CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3869  CVE-2001-1065  Candidate  Web-based configuration utility in Cisco 600 series routers running CBOS 2.0.1 through 2.4.2ap binds itself to port 80 even when web-based configuration services are disabled, which could leave the router open to attack.  Proposed (20020131)  ACCEPT(5) Armstrong, Baker, Cole, Frech, Green | NOOP(2) Foat, Wall    View
3872  CVE-2001-1068  Candidate  qpopper 4.01 with PAM based authentication on Red Hat systems generates different error messages when an invalid username is provided instead of a valid name, which allows remote attackers to determine valid usernames on the system.  Proposed (20020131)  ACCEPT(3) Foat, Frech, Green | NOOP(2) Armstrong, Cole | REVIEWING(1) Wall    View
3874  CVE-2001-1070  Candidate  Sage Software MAS 200 allows remote attackers to cause a denial of service by connecting to port 10000 and entering a series of control characters.  Proposed (20020131)  ACCEPT(2) Frech, Green | NOOP(4) Armstrong, Cole, Foat, Wall    View
3877  CVE-2001-1073  Candidate  Webridge PX Application Suite allows remote attackers to obtain sensitive information via a malformed request that generates a server error message, which includes full pathname or internal IP address information in the variables (1) APPL_PHYSICAL_PATH, (2) PATH_TRANSLATED, and (3) LOCAL_ADDR.  Proposed (20020131)  ACCEPT(2) Frech, Green | NOOP(4) Armstrong, Cole, Foat, Wall    View
3881  CVE-2001-1077  Candidate  Buffer overflow in tt_printf function of rxvt 2.6.2 allows local users to gain privileges via a long (1) -T or (2) -name argument.  Proposed (20020131)  ACCEPT(5) Armstrong, Baker, Cole, Frech, Green | NOOP(2) Foat, Wall    View

Page 20755 of 20943, showing 5 records out of 104715 total, starting on record 103771, ending on 103775

Actions