CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2606  CVE-2000-1037  Candidate  Check Point Firewall-1 session agent 3.0 through 4.1 generates different error messages for invalid user names versus invalid passwords, which allows remote attackers to determine valid usernames and guess a password via a brute force attack.  Proposed (20001129)  ACCEPT(2) Baker, Mell | NOOP(2) Cole, Wall    View
2607  CVE-2000-1038  Entry  The web administration interface for IBM AS/400 Firewall allows remote attackers to cause a denial of service via an empty GET request.        View
2608  CVE-2000-1039  Candidate  Various TCP/IP stacks and network applications allow remote attackers to cause a denial of service by flooding a target host with TCP connection attempts and completing the TCP/IP handshake without maintaining the connection state on the attacker host, aka the "NAPTHA" class of vulnerabilities. NOTE: this candidate may change significantly as the security community discusses the technical nature of NAPTHA and learns more about the affected applications. This candidate is at a higher level of abstraction than is typical for CVE.  Proposed (20001219)  ACCEPT(3) Baker, Cole, Renaud | MODIFY(1) Frech | NOOP(2) Magdych, Wall | REVIEWING(1) Christey  Baker> Although this is at a high level, the fact is that it is a vulnerability, and as such we need to recognize this, even if we have to recast or modify the description at some later time. | Christey> This needs to be commented on and reviewed by many Board | members. | Frech> XF:naptha-resource-starvation(5810) | Christey> ADDREF SGI:20020304-01-A | Christey> SGI:20020304-01-A  View
2609  CVE-2000-1040  Entry  Format string vulnerability in logging function of ypbind 3.3, while running in debug mode, leaks file descriptors and allows an attacker to cause a denial of service.        View
2610  CVE-2000-1041  Entry  Buffer overflow in ypbind 3.3 possibly allows an attacker to gain root privileges.        View

Page 522 of 20943, showing 5 records out of 104715 total, starting on record 2606, ending on 2610

Actions