CVE List

Id CVE No. Status Description Phase Votes Comments Actions
1215  CVE-1999-1235  Candidate  Internet Explorer 5.0 records the username and password for FTP servers in the URL history, which could allow (1) local users to read the information from another user"s index.dat, or (2) people who are physically observing ("shoulder surfing") another user to read the information from the status bar when the user moves the mouse over a link.  Proposed (20010912)  ACCEPT(4) Cole, Foat, Frech, Wall  CHANGE> [Foat changed vote from NOOP to ACCEPT]  View
1471  CVE-1999-1491  Candidate  abuse.console in Red Hat 2.1 uses relative pathnames to find and execute the undrv program, which allows local users to execute arbitrary commands via a path that points to a Trojan horse program.  Proposed (20010912)  ACCEPT(1) Cole | NOOP(1) Foat    View
1216  CVE-1999-1236  Candidate  Internet Anywhere Mail Server 2.3.1 stores passwords in plaintext in the msgboxes.dbf file, which could allow local users to gain privileges by extracting the passwords from msgboxes.dbf.  Proposed (20010912)  ACCEPT(2) Cole, Frech | NOOP(2) Foat, Wall    View
1472  CVE-1999-1492  Candidate  Vulnerability in (1) diskperf and (2) diskalign in IRIX 6.4 allows local attacker to create arbitrary root owned files, leading to root privileges.  Proposed (20010912)  ACCEPT(4) Cole, Foat, Frech, Stracener    View
1217  CVE-1999-1237  Candidate  Multiple buffer overflows in smbvalid/smbval SMB authentication library, as used in Apache::AuthenSmb and possibly other modules, allows remote attackers to execute arbitrary commands via (1) a long username, (2) a long password, and (3) other unspecified methods.  Proposed (20010912)  ACCEPT(1) Frech | NOOP(3) Cole, Foat, Wall    View

Page 20718 of 20943, showing 5 records out of 104715 total, starting on record 103586, ending on 103590

Actions