CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
1233 | CVE-1999-1253 | Candidate | Vulnerability in a kernel error handling routine in SCO OpenServer 5.0.2 and earlier, and SCO Internet FastStart 1.0, allows local users to gain root privileges. | Proposed (20010912) | ACCEPT(4) Cole, Foat, Frech, Stracener | NOOP(1) Wall | View | |
1489 | CVE-1999-1509 | Candidate | Directory traversal vulnerability in Etype Eserv 2.50 web server allows a remote attacker to read any file in the file system via a .. (dot dot) in a URL. | Proposed (20010912) | ACCEPT(1) Frech | NOOP(3) Cole, Foat, Wall | Frech> Normalize XF:eserv-fileread(3449) | Normalize URL:http://xforce.iss.net/static/3449.php | View |
2769 | CVE-2000-1202 | Candidate | ikeyman in IBM IBMHSSSB 1.0 sets the CLASSPATH environmental variable to include the user"s own CLASSPATH directories before the system"s directories, which allows a malicious local user to execute arbitrary code as root via a Trojan horse Ikeyman class. | Proposed (20010912) | ACCEPT(2) Frech, Williams | NOOP(4) Cole, Foat, Stracener, Wall | Williams> :%s/IBMHSSSB/IBMHSSB | View |
1234 | CVE-1999-1254 | Candidate | Windows 95, 98, and NT 4.0 allow remote attackers to cause a denial of service by spoofing ICMP redirect messages from a router, which causes Windows to change its routing tables. | Proposed (20010912) | ACCEPT(3) Cole, Frech, Wall | MODIFY(1) Meunier | NOOP(2) Christey, Foat | Christey> Need to get feedback from MS on this. | Christey> (prompted from Pascal Meunier) should this be treated | as a general design issue with ICMP? Or is it a specific | implementation flaw that only affects Reliant? | Meunier> The description is too narrow and incorrect. Spoofed ICMP | redirect messages can be used to setup man-in-the-middle attacks | instead of a DoS. There"s no reason that this behavior would be | limited to Windows, as it is specified by the standard. As I said | elsewhere, ICMP messages should not be acted upon without access | controls. | View |
1490 | CVE-1999-1510 | Candidate | Buffer overflows in Bisonware FTP server prior to 4.1 allow remote attackers to cause a denial of service, and possibly execute arbitrary commands, via long (1) USER, (2) LIST, or (3) CWD commands. | Proposed (20010912) | ACCEPT(3) Cole, Foat, Frech | NOOP(1) Wall | View |
Page 20725 of 20943, showing 5 records out of 104715 total, starting on record 103621, ending on 103625