CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3571  CVE-2001-0764  Entry  Buffer overflow in ntping in scotty 2.1.0 allows local users to execute arbitrary code via a long hostname as a command line argument.        View
3572  CVE-2001-0765  Entry  BisonFTP V4R1 allows local users to access directories outside of their home directory by uploading .bdl files, which can then be linked to other directories.        View
3573  CVE-2001-0766  Candidate  Apache on MacOS X Client 10.0.3 with the HFS+ file system allows remote attackers to bypass access restrictions via a URL that contains some characters whose case is not matched by Apache"s filters.  Proposed (20011012)  MODIFY(1) Frech | NOOP(5) Armstrong, Christey, Cole, Foat, Wall  Frech> XF:macos-apache-file-disclosure(6687) | Christey> CERT-VN:VU#439395 | URL:http://www.kb.cert.org/vuls/id/439395  View
3574  CVE-2001-0767  Candidate  Directory traversal vulnerability in GuildFTPd 0.9.7 allows attackers to list or read arbitrary files and directories via a .. in (1) LS or (2) GET.  Proposed (20011012)  ACCEPT(3) Armstrong, Cole, Foat | NOOP(2) Christey, Wall | REJECT(1) Frech  Frech> DUPE CVE-2000-0640 | Christey> Email ack received from guildftpd@nitrolic.com on 3/8/2002  View
3575  CVE-2001-0768  Candidate  GuildFTPd 0.9.7 stores user names and passwords in plaintext in the default.usr file, which allows local users to gain privileges as other FTP users by reading the file.  Proposed (20011012)  ACCEPT(2) Baker, Frech | NOOP(5) Armstrong, Christey, Cole, Foat, Wall  Baker> Vendor added password encryption in latest version, 0.996, and you can see the comments in the changes log, at the following URL: | | www.nitrolic.com/main.htm | Christey> Email ack received from guildftpd@nitrolic.com on 3/8/2002  View

Page 715 of 20943, showing 5 records out of 104715 total, starting on record 3571, ending on 3575

Actions