CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2506  CVE-2000-0937  Entry  Samba Web Administration Tool (SWAT) in Samba 2.0.7 does not log login attempts in which the username is correct but the password is wrong, which allows remote attackers to conduct brute force password guessing attacks.        View
2507  CVE-2000-0938  Entry  Samba Web Administration Tool (SWAT) in Samba 2.0.7 supplies a different error message when a valid username is provided versus an invalid name, which allows remote attackers to identify valid users on the server.        View
2508  CVE-2000-0939  Candidate  Samba Web Administration Tool (SWAT) in Samba 2.0.7 allows remote attackers to cause a denial of service by repeatedly submitting a nonstandard URL in the GET HTTP request and forcing it to restart.  Proposed (20001129)  ACCEPT(2) Frech, Mell | NOOP(1) Cole | REJECT(1) Renaud  Renaud> SWAT makes this DoS easier to perform, but actually, it is an inetd | problem, not a swat problem.  View
2509  CVE-2000-0940  Candidate  Directory traversal vulnerability in Metertek pagelog.cgi allows remote attackers to read arbitrary files via a .. (dot dot) attack on the "name" or "display" parameter.  Proposed (20001129)  ACCEPT(2) Frech, Mell | NOOP(1) Cole    View
2510  CVE-2000-0941  Entry  Kootenay Web KW Whois 1.0 CGI program allows remote attackers to execute arbitrary commands via shell metacharacters in the "whois" parameter.        View

Page 502 of 20943, showing 5 records out of 104715 total, starting on record 2506, ending on 2510

Actions