CVE List

Id CVE No. Status Description Phase Votes Comments Actions
1104  CVE-1999-1124  Candidate  HTTP Client application in ColdFusion allows remote attackers to bypass access restrictions for web pages on other ports by providing the target page to the mainframeset.cfm application, which requests the page from the server, making it look like the request is coming from the local host.  Proposed (20010912)  ACCEPT(2) Cole, Wall | NOOP(1) Foat    View
1105  CVE-1999-1125  Candidate  Oracle Webserver 2.1 and earlier runs setuid root, but the configuration file is owned by the oracle account, which allows any local or remote attacker who obtains access to the oracle account to gain privileges or modify arbitrary files by modifying the configuration file.  Proposed (20010912)  MODIFY(1) Frech | NOOP(2) Cole, Foat  Frech> XF:oracle-webserver-gain-root(7174)  View
1361  CVE-1999-1381  Candidate  Buffer overflow in dbadmin CGI program 1.0.1 on Linux allows remote attackers to execute arbitrary commands.  Proposed (20010912)  NOOP(3) Cole, Foat, Wall    View
1106  CVE-1999-1126  Candidate  Cisco Resource Manager (CRM) 1.1 and earlier creates certain files with insecure permissions that allow local users to obtain sensitive configuration information including usernames, passwords, and SNMP community strings, from (1) swim_swd.log, (2) swim_debug.log, (3) dbi_debug.log, and (4) temporary files whose names begin with "DPR_".  Proposed (20010912)  ACCEPT(5) Armstrong, Cole, Foat, Frech, Stracener | NOOP(1) Wall | REJECT(1) Balinsky  Balinsky> Duplicate of CVE-1999-1042  View
1363  CVE-1999-1383  Candidate  (1) bash before 1.14.7, and (2) tcsh 6.05 allow local users to gain privileges via directory names that contain shell metacharacters (` back-tick), which can cause the commands enclosed in the directory name to be executed when the shell expands filenames using the w option in the PS1 variable.  Proposed (20010912)  NOOP(2) Cole, Foat    View

Page 20691 of 20943, showing 5 records out of 104715 total, starting on record 103451, ending on 103455

Actions