CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
2333 | CVE-2000-0757 | Candidate | The sysgen service in Aptis Totalbill does not perform authentication, which allows remote attackers to gain root privileges by connecting to the service and specifying the commands to be executed. | Proposed (20000921) | ACCEPT(2) Baker, Levy | NOOP(4) Christey, Cole, Wall, Williams | Christey> XF:totalbill-remote-execution | http://xforce.iss.net/static/5068.php | View |
2336 | CVE-2000-0760 | Candidate | The Snoop servlet in Jakarta Tomcat 3.1 and 3.0 under Apache reveals sensitive system information when a remote attacker requests a nonexistent URL with a .snp extension. | Proposed (20000921) | ACCEPT(2) Baker, Levy | NOOP(3) Cole, Wall, Williams | View | |
2345 | CVE-2000-0769 | Candidate | O"Reilly WebSite Pro 2.3.7 installs the uploader.exe program with execute permissions for all users, which allows remote attackers to create and execute arbitrary files by directly calling uploader.exe. | Proposed (20000921) | ACCEPT(2) Baker, Levy | MODIFY(1) Frech | NOOP(2) Christey, Cole | REVIEWING(1) Wall | Christey> XF:website-pro-upload-files(5157) | Frech> XF:website-pro-upload-files(5157) | View |
2350 | CVE-2000-0774 | Candidate | The sample Java servlet "test" in Bajie HTTP web server 0.30a reveals the real pathname of the web document root. | Proposed (20000921) | ACCEPT(3) Baker, Levy, Williams | NOOP(2) Cole, Wall | Baker> Vendor fixed this issue in later version of the software | View |
2351 | CVE-2000-0775 | Candidate | Buffer overflow in RobTex Viking server earlier than 1.06-370 allows remote attackers to cause a denial of service or execute arbitrary commands via a long HTTP GET request, or long Unless-Modified-Since, If-Range, or If-Modified-Since headers. | Proposed (20000921) | ACCEPT(2) Baker, Levy | MODIFY(1) Frech | NOOP(3) Christey, Cole, Wall | Christey> XF:viking-server-bo(5158) | Frech> XF:viking-server-bo(5158) | View |
Page 346 of 20943, showing 5 records out of 104715 total, starting on record 1726, ending on 1730