CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
8736 | CVE-2004-0308 | Candidate | Unknown vulnerability in Cisco ONS 15327 before 4.1(3), ONS 15454 before 4.6(1), ONS 15454 SD before 4.1(3), and Cisco ONS15600 before 1.3(0) allows a superuser whose account is locked out, disabled, or suspended to gain unauthorized access via a Telnet connection to the VxWorks shell. | Modified (20040820) | ACCEPT(4) Armstrong, Baker, Cole, Wall | NOOP(1) Cox | View | |
2108 | CVE-2000-0531 | Candidate | Linux gpm program allows local users to cause a denial of service by flooding the /dev/gpmctl device with STREAM sockets. | Modified (20040818) | ACCEPT(1) Levy | MODIFY(1) Frech | REVIEWING(1) Christey | Frech> XF:linux-gpm-gpmctl-dos(5010) | Christey> ADDREF REDHAT:RHSA-2000:045-01 | ADDREF BUGTRAQ:20000728 MDKSA:2000-025 gpm update | URL:http://archives.neohapsis.com/archives/bugtraq/2000-07/0409.html | CHANGE> [Christey changed vote from NOOP to REVIEWING] | Christey> Per Andre Frech"s comments for CVE-2000-0667. | View |
3422 | CVE-2001-0609 | Candidate | Format string vulnerability in Infodrom cfingerd 1.4.3 and earlier allows a remote attacker to gain additional privileges via a malformed ident reply that is passed to the syslog function. | Modified (20040818) | ACCEPT(5) Baker, Bishop, Cole, Frech, Ziese | NOOP(2) Foat, Wall | REVIEWING(1) Christey | Christey> A very similar vulnerability - which perhaps should be | combined with this CAN according to CD:SF-LOC - is documented | in the following references: | | BUGTRAQ:20010621 cfingerd local vulnerability (possibly root) | URL:http://www.securityfocus.com/archive/1/Pine.LNX.4.33.0106212246190.31927-100000@ace | BUGTRAQ:20010712 Happy 3 month anniversary cfingerd remote bug! | URL:http://www.securityfocus.com/archive/1/Pine.LNX.4.33.0107120434070.10330-200000@clarity.local | BID:2915 | URL:http://www.securityfocus.com/bid/2915 | Christey> DELREF DEBIAN:DSA-048 [wrong CVE] | View |
2933 | CVE-2001-0112 | Candidate | Multiple buffer overflows in splitvt before 1.6.5 allow local users to execute arbitrary commands. | Modified (20040818) | ACCEPT(2) Baker, Cole | MODIFY(1) Frech | NOOP(1) Wall | Frech> XF:splitvt-bo(6210) | View |
4767 | CVE-2002-0375 | Candidate | Cross-site scripting vulnerability in sgdynamo.exe for Sgdynamo allows remote attackers to execute arbitrary Javascript via a URL with the script in the HTNAME parameter. | Modified (20040818) | ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(4) Cole, Cox, Foat, Wall | Frech> XF:sgdynamo-htname-parameter-xss(9830) | View |
Page 539 of 20943, showing 5 records out of 104715 total, starting on record 2691, ending on 2695