CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2606  CVE-2000-1037  Candidate  Check Point Firewall-1 session agent 3.0 through 4.1 generates different error messages for invalid user names versus invalid passwords, which allows remote attackers to determine valid usernames and guess a password via a brute force attack.  Proposed (20001129)  ACCEPT(2) Baker, Mell | NOOP(2) Cole, Wall    View
2617  CVE-2000-1048  Candidate  Directory traversal vulnerability in the logfile service of Wingate 4.1 Beta A and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack via an HTTP GET request that uses encoded characters in the URL.  Proposed (20001129)  ACCEPT(3) Baker, Frech, Mell | NOOP(2) Armstrong, Cole    View
2621  CVE-2000-1052  Candidate  Allaire JRun 2.3 server allows remote attackers to obtain source code for executable content by directly calling the SSIFilter servlet.  Proposed (20001129)  ACCEPT(3) Armstrong, Cole, Mell | MODIFY(1) Frech  Frech> XF:allaire-jrun-ssifilter-url(5405)  View
2622  CVE-2000-1053  Candidate  Allaire JRun 2.3.3 server allows remote attackers to compile and execute JSP code by inserting it via a cross-site scripting (CSS) attack and directly calling the com.livesoftware.jrun.plugins.JSP JSP servlet.  Proposed (20001129)  ACCEPT(4) Armstrong, Cole, Frech, Mell    View
2631  CVE-2000-1062  Candidate  Buffer overflow in the FTP service in HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service.  Proposed (20001129)  ACCEPT(3) Baker, Frech, Mell | NOOP(1) Cole    View

Page 335 of 20943, showing 5 records out of 104715 total, starting on record 1671, ending on 1675

Actions