CVE List

Id CVE No. Status Description Phase Votes Comments Actions
626  CVE-1999-0644  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configuration that does not directly introduce security vulnerabilities, so it is more appropriate to cover under the Common Configuration Enumeration (CCE). Notes: the former description is: "The NNTP news service is running."  Modified (20080731)  ACCEPT(2) Baker, Wall | NOOP(1) Christey | REJECT(1) Northcutt  Christey> XF:nntp-post(88) ?  View
4693  CVE-2002-0301  Candidate  Citrix NFuse 1.6 allows remote attackers to bypass authentication and obtain sensitive information by directly calling launch.asp with invalid NFUSE_USER and NFUSE_PASSWORD parameters.  Proposed (20020502)  ACCEPT(1) Cole | MODIFY(1) Frech | NOOP(4) Christey, Cox, Foat, Wall  Christey> XF:nfuse-user-information-disclosure(8257) | URL:http://www.iss.net/security_center/static/8257.php | Frech> XF:nfuse-user-information-disclosure(8257)  View
613  CVE-1999-0631  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configuration that does not directly introduce security vulnerabilities, so it is more appropriate to cover under the Common Configuration Enumeration (CCE). Notes: the former description is: "The NFS service is running."  Modified (20080731)  ACCEPT(2) Baker, Wall | NOOP(1) Christey | REJECT(1) Northcutt  Christey> XF:nfs-nfsd(76) ? | Christey> Add rpc.mountd/mountd to facilitate search.  View
5035  CVE-2002-0645  Candidate  SQL injection vulnerability in stored procedures for Microsoft SQL Server 2000 and Microsoft Desktop Engine (MSDE) 2000 may allow authenticated users to execute arbitrary commands.  Proposed (20020726)  ACCEPT(5) Armstrong, Baker, Cole, Foat, Wall | MODIFY(1) Frech | NOOP(2) Christey, Cox  Christey> XF:mssql-replication-sql-injection(9660) | URL:http://www.iss.net/security_center/static/9660.php | BUGTRAQ:20020725 SQL Server 2000 Buffer Overflows and SQL Inyection vulnerabilities. | URL:http://online.securityfocus.com/archive/1/284382 | Mention that the function "sp_MScopyscript" is affected, along | with other functions. | Frech> XF:mssql-replication-sql-injection(9660)  View
5031  CVE-2002-0641  Candidate  Buffer overflow in bulk insert procedure of Microsoft SQL Server 2000, including Microsoft SQL Server Desktop Engine (MSDE) 2000, allows attackers with database administration privileges to execute arbitrary code via a long filename in the BULK INSERT query.  Modified (20061101)  ACCEPT(5) Armstrong, Baker, Cole, Foat, Wall | MODIFY(1) Frech | NOOP(2) Christey, Cox  Christey> XF:mssql-bulk-insert-bo(9522) | URL:http://www.iss.net/security_center/static/9522.php | BID:4847 | URL:http://www.securityfocus.com/bid/4847 | Frech> XF:mssql-bulk-insert-bo(9522)  View

Page 271 of 20943, showing 5 records out of 104715 total, starting on record 1351, ending on 1355

Actions