CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11518  CVE-2005-0312  Candidate  WarFTPD 1.82 RC9, when running as an NT service, allows remote authenticated users to cause a denial of service (access violation) via a CWD command with a crafted pathname, as demonstrated using a large string of "%s" sequences, possibly indicating a format string vulnerability.  Assigned (20050210)  None (candidate not yet proposed)    View
983  CVE-1999-1003  Candidate  War FTP Daemon 1.70 allows remote attackers to cause a denial of service by flooding it with connections.  Proposed (19991222)  ACCEPT(3) Baker, Cole, Stracener | MODIFY(1) Frech | NOOP(1) Wall  Frech> XF:warftp-connection-flood  View
21893  CVE-2006-5789  Candidate  War FTP Daemon (WarFTPd) 1.82.00-RC11 allows remote authenticated users to cause a denial of service via a large number of "%s" format strings in (1) CWD, (2) CDUP, (3) DELE, (4) NLST, (5) LIST, (6) SIZE, and possibly other commands. NOTE: it is possible that vector 1 is an off-by-one variant or incomplete fix of CVE-2005-0312.  Assigned (20061107)  None (candidate not yet proposed)    View
37075  CVE-2008-6958  Candidate  wap/index.php in Crossday Discuz! Board 6.x and 7.x allows remote authenticated users to execute arbitrary PHP code via the creditsformula parameter.  Assigned (20090811)  None (candidate not yet proposed)    View
16200  CVE-2006-0096  Candidate  wan/sdla.c in Linux kernel 2.6.x before 2.6.11 and 2.4.x before 2.4.29 does not require the CAP_SYS_RAWIO privilege for an SDLA firmware upgrade, with unknown impact and local attack vectors. NOTE: further investigation suggests that this issue requires root privileges to exploit, since it is protected by CAP_NET_ADMIN; thus it might not be a vulnerability, although capabilities provide finer distinctions between privilege levels.  Assigned (20060106)  None (candidate not yet proposed)    View

Page 408 of 20943, showing 5 records out of 104715 total, starting on record 2036, ending on 2040

Actions