CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
1072 | CVE-1999-1092 | Candidate | tin 1.40 creates the .tin directory with insecure permissions, which allows local users to read passwords from the .inputhistory file. | Proposed (20010912) | MODIFY(1) Frech | NOOP(3) Cole, Foat, Wall | Frech> XF:tin-insecure-permissions(7796) | Confirmed in changelog for 1.4.1 | http://ftp.kreonet.re.kr/pub/tools/news/tin/v1.4/CHANGES | View |
1711 | CVE-2000-0133 | Candidate | Buffer overflows in Tiny FTPd 0.52 beta3 FTP server allows users to execute commands via the STOR, RNTO, MKD, XMKD, RMD, XRMD, APPE, SIZE, and RNFR commands. | Proposed (20000208) | ACCEPT(2) Baker, Cole | MODIFY(1) Frech | NOOP(1) Wall | Frech> XF:tinyftp-command-overflow(4000) | View |
3995 | CVE-2001-1191 | Candidate | WebSeal in IBM Tivoli SecureWay Policy Director 3.8 allows remote attackers to cause a denial of service (crash) via a URL that ends in %2e. | Proposed (20020315) | ACCEPT(1) Green | MODIFY(1) Frech | NOOP(5) Christey, Cole, Foat, Wall, Ziese | Frech> XF:tivoli-webseal-dos(7716) | http://online.securityfocus.com/archive/1/268124 | Christey> BUGTRAQ:20020417 IBM Security Advisory: IBM Tivoli Policy Director WebSEAL | URL:http://archives.neohapsis.com/archives/bugtraq/2002-04/0223.html | | The vendor says that "there is no denial of service | vulnerability" but goes on to describe "a defect related to | the use of SSL junctions between the WebSEAL component and Web | Servers. This defect can cause the WebSEAL component to fail if SSL | junctions are being used, and certain URLs are then passed across | these junctions." This still sounds like a DoS to me, albeit | one that might not appear in all configurations. | | Fix capitalization: "WebSEAL" | View |
2567 | CVE-2000-0998 | Candidate | Format string vulnerability in top program allows local attackers to gain root privileges via the "kill" or "renice" function. | Proposed (20001129) | ACCEPT(3) Cole, Collins, Mell | MODIFY(1) Frech | NOOP(2) Christey, Wall | Frech> XF:top-format-string(5486) | Christey> BUGTRAQ:20011114 SCO skunkware top format strings issue | URL:http://marc.theaimsgroup.com/?l=bugtraq&m=100576637928933&w=2 | View |
522 | CVE-1999-0525 | Candidate | IP traceroute is allowed from arbitrary hosts. | Proposed (19990726) | MODIFY(1) Frech | NOOP(1) Baker | REJECT(1) Northcutt | Frech> XF:traceroute | View |
Page 20875 of 20943, showing 5 records out of 104715 total, starting on record 104371, ending on 104375