CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2272  CVE-2000-0696  Candidate  The administration interface for the dwhttpd web server in Solaris AnswerBook2 does not properly authenticate requests to its supporting CGI scripts, which allows remote attackers to add user accounts to the interface by directly calling the admin CGI script.  Modified (20080918)  ACCEPT(4) Baker, Cole, Dik, Levy | MODIFY(1) Frech | NOOP(2) Christey, Wall  Frech> XF:solaris-answerbook2-admin-interface | Christey> XF:solaris-answerbook2-admin-interface | http://xforce.iss.net/static/5069.php | Christey> BUGTRAQ:20000807 Vulnerabilities in Sun Solaris AnswerBook2 dwhttpd server | http://www.securityfocus.com/archive/1/74382 | Christey> Fix typo: "CGi" | CHANGE> [Dik changed vote from REVIEWING to ACCEPT]  View
1406  CVE-1999-1426  Candidate  Solaris Solstice AdminSuite (AdminSuite) 2.1 follows symbolic links when updating an NIS database, which allows local users to overwrite arbitrary files.  Proposed (20010912)  ACCEPT(4) Cole, Dik, Foat, Stracener | MODIFY(1) Frech  Frech> XF:solaris-adminsuite-symlink(7469) | Dik> sun bug: 1262888  View
1405  CVE-1999-1425  Candidate  Solaris Solstice AdminSuite (AdminSuite) 2.1 incorrectly sets write permissions on source files for NIS maps, which could allow local users to gain privileges by modifying /etc/passwd.  Proposed (20010912)  ACCEPT(4) Cole, Dik, Foat, Stracener | MODIFY(1) Frech  Frech> XF:solaris-adminsuite-password-map-permissions(7468) | Dik> 1236787  View
1404  CVE-1999-1424  Candidate  Solaris Solstice AdminSuite (AdminSuite) 2.1 uses unsafe permissions when adding new users to the NIS+ password table, which allows local users to gain root access by modifying their password table entries.  Proposed (20010912)  ACCEPT(4) Cole, Dik, Foat, Stracener | MODIFY(1) Frech  Frech> XF:solaris-adminsuite-nisplus-password(7467) | Dik> sun bug:1237225  View
1407  CVE-1999-1427  Candidate  Solaris Solstice AdminSuite (AdminSuite) 2.1 and 2.2 create lock files insecurely, which allows local users to gain root privileges.  Proposed (20010912)  ACCEPT(4) Cole, Dik, Foat, Stracener | MODIFY(1) Frech  Frech> XF:solaris-adminsuite-lock-file(7470) | Dik> sun bug: 1262888  View

Page 82 of 20943, showing 5 records out of 104715 total, starting on record 406, ending on 410

Actions