CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3391  CVE-2001-0578  Candidate  Buffer overflow in lpforms in SCO OpenServer 5.0-5.0.6 can allow a local attacker to gain additional privileges via a long first argument to the lpforms command.  Modified (20020225-01)  ACCEPT(2) Frech, Williams | MODIFY(1) Bishop | NOOP(4) Cole, Foat, Wall, Ziese | RECAST(1) Baker  Bishop> recommend combining as stated in analysis | Baker> Merge with CVE-2001-0575, which has vendor acknowledgement, and includes this as one of the binaries with the same problem.  View
3392  CVE-2001-0579  Candidate  lpadmin in SCO OpenServer 5.0.6 can allow a local attacker to gain additional privileges via a buffer overflow attack in the first argument to the command.  Proposed (20010727)  ACCEPT(2) Frech, Williams | MODIFY(1) Bishop | NOOP(4) Cole, Foat, Wall, Ziese | RECAST(1) Baker  Bishop> recommend combining as stated in analysis | Baker> Merge with CVE-2001-0575, which has vendor acknowledgement, and includes this as one of the binaries with the same problem.  View
3393  CVE-2001-0580  Candidate  Hughes Technologies Virtual DNS (VDNS) Server 1.0 allows a remote attacker to create a denial of service by connecting to port 6070, sending some data, and closing the connection.  Proposed (20010727)  MODIFY(1) Frech | NOOP(5) Christey, Cole, Foat, Wall, Ziese | REVIEWING(1) Bishop  Christey> BID:2700 | URL:http://www.securityfocus.com/bid/2700 | Christey> XF:vdns-default-closed-dos(6507) | Frech> XF:vdns-default-closed-dos(6507) | There is a 2.0 version at | http://html.hughestech.com/index.html, but I could not find any | mention of fixes.  View
3394  CVE-2001-0581  Candidate  Spytech Spynet Chat Server 6.5 allows a remote attacker to create a denial of service (crash) via a large number of connections to port 6387.  Modified (20040723)  ACCEPT(3) Cole, Frech, Ziese | NOOP(3) Bishop, Foat, Wall | REVIEWING(1) Christey  CHANGE> [Bishop changed vote from REVIEWING to NOOP] | Christey> A followup claims that if the server runs on Windows 9x, that | Windows 9x can"t handle more than 100 sockets at once, which | may be triggering the bug as opposed to the software. | CHANGE> [Christey changed vote from NOOP to REVIEWING]  View
3395  CVE-2001-0582  Candidate  Ben Spink CrushFTP FTP Server 2.1.6 and earlier allows a local attacker to access arbitrary files via a ".." (dot dot) attack, or variations, in (1) GET, (2) CD, (3) NLST, (4) SIZE, (5) RETR.  Modified (20050510)  ACCEPT(4) Bishop, Cole, Frech, Ziese | NOOP(2) Foat, Wall    View

Page 679 of 20943, showing 5 records out of 104715 total, starting on record 3391, ending on 3395

Actions