CVE List

Id CVE No. Status Description Phase Votes Comments Actions
475  CVE-1999-0477  Candidate  The Expression Evaluator in the ColdFusion Application Server allows a remote attacker to upload files to the server via openfile.cfm, which does not restrict access to the server properly.  Modified (19991210-01)  ACCEPT(4) Baker, Christey, Frech, Ozancin | REJECT(1) Wall  Wall> Duplicate of 0455 | Christey> CVE-1999-0477 and CVE-1999-0455 were discovered at different | times. Also, the attack was different. So "Same Attack" and | "Same Time of Discovery" dictate that these should remain | separate.  View
474  CVE-1999-0476  Candidate  A weak encryption algorithm is used for passwords in SCO TermVision, allowing them to be easily decrypted by a local user.  Proposed (19990721)  ACCEPT(3) Baker, Frech, Ozancin | NOOP(3) LeBlanc, Northcutt, Wall    View
473  CVE-1999-0475  Entry  A race condition in how procmail handles .procmailrc files allows a local user to read arbitrary files available to the user who is running procmail.        View
472  CVE-1999-0474  Entry  The ICQ Webserver allows remote attackers to use .. to access arbitrary files outside of the user"s personal directory.        View
471  CVE-1999-0473  Entry  The rsync command before rsync 2.3.1 may inadvertently change the permissions of the client"s working directory to the permissions of the directory being transferred.        View

Page 20849 of 20943, showing 5 records out of 104715 total, starting on record 104241, ending on 104245

Actions