CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
2454 | CVE-2000-0885 | Candidate | Buffer overflows in Microsoft Network Monitor (Netmon) allow remote attackers to execute arbitrary commands via a long Browser Name in a CIFS Browse Frame, a long SNMP community name, or a long username or filename in an SMB session, aka the "Netmon Protocol Parsing" vulnerability. NOTE: It is highly likely that this candidate will be split into multiple candidates. | Modified (20010119-01) | ACCEPT(4) Baker, Cole, Mell, Renaud | MODIFY(1) Frech | Frech> XF:network-monitor-bo(5399) | View |
2577 | CVE-2000-1008 | Candidate | PalmOS 3.5.2 and earlier uses weak encryption to store the user password, which allows attackers with physical access to the Palm device to decrypt the password and gain access to the device. | Modified (20010116-01) | ACCEPT(2) Cole, Mell | MODIFY(1) Frech | NOOP(1) Wall | Frech> XF:palm-weak-encryption(5308) | View |
2348 | CVE-2000-0772 | Candidate | The installation of Tumbleweed Messaging Management System (MMS) 4.6 and earlier (formerly Worldtalk Worldsecure) creates a default account "sa" with no password. | Modified (20010116-01) | ACCEPT(2) Baker, Levy | MODIFY(1) Frech | NOOP(3) Christey, Cole, Wall | Christey> XF:tumbleweed-mms-blank-password | http://xforce.iss.net/static/5072.php | Frech> XF:umbleweed-mms-blank-password(5072) | View |
2714 | CVE-2000-1147 | Candidate | Buffer overflow in IIS ISAPI .ASP parsing mechanism allows attackers to execute arbitrary commands via a long string to the "LANGUAGE" argument in a script tag. | Modified (20010116-01) | ACCEPT(2) Baker, Wall | MODIFY(1) Frech | NOOP(1) Cole | RECAST(1) LeBlanc | REVIEWING(1) Christey | Frech> XF:iis-isapi-asp-bo(5510) | Christey> Consult Microsoft on this one. | LeBlanc> This one was already fixed in several hotfixes when it was | found. I"m not sure what the content decision is on this. It is a valid | problem, but it was already fixed when announced. I will go along with | an accept vote once it is modified to show fixes. | View |
2723 | CVE-2000-1156 | Candidate | StarOffice 5.2 follows symlinks and sets world-readable permissions for the /tmp/soffice.tmp directory, which allows a local user to read files of the user who is using StarOffice. | Modified (20010116-01) | ACCEPT(3) Baker, Cole, Dik | MODIFY(1) Frech | NOOP(1) Wall | REVIEWING(1) Christey | Frech> XF:staroffice-tmp-sym-link(5487) | Christey> Consult Sun on this one. | Dik> Supposedly fixed in Soffice 5.1 Service pack 1 | View |
Page 563 of 20943, showing 5 records out of 104715 total, starting on record 2811, ending on 2815