CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
2011 | CVE-2000-0433 | Candidate | The SuSE aaa_base package installs some system accounts with home directories set to /tmp, which allows local users to gain privileges to those accounts by creating standard user startup scripts such as profiles. | Proposed (20000615) | ACCEPT(6) Baker, Cole, Frech, Levy, Ozancin, Stracener | MODIFY(1) Prosser | Prosser> add source: | SecurityFocus | BID1357 | SuSE Linux aaabase User Account with /tmp Home Vulnerability | http://www.securityfocus.com/bid/1357 | CHANGE> [Levy changed vote from REVIEWING to ACCEPT] | View |
2012 | CVE-2000-0434 | Candidate | The administrative password for the Allmanage web site administration software is stored in plaintext in a file which could be accessed by remote attackers. | Proposed (20000615) | ACCEPT(3) Levy, Ozancin, Stracener | MODIFY(1) Frech | NOOP(3) Cole, LeBlanc, Wall | Frech> XF:http-cgi-allmanage-plaintext-admin | View |
2022 | CVE-2000-0444 | Candidate | HP Web JetAdmin 6.0 allows remote attackers to cause a denial of service via a malformed URL to port 8000. | Proposed (20000615) | ACCEPT(4) Frech, Levy, Prosser, Stracener | NOOP(2) Cole, Wall | REVIEWING(1) Christey | Christey> ADDREF CONFIRM:http://www.hp.com/cposupport/networking/support_doc/bpj06522.html | Christey> HP:HPSBUX0006-116 ? | XF:jetadmin-network-dos | CHANGE> [Christey changed vote from NOOP to REVIEWING] | Prosser> Vendor acknowledged in HP Bulletin HPSBUX0006-116 with upgrade info. | View |
2027 | CVE-2000-0449 | Candidate | Omnis Studio 2.4 uses weak encryption (trivial encoding) for encrypting database fields. | Proposed (20000615) | ACCEPT(2) Levy, Stracener | MODIFY(1) Frech | NOOP(2) Cole, Wall | Frech> XF:omnis-studio-weak-encryption | View |
2028 | CVE-2000-0450 | Candidate | Vulnerability in bbd server in Big Brother System and Network Monitor allows an attacker to execute arbitrary commands. | Proposed (20000615) | ACCEPT(3) Levy, Ozancin, Stracener | MODIFY(1) Frech | NOOP(3) Christey, Cole, Wall | RECAST(1) LeBlanc | LeBlanc> I have no idea what this one is talking about from the description. I also | don"t think it involves "Network Monitor", which is a component of Windows | NT/Windows 2000. This should be clarified. | Frech> XF:big-brother-bbd-bo | Christey> The original advisory, as forwarded to Bugtraq, does not | provide any details, so the description is necessarily vague. | Also, the home page at http://bb4.com has it referring to | itself as "Big Brother System and Network Monitor," so | "Network Monitor" is apparently part of the name of the product. | | Change this description to mention version 1.4g, to distinguish | from other Big Brother vulnerabilities. | View |
Page 20582 of 20943, showing 5 records out of 104715 total, starting on record 102906, ending on 102910