CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4092  CVE-2001-1288  Candidate  Windows 2000 and Windows NT allows local users to cause a denial of service (reboot) by executing a command at the command prompt and pressing the F7 and enter keys several times while the command is executing, possibly related to an exception handling error in csrss.exe.  Proposed (20020502)  ACCEPT(2) Cole, Green | MODIFY(1) Frech | NOOP(1) Cox | REJECT(1) Foat | REVIEWING(1) Wall  Foat> Unable to duplicate vulnerability | Frech> XF:win-command-prompt-dos(11216)  View
4785  CVE-2002-0393  Candidate  Buffer overflow in Red-M 1050 (Bluetooth Access Point) management web interface allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long administration password.  Modified (20050518)  ACCEPT(1) Cole | MODIFY(1) Frech | NOOP(3) Armstrong, Cox, Wall | REJECT(1) Foat  Foat> Unable to duplicate vulnerability | Frech> XF:redm-1050ap-web-dos(9262)  View
5222  CVE-2002-0832  Candidate  Internet Explorer 5, 5.6, and 6 allows remote attackers to bypass cookie privacy settings and store information across browser sessions via the userData (storeuserData) feature.  Proposed (20020830)  ACCEPT(2) Baker, Foat | MODIFY(1) Frech | NOOP(3) Armstrong, Cole, Cox | REVIEWING(1) Wall  Foat> This is more an exposure than a vulnerability. IE does have, as the | autho0r contends, a "user data persistence" feature that is independent of the | settings used to control cookies. Microsoft allows a user to turn off the | feature via a simple setting. Bottom line, this is a configuration problem. | Frech> XF:ie-bypass-cookie-restrictions(10459)  View
5436  CVE-2002-1048  Candidate  HP JetDirect printers allow remote attackers to obtain the administrative password for the (1) web and (2) telnet services via an SNMP request to the variable (.iso.3.6.1.4.1.11.2.3.9.4.2.1.3.9.1.1.0.  Modified (20071101)  NOOP(3) Cole, Cox, Wall | REJECT(1) Foat  Foat> This candidate should list which printers have this vulnerability. On | the printers we checked this was not a problem.  View
1479  CVE-1999-1499  Candidate  named in ISC BIND 4.9 and 8.1 allows local users to destroy files via a symlink attack on (1) named_dump.db when root kills the process with a SIGINT, or (2) named.stats when SIGIOT is used.  Proposed (20010912)  MODIFY(1) Frech | NOOP(2) Cole, Wall | REJECT(1) Foat  Foat> The files get written to /var/named which the user does not have write | access. | Frech> XF:bind-sigint-sigiot-symlink(7366)  View

Page 246 of 20943, showing 5 records out of 104715 total, starting on record 1226, ending on 1230

Actions