CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2590  CVE-2000-1021  Candidate  Heap overflow in WebConfig in Mdaemon 3.1.1 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long URL.  Proposed (20001129)  ACCEPT(4) Baker, Cole, Collins, Mell | NOOP(1) Wall    View
2592  CVE-2000-1023  Candidate  The Alabanza Control Panel does not require passwords to access administrative commands, which allows remote attackers to modify domain name information via the nsManager.cgi CGI program.  Proposed (20001129)  ACCEPT(2) Collins, Mell | NOOP(2) Cole, Wall | REJECT(1) Baker  Baker> I agree with Steve that this appears to be an on-line applet, accessible from their server only. | CHANGE> [Baker changed vote from REVIEWING to REJECT]  View
2594  CVE-2000-1025  Candidate  eWave ServletExec JSP/Java servlet engine, versions 3.0C and earlier, allows remote attackers to cause a denial of service via a URL that contains the "/servlet/" string, which invokes the ServletExec servlet and causes an exception if the servlet is already running.  Proposed (20001129)  ACCEPT(2) Frech, Mell | NOOP(1) Cole    View
2602  CVE-2000-1033  Candidate  Serv-U FTP Server allows remote attackers to bypass its anti-hammering feature by first logging on as a valid user (possibly anonymous) and then attempting to guess the passwords of other users.  Proposed (20001129)  ACCEPT(2) Frech, Mell | NOOP(1) Cole    View
2604  CVE-2000-1035  Candidate  Buffer overflows in TYPSoft FTP Server 0.78 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long USER, PASS, or CWD command.  Proposed (20001129)  ACCEPT(1) Mell | MODIFY(1) Baker | NOOP(2) Cole, Wall  CHANGE> [Baker changed vote from NOOP to MODIFY] | Baker> http://www.synnergy.net/downloads/advisories/SLA-2000-07.typsoft-ftpd.txt  View

Page 334 of 20943, showing 5 records out of 104715 total, starting on record 1666, ending on 1670

Actions