CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4056  CVE-2001-1252  Entry  Network Associates PGP Keyserver 7.0 allows remote attackers to bypass authentication and access the administrative web interface via URLs that directly access cgi-bin instead of keyserver/cgi-bin for the programs (1) console, (2) cs, (3) multi_config and (4) directory.        View
4057  CVE-2001-1253  Candidate  Alexis 2.0 and 2.1 in COM2001 InternetPBX stores voicemail passwords in plain text in the com2001.ini file, which could allow local users to make long distance calls as other users.  Proposed (20020502)  ACCEPT(2) Frech, Green | NOOP(4) Cole, Cox, Foat, Wall    View
4058  CVE-2001-1254  Candidate  Web Access component for COM2001 Alexis 2.0 and 2.1 in InternetPBX sends username and voice mail passwords in the clear via a Java applet that sends the information to port 8888 of the server, which could allow remote attackers to steal the passwords via sniffing.  Proposed (20020502)  ACCEPT(1) Green | MODIFY(1) Frech | NOOP(4) Cole, Cox, Foat, Wall  Frech> XF:alexis-http-plaintext-information(7205)  View
4059  CVE-2001-1255  Candidate  WinMySQLadmin 1.1 stores the MySQL password in plain text in the my.ini file, which allows local users to obtain unathorized access the MySQL database.  Proposed (20020502)  ACCEPT(2) Frech, Green | NOOP(5) Christey, Cole, Cox, Foat, Wall  Christey> fix typos: "unathorized"; "[TO] the database"  View
4060  CVE-2001-1256  Candidate  kmmodreg in HP-UX 11.11, 11.04 and 11.00 allows local users to create arbitrary world-writeable files via a symlink attack on the (1) /tmp/.kmmodreg_lock and (2) /tmp/kmpath.tmp temporary files.  Modified (20090302)  ACCEPT(3) Cole, Frech, Green | NOOP(3) Cox, Foat, Wall    View

Page 812 of 20943, showing 5 records out of 104715 total, starting on record 4056, ending on 4060

Actions