CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
3662 | CVE-2001-0856 | Candidate | Common Cryptographic Architecture (CCA) in IBM 4758 allows an attacker with physical access to the system and Combine_Key_Parts permissions, to steal DES and 3DES keys by using a brute force attack to create a 3DES exporter key. | Modified (20050703) | MODIFY(1) Frech | NOOP(5) Armstrong, Bishop, Cole, Foat, Wall | Frech> XF:cca-3des-weak-key(7491) | View |
3699 | CVE-2001-0893 | Candidate | Acme mini_httpd before 1.16 allows remote attackers to view sensitive files under the document root (such as .htpasswd) via a GET request with a trailing /. | Modified (20050703) | ACCEPT(3) Armstrong, Baker, Cole | MODIFY(1) Frech | NOOP(2) Foat, Wall | Frech> XF:httpd-bypass-permissions(7541) | View |
3704 | CVE-2001-0898 | Candidate | Opera 6.0 and earlier allows remote attackers to access sensitive information such as cookies and links for other domains via Javascript that uses setTimeout to (1) access data after a new window to the domain has been opened or (2) access data via about:cache. | Modified (20050703) | MODIFY(1) Frech | NOOP(5) Armstrong, Christey, Cole, Foat, Wall | Frech> XF:opera-java-cross-site(7567) | Christey> XF:opera-java-cross-site(7567) | URL:http://www.iss.net/security_center/static/7567.php | BID:3553 | URL:http://www.securityfocus.com/bid/3553 | | Some people are calling this XSS, but is it? | View |
3709 | CVE-2001-0903 | Candidate | Linear key exchange process in High-bandwidth Digital Content Protection (HDCP) System allows remote attackers to access data as plaintext, avoid device blacklists, clone devices, and create new device keyvectors by computing and using alternate key combinations for authentication. | Modified (20050703) | MODIFY(1) Frech | NOOP(4) Armstrong, Cole, Foat, Wall | Frech> XF:hdcp-authentication-keys(7612) | View |
3710 | CVE-2001-0904 | Candidate | Internet Explorer 5.5 and 6 with the Q312461 (MS01-055) patch modifies the HTTP_USER_AGENT (UserAgent) information that indicates that the patch has been installed, which could allow remote malicious web sites to more easily identify and exploit vulnerable clients. | Modified (20050703) | ACCEPT(3) Armstrong, Cole, Foat | MODIFY(1) Frech | REVIEWING(1) Wall | Frech> XF:ie-q312461-patch-existence(7581) | View |
Page 506 of 20943, showing 5 records out of 104715 total, starting on record 2526, ending on 2530