CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3249  CVE-2001-0431  Candidate  Vulnerability in iPlanet Web Server Enterprise Edition 4.x.  Proposed (20010524)  ACCEPT(3) Baker, Cole, Ziese | NOOP(1) Wall | REJECT(1) Frech  Frech> Duplicate of CVE-2001-0327.  View
3235  CVE-2001-0417  Candidate  Kerberos 4 (aka krb4) allows local users to overwrite arbitrary files via a symlink attack on new ticket files.  Proposed (20010524)  ACCEPT(3) Baker, Cole, Ziese | NOOP(1) Wall | REJECT(3) Christey, Frech, Oliver  Frech> DUPLICATE OF CVE-2001-0036: KTH Kerberos IV allows local users to | overwrite arbitrary files via a symlink attack on a ticket file. | Oliver> Appears to be a subset of CVE-2001-036. | Christey> Change description to point out that the Kerberos 5 package is | affected. | FREEBSD:FreeBSD-SA-01:25 | Also ensure that the other problems described in the FreeBSD | advisory have CANs/CVEs. | CHANGE> [Christey changed vote from NOOP to REJECT] | Christey> Agree that these are dupes. Since CVE-2001-0036 is already | an official CVE entry, this candidate will be rejected. | This CAN"s references will be added to CVE-2001-0036.  View
3971  CVE-2001-1167  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2001-0976. Reason: This candidate is a duplicate of CVE-2001-0976. Notes: CVE-2001-0976 should be used instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Proposed (20020315)  ACCEPT(3) Baker, Cole, Green | NOOP(4) Armstrong, Foat, Wall, Ziese | REJECT(2) Christey, Frech  Frech> DUPE:CVE-2001-0976 | References and descriptions overlap. Currently assigned to | XF:hp-prm-privilege-elevation(7050). | Christey> Agreed, it"s a dupe. CVE-2001-0976 will be preferred, since | it"s been public longer.  View
3118  CVE-2001-0297  Candidate  Directory traversal vulnerability in Simple Server HTTPd 1.0 (originally Free Java Server) allows remote attackers to read arbitrary files via a .. (dot dot) in the URL.  Proposed (20010404)  ACCEPT(1) Cole | NOOP(2) Wall, Ziese | REJECT(1) Frech | REVIEWING(1) Bishop  Frech> Dupe of CVE-2001-0186  View
3574  CVE-2001-0767  Candidate  Directory traversal vulnerability in GuildFTPd 0.9.7 allows attackers to list or read arbitrary files and directories via a .. in (1) LS or (2) GET.  Proposed (20011012)  ACCEPT(3) Armstrong, Cole, Foat | NOOP(2) Christey, Wall | REJECT(1) Frech  Frech> DUPE CVE-2000-0640 | Christey> Email ack received from guildftpd@nitrolic.com on 3/8/2002  View

Page 232 of 20943, showing 5 records out of 104715 total, starting on record 1156, ending on 1160

Actions