CVE List

Id CVE No. Status Description Phase Votes Comments Actions
1646  CVE-2000-0068  Candidate  daynad program in Intel InBusiness E-mail Station does not require authentication, which allows remote attackers to modify its configuration, delete files, or read mail.  Proposed (20000125)  MODIFY(1) Frech  Frech> XF:intel-email-unauthenticate-users  View
1647  CVE-2000-0069  Candidate  The recover program in Solstice Backup allows local users to restore sensitive files.  Proposed (20000125)  MODIFY(1) Frech  Frech> XF:solstice-backup-restore-files(3904)  View
1648  CVE-2000-0070  Entry  NtImpersonateClientOfPort local procedure call in Windows NT 4.0 allows local users to gain privileges, aka "Spoofed LPC Port Request."        View
1649  CVE-2000-0071  Candidate  IIS 4.0 allows a remote attacker to obtain the real pathname of the document root by requesting non-existent files with .ida or .idq extensions.  Proposed (20000125)  ACCEPT(2) LeBlanc, Levy | MODIFY(1) Frech | NOOP(1) Baker | REJECT(1) Christey  Frech> XF:iis-ida-idq-paths | Christey> Consider adding: | ADDREF BID:1065 | BUGTRAQ:20000309 Enumerate Root Web Server Directory Vulnerability for IIS 4.0 | Are there really 2 different threads on the same problem? | | Also consider XF:iis-root-enum | | May also be a dupe of CVE-1999-0450 (BID:194) | CHANGE> [Christey changed vote from NOOP to REVIEWING] | Christey> Appears to be a duplicate of CVE-2000-0098. Confirm with | Microsoft, and if it is a duplicate, then REJECT this | candidate. | CHANGE> [Christey changed vote from REVIEWING to REJECT] | Christey> Confirmed duplicate by Microsoft. | Christey> iis-ida-idq-paths(4346) is obsolete; ensure | http-indexserver-path(3890) is added to CVE-2000-0098.  View
1650  CVE-2000-0072  Entry  Visual Casel (Vcasel) does not properly prevent users from executing files, which allows local users to use a relative pathname to specify an alternate file which has an approved name and possibly gain privileges.        View

Page 330 of 20943, showing 5 records out of 104715 total, starting on record 1646, ending on 1650

Actions