CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2846  CVE-2001-0025  Candidate  ad.cgi CGI program by Leif Wright allows remote attackers to execute arbitrary commands via shell metacharacters in the file parameter.  Proposed (20010202)  ACCEPT(1) Frech | NOOP(3) Cole, Wall, Ziese    View
2848  CVE-2001-0027  Candidate  mod_sqlpw module in ProFTPD does not reset a cached password when a user uses the "user" command to change accounts, which allows authenticated attackers to gain privileges of other users.  Proposed (20010202)  ACCEPT(1) Frech | NOOP(3) Cole, Wall, Ziese    View
2851  CVE-2001-0030  Candidate  FoolProof 3.9 allows local users to bypass program execution restrictions by downloading the restricted executables from another source and renaming them.  Proposed (20010202)  ACCEPT(2) Baker, Frech | NOOP(4) Christey, Cole, Wall, Ziese  Christey> ADDREF BUGTRAQ:20001208 Foolproof Security Vulnerability | http://www.securityfocus.com/archive/1/149952  View
2852  CVE-2001-0031  Candidate  BroadVision One-To-One Enterprise allows remote attackers to determine the physical path of server files by requesting a .JSP file name that does not exist.  Proposed (20010202)  ACCEPT(2) Baker, Frech | NOOP(3) Cole, Wall, Ziese    View
2853  CVE-2001-0032  Candidate  Format string vulnerability in ssldump possibly allows remote attackers to cause a denial of service and possibly gain root privileges via malicious format string specifiers in a URL.  Proposed (20010202)  ACCEPT(2) Baker, Frech | NOOP(3) Cole, Wall, Ziese    View

Page 316 of 20943, showing 5 records out of 104715 total, starting on record 1576, ending on 1580

Actions