CVE List

Id CVE No. Status Description Phase Votes Comments Actions
495  CVE-1999-0497  Candidate  Anonymous FTP is enabled.  Modified (20040811)  ACCEPT(1) Shostack | MODIFY(1) Frech | NOOP(2) Baker, Christey | REJECT(1) Northcutt  Frech> ftp-anon(52) at http://xforce.iss.net/static/52.php | ftp-anon2(543) at http://xforce.iss.net/static/543.php | Christey> Add period to the end of the description. | Baker> DOn"t know about this, but it may be the only easy way to allow access to data for some folks.  View
397  CVE-1999-0398  Candidate  In some instances of SSH 1.2.27 and 2.0.11 on Linux systems, SSH will allow users with expired accounts to login.  Modified (20000106-01)  ACCEPT(1) Baker | MODIFY(1) Frech  Frech> Followups to the bugtraq message (1/24/99) indicate that 1.2.27 was not yet | released. v1.2.26 should be substituted in the description for "27. | XF:ssh-exp-account-access  View
CVE-1999-0004  Candidate  MIME buffer overflow in email clients, e.g. Solaris mailtool and Outlook.  Modified (19990621-01)  ACCEPT(8) Baker, Cole, Collins, Dik, Landfield, Magdych, Northcutt, Wall | MODIFY(1) Frech | NOOP(1) Christey | REVIEWING(1) Shostack  Frech> Extremely minor, but I believe e-mail is the correct term. (If you reject | this suggestion, I will not be devastated.) :-) | Christey> This issue seems to have been rediscovered in | BUGTRAQ:20000515 Eudora Pro & Outlook Overflow - too long filenames again | http://marc.theaimsgroup.com/?l=bugtraq&m=95842482413076&w=2 | | Also see | BUGTRAQ:19990320 Eudora Attachment Buffer Overflow | http://marc.theaimsgroup.com/?l=bugtraq&m=92195396912110&w=2 | Christey> | CVE-2000-0415 may be a later rediscovery of this problem | for Outlook. | Dik> Sun bug 4163471, | Christey> ADDREF BID:125 | Christey> BUGTRAQ:19980730 Long Filenames & Lotus Products | URL:http://marc.theaimsgroup.com/?l=bugtraq&m=90221104526201&w=2  View
88  CVE-1999-0088  Candidate  IRIX and AIX automountd services (autofsd) allow remote users to execute root commands.  Proposed (19990617)  ACCEPT(2) Northcutt, Shostack | MODIFY(2) Frech, Prosser | RECAST(1) Baker | REVIEWING(1) Christey  Frech> ERS (and other references, BTW) explicitly stipulate "local and | remote". | Reference: XF:irix-autofsd | Prosser> Include the SGI Alert as well since it is mentioned in the | description. | SGI Security Advisory 19981005-01-PX | Christey> DUPE CVE-1999-0210? | Christey> ADDREF CIAC:J-014 | Baker> It does look very similar to 1999-0210. Perhaps they should be a single entry  View
1683  CVE-2000-0105  Candidate  Outlook Express 5.01 and Internet Explorer 5.01 allow remote attackers to view a user"s email messages via a script that accesses a variable that references subsequent email messages that are read by the client.  Proposed (20000208)  ACCEPT(2) Cole, Wall | MODIFY(1) Frech | NOOP(1) Baker | REVIEWING(1) Christey  Frech> email-active-script-html | Christey> Acknowledged via personal communication with Microsoft | personnel, but I need to look through my email logs to recall | whether they said that it is a duplicate of CVE-2000-0653 | CHANGE> [Christey changed vote from NOOP to REVIEWING]  View

Page 231 of 20943, showing 5 records out of 104715 total, starting on record 1151, ending on 1155

Actions