CVE List

Id CVE No. Status Description Phase Votes Comments Actions
1391  CVE-1999-1411  Entry  The installation of the fsp package 2.71-10 in Debian GNU/Linux 2.0 adds the anonymous FTP user without notifying the administrator, which could automatically enable anonymous FTP on some servers such as wu-ftp.        View
1392  CVE-1999-1412  Candidate  A possible interaction between Apple MacOS X release 1.0 and Apache HTTP server allows remote attackers to cause a denial of service (crash) via a flood of HTTP GET requests to CGI programs, which generates a large number of processes.  Proposed (20010912)  NOOP(3) Cole, Foat, Wall | REVIEWING(1) Frech  Frech> (Task 2288)  View
1393  CVE-1999-1413  Candidate  Solaris 2.4 before kernel jumbo patch -35 allows set-gid programs to dump core even if the real user id is not in the set-gid group, which allows local users to overwrite or create files at higher privileges by causing a core dump, e.g. through dmesg.  Proposed (20010912)  MODIFY(2) Dik, Frech | NOOP(2) Cole, Foat  Frech> XF:solaris-coredump-symlink(7196) | Dik> sun bug: 1208241 | | Also applies to set-uid executables that have made real | and effective uid identical  View
1394  CVE-1999-1414  Entry  IBM Netfinity Remote Control allows local users to gain administrator privileges by starting programs from the process manager, which runs with system level privileges.        View
1395  CVE-1999-1415  Candidate  Vulnerability in /usr/bin/mail in DEC ULTRIX before 4.2 allows local users to gain privileges.  Proposed (20010912)  ACCEPT(3) Cole, Foat, Stracener | MODIFY(1) Frech | NOOP(2) Christey, Wall  Frech> XF:bsd-binmail(515) | CA-1991-13 was superseded by CA-1995-02. | Christey> Is there overlap between CVE-1999-1415 and CVE-1999-1438? | Both CERT advisories are vague.  View

Page 279 of 20943, showing 5 records out of 104715 total, starting on record 1391, ending on 1395

Actions