CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3196  CVE-2001-0378  Entry  readline prior to 4.1, in OpenBSD 2.8 and earlier, creates history files with insecure permissions, which allows a local attacker to recover potentially sensitive information via readline history files.        View
3197  CVE-2001-0379  Entry  Vulnerability in the newgrp program included with HP9000 servers running HP-UX 11.11 allows a local attacker to obtain higher access rights.        View
3198  CVE-2001-0380  Candidate  Crosscom/Olicom XLT-F running XL 80 IM Version 5.5 Build Level 2 allows a remote attacker SNMP read and write access via a default, undocumented community string "ILMI".  Modified (20090302)  MODIFY(1) Frech | NOOP(4) Christey, Cole, Wall, Ziese  Frech> XF:cisco-ios-modify-snmp(6169) | Christey> Fix the date of the Bugtraq post | Christey> The Bugtraq poster didn"t provide many details, but said that | the vendor was out of business. It"s possible that this ILMI | community string has no relationship with the Cisco ILMI | problem, in which case this should remain a separate CAN. | Christey> Further research suggests that ILMI is a standard | specification for ATM, and therefore this CAN should remain split from | the Cisco ILMI problem (CVE-2001-0711).  View
3199  CVE-2001-0381  Candidate  The OpenPGP PGP standard allows an attacker to determine the private signature key via a cryptanalytic attack in which the attacker alters the encrypted private key file and captures a single message signed with the signature key.  Modified (20060915)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(4) Christey, Cole, Oliver, Wall | REVIEWING(1) Ziese  Frech> XF:openpgp-private-key-disclosure(6558) | Christey> Consider CALDERA:CSSA-2001-017.0 | URL:http://www.caldera.com/support/security/advisories/CSSA-2001-017.0.txt | Also http://www.redhat.com/support/errata/RHSA-2001-063.html | Add that gnupg before 1.0.5-3 is affected. | TURBO:TLSA2001028 | http://www.turbolinux.com/pipermail/tl-security-announce/2001-June/000439.html  View
3200  CVE-2001-0382  Candidate  Computer Associates CCCHarvest 5.0 for Windows NT/2000 uses weak encryption for passwords, which allows a remote attacker to gain privileges on the application.  Proposed (20010524)  MODIFY(1) Frech | NOOP(2) Cole, Ziese | REVIEWING(1) Wall  Frech> XF:cccharvest-weak-encryption(6314) | Product name is CCC/Harvest (forward slash); see | http://ca.com/products/descriptions/ccc_harvest.pdf.  View

Page 640 of 20943, showing 5 records out of 104715 total, starting on record 3196, ending on 3200

Actions