CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4714  CVE-2002-0322  Candidate  Yahoo! Messenger 4.0 sends user passwords in cleartext, which could allow remote attackers to gain privileges of other users via sniffing.  Proposed (20020502)  ACCEPT(1) Cole | MODIFY(1) Frech | NOOP(2) Cox, Foat | REVIEWING(1) Wall  Frech> XF:yahooim-plaintext-password(5943)  View
1411  CVE-1999-1431  Candidate  ZAK in Appstation mode allows users to bypass the "Run only allowed apps" policy by starting Explorer from Office 97 applications (such as Word), installing software into the TEMP directory, and changing the name to that for an allowed application, such as Winword.exe.  Proposed (20010912)  MODIFY(1) Frech | NOOP(3) Cole, Foat, Wall  Frech> XF:zak-bypass-restrictions(7563)  View
2201  CVE-2000-0625  Candidate  NetZero 3.0 and earlier uses weak encryption for storing a user"s login information, which allows a local user to decrypt the password.  Proposed (20000803)  ACCEPT(2) Cole, Levy | MODIFY(1) Frech | NOOP(2) LeBlanc, Wall  Frech> XF:zeroport-weak-encryption(4963)  View
1462  CVE-1999-1482  Candidate  SVGAlib zgv 3.0-7 and earlier allows local users to gain root access via a privilege leak of the iopl(3) privileges to child processes.  Proposed (20010912)  MODIFY(1) Frech | NOOP(3) Cole, Foat, Wall  Frech> XF:zgv-privilege-leak(1798)  View
3381  CVE-2001-0568  Candidate  Digital Creations Zope 2.3.1 b1 and earlier allows a local attacker (Zope user) with through-the-web scripting capabilities to alter ZClasses class attributes.  Proposed (20010727)  ACCEPT(5) Baker, Bishop, Cole, Williams, Ziese | MODIFY(1) Frech | NOOP(2) Foat, Wall  Frech> XF:zope-zclass-modification(6247)  View

Page 20894 of 20943, showing 5 records out of 104715 total, starting on record 104466, ending on 104470

Actions