CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3771  CVE-2001-0966  Candidate  Directory traversal vulnerability in Nudester 1.10 and earlier allows remote attackers to read or write arbitrary files via a .. (dot dot) in the CD (CWD) command.  Proposed (20020131)  ACCEPT(1) Green | MODIFY(1) Frech | NOOP(4) Armstrong, Cole, Foat, Wall  Frech> XF:nudester-sniffer-full-access(7032)  View
3772  CVE-2001-0967  Candidate  Knox Arkeia server 4.2, and possibly other versions, uses a constant salt when encrypting passwords using the crypt() function, which makes it easier for an attacker to conduct brute force password guessing.  Proposed (20020131)  ACCEPT(1) Green | MODIFY(1) Frech | NOOP(4) Armstrong, Cole, Foat, Wall  Frech> XF:arkeia-weak-password-encryption(7000)  View
3773  CVE-2001-0968  Candidate  Knox Arkeia server 4.2, and possibly other versions, installs its root user with a null password by default, which allows local and remote users to gain privileges.  Proposed (20020131)  ACCEPT(1) Green | MODIFY(1) Frech | NOOP(4) Armstrong, Cole, Foat, Wall  Frech> XF:arkeia-blank-default-password(6999)  View
3774  CVE-2001-0969  Entry  ipfw in FreeBSD does not properly handle the use of "me" in its rules when point to point interfaces are used, which causes ipfw to allow connections from arbitrary remote hosts.        View
3775  CVE-2001-0970  Candidate  Cross-site scripting vulnerability in TDForum 1.2 CGI script (tdforum12.cgi) allows remote attackers to execute arbitrary script on other clients via a forum message that contains the script.  Modified (20071006)  ACCEPT(1) Green | MODIFY(1) Frech | NOOP(4) Armstrong, Cole, Foat, Wall  Green> HAS-INDEPENDENT-CONFIRMATION | Frech> XF:tdforum-cross-site-scripting(7009)  View

Page 755 of 20943, showing 5 records out of 104715 total, starting on record 3771, ending on 3775

Actions