CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
92 | CVE-1999-0092 | Candidate | Various vulnerabilities in the AIX portmir command allows local users to obtain root access. | Proposed (19990623) | ACCEPT(2) Baker, Bollinger | MODIFY(1) Frech | NOOP(1) Ozancin | Frech> XF:ibm-portmir | View |
353 | CVE-1999-0354 | Candidate | Internet Explorer 4.x or 5.x with Word 97 allows arbitrary execution of Visual Basic programs to the IE client through the Word 97 template, which doesn"t warn the user that the template contains executable content. Also applies to Outlook when the client views a malicious email message. | Proposed (19990623) | ACCEPT(3) Baker, Ozancin, Wall | MODIFY(1) Frech | NOOP(1) Christey | Frech> XF:word97-template-macro | Christey> CHANGEREF NTBUGTRAQ:19990127 IE 4/5/Outlook + Word 97 security hole | URL:http://marc.theaimsgroup.com/?l=ntbugtraq&m=91747570922757&w=2 | BID:196 | http://www.securityfocus.com/bid/196 | Christey> MSKB:Q214652 | http://support.microsoft.com/support/kb/articles/q214/6/52.asp | View |
127 | CVE-1999-0127 | Candidate | swinstall and swmodify commands in SD-UX package in HP-UX systems allow local users to create or overwrite arbitrary files to gain root access. | Proposed (19990623) | ACCEPT(2) Baker, Prosser | MODIFY(1) Frech | NOOP(1) Christey | Frech> (keep current XF: reference, and add) | XF:hpux-sqwmodify | Christey> Perhaps this should be split, per SF-LOC. | Christey> CIAC:H-81 | http://ciac.llnl.gov/ciac/bulletins/h-81.shtml | HP:HPSBUX9707-064 references CERT:CA-96.27 | http://ciac.llnl.gov/ciac/bulletins/h-81.shtml | | The original AUSCERT advisory says that the programs "create | files in an insecure manner" and "Exploit details involving | this vulnerability have been made publicly available." which | leads one to assume that the following original Bugtraq post | provides the details for a standard symlink problem: | | BUGTRAQ:19961005 swinst,bug | http://marc.theaimsgroup.com/?l=bugtraq&m=87602167419941&w=2 | View |
434 | CVE-1999-0435 | Candidate | MC/ServiceGuard and MC/LockManager in HP-UX allows local users to gain privileges through SAM. | Proposed (19990623) | ACCEPT(2) Baker, Ozancin | MODIFY(1) Frech | NOOP(1) Christey | Frech> XF:hp-servicegaurd | Christey> ADDREF CIAC:J-039 | Christey> Note the typo in Andre"s suggested reference. | Normalize to XF:hp-serviceguard(2046) | View |
237 | CVE-1999-0238 | Candidate | php.cgi allows attackers to read any file on the system. | Proposed (19990623) | ACCEPT(5) Baker, Collins, Frech, Northcutt, Prosser | NOOP(1) Christey | Prosser> additional source | AUSCERT External Security Bulletin ESB-97.047 | http://www.auscert.org.au | Christey> ADDREF BUGTRAQ:19970416 Update on PHP/FI hole | URL:http://www.dataguard.no/bugtraq/1997_2/0069.html | The attacker specifies the filename as an argument to the | program. | Add "PHP/FI" to description to facilitate search. | AUSCERT URL is ftp://ftp.auscert.org.au/pub/auscert/ESB/ESB-97.047 | Christey> Consider adding BID:2250 | View |
Page 20518 of 20943, showing 5 records out of 104715 total, starting on record 102586, ending on 102590