CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
3446 | CVE-2001-0633 | Candidate | Directory traversal vulnerability in Sun Chili!Soft ASP on multiple Unixes allows a remote attacker to read arbitrary files above the web root via a ".." (dot dot) attack in the sample script "codebrws.asp". | Proposed (20010727) | ACCEPT(4) Bishop, Cole, Williams, Ziese | MODIFY(1) Frech | NOOP(3) Baker, Foat, Wall | Frech> XF:chilisoft-asp-view-files(6137) | CHANGE> [Baker changed vote from REVIEWING to NOOP] | View |
3447 | CVE-2001-0634 | Entry | Sun Chili!Soft ASP has weak permissions on various configuration files, which allows a local attacker to gain additional privileges and create a denial of service. | View | |||
3448 | CVE-2001-0635 | Entry | Red Hat Linux 7.1 sets insecure permissions on swap files created during installation, which can allow a local attacker to gain additional privileges by reading sensitive information from the swap file, such as passwords. | View | |||
3449 | CVE-2001-0636 | Candidate | Buffer overflows in Raytheon SilentRunner allow remote attackers to (1) cause a denial of service in the collector (cle.exe) component of SilentRunner 2.0 via traffic containing long passwords, or (2) execute arbitrary commands via long HTTP queries in the Knowledge Browser component in SilentRunner 2.0 and 2.0.1. NOTE: It is highly likely that this candidate will be split into multiple candidates. | Proposed (20010829) | ACCEPT(3) Cole, Foat, Ziese | MODIFY(1) Frech | NOOP(3) Armstrong, Christey, Wall | RECAST(2) Baker, Bishop | Bishop> please split it into 2 candidates, one for the DoS and one | for the execute part | Frech> XF:silentrunner-collector-popuser-bo(6795) | XF:silentrunner-collector-poppass-bo(6796) | XF:silentrunner-collector-httpurl-bo(6797) | Baker> SPLIT | Christey> Consider adding BID:3150 | Christey> Consider adding BID:3151 | View |
3450 | CVE-2001-0641 | Entry | Buffer overflow in man program in various distributions of Linux allows local user to execute arbitrary code as group man via a long -S option. | View |
Page 690 of 20943, showing 5 records out of 104715 total, starting on record 3446, ending on 3450