CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3241  CVE-2001-0423  Entry  Buffer overflow in ipcs in Solaris 7 x86 allows local users to execute arbitrary code via a long TZ (timezone) environmental variable, a different vulnerability than CAN-2002-0093.        View
3242  CVE-2001-0424  Candidate  BubbleMon 1.31 does not properly drop group privileges before executing programs, which allows local users to execute arbitrary commands with the kmem group id.  Proposed (20010524)  MODIFY(1) Frech | NOOP(3) Cole, Wall, Ziese  Frech> XF:bubblemon-elevate-privileges(6378)  View
3243  CVE-2001-0425  Candidate  AdLibrary.pm in AdCycle 0.78b allows remote attackers to gain privileges to AdCycle via a malformed Agent: header in the HTTP request, which is inserted into a resulting SQL query that is used to verify login information.  Proposed (20010524)  MODIFY(1) Frech | NOOP(4) Cole, Oliver, Wall, Ziese  Frech> XF:adcycle-adlibrarypm-unauthorized-access(6618)  View
3244  CVE-2001-0426  Candidate  Buffer overflow in dtsession on Solaris, and possibly other operating systems, allows local users to gain privileges via a long LANG environmental variable.  Proposed (20010524)  ACCEPT(1) Dik | MODIFY(1) Frech | NOOP(2) Cole, Wall | REVIEWING(1) Ziese  Frech> XF:solaris-dtsession-bo(6366) | Dik> sun bug: 4448598  View
3245  CVE-2001-0427  Entry  Cisco VPN 3000 series concentrators before 2.5.2(F) allow remote attackers to cause a denial of service via a flood of invalid login requests to (1) the SSL service, or (2) the telnet service, which do not properly disconnect the user after several failed login attempts.        View

Page 649 of 20943, showing 5 records out of 104715 total, starting on record 3241, ending on 3245

Actions