CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8770  CVE-2004-0342  Candidate  WFTPD Pro Server 3.21 Release 1, with the XeroxDocutech option enabled, allows local users to cause a denial of service (crash) via a (1) MKD or (2) XMKD command that causes an absolute path of 260 characters to be used, which overwrites a cookie with a null character, possibly due to an off-by-one error.  Modified (20050718)  ACCEPT(2) Armstrong, Wall | NOOP(2) Cole, Cox    View
452  CVE-1999-0453  Candidate  An attacker can identify a CISCO device by sending a SYN packet to port 1999, which is for the Cisco Discovery Protocol (CDP).  Modified (20040512-02)  ACCEPT(2) Baker, Balinsky | MODIFY(1) Frech | NOOP(2) Northcutt, Wall | REVIEWING(1) Christey  Frech> XF:cisco-ident(2289) | ADDREF BUGTRAQ:19990118 Remote Cisco Identification | In description, probably better to use "Cisco" as product/company name. | Balinsky> CiscoSecure IDS has a signature for this...ID 3602 Cisco IOS Identity. | Christey> There may be a slight abstraction problem here, e.g. look | at the candidate for queso/nmap; also see followup Bugtraq post | from "Basement Research" on 19990120 which says that there are | many other features in Cisco products that allow remote | identification. | Christey> fix typo: "Dicsovery"  View
92  CVE-1999-0092  Candidate  Various vulnerabilities in the AIX portmir command allows local users to obtain root access.  Proposed (19990623)  ACCEPT(2) Baker, Bollinger | MODIFY(1) Frech | NOOP(1) Ozancin  Frech> XF:ibm-portmir  View
903  CVE-1999-0923  Candidate  Sample runnable code snippets in ColdFusion Server 4.0 allow remote attackers to read files, conduct a denial of service, or use the server as a proxy for other HTTP calls.  Proposed (20010214)  ACCEPT(2) Baker, Cole | MODIFY(1) Frech | NOOP(1) Christey  Frech> XF:coldfusion-source-display(1741) | XF:coldfusion-syntax-checker(1742) | XF:coldfusion-file-existence(1743) | XF:coldfusion-sourcewindow(1744) | Christey> List all affected runnable code snippets to facilitate | search, which may include: | viewexample.cfm (though could that be part of CVE-1999-0922?)  View
5741  CVE-2002-1357  Candidate  Multiple SSH2 servers and clients do not properly handle packets or data elements with incorrect length specifiers, which may allow remote attackers to cause a denial of service or possibly execute arbitrary code, as demonstrated by the SSHredder SSH protocol test suite.  Modified (20090302)  ACCEPT(2) Baker, Cole | MODIFY(1) Frech | NOOP(1) Cox | REVIEWING(1) Wall  Frech> XF:ssh-transport-length-bo(10868)  View

Page 768 of 20943, showing 5 records out of 104715 total, starting on record 3836, ending on 3840

Actions