CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2393  CVE-2000-0824  Entry  The unsetenv function in glibc 2.1.1 does not properly unset an environmental variable if the variable is provided twice to a program, which could allow local users to execute arbitrary commands in setuid programs by specifying their own duplicate environmental variables such as LD_PRELOAD or LD_LIBRARY_PATH.        View
3161  CVE-2001-0340  Entry  An interaction between the Outlook Web Access (OWA) service in Microsoft Exchange 2000 Server and Internet Explorer allows attackers to execute malicious script code against a user"s mailbox via a message attachment that contains HTML code, which is executed automatically.        View
3673  CVE-2001-0867  Entry  Cisco 12000 with IOS 12.0 and line cards based on Engine 2 does not properly filter does not properly filter packet fragments even when the "fragment" keyword is used in an ACL, which allows remote attackers to bypass the intended access controls.        View
4185  CVE-2001-1382  Entry  The "echo simulation" traffic analysis countermeasure in OpenSSH before 2.9.9p2 sends an additional echo packet after the password and carriage return is entered, which could allow remote attackers to determine that the countermeasure is being used.        View
4441  CVE-2002-0047  Entry  CIPE VPN package before 1.3.0-3 allows remote attackers to cause a denial of service (crash) via a short malformed packet.        View

Page 216 of 20943, showing 5 records out of 104715 total, starting on record 1076, ending on 1080

Actions