CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
2806 | CVE-2000-1239 | Candidate | The HTTP interface of Tivoli Lightweight Client Framework (LCF) in IBM Tivoli Management Framework 3.7.1 sets http_disable to zero at install time, which allows remote authenticated users to bypass file permissions on Tivoli Endpoint Configuration data files via an unspecified manipulation of log files. | Assigned (20060315) | None (candidate not yet proposed) | View | |
2807 | CVE-2000-1240 | Candidate | Unspecified vulnerability in siteman.php3 in AnyPortal(php) before 22 APR 00 allows remote attackers to obtain sensitive information via unknown attack vectors, which reveal the absolute path. NOTE: the provenance of this information is unknown; the details are obtained from third party information. | Assigned (20060323) | None (candidate not yet proposed) | View | |
2808 | CVE-2000-1241 | Candidate | Unspecified vulnerability in Haakon Nilsen simple, integrated publishing system (SIPS) before 0.2.4 has an unknown impact and attack vectors, related to a "grave security fault." | Assigned (20060913) | None (candidate not yet proposed) | View | |
2809 | CVE-2000-1242 | Candidate | The HTTP service in American Power Conversion (APC) PowerChute uses a default username and password, which allows remote attackers to gain system access. | Assigned (20061209) | None (candidate not yet proposed) | View | |
2810 | CVE-2000-1243 | Candidate | Privacy leak in Dansie Shopping Cart 3.04, and probably earlier versions, sends sensitive information such as user credentials to an e-mail address controlled by the product developers. | Assigned (20070605) | None (candidate not yet proposed) | View |
Page 562 of 20943, showing 5 records out of 104715 total, starting on record 2806, ending on 2810