CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
3791 | CVE-2001-0986 | Candidate | SQLQHit.asp sample file in Microsoft Index Server 2.0 allows remote attackers to obtain sensitive information such as the physical path, file attributes, or portions of source code by directly calling sqlqhit.asp with a CiScope parameter set to (1) webinfo, (2) extended_fileinfo, (3) extended_webinfo, or (4) fileinfo. | Proposed (20020131) | ACCEPT(2) Frech, Green | NOOP(2) Cole, Foat | REVIEWING(1) Wall | Frech> http://www.kb.cert.org/vuls/id/914859 | View |
3792 | CVE-2001-0987 | Entry | Cross-site scripting vulnerability in CGIWrap before 3.7 allows remote attackers to execute arbitrary Javascript on other web clients by causing the Javascript to be inserted into error messages that are generated by CGIWrap. | View | |||
3793 | CVE-2001-0988 | Candidate | Arkeia backup server 4.2.8-2 and earlier creates its database files with world-writable permissions, which could allow local users to overwrite the files or obtain sensitive information. | Proposed (20020131) | ACCEPT(2) Cole, Frech | MODIFY(1) Green | NOOP(3) Armstrong, Foat, Wall | Green> SEEMS TO BE CONTRADICTING INFORMATION IN THE MESSAGES AT BUGTRAQ | View |
3794 | CVE-2001-0989 | Candidate | Buffer overflows in Pileup before 1.2 allows local users to gain root privileges via (1) long command line arguments, or (2) a long callsign. | Proposed (20020131) | ACCEPT(1) Green | MODIFY(1) Frech | NOOP(4) Armstrong, Cole, Foat, Wall | Frech> XF:pileup-scanf-bo(8924) | View |
3795 | CVE-2001-0990 | Candidate | Inter7 vpopmail 4.10.35 and earlier, when using the MySQL module, compiles authentication information in cleartext into the libvpopmail.a library, which allows local users to obtain the MySQL username and password by inspecting the vpopmail programs that use the library. | Proposed (20020131) | ACCEPT(2) Frech, Green | NOOP(3) Cole, Foat, Wall | View |
Page 759 of 20943, showing 5 records out of 104715 total, starting on record 3791, ending on 3795