CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2011  CVE-2000-0433  Candidate  The SuSE aaa_base package installs some system accounts with home directories set to /tmp, which allows local users to gain privileges to those accounts by creating standard user startup scripts such as profiles.  Proposed (20000615)  ACCEPT(6) Baker, Cole, Frech, Levy, Ozancin, Stracener | MODIFY(1) Prosser  Prosser> add source: | SecurityFocus | BID1357 | SuSE Linux aaabase User Account with /tmp Home Vulnerability | http://www.securityfocus.com/bid/1357 | CHANGE> [Levy changed vote from REVIEWING to ACCEPT]  View
2012  CVE-2000-0434  Candidate  The administrative password for the Allmanage web site administration software is stored in plaintext in a file which could be accessed by remote attackers.  Proposed (20000615)  ACCEPT(3) Levy, Ozancin, Stracener | MODIFY(1) Frech | NOOP(3) Cole, LeBlanc, Wall  Frech> XF:http-cgi-allmanage-plaintext-admin  View
2013  CVE-2000-0435  Entry  The allmanageup.pl file upload CGI script in the Allmanage Website administration software 2.6 can be called directly by remote attackers, which allows them to modify user accounts or web pages.        View
2014  CVE-2000-0436  Entry  MetaProducts Offline Explorer 1.2 and earlier allows remote attackers to access arbitrary files via a .. (dot dot) attack.        View
2015  CVE-2000-0437  Entry  Buffer overflow in the CyberPatrol daemon "cyberdaemon" used in gauntlet and WebShield allows remote attackers to cause a denial of service or execute arbitrary commands.        View

Page 403 of 20943, showing 5 records out of 104715 total, starting on record 2011, ending on 2015

Actions