CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
4714 | CVE-2002-0322 | Candidate | Yahoo! Messenger 4.0 sends user passwords in cleartext, which could allow remote attackers to gain privileges of other users via sniffing. | Proposed (20020502) | ACCEPT(1) Cole | MODIFY(1) Frech | NOOP(2) Cox, Foat | REVIEWING(1) Wall | Frech> XF:yahooim-plaintext-password(5943) | View |
1411 | CVE-1999-1431 | Candidate | ZAK in Appstation mode allows users to bypass the "Run only allowed apps" policy by starting Explorer from Office 97 applications (such as Word), installing software into the TEMP directory, and changing the name to that for an allowed application, such as Winword.exe. | Proposed (20010912) | MODIFY(1) Frech | NOOP(3) Cole, Foat, Wall | Frech> XF:zak-bypass-restrictions(7563) | View |
2201 | CVE-2000-0625 | Candidate | NetZero 3.0 and earlier uses weak encryption for storing a user"s login information, which allows a local user to decrypt the password. | Proposed (20000803) | ACCEPT(2) Cole, Levy | MODIFY(1) Frech | NOOP(2) LeBlanc, Wall | Frech> XF:zeroport-weak-encryption(4963) | View |
1462 | CVE-1999-1482 | Candidate | SVGAlib zgv 3.0-7 and earlier allows local users to gain root access via a privilege leak of the iopl(3) privileges to child processes. | Proposed (20010912) | MODIFY(1) Frech | NOOP(3) Cole, Foat, Wall | Frech> XF:zgv-privilege-leak(1798) | View |
3381 | CVE-2001-0568 | Candidate | Digital Creations Zope 2.3.1 b1 and earlier allows a local attacker (Zope user) with through-the-web scripting capabilities to alter ZClasses class attributes. | Proposed (20010727) | ACCEPT(5) Baker, Bishop, Cole, Williams, Ziese | MODIFY(1) Frech | NOOP(2) Foat, Wall | Frech> XF:zope-zclass-modification(6247) | View |
Page 20894 of 20943, showing 5 records out of 104715 total, starting on record 104466, ending on 104470