CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
626 | CVE-1999-0644 | Candidate | ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configuration that does not directly introduce security vulnerabilities, so it is more appropriate to cover under the Common Configuration Enumeration (CCE). Notes: the former description is: "The NNTP news service is running." | Modified (20080731) | ACCEPT(2) Baker, Wall | NOOP(1) Christey | REJECT(1) Northcutt | Christey> XF:nntp-post(88) ? | View |
4693 | CVE-2002-0301 | Candidate | Citrix NFuse 1.6 allows remote attackers to bypass authentication and obtain sensitive information by directly calling launch.asp with invalid NFUSE_USER and NFUSE_PASSWORD parameters. | Proposed (20020502) | ACCEPT(1) Cole | MODIFY(1) Frech | NOOP(4) Christey, Cox, Foat, Wall | Christey> XF:nfuse-user-information-disclosure(8257) | URL:http://www.iss.net/security_center/static/8257.php | Frech> XF:nfuse-user-information-disclosure(8257) | View |
613 | CVE-1999-0631 | Candidate | ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configuration that does not directly introduce security vulnerabilities, so it is more appropriate to cover under the Common Configuration Enumeration (CCE). Notes: the former description is: "The NFS service is running." | Modified (20080731) | ACCEPT(2) Baker, Wall | NOOP(1) Christey | REJECT(1) Northcutt | Christey> XF:nfs-nfsd(76) ? | Christey> Add rpc.mountd/mountd to facilitate search. | View |
5035 | CVE-2002-0645 | Candidate | SQL injection vulnerability in stored procedures for Microsoft SQL Server 2000 and Microsoft Desktop Engine (MSDE) 2000 may allow authenticated users to execute arbitrary commands. | Proposed (20020726) | ACCEPT(5) Armstrong, Baker, Cole, Foat, Wall | MODIFY(1) Frech | NOOP(2) Christey, Cox | Christey> XF:mssql-replication-sql-injection(9660) | URL:http://www.iss.net/security_center/static/9660.php | BUGTRAQ:20020725 SQL Server 2000 Buffer Overflows and SQL Inyection vulnerabilities. | URL:http://online.securityfocus.com/archive/1/284382 | Mention that the function "sp_MScopyscript" is affected, along | with other functions. | Frech> XF:mssql-replication-sql-injection(9660) | View |
5031 | CVE-2002-0641 | Candidate | Buffer overflow in bulk insert procedure of Microsoft SQL Server 2000, including Microsoft SQL Server Desktop Engine (MSDE) 2000, allows attackers with database administration privileges to execute arbitrary code via a long filename in the BULK INSERT query. | Modified (20061101) | ACCEPT(5) Armstrong, Baker, Cole, Foat, Wall | MODIFY(1) Frech | NOOP(2) Christey, Cox | Christey> XF:mssql-bulk-insert-bo(9522) | URL:http://www.iss.net/security_center/static/9522.php | BID:4847 | URL:http://www.securityfocus.com/bid/4847 | Frech> XF:mssql-bulk-insert-bo(9522) | View |
Page 271 of 20943, showing 5 records out of 104715 total, starting on record 1351, ending on 1355