CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3071  CVE-2001-0250  Candidate  The Web Publishing feature in Netscape Enterprise Server 4.x and earlier allows remote attackers to list arbitrary directories under the web server root via the INDEX command.  Proposed (20010404)  ACCEPT(4) Baker, Bishop, Cole, Frech | NOOP(2) Wall, Ziese  Bishop> This is a problem if the policy says it is. It may not be a security | problem in general, though. I voted accept because it may be a problem.  View
3072  CVE-2001-0251  Candidate  The Web Publishing feature in Netscape Enterprise Server 3.x allows remote attackers to cause a denial of service via the REVLOG command.  Proposed (20010404)  ACCEPT(4) Baker, Bishop, Cole, Frech | NOOP(2) Wall, Ziese  CHANGE> [Bishop changed vote from REVIEWING to ACCEPT]  View
3073  CVE-2001-0252  Entry  iPlanet (formerly Netscape) Enterprise Server 4.1 allows remote attackers to cause a denial of service via a long HTTP GET request that contains many "/../" (dot dot) sequences.        View
3074  CVE-2001-0253  Candidate  Directory traversal vulnerability in hsx.cgi program in iWeb Hyperseek 2000 allows remote attackers to read arbitrary files and directories via a .. (dot dot) attack in the show parameter.  Modified (20050509)  ACCEPT(1) Frech | NOOP(3) Cole, Wall, Ziese | REVIEWING(1) Bishop    View
3075  CVE-2001-0254  Candidate  FaSTream FTP++ Server 2.0 allows remote attackers to obtain the real pathname of the server via the "pwd" command.  Proposed (20010404)  MODIFY(1) Frech | NOOP(3) Cole, Wall, Ziese | REVIEWING(1) Bishop  Frech> XF:fastream-ftp-path-disclosure(5977)  View

Page 615 of 20943, showing 5 records out of 104715 total, starting on record 3071, ending on 3075

Actions