CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2591  CVE-2000-1022  Entry  The mailguard feature in Cisco Secure PIX Firewall 5.2(2) and earlier does not properly restrict access to SMTP commands, which allows remote attackers to execute restricted commands by sending a DATA command before sending the restricted commands.        View
2592  CVE-2000-1023  Candidate  The Alabanza Control Panel does not require passwords to access administrative commands, which allows remote attackers to modify domain name information via the nsManager.cgi CGI program.  Proposed (20001129)  ACCEPT(2) Collins, Mell | NOOP(2) Cole, Wall | REJECT(1) Baker  Baker> I agree with Steve that this appears to be an on-line applet, accessible from their server only. | CHANGE> [Baker changed vote from REVIEWING to REJECT]  View
2593  CVE-2000-1024  Entry  eWave ServletExec 3.0C and earlier does not restrict access to the UploadServlet Java/JSP servlet, which allows remote attackers to upload files and execute arbitrary commands.        View
2594  CVE-2000-1025  Candidate  eWave ServletExec JSP/Java servlet engine, versions 3.0C and earlier, allows remote attackers to cause a denial of service via a URL that contains the "/servlet/" string, which invokes the ServletExec servlet and causes an exception if the servlet is already running.  Proposed (20001129)  ACCEPT(2) Frech, Mell | NOOP(1) Cole    View
2595  CVE-2000-1026  Entry  Multiple buffer overflows in LBNL tcpdump allow remote attackers to execute arbitrary commands.        View

Page 519 of 20943, showing 5 records out of 104715 total, starting on record 2591, ending on 2595

Actions