CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3297  CVE-2001-0480  Candidate  Directory traversal vulnerability in Alex"s FTP Server 0.7 allows remote attackers to read arbitrary files via a ... (modified dot dot) in the (1) GET or (2) CD commands.  Proposed (20010524)  ACCEPT(2) Cole, Williams | MODIFY(1) Frech | NOOP(3) Balinsky, Wall, Ziese  Frech> XF:alex-ftp-directory-traversal(6475)  View
1055  CVE-1999-1075  Candidate  inetd in AIX 4.1.5 dynamically assigns a port N when starting ttdbserver (ToolTalk server), but also inadvertently listens on port N-1 without passing control to ttdbserver, which allows remote attackers to cause a denial of service via a large number of connections to port N-1, which are not properly closed by inetd.  Proposed (20010912)  MODIFY(1) Frech | NOOP(3) Cole, Foat, Wall  Frech> XF:aix-ttdbserver(813) | CONFIRM:APAR IX70400  View
1385  CVE-1999-1405  Candidate  snap command in AIX before 4.3.2 creates the /tmp/ibmsupt directory with world-readable permissions and does not remove or clear the directory when snap -a is executed, which could allow local users to access the shadowed password file by creating /tmp/ibmsupt/general/passwd before root runs snap -a.  Proposed (20010912)  MODIFY(1) Frech | NOOP(3) Cole, Foat, Wall  Frech> XF:aix-snap-insecure-tmp(7560)  View
5429  CVE-2002-1041  Candidate  Unknown vulnerability in DCE (1) SMIT panels and (2) configuration commands, possibly related to relative pathnames.  Proposed (20020830)  ACCEPT(2) Baker, Cole | MODIFY(1) Frech | NOOP(3) Cox, Foat, Wall  Frech> XF:aix-smit-panels-insecure(10393)  View
1059  CVE-1999-1079  Candidate  Vulnerability in ptrace in AIX 4.3 allows local users to gain privileges by attaching to a setgid program.  Proposed (20010912)  ACCEPT(3) Cole, Foat, Stracener | MODIFY(1) Frech  Frech> XF:aix-ptrace-setgid(7487)  View

Page 212 of 20943, showing 5 records out of 104715 total, starting on record 1056, ending on 1060

Actions