CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
1235 | CVE-1999-1255 | Candidate | Hyperseek allows remote attackers to modify the hyperseek configuration by directly calling the admin.cgi program with an edit_file action parameter. | Proposed (20010912) | ACCEPT(2) Cole, Frech | NOOP(2) Foat, Wall | View | |
1491 | CVE-1999-1511 | Candidate | Buffer overflows in Xtramail 1.11 allow attackers to cause a denial of service (crash) and possibly execute arbitrary commands via (1) a long PASS command in the POP3 service, (2) a long HELO command in the SMTP service, or (3) a long user name in the Control Service. | Proposed (20010912) | ACCEPT(1) Frech | NOOP(3) Cole, Foat, Wall | View | |
1236 | CVE-1999-1256 | Candidate | Oracle Database Assistant 1.0 in Oracle 8.0.3 Enterprise Edition stores the database master password in plaintext in the spoolmain.log file when a new database is created, which allows local users to obtain the password from that file. | Proposed (20010912) | ACCEPT(2) Cole, Frech | NOOP(2) Foat, Wall | View | |
1237 | CVE-1999-1257 | Candidate | Xyplex terminal server 6.0.1S1, and possibly other versions, allows remote attackers to bypass the password prompt by entering (1) a CTRL-Z character, or (2) a ? (question mark). | Proposed (20010912) | ACCEPT(1) Frech | NOOP(2) Cole, Foat | View | |
1493 | CVE-1999-1513 | Candidate | Management information base (MIB) for a 3Com SuperStack II hub running software version 2.10 contains an object identifier (.1.3.6.1.4.1.43.10.4.2) that is accessible by a read-only community string, but lists the entire table of community strings, which could allow attackers to conduct unauthorized activities. | Proposed (20010912) | NOOP(3) Cole, Foat, Wall | REVIEWING(1) Frech | Frech> (ACCEPT; Task 2355) | View |
Page 20726 of 20943, showing 5 records out of 104715 total, starting on record 103626, ending on 103630