CVE List

Id CVE No. Status Description Phase Votes Comments Actions
565  CVE-1999-0583  Candidate  There is a one-way or two-way trust relationship between Windows NT domains.  Proposed (19990728)  NOOP(2) Baker, Christey | REJECT(2) Northcutt, Shostack  Christey> XF:nt-trusted-domain(1284)  View
2935  CVE-2001-0114  Candidate  statsconfig.pl in OmniHTTPd 2.07 allows remote attackers to overwrite arbitrary files via the cgidir parameter.  Proposed (20010214)  MODIFY(1) Frech | NOOP(3) Christey, Cole, Wall  Christey> XF:omnihttpd-statsconfig-corrupt-files | URL:http://xforce.iss.net/static/5955.php | Frech> XF:omnihttpd-statsconfig-corrupt-files(5955) | Christey> MISC:http://www.omnicron.ca/httpd/docs/release.html | May be vague acknowledgement; need to ask | mailto:support@omnicron.ca?subject=OmniHTTPd Technical Support | (and ask them about the other OmniHTTP issues as well)  View
2934  CVE-2001-0113  Candidate  statsconfig.pl in OmniHTTPd 2.07 allows remote attackers to execute arbitrary commands via the mostbrowsers parameter, whose value is used as part of a generated Perl script.  Proposed (20010214)  MODIFY(1) Frech | NOOP(3) Christey, Cole, Wall  Christey> XF:omnihttpd-statsconfig-execute-code | URL:http://xforce.iss.net/static/5956.php | Frech> XF:omnihttpd-statsconfig-execute-code(5956)  View
5247  CVE-2002-0857  Candidate  Format string vulnerabilities in Oracle Listener Control utility (lsnrctl) for Oracle 9.2 and 9.0, 8.1, and 7.3.4, allow remote attackers to execute arbitrary code on the Oracle DBA system by placing format strings into certain entries in the listener.ora configuration file.  Modified (20050510)  ACCEPT(4) Armstrong, Baker, Cole, Wall | MODIFY(1) Frech | NOOP(3) Christey, Cox, Foat  Christey> XF:oracle-lsnrctl-format-string(9832) | URL:http://www.iss.net/security_center/static/9832.php | CERT-VN:VU#301059 | URL:http://www.kb.cert.org/vuls/id/301059 | BID:5460 | URL:http://www.securityfocus.com/bid/5460 | MISC:http://www.nextgenss.com/advisories/ora-lsnrfmtstr.txt | Frech> XF:oracle-lsnrctl-format-string(9832)  View
2120  CVE-2000-0543  Candidate  The command port for PGP Certificate Server 2.5.0 and 2.5.1 allows remote attackers to cause a denial of service if their hostname does not have a reverse DNS entry and they connect to port 4000.  Modified (20001010-1)  ACCEPT(5) Baker, Cole, Collins, Levy, Ozancin | MODIFY(1) Frech | NOOP(1) Armstrong | REVIEWING(1) Christey  Christey> XF:pgp-cert-server-dos | Frech> XF:pgp-cert-server-dos(4695) | CHANGE> [Armstrong changed vote from REVIEWING to NOOP] | CHANGE> [Christey changed vote from NOOP to REVIEWING] | Christey> Need to consult Jim Magdych on this one.  View

Page 20674 of 20943, showing 5 records out of 104715 total, starting on record 103366, ending on 103370

Actions