CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2011  CVE-2000-0433  Candidate  The SuSE aaa_base package installs some system accounts with home directories set to /tmp, which allows local users to gain privileges to those accounts by creating standard user startup scripts such as profiles.  Proposed (20000615)  ACCEPT(6) Baker, Cole, Frech, Levy, Ozancin, Stracener | MODIFY(1) Prosser  Prosser> add source: | SecurityFocus | BID1357 | SuSE Linux aaabase User Account with /tmp Home Vulnerability | http://www.securityfocus.com/bid/1357 | CHANGE> [Levy changed vote from REVIEWING to ACCEPT]  View
2012  CVE-2000-0434  Candidate  The administrative password for the Allmanage web site administration software is stored in plaintext in a file which could be accessed by remote attackers.  Proposed (20000615)  ACCEPT(3) Levy, Ozancin, Stracener | MODIFY(1) Frech | NOOP(3) Cole, LeBlanc, Wall  Frech> XF:http-cgi-allmanage-plaintext-admin  View
2022  CVE-2000-0444  Candidate  HP Web JetAdmin 6.0 allows remote attackers to cause a denial of service via a malformed URL to port 8000.  Proposed (20000615)  ACCEPT(4) Frech, Levy, Prosser, Stracener | NOOP(2) Cole, Wall | REVIEWING(1) Christey  Christey> ADDREF CONFIRM:http://www.hp.com/cposupport/networking/support_doc/bpj06522.html | Christey> HP:HPSBUX0006-116 ? | XF:jetadmin-network-dos | CHANGE> [Christey changed vote from NOOP to REVIEWING] | Prosser> Vendor acknowledged in HP Bulletin HPSBUX0006-116 with upgrade info.  View
2027  CVE-2000-0449  Candidate  Omnis Studio 2.4 uses weak encryption (trivial encoding) for encrypting database fields.  Proposed (20000615)  ACCEPT(2) Levy, Stracener | MODIFY(1) Frech | NOOP(2) Cole, Wall  Frech> XF:omnis-studio-weak-encryption  View
2028  CVE-2000-0450  Candidate  Vulnerability in bbd server in Big Brother System and Network Monitor allows an attacker to execute arbitrary commands.  Proposed (20000615)  ACCEPT(3) Levy, Ozancin, Stracener | MODIFY(1) Frech | NOOP(3) Christey, Cole, Wall | RECAST(1) LeBlanc  LeBlanc> I have no idea what this one is talking about from the description. I also | don"t think it involves "Network Monitor", which is a component of Windows | NT/Windows 2000. This should be clarified. | Frech> XF:big-brother-bbd-bo | Christey> The original advisory, as forwarded to Bugtraq, does not | provide any details, so the description is necessarily vague. | Also, the home page at http://bb4.com has it referring to | itself as "Big Brother System and Network Monitor," so | "Network Monitor" is apparently part of the name of the product. | | Change this description to mention version 1.4g, to distinguish | from other Big Brother vulnerabilities.  View

Page 20582 of 20943, showing 5 records out of 104715 total, starting on record 102906, ending on 102910

Actions