CVE List

Id CVE No. Status Description Phase Votes Comments Actions
1358  CVE-1999-1378  Candidate  dbmlparser.exe CGI guestbook program does not perform a chroot operation properly, which allows remote attackers to read arbitrary files.  Proposed (20010912)  NOOP(3) Cole, Foat, Wall | REVIEWING(1) Frech  Frech> (Task 2284)  View
1103  CVE-1999-1123  Candidate  The installation of Sun Source (sunsrc) tapes allows local users to gain root privileges via setuid root programs (1) makeinstall or (2) winstall.  Proposed (20010912)  ACCEPT(5) Cole, Dik, Foat, Frech, Stracener | NOOP(1) Wall  Dik> sun bug: 1059621  View
1104  CVE-1999-1124  Candidate  HTTP Client application in ColdFusion allows remote attackers to bypass access restrictions for web pages on other ports by providing the target page to the mainframeset.cfm application, which requests the page from the server, making it look like the request is coming from the local host.  Proposed (20010912)  ACCEPT(2) Cole, Wall | NOOP(1) Foat    View
1105  CVE-1999-1125  Candidate  Oracle Webserver 2.1 and earlier runs setuid root, but the configuration file is owned by the oracle account, which allows any local or remote attacker who obtains access to the oracle account to gain privileges or modify arbitrary files by modifying the configuration file.  Proposed (20010912)  MODIFY(1) Frech | NOOP(2) Cole, Foat  Frech> XF:oracle-webserver-gain-root(7174)  View
1361  CVE-1999-1381  Candidate  Buffer overflow in dbadmin CGI program 1.0.1 on Linux allows remote attackers to execute arbitrary commands.  Proposed (20010912)  NOOP(3) Cole, Foat, Wall    View

Page 220 of 20943, showing 5 records out of 104715 total, starting on record 1096, ending on 1100

Actions