CVE List

Id CVE No. Status Description Phase Votes Comments Actions
1455  CVE-1999-1475  Candidate  ProFTPd 1.2 compiled with the mod_sqlpw module records user passwords in the wtmp log file, which allows local users to obtain the passwords and gain privileges by reading wtmp, e.g. via the last command.  Proposed (20010912)  MODIFY(1) Frech | NOOP(3) Cole, Foat, Wall  Frech> XF:proftpd-modsqlpw-insecure-passwords(8332)  View
1200  CVE-1999-1220  Candidate  Majordomo 1.94.3 and earlier allows remote attackers to execute arbitrary commands when the advertise or noadvertise directive is used in a configuration file, via shell metacharacters in the Reply-To header.  Proposed (20010912)  ACCEPT(1) Frech | NOOP(2) Cole, Foat    View
1201  CVE-1999-1221  Candidate  dxchpwd in Digital Unix (OSF/1) 3.x allows local users to modify arbitrary files via a symlink attack on the dxchpwd.log file.  Proposed (20010912)  ACCEPT(1) Frech | NOOP(2) Cole, Foat    View
1457  CVE-1999-1477  Candidate  Buffer overflow in GNOME libraries 1.0.8 allows local user to gain root access via a long --espeaker argument in programs such as nethack.  Proposed (20010912)  ACCEPT(1) Frech | NOOP(3) Cole, Foat, Wall    View
1204  CVE-1999-1224  Candidate  IMAP 4.1 BETA, and possibly other versions, does not properly handle the SIGABRT (abort) signal, which allows local users to crash the server (imapd) via certain sequences of commands, which causes a core dump that may contain sensitive password information.  Proposed (20010912)  ACCEPT(1) Frech | NOOP(2) Cole, Foat    View

Page 244 of 20943, showing 5 records out of 104715 total, starting on record 1216, ending on 1220

Actions