CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
1003 | CVE-1999-1023 | Candidate | useradd in Solaris 7.0 does not properly interpret certain date formats as specified in the "-e" (expiration date) argument, which could allow users to login after their accounts have expired. | Proposed (20010912) | ACCEPT(1) Dik | MODIFY(1) Frech | NOOP(3) Cole, Foat, Wall | Dik> sun bug: 4222400 | Frech> XF:solaris-useradd-expired-accounts(8375) | CONFIRM:(2.6)110883-01, (2.6_x86) 110884-01, (7)110869-01, | (7_x86) 110870-01 | View |
1397 | CVE-1999-1417 | Candidate | Format string vulnerability in AnswerBook2 (AB2) web server dwhttpd 3.1a4 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via encoded % characters in an HTTP request, which is improperly logged. | Proposed (20010912) | ACCEPT(1) Dik | NOOP(3) Cole, Foat, Wall | Dik> sun bug: 4218283 | View |
1368 | CVE-1999-1388 | Candidate | passwd in SunOS 4.1.x allows local users to overwrite arbitrary files via a symlink attack and the -F command line argument. | Proposed (20010912) | ACCEPT(1) Dik | NOOP(2) Cole, Foat | Dik> sun bug: 1171499 | View |
1103 | CVE-1999-1123 | Candidate | The installation of Sun Source (sunsrc) tapes allows local users to gain root privileges via setuid root programs (1) makeinstall or (2) winstall. | Proposed (20010912) | ACCEPT(5) Cole, Dik, Foat, Frech, Stracener | NOOP(1) Wall | Dik> sun bug: 1059621 | View |
1447 | CVE-1999-1467 | Candidate | Vulnerability in rcp on SunOS 4.0.x allows remote attackers from trusted hosts to execute arbitrary commands as root, possibly related to the configuration of the nobody user. | Proposed (20010912) | ACCEPT(5) Cole, Dik, Foat, Frech, Stracener | NOOP(1) Wall | Dik> sun bug: 1028958 | View |
Page 249 of 20943, showing 5 records out of 104715 total, starting on record 1241, ending on 1245