CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
612 | CVE-1999-0630 | Candidate | The NT Alerter and Messenger services are running. | Proposed (19990804) | ACCEPT(2) Baker, Wall | NOOP(1) Christey | REJECT(1) Northcutt | Christey> http://support.microsoft.com/support/kb/articles/q189/2/71.asp | View |
2556 | CVE-2000-0987 | Candidate | Buffer overflow in oidldapd in Oracle 8.1.6 allow local users to gain privileges via a long "connect" command line parameter. | Proposed (20001129) | ACCEPT(3) Cole, Frech, Mell | NOOP(2) Armstrong, Christey | Christey> http://archives.neohapsis.com/archives/bugtraq/2000-12/0400.html | appears to be a rediscovery of this problem. | Christey> It looks like Juan Manuel Pascual Escriba saw this issue | in a later version and re-posted, but that later post doesn"t | mention the earlier one. The exploit is almost exactly the | same, but the affected version is 8.1.7. | ADDREF BUGTRAQ:20001221 vulnerability #1 in Oracle Internet Directory 2.1.1.1 in Oracle 8.1.7 | http://archives.neohapsis.com/archives/bugtraq/2000-12/0400.html | ADDREF BUGTRAQ:20010118 Patch for Potential Buffer Overflow Vulnerabilities in Oracle Internet Directory | http://archives.neohapsis.com/archives/bugtraq/2001-01/0325.html | View |
3553 | CVE-2001-0746 | Candidate | Buffer overflow in Web Publisher in iPlanet Web Server Enterprise Edition 4.1 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a request for a long URI with (1) GETPROPERTIES, (2) GETATTRIBUTENAMES, or other methods. | Proposed (20011012) | ACCEPT(6) Armstrong, Baker, Cole, Foat, Frech, Wall | NOOP(1) Christey | Christey> HP:HPSBUX0106-152 might address CVE-2001-0746 or | CVE-2001-0747, or maybe neither, but only HP knows for sure. | See: http://archives.neohapsis.com/archives/hp/2001-q2/0059.html | Christey> I am about to create a separate candidate for the HP advisory. | Obviously that advisory is affected by CD:VAGUE. | View |
621 | CVE-1999-0639 | Candidate | The chargen service is running. | Proposed (19990804) | ACCEPT(2) Baker, Wall | REJECT(1) Northcutt | REVIEWING(1) Christey | Christey> How much of this is an overlap with the echo/chargen flood | problem (CVE-1999-0103)? If this is only an exposure because | of CVE-1999-0103, then maybe this should be REJECTed. | View |
3427 | CVE-2001-0614 | Candidate | Carello E-Commerce 1.2.1 and earlier allows a remote attacker to gain additional privileges and execute arbitrary commands via a specially constructed URL. | Proposed (20010727) | ACCEPT(1) Frech | NOOP(5) Christey, Cole, Foat, Wall, Ziese | REVIEWING(1) Bishop | Christey> Give the particular nature of the constructed URL, i.e. the | command is specified in the VBEXE parameter. | View |
Page 307 of 20943, showing 5 records out of 104715 total, starting on record 1531, ending on 1535