CVE List

Id CVE No. Status Description Phase Votes Comments Actions
1962  CVE-2000-0384  Candidate  NetStructure 7110 and 7180 have undocumented accounts (servnow, root, and wizard) whose passwords are easily guessable from the NetStructure"s MAC address, which could allow remote attackers to gain root access.  Proposed (20000615)  ACCEPT(6) Baker, Frech, Levy, Ozancin, Prosser, Stracener | NOOP(1) Cole    View
1963  CVE-2000-0385  Candidate  FileMaker Pro 5 Web Companion allows remote attackers to bypass Field-Level database security restrictions via the XML publishing or email capabilities.  Proposed (20000615)  ACCEPT(5) Baker, Frech, Ozancin, Prosser, Stracener | MODIFY(1) Levy | NOOP(1) Cole  Levy> Reference: BID 1159  View
1964  CVE-2000-0386  Candidate  FileMaker Pro 5 Web Companion allows remote attackers to send anonymous or forged email.  Proposed (20000615)  ACCEPT(5) Baker, Frech, Ozancin, Prosser, Stracener | MODIFY(1) Levy | NOOP(1) Cole  Levy> Reference: BID 1159  View
1978  CVE-2000-0400  Candidate  The Microsoft Active Movie ActiveX Control in Internet Explorer 5 does not restrict which file types can be downloaded, which allows an attacker to download any type of file to a user"s system by encoding it within an email message or news post.  Proposed (20000615)  ACCEPT(4) Frech, Levy, Ozancin, Wall | NOOP(2) Cole, Stracener | REJECT(1) Christey | REVIEWING(1) LeBlanc  LeBlanc> COMMENT - this definately will not work if the user has applied the security | patch. I don"t know whether this repros right now, and have sent a query to | find out. | Christey> Is this now documented in MS:MS00-042? | LeBlanc> the problem isn"t in the Active Movie control. What was | observed was a symptom of another problem that got fixed in | some bulletin or another - I don"t remember. | Christey> According to Scott Culp, this existed because | the patch for the Cache Bypass vulnerability (MS:MS00-046, | CVE-2000-0621) was not applied, so this should be REJECTed | as a duplicate of CVE-2000-0621.  View
1979  CVE-2000-0401  Candidate  Buffer overflows in redirect.exe and changepw.exe in PDGSoft shopping cart allow remote attackers to execute arbitrary commands via a long query string.  Proposed (20000615)  ACCEPT(2) Levy, Stracener | MODIFY(1) Frech | NOOP(2) Cole, Wall  Frech> XF:pdgsoft-changepw-bo | XF:pdgsoft-redirect-bo  View

Page 362 of 20943, showing 5 records out of 104715 total, starting on record 1806, ending on 1810

Actions