CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
1651 | CVE-2000-0073 | Entry | Buffer overflow in Microsoft Rich Text Format (RTF) reader allows attackers to cause a denial of service via a malformed control word. | View | |||
1652 | CVE-2000-0074 | Candidate | PowerScripts PlusMail CGI program allows remote attackers to execute commands via a password file with improper permissions. | Proposed (20000125) | ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(2) Christey, Williams | Frech> XF:plusmail-password-permissions | Christey> Re-read the Bugtraq post to make sure the problem is described | properly. The advisory itself is vague as to the nature of | the problem, and the exploit doesn"t help clarify too much. | Christey> Consider adding BID:2653 | View |
1653 | CVE-2000-0075 | Entry | Super Mail Transfer Package (SMTP), later called MsgCore, has a memory leak which allows remote attackers to cause a denial of service by repeating multiple HELO, MAIL FROM, RCPT TO, and DATA commands in the same session. | View | |||
1654 | CVE-2000-0076 | Entry | nviboot boot script in the Debian nvi package allows local users to delete files via malformed entries in vi.recover. | View | |||
1655 | CVE-2000-0077 | Candidate | The October 1998 version of the HP-UX aserver program allows local users to gain privileges by specifying an alternate PATH which aserver uses to find the ps and grep commands. | Modified (20090302) | MODIFY(2) Baker, Frech | REVIEWING(1) Christey | Frech> ADDREF XF:hp-aserver | Christey> The Bugtraq posting does not mention specific versions. | Is October 1998 equivalent to HP-UX 10.x? | CHANGE> [Christey changed vote from NOOP to REVIEWING] | Christey> BID:1929 | Make sure not dupe"s with CVE-2000-0005 and CVE-20000-0078. | Baker> Was the BID reference ever added to this one? | View |
Page 331 of 20943, showing 5 records out of 104715 total, starting on record 1651, ending on 1655