CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3254  CVE-2001-0436  Candidate  dcboard.cgi in DCForum 2000 1.0 allows remote attackers to execute arbitrary commands by uploading a Perl program to the server and using a .. (dot dot) in the AZ parameter to reference the program.  Interim (20010911)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(3) Cole, Wall, Ziese  Frech> XF:dcforum-az-expr(6392)  View
3256  CVE-2001-0438  Candidate  Preview version of Timbuktu for Mac OS X allows local users to modify System Preferences without logging in via the About Timbuktu menu.  Proposed (20010524)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(3) Cole, Wall, Ziese  Frech> XF:netopia-timbuktu-gain-access(6452)  View
3093  CVE-2001-0272  Candidate  Directory traversal vulnerability in sendtemp.pl in W3.org Anaya Web development server allows remote attackers to read arbitrary files via a .. (dot dot) attack in the templ parameter.  Proposed (20010404)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(3) Cole, Wall, Ziese | REVIEWING(1) Bishop  Frech> XF:sendtemp-pl-read-files(6104) | Amaya, not Anaya  View
3113  CVE-2001-0292  Candidate  PHP-Nuke 4.4.1a allows remote attackers to modify a user"s email address and obtain the password by guessing the user id (UID) and calling user.php with the saveuser operator.  Proposed (20010404)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(3) Cole, Wall, Ziese | REVIEWING(1) Bishop  Frech> XF:phpnuke-saveuser-obtain-password(6511)  View
329  CVE-1999-0330  Candidate  Linux bdash game has a buffer overflow that allows local users to gain root access.  Modified (20000105-01)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(3) Northcutt, Shostack, Wall | REVIEWING(1) Levy  Frech> XF:bdash-bo  View

Page 626 of 20943, showing 5 records out of 104715 total, starting on record 3126, ending on 3130

Actions