CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
2011 | CVE-2000-0433 | Candidate | The SuSE aaa_base package installs some system accounts with home directories set to /tmp, which allows local users to gain privileges to those accounts by creating standard user startup scripts such as profiles. | Proposed (20000615) | ACCEPT(6) Baker, Cole, Frech, Levy, Ozancin, Stracener | MODIFY(1) Prosser | Prosser> add source: | SecurityFocus | BID1357 | SuSE Linux aaabase User Account with /tmp Home Vulnerability | http://www.securityfocus.com/bid/1357 | CHANGE> [Levy changed vote from REVIEWING to ACCEPT] | View |
2012 | CVE-2000-0434 | Candidate | The administrative password for the Allmanage web site administration software is stored in plaintext in a file which could be accessed by remote attackers. | Proposed (20000615) | ACCEPT(3) Levy, Ozancin, Stracener | MODIFY(1) Frech | NOOP(3) Cole, LeBlanc, Wall | Frech> XF:http-cgi-allmanage-plaintext-admin | View |
2013 | CVE-2000-0435 | Entry | The allmanageup.pl file upload CGI script in the Allmanage Website administration software 2.6 can be called directly by remote attackers, which allows them to modify user accounts or web pages. | View | |||
2014 | CVE-2000-0436 | Entry | MetaProducts Offline Explorer 1.2 and earlier allows remote attackers to access arbitrary files via a .. (dot dot) attack. | View | |||
2015 | CVE-2000-0437 | Entry | Buffer overflow in the CyberPatrol daemon "cyberdaemon" used in gauntlet and WebShield allows remote attackers to cause a denial of service or execute arbitrary commands. | View |
Page 403 of 20943, showing 5 records out of 104715 total, starting on record 2011, ending on 2015