CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2806  CVE-2000-1239  Candidate  The HTTP interface of Tivoli Lightweight Client Framework (LCF) in IBM Tivoli Management Framework 3.7.1 sets http_disable to zero at install time, which allows remote authenticated users to bypass file permissions on Tivoli Endpoint Configuration data files via an unspecified manipulation of log files.  Assigned (20060315)  None (candidate not yet proposed)    View
2807  CVE-2000-1240  Candidate  Unspecified vulnerability in siteman.php3 in AnyPortal(php) before 22 APR 00 allows remote attackers to obtain sensitive information via unknown attack vectors, which reveal the absolute path. NOTE: the provenance of this information is unknown; the details are obtained from third party information.  Assigned (20060323)  None (candidate not yet proposed)    View
2808  CVE-2000-1241  Candidate  Unspecified vulnerability in Haakon Nilsen simple, integrated publishing system (SIPS) before 0.2.4 has an unknown impact and attack vectors, related to a "grave security fault."  Assigned (20060913)  None (candidate not yet proposed)    View
2809  CVE-2000-1242  Candidate  The HTTP service in American Power Conversion (APC) PowerChute uses a default username and password, which allows remote attackers to gain system access.  Assigned (20061209)  None (candidate not yet proposed)    View
2810  CVE-2000-1243  Candidate  Privacy leak in Dansie Shopping Cart 3.04, and probably earlier versions, sends sensitive information such as user credentials to an e-mail address controlled by the product developers.  Assigned (20070605)  None (candidate not yet proposed)    View

Page 562 of 20943, showing 5 records out of 104715 total, starting on record 2806, ending on 2810

Actions