CVE List

Id CVE No. Status Description Phase Votes Comments Actions
1235  CVE-1999-1255  Candidate  Hyperseek allows remote attackers to modify the hyperseek configuration by directly calling the admin.cgi program with an edit_file action parameter.  Proposed (20010912)  ACCEPT(2) Cole, Frech | NOOP(2) Foat, Wall    View
1491  CVE-1999-1511  Candidate  Buffer overflows in Xtramail 1.11 allow attackers to cause a denial of service (crash) and possibly execute arbitrary commands via (1) a long PASS command in the POP3 service, (2) a long HELO command in the SMTP service, or (3) a long user name in the Control Service.  Proposed (20010912)  ACCEPT(1) Frech | NOOP(3) Cole, Foat, Wall    View
1236  CVE-1999-1256  Candidate  Oracle Database Assistant 1.0 in Oracle 8.0.3 Enterprise Edition stores the database master password in plaintext in the spoolmain.log file when a new database is created, which allows local users to obtain the password from that file.  Proposed (20010912)  ACCEPT(2) Cole, Frech | NOOP(2) Foat, Wall    View
1237  CVE-1999-1257  Candidate  Xyplex terminal server 6.0.1S1, and possibly other versions, allows remote attackers to bypass the password prompt by entering (1) a CTRL-Z character, or (2) a ? (question mark).  Proposed (20010912)  ACCEPT(1) Frech | NOOP(2) Cole, Foat    View
1493  CVE-1999-1513  Candidate  Management information base (MIB) for a 3Com SuperStack II hub running software version 2.10 contains an object identifier (.1.3.6.1.4.1.43.10.4.2) that is accessible by a read-only community string, but lists the entire table of community strings, which could allow attackers to conduct unauthorized activities.  Proposed (20010912)  NOOP(3) Cole, Foat, Wall | REVIEWING(1) Frech  Frech> (ACCEPT; Task 2355)  View

Page 20726 of 20943, showing 5 records out of 104715 total, starting on record 103626, ending on 103630

Actions