CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2697  CVE-2000-1130  Candidate  McAfee WebShield SMTP 4.5 allows remote attackers to bypass email content filtering rules by including Extended ASCII characters in name of the attachment.  Proposed (20001219)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(2) Christey, Cole | REVIEWING(1) Wall  Frech> XF:webshield-smtp-filter-bypass(5571) | Christey> Fix typo: "in name"  View
555  CVE-1999-0571  Candidate  A router"s configuration service or management interface (such as a web server or telnet) is configured to allow connections from arbitrary hosts.  Modified (20020312-01)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(2) Christey, Northcutt  CHANGE> [Frech changed vote from REVIEWING to MODIFY] | Frech> XF:ascend-config-kill(889) | XF:cisco-ios-crash(1238) | XF:webramp-remote-access(1670) | XF:ascom-timeplex-debug(1824) | XF:netopia-unpassworded(1850) | XF:cisco-web-crash(1886) | XF:cisco-router-commands(1951) | XF:motorola-cable-default-pass(2002) | XF:default-flowpoint(2091) | XF:netgear-router-idle-dos(4003) | XF:cisco-cbos-telnet(4251) | XF:routermate-snmp-community(4290) | XF:cayman-router-dos(4479) | XF:wavelink-authentication(5185) | XF:ciscosecure-ldap-bypass-authentication(5274) | XF:foundry-firmware-telnet-dos(5514) | XF:netopia-view-system-log(5536) | XF:cisco-webadmin-remote-dos(5595) | XF:cisco-cbos-web-access(5626) | XF:netopia-telnet-dos(6001) | XF:cisco-sn-gain-access(6827) | XF:cayman-dsl-insecure-permissions(6841) | XF:linksys-etherfast-reveal-passwords(6949) | XF:zyxel-router-default-password(6968) | XF:cisco-cbos-web-config(7027) | XF:prestige-wan-bypass-filter(7146) | Christey> I changed the description to make it more explicit that this | candidate is about router configuration, as opposed to | vulnerabilities that accidentally make a configuration | service accessible to anyone.  View
1652  CVE-2000-0074  Candidate  PowerScripts PlusMail CGI program allows remote attackers to execute commands via a password file with improper permissions.  Proposed (20000125)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(2) Christey, Williams  Frech> XF:plusmail-password-permissions | Christey> Re-read the Bugtraq post to make sure the problem is described | properly. The advisory itself is vague as to the nature of | the problem, and the exploit doesn"t help clarify too much. | Christey> Consider adding BID:2653  View
5742  CVE-2002-1358  Candidate  Multiple SSH2 servers and clients do not properly handle lists with empty elements or strings, which may allow remote attackers to cause a denial of service or possibly execute arbitrary code, as demonstrated by the SSHredder SSH protocol test suite.  Modified (20090302)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(2) Cole, Cox | REVIEWING(1) Wall  Frech> XF:ssh-transport-empty-lists-bo(10869)  View
5743  CVE-2002-1359  Candidate  Multiple SSH2 servers and clients do not properly handle large packets or large fields, which may allow remote attackers to cause a denial of service or possibly execute arbitrary code via buffer overflow attacks, as demonstrated by the SSHredder SSH protocol test suite.  Modified (20090302)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(2) Cole, Cox | REVIEWING(1) Wall  Frech> XF:ssh-transport-multiple-bo(10870)  View

Page 619 of 20943, showing 5 records out of 104715 total, starting on record 3091, ending on 3095

Actions