CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
1358 | CVE-1999-1378 | Candidate | dbmlparser.exe CGI guestbook program does not perform a chroot operation properly, which allows remote attackers to read arbitrary files. | Proposed (20010912) | NOOP(3) Cole, Foat, Wall | REVIEWING(1) Frech | Frech> (Task 2284) | View |
1103 | CVE-1999-1123 | Candidate | The installation of Sun Source (sunsrc) tapes allows local users to gain root privileges via setuid root programs (1) makeinstall or (2) winstall. | Proposed (20010912) | ACCEPT(5) Cole, Dik, Foat, Frech, Stracener | NOOP(1) Wall | Dik> sun bug: 1059621 | View |
1104 | CVE-1999-1124 | Candidate | HTTP Client application in ColdFusion allows remote attackers to bypass access restrictions for web pages on other ports by providing the target page to the mainframeset.cfm application, which requests the page from the server, making it look like the request is coming from the local host. | Proposed (20010912) | ACCEPT(2) Cole, Wall | NOOP(1) Foat | View | |
1105 | CVE-1999-1125 | Candidate | Oracle Webserver 2.1 and earlier runs setuid root, but the configuration file is owned by the oracle account, which allows any local or remote attacker who obtains access to the oracle account to gain privileges or modify arbitrary files by modifying the configuration file. | Proposed (20010912) | MODIFY(1) Frech | NOOP(2) Cole, Foat | Frech> XF:oracle-webserver-gain-root(7174) | View |
1361 | CVE-1999-1381 | Candidate | Buffer overflow in dbadmin CGI program 1.0.1 on Linux allows remote attackers to execute arbitrary commands. | Proposed (20010912) | NOOP(3) Cole, Foat, Wall | View |
Page 220 of 20943, showing 5 records out of 104715 total, starting on record 1096, ending on 1100