CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3406  CVE-2001-0593  Entry  Ananconda Partners Clipper 3.3 and earlier allows a remote attacker to read arbitrary files via a ".." (dot dot) attack in the template parameter.        View
3407  CVE-2001-0594  Entry  kcms_configure as included with Solaris 7 and 8 allows a local attacker to gain additional privileges via a buffer overflow in a command line argument.        View
3408  CVE-2001-0595  Entry  Buffer overflow in the kcsSUNWIOsolf.so library in Solaris 7 and 8 allows local attackers to execute arbitrary commands via the KCMS_PROFILES environment variable, e.g. as demonstrated using the kcms_configure program.        View
3409  CVE-2001-0596  Entry  Netscape Communicator before 4.77 allows remote attackers to execute arbitrary Javascript via a GIF image whose comment contains the Javascript.        View
3410  CVE-2001-0597  Candidate  Zetetic Secure Tool for Recalling Important Passwords (STRIP) 0.5 and earlier for the PalmOS allows a local attacker to recover passwords via a brute force attack. This attack is made feasible by STRIP"s use of SysRandom, which is seeded by TimeGetTicks, and an implementation flaw which vastly reduces the password "search space".  Proposed (20010727)  ACCEPT(3) Cole, Frech, Ziese | NOOP(2) Foat, Wall | REVIEWING(1) Bishop  Frech> CONFIRM:http://www.zetetic.net/docs/bugs/security_04-09-2001. | html  View

Page 682 of 20943, showing 5 records out of 104715 total, starting on record 3406, ending on 3410

Actions