CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2333  CVE-2000-0757  Candidate  The sysgen service in Aptis Totalbill does not perform authentication, which allows remote attackers to gain root privileges by connecting to the service and specifying the commands to be executed.  Proposed (20000921)  ACCEPT(2) Baker, Levy | NOOP(4) Christey, Cole, Wall, Williams  Christey> XF:totalbill-remote-execution | http://xforce.iss.net/static/5068.php  View
2336  CVE-2000-0760  Candidate  The Snoop servlet in Jakarta Tomcat 3.1 and 3.0 under Apache reveals sensitive system information when a remote attacker requests a nonexistent URL with a .snp extension.  Proposed (20000921)  ACCEPT(2) Baker, Levy | NOOP(3) Cole, Wall, Williams    View
2345  CVE-2000-0769  Candidate  O"Reilly WebSite Pro 2.3.7 installs the uploader.exe program with execute permissions for all users, which allows remote attackers to create and execute arbitrary files by directly calling uploader.exe.  Proposed (20000921)  ACCEPT(2) Baker, Levy | MODIFY(1) Frech | NOOP(2) Christey, Cole | REVIEWING(1) Wall  Christey> XF:website-pro-upload-files(5157) | Frech> XF:website-pro-upload-files(5157)  View
2350  CVE-2000-0774  Candidate  The sample Java servlet "test" in Bajie HTTP web server 0.30a reveals the real pathname of the web document root.  Proposed (20000921)  ACCEPT(3) Baker, Levy, Williams | NOOP(2) Cole, Wall  Baker> Vendor fixed this issue in later version of the software  View
2351  CVE-2000-0775  Candidate  Buffer overflow in RobTex Viking server earlier than 1.06-370 allows remote attackers to cause a denial of service or execute arbitrary commands via a long HTTP GET request, or long Unless-Modified-Since, If-Range, or If-Modified-Since headers.  Proposed (20000921)  ACCEPT(2) Baker, Levy | MODIFY(1) Frech | NOOP(3) Christey, Cole, Wall  Christey> XF:viking-server-bo(5158) | Frech> XF:viking-server-bo(5158)  View

Page 346 of 20943, showing 5 records out of 104715 total, starting on record 1726, ending on 1730

Actions