CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
4056 | CVE-2001-1252 | Entry | Network Associates PGP Keyserver 7.0 allows remote attackers to bypass authentication and access the administrative web interface via URLs that directly access cgi-bin instead of keyserver/cgi-bin for the programs (1) console, (2) cs, (3) multi_config and (4) directory. | View | |||
4057 | CVE-2001-1253 | Candidate | Alexis 2.0 and 2.1 in COM2001 InternetPBX stores voicemail passwords in plain text in the com2001.ini file, which could allow local users to make long distance calls as other users. | Proposed (20020502) | ACCEPT(2) Frech, Green | NOOP(4) Cole, Cox, Foat, Wall | View | |
4058 | CVE-2001-1254 | Candidate | Web Access component for COM2001 Alexis 2.0 and 2.1 in InternetPBX sends username and voice mail passwords in the clear via a Java applet that sends the information to port 8888 of the server, which could allow remote attackers to steal the passwords via sniffing. | Proposed (20020502) | ACCEPT(1) Green | MODIFY(1) Frech | NOOP(4) Cole, Cox, Foat, Wall | Frech> XF:alexis-http-plaintext-information(7205) | View |
4059 | CVE-2001-1255 | Candidate | WinMySQLadmin 1.1 stores the MySQL password in plain text in the my.ini file, which allows local users to obtain unathorized access the MySQL database. | Proposed (20020502) | ACCEPT(2) Frech, Green | NOOP(5) Christey, Cole, Cox, Foat, Wall | Christey> fix typos: "unathorized"; "[TO] the database" | View |
4060 | CVE-2001-1256 | Candidate | kmmodreg in HP-UX 11.11, 11.04 and 11.00 allows local users to create arbitrary world-writeable files via a symlink attack on the (1) /tmp/.kmmodreg_lock and (2) /tmp/kmpath.tmp temporary files. | Modified (20090302) | ACCEPT(3) Cole, Frech, Green | NOOP(3) Cox, Foat, Wall | View |
Page 812 of 20943, showing 5 records out of 104715 total, starting on record 4056, ending on 4060