CVE List

Id CVE No. Status Description Phase Votes Comments Actions
1003  CVE-1999-1023  Candidate  useradd in Solaris 7.0 does not properly interpret certain date formats as specified in the "-e" (expiration date) argument, which could allow users to login after their accounts have expired.  Proposed (20010912)  ACCEPT(1) Dik | MODIFY(1) Frech | NOOP(3) Cole, Foat, Wall  Dik> sun bug: 4222400 | Frech> XF:solaris-useradd-expired-accounts(8375) | CONFIRM:(2.6)110883-01, (2.6_x86) 110884-01, (7)110869-01, | (7_x86) 110870-01  View
1397  CVE-1999-1417  Candidate  Format string vulnerability in AnswerBook2 (AB2) web server dwhttpd 3.1a4 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via encoded % characters in an HTTP request, which is improperly logged.  Proposed (20010912)  ACCEPT(1) Dik | NOOP(3) Cole, Foat, Wall  Dik> sun bug: 4218283  View
1368  CVE-1999-1388  Candidate  passwd in SunOS 4.1.x allows local users to overwrite arbitrary files via a symlink attack and the -F command line argument.  Proposed (20010912)  ACCEPT(1) Dik | NOOP(2) Cole, Foat  Dik> sun bug: 1171499  View
1103  CVE-1999-1123  Candidate  The installation of Sun Source (sunsrc) tapes allows local users to gain root privileges via setuid root programs (1) makeinstall or (2) winstall.  Proposed (20010912)  ACCEPT(5) Cole, Dik, Foat, Frech, Stracener | NOOP(1) Wall  Dik> sun bug: 1059621  View
1447  CVE-1999-1467  Candidate  Vulnerability in rcp on SunOS 4.0.x allows remote attackers from trusted hosts to execute arbitrary commands as root, possibly related to the configuration of the nobody user.  Proposed (20010912)  ACCEPT(5) Cole, Dik, Foat, Frech, Stracener | NOOP(1) Wall  Dik> sun bug: 1028958  View

Page 249 of 20943, showing 5 records out of 104715 total, starting on record 1241, ending on 1245

Actions