CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
1639 | CVE-2000-0061 | Candidate | Internet Explorer 5 does not modify the security zone for a document that is being loaded into a window until after the document has been loaded, which could allow remote attackers to execute Javascript in a different security context while the document is loading. | Proposed (20000125) | MODIFY(2) Frech, LeBlanc | NOOP(1) Baker | REJECT(1) Christey | Frech> XF:ie-cross-frame-docs(3901) | LeBlanc> - I"d like to see a KB or bulletin referenced | Christey> This is a duplicate of CVE-2000-0156. The FAQ at | http://www.microsoft.com/technet/security/bulletin/fq00-009.asp. | says "the vulnerability requires Active Scripting" and | "it is possible, under very specific conditions, to violate IE"s | cross-domain security model." Also says "the redirect is made, via | the <IMG SRC> HTML tag" | | Need to copy these references over to CVE-2000-0156. | View |
1644 | CVE-2000-0066 | Candidate | WebSite Pro allows remote attackers to determine the real pathname of webdirectories via a malformed URL request. | Proposed (20000125) | ACCEPT(2) Baker, Williams | MODIFY(1) Frech | NOOP(1) Christey | Frech> XF:website-pro-dir-path | Christey> ADDREF BUGTRAQ:20000113 Re: WebSitePro/2.3.18 + 2.4.9 is revealing Webdirectories | URL:http://www.securityfocus.com/archive/1/41798 | Also BID:932 | View |
1645 | CVE-2000-0067 | Candidate | CyberCash Merchant Connection Kit (MCK) allows local users to modify files via a symlink attack. | Proposed (20000125) | ACCEPT(2) Baker, Williams | MODIFY(1) Frech | Frech> XF:cybercash-mck-tmp(3823) | View |
1646 | CVE-2000-0068 | Candidate | daynad program in Intel InBusiness E-mail Station does not require authentication, which allows remote attackers to modify its configuration, delete files, or read mail. | Proposed (20000125) | MODIFY(1) Frech | Frech> XF:intel-email-unauthenticate-users | View |
1647 | CVE-2000-0069 | Candidate | The recover program in Solstice Backup allows local users to restore sensitive files. | Proposed (20000125) | MODIFY(1) Frech | Frech> XF:solstice-backup-restore-files(3904) | View |
Page 382 of 20943, showing 5 records out of 104715 total, starting on record 1906, ending on 1910