CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
495 | CVE-1999-0497 | Candidate | Anonymous FTP is enabled. | Modified (20040811) | ACCEPT(1) Shostack | MODIFY(1) Frech | NOOP(2) Baker, Christey | REJECT(1) Northcutt | Frech> ftp-anon(52) at http://xforce.iss.net/static/52.php | ftp-anon2(543) at http://xforce.iss.net/static/543.php | Christey> Add period to the end of the description. | Baker> DOn"t know about this, but it may be the only easy way to allow access to data for some folks. | View |
397 | CVE-1999-0398 | Candidate | In some instances of SSH 1.2.27 and 2.0.11 on Linux systems, SSH will allow users with expired accounts to login. | Modified (20000106-01) | ACCEPT(1) Baker | MODIFY(1) Frech | Frech> Followups to the bugtraq message (1/24/99) indicate that 1.2.27 was not yet | released. v1.2.26 should be substituted in the description for "27. | XF:ssh-exp-account-access | View |
4 | CVE-1999-0004 | Candidate | MIME buffer overflow in email clients, e.g. Solaris mailtool and Outlook. | Modified (19990621-01) | ACCEPT(8) Baker, Cole, Collins, Dik, Landfield, Magdych, Northcutt, Wall | MODIFY(1) Frech | NOOP(1) Christey | REVIEWING(1) Shostack | Frech> Extremely minor, but I believe e-mail is the correct term. (If you reject | this suggestion, I will not be devastated.) :-) | Christey> This issue seems to have been rediscovered in | BUGTRAQ:20000515 Eudora Pro & Outlook Overflow - too long filenames again | http://marc.theaimsgroup.com/?l=bugtraq&m=95842482413076&w=2 | | Also see | BUGTRAQ:19990320 Eudora Attachment Buffer Overflow | http://marc.theaimsgroup.com/?l=bugtraq&m=92195396912110&w=2 | Christey> | CVE-2000-0415 may be a later rediscovery of this problem | for Outlook. | Dik> Sun bug 4163471, | Christey> ADDREF BID:125 | Christey> BUGTRAQ:19980730 Long Filenames & Lotus Products | URL:http://marc.theaimsgroup.com/?l=bugtraq&m=90221104526201&w=2 | View |
88 | CVE-1999-0088 | Candidate | IRIX and AIX automountd services (autofsd) allow remote users to execute root commands. | Proposed (19990617) | ACCEPT(2) Northcutt, Shostack | MODIFY(2) Frech, Prosser | RECAST(1) Baker | REVIEWING(1) Christey | Frech> ERS (and other references, BTW) explicitly stipulate "local and | remote". | Reference: XF:irix-autofsd | Prosser> Include the SGI Alert as well since it is mentioned in the | description. | SGI Security Advisory 19981005-01-PX | Christey> DUPE CVE-1999-0210? | Christey> ADDREF CIAC:J-014 | Baker> It does look very similar to 1999-0210. Perhaps they should be a single entry | View |
1683 | CVE-2000-0105 | Candidate | Outlook Express 5.01 and Internet Explorer 5.01 allow remote attackers to view a user"s email messages via a script that accesses a variable that references subsequent email messages that are read by the client. | Proposed (20000208) | ACCEPT(2) Cole, Wall | MODIFY(1) Frech | NOOP(1) Baker | REVIEWING(1) Christey | Frech> email-active-script-html | Christey> Acknowledged via personal communication with Microsoft | personnel, but I need to look through my email logs to recall | whether they said that it is a duplicate of CVE-2000-0653 | CHANGE> [Christey changed vote from NOOP to REVIEWING] | View |
Page 231 of 20943, showing 5 records out of 104715 total, starting on record 1151, ending on 1155