CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
2667 | CVE-2000-1100 | Candidate | The default configuration for PostACI webmail system installs the /includes/global.inc configuration file within the web root, which allows remote attackers to read sensitive information such as database usernames and passwords via a direct HTTP GET request. | Proposed (20001219) | ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(2) Cole, Wall | Frech> XF:postaci-webmail-reveal-passwords(5612) | View |
842 | CVE-1999-0862 | Candidate | Insecure directory permissions in RPM distribution for PostgreSQL allows local users to gain privileges by reading a plaintext password file. | Proposed (19991208) | ACCEPT(3) Armstrong, Cole, Stracener | MODIFY(1) Frech | NOOP(1) Baker | REVIEWING(1) Prosser | Frech> XF:postgresql-insecure-perms | View |
2720 | CVE-2000-1153 | Candidate | PostMaster 1.0 in BeOS r5 pro and earlier allows remote attackers to conduct a denial of service via a message that contains a long URL. | Proposed (20001219) | ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(3) Armstrong, Cole, Wall | Frech> XF:postmaster-long-url-bo(5522) | View |
3112 | CVE-2001-0291 | Candidate | Buffer overflow in post-query sample CGI program allows remote attackers to execute arbitrary commands via an HTTP POST request that contains at least 10001 parameters. | Proposed (20010404) | MODIFY(1) Frech | NOOP(3) Cole, Wall, Ziese | REVIEWING(1) Bishop | Frech> XF:postquery-http-post-bo(6510) | View |
3739 | CVE-2001-0933 | Candidate | Cooolsoft PowerFTP Server 2.03 allows remote attackers to list the contents of arbitrary drives via a ls (LIST) command that includes the drive letter as an argument, e.g. "ls C:". | Proposed (20020131) | ACCEPT(1) Foat | MODIFY(1) Frech | NOOP(3) Armstrong, Cole, Wall | Frech> XF:powerftp-dot-directory-traversal(7615) | View |
Page 20841 of 20943, showing 5 records out of 104715 total, starting on record 104201, ending on 104205