CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
356 | CVE-1999-0357 | Entry | Windows 98 and other operating systems allows remote attackers to cause a denial of service via crafted "oshare" packets, possibly involving invalid fragmentation offsets. | View | |||
357 | CVE-1999-0358 | Entry | Digital Unix 4.0 has a buffer overflow in the inc program of the mh package. | View | |||
358 | CVE-1999-0359 | Candidate | ptylogin in Unix systems allows users to perform a denial of service by locking out modems, dial out with that modem, or obtain passwords. | Proposed (20010214) | ACCEPT(2) Cole, Frech | MODIFY(1) Baker | Frech> XF:ptylogin-dos | Baker> Should say "... lock out a modem, ..." rather than "... locking out modems..." | View |
359 | CVE-1999-0360 | Candidate | MS Site Server 2.0 with IIS 4 can allow users to upload content, including ASP, to the target web site, thus allowing them to execute commands remotely. | Modified (20000530-01) | ACCEPT(6) Blake, Cole, Collins, Landfield, Northcutt, Wall | MODIFY(3) Baker, Frech, LeBlanc | NOOP(4) Armstrong, Christey, Ozancin, Prosser | Christey> I can"t find the original Bugtraq posting (it appears that | mnemonix discovered the problem). | LeBlanc> - if there was a fix or a KB article, I"d ACCEPT. A vuln based on a | BUGTRAQ posting we can"t find could be anything. | Baker> Vulnerability Reference (HTML) Reference Type | http://www.securityfocus.com/archive/1/12218 Misc Defensive InfoVulnerability Reference (HTML) Reference Type | THis is the URL for the Bugtraq posting. It was cross posted to | NT Bugtraq as well, but identical text. It was Mnemonix... | Christey> BID:1811 | URL:http://www.securityfocus.com/bid/1811 | Christey> CHANGEREF BUGTRAQ add "Server 2." to the subject. | Also standardize NTBUGTRAQ reference title. | Christey> Add "uploadn.asp" to the description. | CHANGE> [Frech changed vote from REVIEWING to MODIFY] | Frech> XF:siteserver-user-dir-permissions(5384) | View |
360 | CVE-1999-0361 | Candidate | NetWare version of LaserFiche stores usernames and passwords unencrypted, and allows administrative changes without logging. | Proposed (19990728) | ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(2) Northcutt, Wall | Frech> XF:compulink-pw-laserfiche(1679) | Normalize BUGTRAQ reference to: | BUGTRAQ:19990129 Compulink LaserFiche Client/Server - unencrypted passwords | View |
Page 72 of 20943, showing 5 records out of 104715 total, starting on record 356, ending on 360