CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2454  CVE-2000-0885  Candidate  Buffer overflows in Microsoft Network Monitor (Netmon) allow remote attackers to execute arbitrary commands via a long Browser Name in a CIFS Browse Frame, a long SNMP community name, or a long username or filename in an SMB session, aka the "Netmon Protocol Parsing" vulnerability. NOTE: It is highly likely that this candidate will be split into multiple candidates.  Modified (20010119-01)  ACCEPT(4) Baker, Cole, Mell, Renaud | MODIFY(1) Frech  Frech> XF:network-monitor-bo(5399)  View
2577  CVE-2000-1008  Candidate  PalmOS 3.5.2 and earlier uses weak encryption to store the user password, which allows attackers with physical access to the Palm device to decrypt the password and gain access to the device.  Modified (20010116-01)  ACCEPT(2) Cole, Mell | MODIFY(1) Frech | NOOP(1) Wall  Frech> XF:palm-weak-encryption(5308)  View
2348  CVE-2000-0772  Candidate  The installation of Tumbleweed Messaging Management System (MMS) 4.6 and earlier (formerly Worldtalk Worldsecure) creates a default account "sa" with no password.  Modified (20010116-01)  ACCEPT(2) Baker, Levy | MODIFY(1) Frech | NOOP(3) Christey, Cole, Wall  Christey> XF:tumbleweed-mms-blank-password | http://xforce.iss.net/static/5072.php | Frech> XF:umbleweed-mms-blank-password(5072)  View
2714  CVE-2000-1147  Candidate  Buffer overflow in IIS ISAPI .ASP parsing mechanism allows attackers to execute arbitrary commands via a long string to the "LANGUAGE" argument in a script tag.  Modified (20010116-01)  ACCEPT(2) Baker, Wall | MODIFY(1) Frech | NOOP(1) Cole | RECAST(1) LeBlanc | REVIEWING(1) Christey  Frech> XF:iis-isapi-asp-bo(5510) | Christey> Consult Microsoft on this one. | LeBlanc> This one was already fixed in several hotfixes when it was | found. I"m not sure what the content decision is on this. It is a valid | problem, but it was already fixed when announced. I will go along with | an accept vote once it is modified to show fixes.  View
2723  CVE-2000-1156  Candidate  StarOffice 5.2 follows symlinks and sets world-readable permissions for the /tmp/soffice.tmp directory, which allows a local user to read files of the user who is using StarOffice.  Modified (20010116-01)  ACCEPT(3) Baker, Cole, Dik | MODIFY(1) Frech | NOOP(1) Wall | REVIEWING(1) Christey  Frech> XF:staroffice-tmp-sym-link(5487) | Christey> Consult Sun on this one. | Dik> Supposedly fixed in Soffice 5.1 Service pack 1  View

Page 563 of 20943, showing 5 records out of 104715 total, starting on record 2811, ending on 2815

Actions