CVE List

Id CVE No. Status Description Phase Votes Comments Actions
965  CVE-1999-0985  Candidate  CC Whois program whois.cgi allows remote attackers to execute commands via shell metacharacters in the domain entry.  Proposed (19991214)  ACCEPT(2) Blake, Stracener | MODIFY(1) Frech | NOOP(2) Baker, Cole | REVIEWING(1) Christey  Cole> I would combine all of these. | Christey> More examination is required to determine if CVE-1999-0983, | CVE-1999-0984, or CVE-1999-0985 are the same codebase. | Frech> XF:cc-whois-meta | Christey> ADDREF BID:2000 | Frech> Change cc-whois-meta(3800) to http-cgi-ccwhois(3747) | Christey> Replace XF reference with XF:cc-whois-meta(3800) ?  View
964  CVE-1999-0984  Candidate  Matt"s Whois program whois.cgi allows remote attackers to execute commands via shell metacharacters in the domain entry.  Proposed (19991214)  ACCEPT(2) Blake, Stracener | MODIFY(1) Frech | NOOP(2) Baker, Cole | REVIEWING(1) Christey  Cole> How is this different than the previous? | Christey> More examination is required to determine if CVE-1999-0983, | CVE-1999-0984, or CVE-1999-0985 are the same codebase. | Frech> XF:matts-whois-meta | Christey> ADDREF BID:2000 | Christey> XF reference is gone. Replace with http-cgi-matts-whois-meta(3799) ?  View
963  CVE-1999-0983  Candidate  Whois Internic Lookup program whois.cgi allows remote attackers to execute commands via shell metacharacters in the domain entry.  Proposed (19991214)  ACCEPT(3) Blake, Cole, Stracener | MODIFY(1) Frech | NOOP(1) Baker | REVIEWING(1) Christey  Christey> More examination is required to determine if CVE-1999-0983, | CVE-1999-0984, or CVE-1999-0985 are the same codebase. | Frech> XF:whois-internic-shell-meta | Christey> ADDREF BID:2000 | Christey> The XF appears to be gone. Perhaps it"s this one: | XF:http-cgi-whois-meta(3798)  View
962  CVE-1999-0982  Entry  The Sun Web-Based Enterprise Management (WBEM) installation script stores a password in plaintext in a world readable file.        View
961  CVE-1999-0981  Entry  Internet Explorer 5.01 and earlier allows a remote attacker to create a reference to a client window and use a server-side redirect to access local files via that window, aka "Server-side Page Reference Redirect."        View

Page 20751 of 20943, showing 5 records out of 104715 total, starting on record 103751, ending on 103755

Actions