CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8736  CVE-2004-0308  Candidate  Unknown vulnerability in Cisco ONS 15327 before 4.1(3), ONS 15454 before 4.6(1), ONS 15454 SD before 4.1(3), and Cisco ONS15600 before 1.3(0) allows a superuser whose account is locked out, disabled, or suspended to gain unauthorized access via a Telnet connection to the VxWorks shell.  Modified (20040820)  ACCEPT(4) Armstrong, Baker, Cole, Wall | NOOP(1) Cox    View
2108  CVE-2000-0531  Candidate  Linux gpm program allows local users to cause a denial of service by flooding the /dev/gpmctl device with STREAM sockets.  Modified (20040818)  ACCEPT(1) Levy | MODIFY(1) Frech | REVIEWING(1) Christey  Frech> XF:linux-gpm-gpmctl-dos(5010) | Christey> ADDREF REDHAT:RHSA-2000:045-01 | ADDREF BUGTRAQ:20000728 MDKSA:2000-025 gpm update | URL:http://archives.neohapsis.com/archives/bugtraq/2000-07/0409.html | CHANGE> [Christey changed vote from NOOP to REVIEWING] | Christey> Per Andre Frech"s comments for CVE-2000-0667.  View
3422  CVE-2001-0609  Candidate  Format string vulnerability in Infodrom cfingerd 1.4.3 and earlier allows a remote attacker to gain additional privileges via a malformed ident reply that is passed to the syslog function.  Modified (20040818)  ACCEPT(5) Baker, Bishop, Cole, Frech, Ziese | NOOP(2) Foat, Wall | REVIEWING(1) Christey  Christey> A very similar vulnerability - which perhaps should be | combined with this CAN according to CD:SF-LOC - is documented | in the following references: | | BUGTRAQ:20010621 cfingerd local vulnerability (possibly root) | URL:http://www.securityfocus.com/archive/1/Pine.LNX.4.33.0106212246190.31927-100000@ace | BUGTRAQ:20010712 Happy 3 month anniversary cfingerd remote bug! | URL:http://www.securityfocus.com/archive/1/Pine.LNX.4.33.0107120434070.10330-200000@clarity.local | BID:2915 | URL:http://www.securityfocus.com/bid/2915 | Christey> DELREF DEBIAN:DSA-048 [wrong CVE]  View
2933  CVE-2001-0112  Candidate  Multiple buffer overflows in splitvt before 1.6.5 allow local users to execute arbitrary commands.  Modified (20040818)  ACCEPT(2) Baker, Cole | MODIFY(1) Frech | NOOP(1) Wall  Frech> XF:splitvt-bo(6210)  View
4767  CVE-2002-0375  Candidate  Cross-site scripting vulnerability in sgdynamo.exe for Sgdynamo allows remote attackers to execute arbitrary Javascript via a URL with the script in the HTNAME parameter.  Modified (20040818)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(4) Cole, Cox, Foat, Wall  Frech> XF:sgdynamo-htname-parameter-xss(9830)  View

Page 539 of 20943, showing 5 records out of 104715 total, starting on record 2691, ending on 2695

Actions