CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2848  CVE-2001-0027  Candidate  mod_sqlpw module in ProFTPD does not reset a cached password when a user uses the "user" command to change accounts, which allows authenticated attackers to gain privileges of other users.  Proposed (20010202)  ACCEPT(1) Frech | NOOP(3) Cole, Wall, Ziese    View
2851  CVE-2001-0030  Candidate  FoolProof 3.9 allows local users to bypass program execution restrictions by downloading the restricted executables from another source and renaming them.  Proposed (20010202)  ACCEPT(2) Baker, Frech | NOOP(4) Christey, Cole, Wall, Ziese  Christey> ADDREF BUGTRAQ:20001208 Foolproof Security Vulnerability | http://www.securityfocus.com/archive/1/149952  View
2852  CVE-2001-0031  Candidate  BroadVision One-To-One Enterprise allows remote attackers to determine the physical path of server files by requesting a .JSP file name that does not exist.  Proposed (20010202)  ACCEPT(2) Baker, Frech | NOOP(3) Cole, Wall, Ziese    View
2853  CVE-2001-0032  Candidate  Format string vulnerability in ssldump possibly allows remote attackers to cause a denial of service and possibly gain root privileges via malicious format string specifiers in a URL.  Proposed (20010202)  ACCEPT(2) Baker, Frech | NOOP(3) Cole, Wall, Ziese    View
2858  CVE-2001-0037  Candidate  Directory traversal vulnerability in HomeSeer before 1.4.29 allows remote attackers to read arbitrary files via a URL containing .. (dot dot) specifiers.  Proposed (20010202)  ACCEPT(2) Baker, Frech | NOOP(3) Cole, Wall, Ziese    View

Page 20623 of 20943, showing 5 records out of 104715 total, starting on record 103111, ending on 103115

Actions