CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
2577 | CVE-2000-1008 | Candidate | PalmOS 3.5.2 and earlier uses weak encryption to store the user password, which allows attackers with physical access to the Palm device to decrypt the password and gain access to the device. | Modified (20010116-01) | ACCEPT(2) Cole, Mell | MODIFY(1) Frech | NOOP(1) Wall | Frech> XF:palm-weak-encryption(5308) | View |
1326 | CVE-1999-1346 | Candidate | PAM configuration file for rlogin in Red Hat Linux 6.1 and earlier includes a less restrictive rule before a more restrictive one, which allows users to access the host via rlogin even if rlogin has been explicitly disabled using the /etc/nologin file. | Proposed (20010912) | MODIFY(1) Frech | NOOP(3) Cole, Foat, Wall | Frech> XF:pam-rlogin-bypass(8315) | View |
499 | CVE-1999-0502 | Candidate | A Unix account has a default, null, blank, or missing password. | Proposed (19990714) | ACCEPT(4) Baker, Meunier, Northcutt, Shostack | MODIFY(1) Frech | REVIEWING(1) Christey | Frech> XF:passwd-blank | XF:no-pass | XF:dict | XF:sgi-accounts | XF:linux-caldera-lisa | Christey> This candidate is affected by the CD:CF-PASS content decision, | which determines the appropriate level of abstraction to | use for password problems. CD:CF-PASS needs to be accepted | by the Editorial Board before this candidate can be | converted into a CVE entry; the final version of CD:CF-PASS | may require using a different LOA than this candidate is | currently using. | View |
1440 | CVE-1999-1460 | Candidate | BMC PATROL SNMP Agent before 3.2.07 allows local users to create arbitrary world-writeable files as root by specifying the target file as the second argument to the snmpmagt program. | Proposed (20010912) | MODIFY(1) Frech | NOOP(4) Christey, Cole, Foat, Wall | Frech> XF:patrol-snmp-file-creation(2347) | Christey> The vendor has acknowledged this vulnerability via e-mail. It | has been fixed. | | NOTE: despite the fact that this candidate has been acknowledged | and fixed by the vendor, it is affected by the CVE content | decision CD:SF-LOC. It cannot be accepted until the | CD:SF-LOC guidelines have been finalized. | View |
1878 | CVE-2000-0300 | Candidate | The default encryption method of PcAnywhere 9.x uses weak encryption, which allows remote attackers to sniff and decrypt PcAnywhere or NT domain accounts. | Proposed (20000426) | ACCEPT(4) Baker, Cole, Levy, Prosser | MODIFY(1) Frech | REVIEWING(1) Wall | Frech> XF:pcanywhere-weak-encryption | Prosser> http://service2.symantec.com/SUPPORT/pca.nsf/pfdocs/1999022312571812 | Upgraded in pcA 10 | View |
Page 20834 of 20943, showing 5 records out of 104715 total, starting on record 104166, ending on 104170