CVE List

Id CVE No. Status Description Phase Votes Comments Actions
406  CVE-1999-0407  Entry  By default, IIS 4.0 has a virtual directory /IISADMPWD which contains files that can be used as proxies for brute force password attacks, or to identify valid users on the system.        View
407  CVE-1999-0408  Entry  Files created from interactive shell sessions in Cobalt RaQ microservers (e.g. .bash_history) are world readable, and thus are accessible from the web server.        View
408  CVE-1999-0409  Entry  Buffer overflow in gnuplot in Linux version 3.5 allows local users to obtain root access.        View
409  CVE-1999-0410  Entry  The cancel command in Solaris 2.6 (i386) has a buffer overflow that allows local users to obtain root access.        View
410  CVE-1999-0411  Candidate  Several startup scripts in SCO OpenServer Enterprise System v 5.0.4p, including S84rpcinit, S95nis, S85tcp, and S89nfs, are vulnerable to a symlink attack, allowing a local user to gain root access.  Proposed (19990726)  MODIFY(2) Baker, Frech | NOOP(2) Christey, Wall  Frech> Neither XFDB nor the BugTraq article (incidentally, shows up as 7 March, not | 19 February) does not mention gaining root access... it says a local user | could | "delete or overwrite arbitrary files on the system." | Baker> By overwriting arbitrary files, one could then gain root access. I agree with a minor description change to reflect this. | Christey> Normalize Bugtraq reference to: | BUGTRAQ:19990307 Little exploit for startup scripts (SCO 5.0.4p). | http://marc.theaimsgroup.com/?l=bugtraq&m=92087765014242&w=2 | Also, SCO:SB-99.17 | ftp://ftp.sco.com/SSE/security_bulletins/SB-99.17c  View

Page 82 of 20943, showing 5 records out of 104715 total, starting on record 406, ending on 410

Actions