CVE List

Id CVE No. Status Description Phase Votes Comments Actions
999  CVE-1999-1019  Entry  SpectroSERVER in Cabletron Spectrum Enterprise Manager 5.0 installs a directory tree with insecure permissions, which allows local users to replace a privileged executable (processd) with a Trojan horse, facilitating a root or Administrator compromise.        View
1511  CVE-1999-1531  Entry  Buffer overflow in IBM HomePagePrint 1.0.7 for Windows98J allows a malicious Web site to execute arbitrary code on a viewer"s system via a long IMG_SRC HTML tag.        View
1767  CVE-2000-0189  Entry  ColdFusion Server 4.x allows remote attackers to determine the real pathname of the server via an HTTP request to the application.cfm or onrequestend.cfm files.        View
2023  CVE-2000-0445  Entry  The pgpk command in PGP 5.x on Unix systems uses an insufficiently random data source for non-interactive key pair generation, which may produce predictable keys.        View
2279  CVE-2000-0703  Entry  suidperl (aka sperl) does not properly cleanse the escape sequence "~!" before calling /bin/mail to send an error report, which allows local users to gain privileges by setting the "interactive" environmental variable and calling suidperl with a filename that contains the escape sequence.        View

Page 556 of 20943, showing 5 records out of 104715 total, starting on record 2776, ending on 2780

Actions