CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3415  CVE-2001-0602  Candidate  Lotus Domino R5 prior to 5.0.7 allows a remote attacker to create a denial of service via repeated (>400) URL requests for DOS devices.  Proposed (20010727)  ACCEPT(2) Baker, Frech | NOOP(4) Cole, Foat, Wall, Ziese | REVIEWING(1) Bishop  Frech> Vendor Acknowledgement: implicitly, via upgrade.  View
3121  CVE-2001-0300  Candidate  oidldapd 2.1.1.1 in Oracle 8.1.7 records log files in a directory (ldaplog) that has world-writable permissions, which may allow local users to delete logs and/or overwrite other files via a symlink attack.  Modified (20050509)  NOOP(3) Cole, Wall, Ziese | REJECT(1) Frech | REVIEWING(1) Bishop  Frech> Validity threshold is not met by the references cited. Would | be willing to reassess and change vote if more information is | forthcoming.  View
231  CVE-1999-0232  Candidate  Buffer overflow in NCSA WebServer (version 1.5c) gives remote access.  Modified (19991220-01)  ACCEPT(2) Hill, Northcutt | MODIFY(1) Frech | NOOP(1) Prosser | REJECT(1) Baker | REVIEWING(1) Christey  Frech> Unable to provide a match due to vague/insufficient description/references. | Possible matches are: | XF:ftp-ncsa (probably not, considering you"ve mentioned the webserver.) | XF:http-ncsa-longurl (highest probability) | Christey> CVE-1999-0235 is the one associated with XF:http-ncsa-longurl | More research is necessary for this one. | Baker> Since this has no references at all, and is vague and we have a | CAN for the most likely issue, we should kill this one  View
33  CVE-1999-0033  Candidate  Command execution in Sun systems via buffer overflow in the at program.  Modified (20040811)  ACCEPT(8) Baker, Cole, Collins, Dik, Hill, Northcutt, Shostack, Wall | NOOP(1) Christey | RECAST(1) Frech  Frech> This vulnerability also manifests itself for the following | platforms: AIX, HPUX, IRIX, Solaris, SCO, NCR MP-RAS. In this light, | please add the following: | Reference: XF:at-bo | Dik> Sun bug 1265200, 4063161 | Christey> ADDREF SGI:19971102-01-PX | ftp://patches.sgi.com/support/free/security/advisories/19971102-01-PX | SCO:SB.97:01 | ftp://ftp.sco.com/SSE/security_bulletins/SB.97:01a | Christey> CIAC:F-15 | http://ciac.llnl.gov/ciac/bulletins/f-15.shtml | HP:HPSBUX9502-023 | Christey> Add period to the end of the description.  View
1693  CVE-2000-0115  Candidate  IIS allows local users to cause a denial of service via invalid regular expressions in a Visual Basic script in an ASP page.  Proposed (20000208)  ACCEPT(1) Cole | NOOP(1) Baker | REJECT(2) Frech, LeBlanc | REVIEWING(1) Wall  Frech> This reference to NTBugtraq has a message that ends with "Can anyone | reproduce this?", and there are no followups. This makes for a weak | reference. There are also no other references listed for this CAN. | LeBlanc> - no follow-ups, no KB article, no fix | CHANGE> [Frech changed vote from REVIEWING to REJECT]  View

Page 221 of 20943, showing 5 records out of 104715 total, starting on record 1101, ending on 1105

Actions