CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
3406 | CVE-2001-0593 | Entry | Ananconda Partners Clipper 3.3 and earlier allows a remote attacker to read arbitrary files via a ".." (dot dot) attack in the template parameter. | View | |||
3407 | CVE-2001-0594 | Entry | kcms_configure as included with Solaris 7 and 8 allows a local attacker to gain additional privileges via a buffer overflow in a command line argument. | View | |||
3408 | CVE-2001-0595 | Entry | Buffer overflow in the kcsSUNWIOsolf.so library in Solaris 7 and 8 allows local attackers to execute arbitrary commands via the KCMS_PROFILES environment variable, e.g. as demonstrated using the kcms_configure program. | View | |||
3409 | CVE-2001-0596 | Entry | Netscape Communicator before 4.77 allows remote attackers to execute arbitrary Javascript via a GIF image whose comment contains the Javascript. | View | |||
3410 | CVE-2001-0597 | Candidate | Zetetic Secure Tool for Recalling Important Passwords (STRIP) 0.5 and earlier for the PalmOS allows a local attacker to recover passwords via a brute force attack. This attack is made feasible by STRIP"s use of SysRandom, which is seeded by TimeGetTicks, and an implementation flaw which vastly reduces the password "search space". | Proposed (20010727) | ACCEPT(3) Cole, Frech, Ziese | NOOP(2) Foat, Wall | REVIEWING(1) Bishop | Frech> CONFIRM:http://www.zetetic.net/docs/bugs/security_04-09-2001. | html | View |
Page 682 of 20943, showing 5 records out of 104715 total, starting on record 3406, ending on 3410