CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
161 | CVE-1999-0161 | Entry | In Cisco IOS 10.3, with the tacacs-ds or tacacs keyword, an extended IP access control list could bypass filtering. | View | |||
162 | CVE-1999-0162 | Entry | The "established" keyword in some Cisco IOS software allowed an attacker to bypass filtering. | View | |||
163 | CVE-1999-0163 | Candidate | In older versions of Sendmail, an attacker could use a pipe character to execute root commands. | Proposed (19990714) | ACCEPT(2) Frech, Northcutt | MODIFY(1) Prosser | NOOP(2) Baker, Christey | RECAST(1) Shostack | Shostack> there was a "To: |" and a "From: |" attack, which I | think are seperate. | Prosser> older vulnerability, but one additional reference is- | The Ultimate Sendmail Hole List by Markus H・ner @ | bau2.uibk.ac.at/matic/buglist.htm | "|PROGRAM " | Christey> Description needs to be more specific to distinguish between | this and CVE-1999-0203, as alluded to by Adam Shostack | View |
164 | CVE-1999-0164 | Entry | A race condition in the Solaris ps command allows an attacker to overwrite critical files. | View | |||
165 | CVE-1999-0165 | Candidate | NFS cache poisoning. | Modified (20040811) | ACCEPT(3) Baker, Frech, Northcutt | MODIFY(1) Shostack | NOOP(1) Prosser | REVIEWING(1) Christey | Shostack> need more data | Christey> need more refs | Christey> Add period to the end of the description. | View |
Page 33 of 20943, showing 5 records out of 104715 total, starting on record 161, ending on 165