CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
2051 | CVE-2000-0473 | Candidate | Buffer overflow in AnalogX SimpleServer 1.05 allows a remote attacker to cause a denial of service via a long GET request for a program in the cgi-bin directory. | Proposed (20000712) | ACCEPT(1) Levy | MODIFY(1) Frech | REVIEWING(1) Christey | Christey> Appears to be the same as, or similar to, CVE-2000-0011, which was | also discovered by USSR. Comments on the AnalogX web site are | decidedly sparse. In CVE-2000-0011, USSR only claims that | the vendor was informed, so is this still the same problem? | | XF:simpleserver-long-url-dos | Frech> XF:simpleserver-long-url-dos(4693) | Please review whether your BUGTRAQ:19991231 reference is correct; seems like | this is the reference to CVE-2000-0011: Buffer overflow in AnalogX | SimpleServer:WWW HTTP server allows remote attackers to execute commands via | a long GET request. They are subtle; almost the only thing that changed was | the version. | A possible reference is "Remote DoS attack in AnalogX SimpleServer WWW | Version 1.05 Vulnerability" at http://www.ussrback.com/labs45.html. | View |
2992 | CVE-2001-0171 | Candidate | Buffer overflow in SlimServe HTTPd 1.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long GET request. | Proposed (20010309) | ACCEPT(1) Frech | NOOP(2) Christey, Ziese | REVIEWING(1) Lawler | Christey> Apparently, the original discoverer re-posted an advisory | saying that version 1.1 was also affected (everything else is | a carbon copy of the original post, so it took me a minute to | see what the deal was :-) | BUGTRAQ:20010228 DOS Vulnerability in SlimServe HTTPd | URL:http://archives.neohapsis.com/archives/bugtraq/2001-02/0509.html | View |
4770 | CVE-2002-0378 | Candidate | The default configuration of LPRng print spooler in Red Hat Linux 7.0 through 7.3, Mandrake 8.1 and 8.2, and other operating systems, accepts print jobs from arbitrary remote hosts. | Modified (20020817-01) | ACCEPT(5) Baker, Cole, Cox, Foat, Wall | NOOP(1) Christey | Christey> Also affects HP. | XF:lprng-remote-jobs-dos(9322) | URL:http://www.iss.net/security_center/static/9322.php | BID:4980 | URL:http://www.securityfocus.com/bid/4980 | HP:HPSBTL0206-048 | URL:http://online.securityfocus.com/advisories/4205 | View |
633 | CVE-1999-0651 | Candidate | The rsh/rlogin service is running. | Proposed (19990804) | ACCEPT(2) Baker, Wall | MODIFY(1) Frech | NOOP(1) Christey | REJECT(1) Northcutt | Christey> aka "shell" on UNIX systems (at least Solaris) in the | /etc/inetd.conf file. | Frech> associated to: | XF:nt-rlogin(92) | XF:rsh-svc(114) | XF:rshd(2995) | View |
4082 | CVE-2001-1278 | Candidate | Zope before 2.2.4 allows partially trusted users to bypass security controls for certain methods by accessing the methods through the fmt attribute of dtml-var tags. | Proposed (20020502) | ACCEPT(3) Cole, Green, Wall | NOOP(1) Foat | REJECT(3) Christey, Cox, Frech | Christey> Agreed; dupe of CVE-2001-1227 | View |
Page 331 of 20943, showing 5 records out of 104715 total, starting on record 1651, ending on 1655