CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
3743 | CVE-2001-0937 | Candidate | PGPMail.pl 1.31 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) recipient or (2) pgpuserid parameters. | Proposed (20020131) | ACCEPT(1) Cole | MODIFY(1) Frech | NOOP(3) Armstrong, Foat, Wall | Frech> XF:pgpmail-config-execute-commands(7627) | View |
417 | CVE-1999-0418 | Candidate | Denial of service in SMTP applications such as Sendmail, when a remote attacker (e.g. spammer) uses many "RCPT TO" commands in the same connection. | Proposed (20010912) | ACCEPT(1) Cole | MODIFY(1) Frech | NOOP(3) Baker, Foat, Wall | REVIEWING(1) Christey | Christey> DUPE CVE-1999-0144 and CVE-1999-0250? | Frech> XF:smtp-rctpto-dos(7499) | View |
3294 | CVE-2001-0477 | Candidate | Vulnerability in WebCalendar 0.9.26 allows remote command execution. | Proposed (20010524) | ACCEPT(1) Cole | MODIFY(1) Frech | NOOP(3) Balinsky, Wall, Ziese | REVIEWING(1) Williams | Frech> XF;webcalendar-execute-commands(6486) | Balinsky> DNS domain of vendor site listed in the advisory no longer exists. | CHANGE> [Balinsky changed vote from NOOP to REVIEWING] | Balinsky> My mistake. It was the ADVISORY site that no longer exists. Not the vendor. | CHANGE> [Balinsky changed vote from REVIEWING to NOOP] | Balinsky> Could not find specific acknowledgement on vendor site. Only | method of validation on the site is slogging through source code. | View |
1063 | CVE-1999-1083 | Candidate | Directory traversal vulnerability in Jana proxy web server 1.45 allows remote attackers to ready arbitrary files via a .. (dot dot) attack. | Proposed (20010912) | ACCEPT(1) Cole | MODIFY(1) Frech | NOOP(3) Christey, Foat, Wall | Frech> XF:jana-server-directory-traversal(6513) | Christey> MODIFY description - the attack is of the form "/./../" | (single dot followed by double-dot) | View |
1334 | CVE-1999-1354 | Candidate | E-mail client in Softarc FirstClass Internet Server 5.506 and earlier stores usernames and passwords in cleartext in the files (1) home.fc for version 5.506, (2) network.fc for version 3.5, or (3) FCCLIENT.LOG when logging is enabled. | Proposed (20010912) | ACCEPT(1) Cole | MODIFY(1) Frech | NOOP(3) Christey, Foat, Wall | Frech> (Task 1766) | CHANGE> [Frech changed vote from REVIEWING to MODIFY] | Frech> XF:firstclass-plaintext-account(9874) | Christey> The following reference is for the FCCLIENT.LOG piece: | ADDREF NTBUGTRAQ:19990911 Re: SoftArc"s FirstClass E-mail Client | URL:http://archives.neohapsis.com/archives/ntbugtraq/1999-q3/0189.html | View |
Page 651 of 20943, showing 5 records out of 104715 total, starting on record 3251, ending on 3255