CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
1287 | CVE-1999-1307 | Candidate | Vulnerability in urestore in Novell UnixWare 1.1 allows local users to gain root privileges. | Proposed (20010912) | ACCEPT(4) Armstrong, Cole, Foat, Stracener | MODIFY(1) Frech | NOOP(1) Wall | Frech> XF;novell-unixware-urestore-root(7211) | View |
2121 | CVE-2000-0544 | Candidate | Windows NT and Windows 2000 hosts allow a remote attacker to cause a denial of service via malformed DCE/RPC SMBwriteX requests that contain an invalid data length. | Proposed (20000712) | ACCEPT(2) LeBlanc, Levy | MODIFY(1) Frech | NOOP(1) Ozancin | REVIEWING(2) Christey, Wall | Frech> XF;nt-smb-request-dos(4600) | Christey> Consult with Microsoft to see if this is MS:MS00-066 | Christey> ADDREF MS:MS00-066 | (confirmed offline with David LeBlanc) | Subsequently, add BID:1673 and XF:win2k-rpc-dos(5222) | View |
2148 | CVE-2000-0572 | Candidate | The Razor configuration management tool uses weak encryption for its password file, which allows local users to gain privileges. | Proposed (20000719) | ACCEPT(2) Baker, Levy | MODIFY(1) Frech | NOOP(4) Cole, LeBlanc, Magdych, Wall | Frech> XF;razor-weak-encryption(4875) | CHANGE> [Magdych changed vote from REVIEWING to NOOP] | View |
3294 | CVE-2001-0477 | Candidate | Vulnerability in WebCalendar 0.9.26 allows remote command execution. | Proposed (20010524) | ACCEPT(1) Cole | MODIFY(1) Frech | NOOP(3) Balinsky, Wall, Ziese | REVIEWING(1) Williams | Frech> XF;webcalendar-execute-commands(6486) | Balinsky> DNS domain of vendor site listed in the advisory no longer exists. | CHANGE> [Balinsky changed vote from NOOP to REVIEWING] | Balinsky> My mistake. It was the ADVISORY site that no longer exists. Not the vendor. | CHANGE> [Balinsky changed vote from REVIEWING to NOOP] | Balinsky> Could not find specific acknowledgement on vendor site. Only | method of validation on the site is slogging through source code. | View |
4845 | CVE-2002-0453 | Candidate | The account lockout capability in Oblix NetPoint 5.2 and earlier only locks out users once for the specified lockout period, which makes it easier for remote attackers to conduct brute force password guessing by waiting until the lockout period ends, then guessing passwords without being locked out again. | Proposed (20020611) | ACCEPT(2) Frech, Green | NOOP(4) Cole, Cox, Foat, Wall | Green> A PATCH IS AVAILABLE, FINDING IT IS ANOTHER STORY | View |
Page 20896 of 20943, showing 5 records out of 104715 total, starting on record 104476, ending on 104480