CVE List

Id CVE No. Status Description Phase Votes Comments Actions
253  CVE-1999-0254  Candidate  A hidden SNMP community string in HP OpenView allows remote attackers to modify MIB tables and obtain sensitive information.  Proposed (19990726)  ACCEPT(2) Baker, Frech | NOOP(1) Wall | REVIEWING(1) Christey  Christey> What is the proper level of abstraction to use here? Should | we have a separate entry for each different default community | string? See: | http://cve.mitre.org/Board_Sponsors/archives/msg00242.html and | http://cve.mitre.org/Board_Sponsors/archives/msg00250.html | http://cve.mitre.org/Board_Sponsors/archives/msg00251.html | | Until the associated content decisions have been approved | by the Editorial Board, this candidate cannot be accepted | for inclusion in CVE.  View
5202  CVE-2002-0812  Candidate  Information leak in Compaq WL310, and the Orinoco Residential Gateway access point it is based on, uses a system identification string as a default SNMP read/write community string, which allows remote attackers to obtain and modify sensitive configuration information by querying for the identification string.  Modified (20040725)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(6) Armstrong, Christey, Cole, Cox, Foat, Wall  Christey> VULNWATCH:20020813 Foundstone Labs Advisory - Information Leakage in Orinoco and Compaq Access Points [updated] | URL:http://archives.neohapsis.com/archives/vulnwatch/2002-q3/0075.html | XF:orinoco-rg-default-snmp(9810) | URL:http://www.iss.net/security_center/static/9810.php | BID:5436 | URL:http://www.securityfocus.com/bid/5436 | Frech> XF:orinoco-rg-default-snmp(9810)  View
5103  CVE-2002-0713  Candidate  Buffer overflows in Squid before 2.4.STABLE6 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code (1) via the MSNT auth helper (msnt_auth) when using denyusers or allowusers files, (2) via the gopher client, or (3) via the FTP server directory listing parser when HTML output is generated.  Modified (20050601)  ACCEPT(4) Armstrong, Baker, Cole, Cox | MODIFY(1) Frech | NOOP(3) Christey, Foat, Wall  Christey> VULNWATCH:20020603 [VulnWatch] [DER #11] - Remotey exploitable fmt string bug in squid | URL:http://archives.neohapsis.com/archives/vulnwatch/2002-q2/0087.html | BUGTRAQ:20020604 [DER #11] - Remotey exploitable fmt string bug in squid | URL:http://online.securityfocus.com/archive/1/275347 | | Note that this report is for the "msntauth" module, which | itself is out-of-date, but there is obviously a codebase relationship | with what"s included in the Squid distribution. | Frech> XF:squid-msnt-helper-bo(9482) | Christey> CALDERA:CSSA-2002-046.0 | URL:ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2002-046.0.txt | REDHAT:RHSA-2002:051 | URL:http://rhn.redhat.com/errata/RHSA-2002-051.html | Christey> CALDERA:CSSA-2003-SCO.9  View
4485  CVE-2002-0091  Candidate  Multiple CGI scripts in CIDER SHADOW 1.5 and 1.6 allows remote attackers to execute arbitrary commands via certain form fields.  Modified (20050707)  ACCEPT(2) Cole, Green | NOOP(4) Christey, Foat, Wall, Ziese  Christey> VULNWATCH:20020429 [VulnWatch] eSecurityOnline Security Advisory 2408 - CIDER SHADOW CGI | URL:http://archives.neohapsis.com/archives/vulnwatch/2002-q2/0038.html | BID:4625 | URL:http://www.securityfocus.com/bid/4625 | BUGTRAQ:20020429 eSecurityOnline Security Advisory 2408 - CIDER SHADOW CGI | URL:http://online.securityfocus.com/archive/1/270111  View
4483  CVE-2002-0089  Candidate  Buffer overflow in admintool in Solaris 2.5 through 8 allows local users to gain root privileges via long arguments to (1) the -d command line option, or (2) the PRODVERS argument in the .cdtoc file.  Modified (20061101)  ACCEPT(3) Cole, Green, Ziese | NOOP(3) Christey, Foat, Wall  Christey> VULNWATCH:20020429 [VulnWatch] eSecurityOnline Security Advisory 2397 - Sun Solaris admintool -d and PRODVERS buffer overflow vulnerabilities | URL:http://archives.neohapsis.com/archives/vulnwatch/2002-q2/0035.html | BUGTRAQ:20020429 eSecurityOnline Security Advisory 2397 - Sun Solaris admintool -d and PRODVERS buffer overflow vulnerabilities | URL:http://online.securityfocus.com/archive/1/270122 | BID:4624 | URL:http://www.securityfocus.com/bid/4624 | Christey> CONFIRM:http://sunsolve.sun.com/pub-cgi/retrieve.pl?doc=fsalert%2F27353  View

Page 278 of 20943, showing 5 records out of 104715 total, starting on record 1386, ending on 1390

Actions