CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
775 | CVE-1999-0795 | Candidate | The NIS+ rpc.nisd server allows remote attackers to execute certain RPC calls without authentication to obtain system information, disable logging, or modify caches. | Proposed (19991222) | ACCEPT(2) Baker, Stracener | MODIFY(1) Frech | NOOP(1) Ozancin | Frech> XF:sun-nisplus | View |
924 | CVE-1999-0944 | Candidate | IBM WebSphere ikeyman tool uses weak encryption to store a password for a key database that is used for SSL connections. | Proposed (19991222) | ACCEPT(2) Baker, Stracener | MODIFY(1) Frech | NOOP(2) Bollinger, Christey | REVIEWING(1) Levy | Frech> XF:websphere-database-pwd-accessible | Christey> ADDREF BID:1763 | URL:http://www.securityfocus.com/bid/1763 | View |
865 | CVE-1999-0885 | Candidate | Alibaba web server allows remote attackers to execute commands via a pipe character in a malformed URL. | Modified (20000313-01) | ACCEPT(2) Baker, Stracener | MODIFY(1) Frech | NOOP(5) Armstrong, Blake, Christey, Cole, LeBlanc | Christey> This candidate is unconfirmed by the vendor. | Blake> Same as CVE-1999-0776. | Frech> XF:alibaba-url-file-manipulation | Christey> CD:SF-LOC and CD:SF-EXEC may say to merge this candidate with | the problems described in: | BUGTRAQ:20000718 Multiple bugs in Alibaba 2.0 | URL:http://archives.neohapsis.com/archives/bugtraq/2000-07/0237.html | | If so, then ADDREF BID:1485 as well. | Christey> Include the names of the affected CGI"s, including tst.bat, | get32.exe, alibaba.pl, etc. | View |
3348 | CVE-2001-0534 | Candidate | Multiple buffer overflows in RADIUS daemon radiusd in (1) Merit 3.6b and (2) Lucent 2.1-2 RADIUS allow remote attackers to cause a denial of service or execute arbitrary commands. | Modified (20080304) | ACCEPT(2) Baker, Stracener | MODIFY(2) Christey, Frech | NOOP(5) Armstrong, Cole, Foat, Wall, Ziese | Frech> XF:merit-radius-authentication-bo(6812) | XF:lucent-radius-authentication-bo(6794) | Change ISS URL to http://xforce.iss.net/alerts/advise87.php | Christey> BID:2989 | BID:2991 | View |
824 | CVE-1999-0844 | Candidate | Denial of service in MDaemon WorldClient and WebConfig services via a long URL. | Proposed (19991208) | ACCEPT(2) Baker, Stracener | MODIFY(2) Cole, Frech | NOOP(1) Armstrong | RECAST(1) Christey | REVIEWING(1) Prosser | Cole> 823 and 820 are two different vulnerabilities and should be | separated out. They are both buffer overflows but accomplish it in a | different fashion and the end exploit is different. | Frech> (RECAST?) | XF:mdaemon-worldclient-dos | XF:mdaemon-webconfig-dos | Recast request: This is really two services exhibiting the same problem. | Christey> as suggested by others. | | Also see confirmation at: | http://mdaemon.deerfield.com/helpdesk/hotfix.cfm | View |
Page 806 of 20943, showing 5 records out of 104715 total, starting on record 4026, ending on 4030