CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2581  CVE-2000-1012  Candidate  The catopen function in FreeBSD 5.0 and earlier, and possibly other OSes, allows local users to read arbitrary files via the LANG environmental variable.  Proposed (20001129)  ACCEPT(3) Cole, Collins, Mell | MODIFY(1) Frech | NOOP(1) Wall  Frech> XF:freebsd-display-read-files(5645)  View
2582  CVE-2000-1013  Candidate  The setlocale function in FreeBSD 5.0 and earlier, and possibly other OSes, allows local users to read arbitrary files via the LANG environmental variable.  Proposed (20001129)  ACCEPT(2) Cole, Mell | MODIFY(1) Frech | NOOP(1) Wall  Frech> XF:freebsd-display-read-files(5645)  View
2583  CVE-2000-1014  Entry  Format string vulnerability in the search97.cgi CGI script in SCO help http server for Unixware 7 allows remote attackers to execute arbitrary commands via format characters in the queryText parameter.        View
2584  CVE-2000-1015  Candidate  The default configuration of Slashcode before version 2.0 Alpha has a default administrative password, which allows remote attackers to gain Slashcode priviliges and possibly execute arbitrary commands.  Proposed (20001129)  ACCEPT(4) Cole, Collins, Frech, Mell | NOOP(1) Wall    View
2585  CVE-2000-1016  Entry  The default configuration of Apache (httpd.conf) on SuSE 6.4 includes an alias for the /usr/doc directory, which allows remote attackers to read package documentation and obtain system configuration information via an HTTP request for the /doc/packages URL.        View

Page 517 of 20943, showing 5 records out of 104715 total, starting on record 2581, ending on 2585

Actions