CVE List

Id CVE No. Status Description Phase Votes Comments Actions
1052  CVE-1999-1072  Candidate  Excite for Web Servers (EWS) 1.1 allows local users to gain privileges by obtaining the encrypted password from the world-readable Architext.conf authentication file and replaying the encrypted password in an HTTP request to AT-generated.cgi or AT-admin.cgi.  Proposed (20010912)  NOOP(3) Cole, Foat, Wall    View
1053  CVE-1999-1073  Candidate  Excite for Web Servers (EWS) 1.1 records the first two characters of a plaintext password in the beginning of the encrypted password, which makes it easier for an attacker to guess passwords via a brute force or dictionary attack.  Proposed (20010912)  NOOP(3) Cole, Foat, Wall    View
1361  CVE-1999-1381  Candidate  Buffer overflow in dbadmin CGI program 1.0.1 on Linux allows remote attackers to execute arbitrary commands.  Proposed (20010912)  NOOP(3) Cole, Foat, Wall    View
1383  CVE-1999-1403  Candidate  IBM/Tivoli OPC Tracker Agent version 2 release 1 creates files, directories, and IPC message queues with insecure permissions (world-readable and world-writable), which could allow local users to disrupt operations and possibly gain privileges by modifying or deleting files.  Proposed (20010912)  NOOP(3) Cole, Foat, Wall    View
1384  CVE-1999-1404  Candidate  IBM/Tivoli OPC Tracker Agent version 2 release 1 allows remote attackers to cause a denial of service (resource exhaustion) via malformed data to the localtracker client port (5011), which prevents the connection from being closed properly.  Proposed (20010912)  NOOP(3) Cole, Foat, Wall    View

Page 27 of 20943, showing 5 records out of 104715 total, starting on record 131, ending on 135

Actions