CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
4092 | CVE-2001-1288 | Candidate | Windows 2000 and Windows NT allows local users to cause a denial of service (reboot) by executing a command at the command prompt and pressing the F7 and enter keys several times while the command is executing, possibly related to an exception handling error in csrss.exe. | Proposed (20020502) | ACCEPT(2) Cole, Green | MODIFY(1) Frech | NOOP(1) Cox | REJECT(1) Foat | REVIEWING(1) Wall | Foat> Unable to duplicate vulnerability | Frech> XF:win-command-prompt-dos(11216) | View |
4785 | CVE-2002-0393 | Candidate | Buffer overflow in Red-M 1050 (Bluetooth Access Point) management web interface allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long administration password. | Modified (20050518) | ACCEPT(1) Cole | MODIFY(1) Frech | NOOP(3) Armstrong, Cox, Wall | REJECT(1) Foat | Foat> Unable to duplicate vulnerability | Frech> XF:redm-1050ap-web-dos(9262) | View |
5222 | CVE-2002-0832 | Candidate | Internet Explorer 5, 5.6, and 6 allows remote attackers to bypass cookie privacy settings and store information across browser sessions via the userData (storeuserData) feature. | Proposed (20020830) | ACCEPT(2) Baker, Foat | MODIFY(1) Frech | NOOP(3) Armstrong, Cole, Cox | REVIEWING(1) Wall | Foat> This is more an exposure than a vulnerability. IE does have, as the | autho0r contends, a "user data persistence" feature that is independent of the | settings used to control cookies. Microsoft allows a user to turn off the | feature via a simple setting. Bottom line, this is a configuration problem. | Frech> XF:ie-bypass-cookie-restrictions(10459) | View |
5436 | CVE-2002-1048 | Candidate | HP JetDirect printers allow remote attackers to obtain the administrative password for the (1) web and (2) telnet services via an SNMP request to the variable (.iso.3.6.1.4.1.11.2.3.9.4.2.1.3.9.1.1.0. | Modified (20071101) | NOOP(3) Cole, Cox, Wall | REJECT(1) Foat | Foat> This candidate should list which printers have this vulnerability. On | the printers we checked this was not a problem. | View |
1479 | CVE-1999-1499 | Candidate | named in ISC BIND 4.9 and 8.1 allows local users to destroy files via a symlink attack on (1) named_dump.db when root kills the process with a SIGINT, or (2) named.stats when SIGIOT is used. | Proposed (20010912) | MODIFY(1) Frech | NOOP(2) Cole, Wall | REJECT(1) Foat | Foat> The files get written to /var/named which the user does not have write | access. | Frech> XF:bind-sigint-sigiot-symlink(7366) | View |
Page 246 of 20943, showing 5 records out of 104715 total, starting on record 1226, ending on 1230