv IRC Server 5.07s allows IRC operators to read arbitrary files via the importmotd command, which sets the Message of the Day (MOTD) to the specified file. | Proposed (20000921) | ACCEPT(1) Baker | MODIFY(1) Levy | NOOP(3) Cole, Wall, Williams | Levy> BID 1472 | View |
Page 20471 of 20943, showing 5 records out of 104715 total, starting on record 102351, ending on 102355