CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
1455 | CVE-1999-1475 | Candidate | ProFTPd 1.2 compiled with the mod_sqlpw module records user passwords in the wtmp log file, which allows local users to obtain the passwords and gain privileges by reading wtmp, e.g. via the last command. | Proposed (20010912) | MODIFY(1) Frech | NOOP(3) Cole, Foat, Wall | Frech> XF:proftpd-modsqlpw-insecure-passwords(8332) | View |
1200 | CVE-1999-1220 | Candidate | Majordomo 1.94.3 and earlier allows remote attackers to execute arbitrary commands when the advertise or noadvertise directive is used in a configuration file, via shell metacharacters in the Reply-To header. | Proposed (20010912) | ACCEPT(1) Frech | NOOP(2) Cole, Foat | View | |
1201 | CVE-1999-1221 | Candidate | dxchpwd in Digital Unix (OSF/1) 3.x allows local users to modify arbitrary files via a symlink attack on the dxchpwd.log file. | Proposed (20010912) | ACCEPT(1) Frech | NOOP(2) Cole, Foat | View | |
1457 | CVE-1999-1477 | Candidate | Buffer overflow in GNOME libraries 1.0.8 allows local user to gain root access via a long --espeaker argument in programs such as nethack. | Proposed (20010912) | ACCEPT(1) Frech | NOOP(3) Cole, Foat, Wall | View | |
1204 | CVE-1999-1224 | Candidate | IMAP 4.1 BETA, and possibly other versions, does not properly handle the SIGABRT (abort) signal, which allows local users to crash the server (imapd) via certain sequences of commands, which causes a core dump that may contain sensitive password information. | Proposed (20010912) | ACCEPT(1) Frech | NOOP(2) Cole, Foat | View |
Page 244 of 20943, showing 5 records out of 104715 total, starting on record 1216, ending on 1220