CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
2272 | CVE-2000-0696 | Candidate | The administration interface for the dwhttpd web server in Solaris AnswerBook2 does not properly authenticate requests to its supporting CGI scripts, which allows remote attackers to add user accounts to the interface by directly calling the admin CGI script. | Modified (20080918) | ACCEPT(4) Baker, Cole, Dik, Levy | MODIFY(1) Frech | NOOP(2) Christey, Wall | Frech> XF:solaris-answerbook2-admin-interface | Christey> XF:solaris-answerbook2-admin-interface | http://xforce.iss.net/static/5069.php | Christey> BUGTRAQ:20000807 Vulnerabilities in Sun Solaris AnswerBook2 dwhttpd server | http://www.securityfocus.com/archive/1/74382 | Christey> Fix typo: "CGi" | CHANGE> [Dik changed vote from REVIEWING to ACCEPT] | View |
1406 | CVE-1999-1426 | Candidate | Solaris Solstice AdminSuite (AdminSuite) 2.1 follows symbolic links when updating an NIS database, which allows local users to overwrite arbitrary files. | Proposed (20010912) | ACCEPT(4) Cole, Dik, Foat, Stracener | MODIFY(1) Frech | Frech> XF:solaris-adminsuite-symlink(7469) | Dik> sun bug: 1262888 | View |
1405 | CVE-1999-1425 | Candidate | Solaris Solstice AdminSuite (AdminSuite) 2.1 incorrectly sets write permissions on source files for NIS maps, which could allow local users to gain privileges by modifying /etc/passwd. | Proposed (20010912) | ACCEPT(4) Cole, Dik, Foat, Stracener | MODIFY(1) Frech | Frech> XF:solaris-adminsuite-password-map-permissions(7468) | Dik> 1236787 | View |
1404 | CVE-1999-1424 | Candidate | Solaris Solstice AdminSuite (AdminSuite) 2.1 uses unsafe permissions when adding new users to the NIS+ password table, which allows local users to gain root access by modifying their password table entries. | Proposed (20010912) | ACCEPT(4) Cole, Dik, Foat, Stracener | MODIFY(1) Frech | Frech> XF:solaris-adminsuite-nisplus-password(7467) | Dik> sun bug:1237225 | View |
1407 | CVE-1999-1427 | Candidate | Solaris Solstice AdminSuite (AdminSuite) 2.1 and 2.2 create lock files insecurely, which allows local users to gain root privileges. | Proposed (20010912) | ACCEPT(4) Cole, Dik, Foat, Stracener | MODIFY(1) Frech | Frech> XF:solaris-adminsuite-lock-file(7470) | Dik> sun bug: 1262888 | View |
Page 82 of 20943, showing 5 records out of 104715 total, starting on record 406, ending on 410