CVE List

Id CVE No. Status Description Phase Votes Comments Actions
1721  CVE-2000-0143  Candidate  The SSH protocol server sshd allows local users without shell access to redirect a TCP connection through a service that uses the standard system password database for authentication, such as POP or FTP.  Interim (20001011)  ACCEPT(3) Blake, Cole, LeBlanc | MODIFY(1) Frech | NOOP(2) Baker, Bishop | REJECT(1) Levy | REVIEWING(1) Christey  Frech> XF:ssh-redirect-tcp-connection | CHANGE> [Cole changed vote from REVIEWING to ACCEPT] | Christey> Examine the thread at | http://marc.theaimsgroup.com/?l=bugtraq&m=95055978131077&w=2 | to ensure that this problem is being characterized | appropriately. | Levy> SSH is working as designed. The fact that some of its interactions | are not forseen by some is not a vulnerability.  View
1722  CVE-2000-0144  Entry  Axis 700 Network Scanner does not properly restrict access to administrator URLs, which allows users to bypass the password protection via a .. (dot dot) attack.        View
1723  CVE-2000-0145  Entry  The libguile.so library file used by gnucash in Debian GNU/Linux is installed with world-writable permissions.        View
1724  CVE-2000-0146  Entry  The Java Server in the Novell GroupWise Web Access Enhancement Pack allows remote attackers to cause a denial of service via a long URL to the servlet.        View
1725  CVE-2000-0147  Candidate  snmpd in SCO OpenServer has an SNMP community string that is writable by default, which allows local attackers to modify the host"s configuration.  Modified (20000321-01)  ACCEPT(5) Baker, Bishop, Blake, Cole, Levy | MODIFY(1) Frech | NOOP(1) LeBlanc  Frech> XF:sco-openserver-snmpd  View

Page 345 of 20943, showing 5 records out of 104715 total, starting on record 1721, ending on 1725

Actions