CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
3249 | CVE-2001-0431 | Candidate | Vulnerability in iPlanet Web Server Enterprise Edition 4.x. | Proposed (20010524) | ACCEPT(3) Baker, Cole, Ziese | NOOP(1) Wall | REJECT(1) Frech | Frech> Duplicate of CVE-2001-0327. | View |
3235 | CVE-2001-0417 | Candidate | Kerberos 4 (aka krb4) allows local users to overwrite arbitrary files via a symlink attack on new ticket files. | Proposed (20010524) | ACCEPT(3) Baker, Cole, Ziese | NOOP(1) Wall | REJECT(3) Christey, Frech, Oliver | Frech> DUPLICATE OF CVE-2001-0036: KTH Kerberos IV allows local users to | overwrite arbitrary files via a symlink attack on a ticket file. | Oliver> Appears to be a subset of CVE-2001-036. | Christey> Change description to point out that the Kerberos 5 package is | affected. | FREEBSD:FreeBSD-SA-01:25 | Also ensure that the other problems described in the FreeBSD | advisory have CANs/CVEs. | CHANGE> [Christey changed vote from NOOP to REJECT] | Christey> Agree that these are dupes. Since CVE-2001-0036 is already | an official CVE entry, this candidate will be rejected. | This CAN"s references will be added to CVE-2001-0036. | View |
3971 | CVE-2001-1167 | Candidate | ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2001-0976. Reason: This candidate is a duplicate of CVE-2001-0976. Notes: CVE-2001-0976 should be used instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage. | Proposed (20020315) | ACCEPT(3) Baker, Cole, Green | NOOP(4) Armstrong, Foat, Wall, Ziese | REJECT(2) Christey, Frech | Frech> DUPE:CVE-2001-0976 | References and descriptions overlap. Currently assigned to | XF:hp-prm-privilege-elevation(7050). | Christey> Agreed, it"s a dupe. CVE-2001-0976 will be preferred, since | it"s been public longer. | View |
3118 | CVE-2001-0297 | Candidate | Directory traversal vulnerability in Simple Server HTTPd 1.0 (originally Free Java Server) allows remote attackers to read arbitrary files via a .. (dot dot) in the URL. | Proposed (20010404) | ACCEPT(1) Cole | NOOP(2) Wall, Ziese | REJECT(1) Frech | REVIEWING(1) Bishop | Frech> Dupe of CVE-2001-0186 | View |
3574 | CVE-2001-0767 | Candidate | Directory traversal vulnerability in GuildFTPd 0.9.7 allows attackers to list or read arbitrary files and directories via a .. in (1) LS or (2) GET. | Proposed (20011012) | ACCEPT(3) Armstrong, Cole, Foat | NOOP(2) Christey, Wall | REJECT(1) Frech | Frech> DUPE CVE-2000-0640 | Christey> Email ack received from guildftpd@nitrolic.com on 3/8/2002 | View |
Page 232 of 20943, showing 5 records out of 104715 total, starting on record 1156, ending on 1160