CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
5667 | CVE-2002-1283 | Candidate | Buffer overflow in Novell iManager (eMFrame) before 1.5 allows remote attackers to cause a denial of service via an authentication request with a long Distinguished Name (DN) attribute. | Modified (20081001) | ACCEPT(3) Baker, Cole, Green | NOOP(2) Cox, Wall | REVIEWING(1) Christey | Christey> Consider overlap with CVE-2002-1002 ? | See XF:novell-imanager-username-bo(9444) for more info | View |
2272 | CVE-2000-0696 | Candidate | The administration interface for the dwhttpd web server in Solaris AnswerBook2 does not properly authenticate requests to its supporting CGI scripts, which allows remote attackers to add user accounts to the interface by directly calling the admin CGI script. | Modified (20080918) | ACCEPT(4) Baker, Cole, Dik, Levy | MODIFY(1) Frech | NOOP(2) Christey, Wall | Frech> XF:solaris-answerbook2-admin-interface | Christey> XF:solaris-answerbook2-admin-interface | http://xforce.iss.net/static/5069.php | Christey> BUGTRAQ:20000807 Vulnerabilities in Sun Solaris AnswerBook2 dwhttpd server | http://www.securityfocus.com/archive/1/74382 | Christey> Fix typo: "CGi" | CHANGE> [Dik changed vote from REVIEWING to ACCEPT] | View |
2273 | CVE-2000-0697 | Candidate | The administration interface for the dwhttpd web server in Solaris AnswerBook2 allows interface users to remotely execute commands via shell metacharacters. | Modified (20080918) | ACCEPT(4) Baker, Cole, Dik, Levy | MODIFY(1) Frech | NOOP(2) Christey, Wall | Frech> XF:solaris-answerbook2-remote-execution | Christey> XF:solaris-answerbook2-remote-execution | http://xforce.iss.net/static/5058.php | CHANGE> [Dik changed vote from REVIEWING to ACCEPT] | Dik> COMMENTS | verified bug existance. | Christey> There needs to be a separate item for the .. problem reported | in this same post. | View |
4862 | CVE-2002-0470 | Candidate | PHPNetToolpack 0.1 relies on its environment"s PATH to find and execute the traceroute program, which could allow local users to gain privileges by inserting a Trojan horse program into the search path. | Modified (20080918) | ACCEPT(1) Frech | NOOP(5) Cole, Cox, Foat, Green, Wall | View | |
4863 | CVE-2002-0471 | Candidate | PHPNetToolpack 0.1 allows remote attackers to execute arbitrary code via shell metacharacters in the a_query variable. | Modified (20080918) | ACCEPT(1) Frech | NOOP(5) Cole, Cox, Foat, Green, Wall | View |
Page 442 of 20943, showing 5 records out of 104715 total, starting on record 2206, ending on 2210