CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
3973 | CVE-2001-1169 | Candidate | keyinit in S/Key does not require authentication to initialize a one-time password sequence, which allows an attacker who has gained privileges to a user account to create new one-time passwords for use in other activities that may use S/Key authentication, such as sudo. | Proposed (20020315) | ACCEPT(1) Green | NOOP(5) Armstrong, Cole, Foat, Wall, Ziese | REVIEWING(1) Frech | View | |
3974 | CVE-2001-1170 | Candidate | AmTote International homebet program stores the homebet.log file in the homebet/ virtual directory, which allows remote attackers to steal account and PIN numbers. | Proposed (20020315) | ACCEPT(2) Frech, Green | NOOP(5) Armstrong, Cole, Foat, Wall, Ziese | View | |
3975 | CVE-2001-1171 | Candidate | Check Point Firewall-1 3.0b through 4.0 SP1 follows symlinks and creates a world-writable temporary .cpp file when compiling Policy rules, which could allow local users to gain privileges or modify the firewall policy. | Proposed (20020315) | ACCEPT(1) Green | NOOP(5) Armstrong, Cole, Foat, Wall, Ziese | REJECT(2) Christey, Frech | Frech> Both candidates assigned to XF:fw1-tmp-file-symlink(7094); | CVE-2001-1171 has subset of references in CVE-201-1102. | Christey> Agreed, it"s a dupe. CVE-2001-1102 will be preferred, since | it has more complete references. | View |
3977 | CVE-2001-1173 | Candidate | Vulnerability in MasqMail before 0.1.15 allows local users to gain privileges via piped aliases. | Proposed (20020315) | ACCEPT(5) Armstrong, Baker, Cole, Green, Ziese | MODIFY(1) Frech | NOOP(3) Christey, Foat, Wall | Christey> VULNWATCH:20010719 [VulnWatch] Changelog maddness (14 various broken apps) | URL:http://archives.neohapsis.com/archives/vulnwatch/2001-q3/0005.html | CHANGE> [Frech changed vote from REVIEWING to MODIFY] | Frech> XF:masqmail-gain-privileges(8717) | View |
3982 | CVE-2001-1178 | Candidate | Buffer overflow in xman allows local users to gain privileges via a long MANPATH environment variable. | Proposed (20020315) | ACCEPT(2) Baker, Frech | NOOP(6) Armstrong, Cole, Foat, Green, Wall, Ziese | CHANGE> [Baker changed vote from REVIEWING to ACCEPT] | View |
Page 20779 of 20943, showing 5 records out of 104715 total, starting on record 103891, ending on 103895