CVE List

Id CVE No. Status Description Phase Votes Comments Actions
450  CVE-1999-0451  Candidate  Denial of service in Linux 2.0.36 allows local users to prevent any server from listening on any non-privileged port.  Proposed (19990726)  ACCEPT(2) Baker, Ozancin | MODIFY(1) Frech | NOOP(1) Wall  CHANGE> [Frech changed vote from REVIEWING to MODIFY] | Frech> XF:linux-ports-dos(8364)  View
449  CVE-1999-0450  Candidate  In IIS, an attacker could determine a real path using a request for a non-existent URL that would be interpreted by Perl (perl.exe).  Modified (20090622)  ACCEPT(2) Ozancin, Wall | NOOP(2) Baker, Christey | REJECT(2) Frech, LeBlanc  Frech> Can"t find in database. | Christey> This looks like another discovery of CVE-2000-0071 | LeBlanc> - I just tried to repro this based on the BUGTRAQ vuln information, | and it does not repro - | GET /bogus.pl HTTP/1.0 | HTTP/1.1 404 Object Not Found | Server: Microsoft-IIS/5.0 | Date: Thu, 05 Oct 2000 21:04:20 GMT | Content-Length: 3243 | Content-Type: text/html | No path is returned whatsoever. This may have been a problem on some version | of IIS in the past, but the BUGTRAQ ID says all versions are vulnerable. | Let"s try and figure out what version had the problem, whether it is | intrinsic to IIS or the result of adding a 3rd party implementation of perl, | and when it got fixed, then we can try again. | CHANGE> [Frech changed vote from REVIEWING to REJECT] | Christey> Add "no-such-file.pl" as an example to the desc, to facilitate | search (it"s used by CGI scanners and in the original example)  View
448  CVE-1999-0449  Entry  The ExAir sample site in IIS 4 allows remote attackers to cause a denial of service (CPU consumption) via a direct request to the (1) advsearch.asp, (2) query.asp, or (3) search.asp scripts.        View
447  CVE-1999-0448  Entry  IIS 4.0 and Apache log HTTP request methods, regardless of how long they are, allowing a remote attacker to hide the URL they really request.        View
446  CVE-1999-0447  Entry  Local users can gain privileges using the debug utility in the MPE/iX operating system.        View

Page 20854 of 20943, showing 5 records out of 104715 total, starting on record 104266, ending on 104270

Actions