CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
332 | CVE-1999-0333 | Candidate | HP OpenView Omniback allows remote execution of commands as root via spoofing, and local users can gain root access via a symlink attack. | Modified (19990925-01) | ACCEPT(2) Baker, Frech | MODIFY(1) Prosser | RECAST(1) Christey | Prosser> additional source | HP Security Bulletin 85 | http://us-support.external.hp.com | http://europe-support.external.hp.com | Christey> Two separate bugs, so SF-LOC says this candidate should be | split | Christey> ADDREF CIAC:J-007 | URL:http://ciac.llnl.gov/ciac/bulletins/j-007.shtml | View |
204 | CVE-1999-0205 | Candidate | Denial of service in Sendmail 8.6.11 and 8.6.12. | Modified (19990925-01) | ACCEPT(2) Hill, Northcutt | MODIFY(2) Frech, Prosser | NOOP(1) Baker | REVIEWING(2) Christey, Ozancin | Frech> XF:sendmail-alias-dos | Prosser> additional source | Bugtraq | "Re: SM 8.6.12" | http://www.securityfocus.com | Christey> The Bugtraq thread does not provide any proof, including a | comment by Eric Allman that he hadn"t been provided any | details either. | | See http://www.securityfocus.com/templates/archive.pike?list=1&date=1995-07-8&thread=199507131402.KAA02492@bedbugs.net.ohio-state.edu | for the thread. | Christey> Change Bugtraq reference date to 19950708. | View |
240 | CVE-1999-0241 | Candidate | Guessable magic cookies in X Windows allows remote attackers to execute commands, e.g. through xterm. | Modified (19990925-01) | ACCEPT(3) Hill, Northcutt, Proctor | MODIFY(2) Frech, Prosser | NOOP(1) Baker | REVIEWING(1) Christey | Frech> Also add to references: | XF:sol-mkcookie | Prosser> additional source | Bugtraq | "X11 cookie hijacker" | http://www.securityfocus.com | Christey> The cookie hijacker thread has to do with stealing cookies | through a file with bad permissions. I"m not sure the | X-Force reference identifies this problem either. | Christey> CIAC:G-04 | URL:http://ciac.llnl.gov/ciac/bulletins/g-04.shtml | SGI:19960601-01-I | URL:ftp://patches.sgi.com/support/free/security/advisories/19960601-01-I | CERT:VB-95:08 | View |
496 | CVE-1999-0498 | Candidate | TFTP is not running in a restricted directory, allowing a remote attacker to access sensitive information such as password files. | Modified (19990925-01) | ACCEPT(3) Blake, Hill, Northcutt | MODIFY(1) Frech | NOOP(1) Baker | REVIEWING(1) Christey | Frech> XF:linux-tftp | Christey> XF:linux-tftp refers to CVE-1999-0183 | View |
600 | CVE-1999-0618 | Candidate | The rexec service is running. | Modified (19990921-01) | ACCEPT(4) Baker, Northcutt, Ozancin, Wall | MODIFY(1) Frech | Frech> XF:decod-rexec | XF:rexec | View |
Page 576 of 20943, showing 5 records out of 104715 total, starting on record 2876, ending on 2880