CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
406 | CVE-1999-0407 | Entry | By default, IIS 4.0 has a virtual directory /IISADMPWD which contains files that can be used as proxies for brute force password attacks, or to identify valid users on the system. | View | |||
407 | CVE-1999-0408 | Entry | Files created from interactive shell sessions in Cobalt RaQ microservers (e.g. .bash_history) are world readable, and thus are accessible from the web server. | View | |||
408 | CVE-1999-0409 | Entry | Buffer overflow in gnuplot in Linux version 3.5 allows local users to obtain root access. | View | |||
409 | CVE-1999-0410 | Entry | The cancel command in Solaris 2.6 (i386) has a buffer overflow that allows local users to obtain root access. | View | |||
410 | CVE-1999-0411 | Candidate | Several startup scripts in SCO OpenServer Enterprise System v 5.0.4p, including S84rpcinit, S95nis, S85tcp, and S89nfs, are vulnerable to a symlink attack, allowing a local user to gain root access. | Proposed (19990726) | MODIFY(2) Baker, Frech | NOOP(2) Christey, Wall | Frech> Neither XFDB nor the BugTraq article (incidentally, shows up as 7 March, not | 19 February) does not mention gaining root access... it says a local user | could | "delete or overwrite arbitrary files on the system." | Baker> By overwriting arbitrary files, one could then gain root access. I agree with a minor description change to reflect this. | Christey> Normalize Bugtraq reference to: | BUGTRAQ:19990307 Little exploit for startup scripts (SCO 5.0.4p). | http://marc.theaimsgroup.com/?l=bugtraq&m=92087765014242&w=2 | Also, SCO:SB-99.17 | ftp://ftp.sco.com/SSE/security_bulletins/SB-99.17c | View |
Page 82 of 20943, showing 5 records out of 104715 total, starting on record 406, ending on 410