CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
1687 | CVE-2000-0109 | Candidate | The mcsp Client Site Processor system (MultiCSP) in Standard and Poor"s ComStock is installed with several accounts that have no passwords or easily guessable default passwords. | Proposed (20000208) | ACCEPT(2) Cole, Levy | MODIFY(1) Frech | NOOP(3) Baker, Christey, Wall | Christey> ADDREF BUGTRAQ:20000324 Security issues with S&P ComStock multiCSP (Linux) | http://marc.theaimsgroup.com/?l=bugtraq&m=95422382625409&w=2 | | Note: this posting was a repeat of the February 1 post, | saying that the problem still hadn"t been fixed. | Frech> XF:comstock-multicsp-passwords | Christey> ADDREF BID:1080 | URL:http://www.securityfocus.com/vdb/bottom.html?vid=1080 | View |
2193 | CVE-2000-0617 | Candidate | Buffer overflow in xconq and cconq game programs on Red Hat Linux allows local users to gain additional privileges via long USER environmental variable. | Proposed (20000719) | ACCEPT(2) Cole, Levy | MODIFY(1) Frech | NOOP(4) Christey, LeBlanc, Magdych, Wall | Frech> XF:xconq-elevate-privileges(4995) | Christey> ADDREF BID:1495 | ADDREF URL:http://www.securityfocus.com/bid/1495 | CHANGE> [Levy changed vote from REVIEWING to ACCEPT] | CHANGE> [Magdych changed vote from REVIEWING to NOOP] | View |
2194 | CVE-2000-0618 | Candidate | Buffer overflow in xconq and cconq game programs on Red Hat Linux allows local users to gain additional privileges via long DISPLAY environmental variable. | Proposed (20000719) | ACCEPT(2) Cole, Levy | MODIFY(1) Frech | NOOP(4) Christey, LeBlanc, Magdych, Wall | Frech> XF:xconq-elevate-privileges(4995) | Christey> ADDREF BID:1495 | ADDREF URL:http://www.securityfocus.com/bid/1495 | CHANGE> [Levy changed vote from REVIEWING to ACCEPT] | CHANGE> [Magdych changed vote from REVIEWING to NOOP] | View |
2131 | CVE-2000-0554 | Candidate | Ceilidh allows remote attackers to obtain the real path of the Ceilidh directory via the translated_path hidden form field. | Proposed (20000712) | ACCEPT(2) Cole, Levy | MODIFY(1) Frech | NOOP(4) Christey, LeBlanc, Ozancin, Wall | Christey> ADDREF XF:ceilidh-path-disclosure | Frech> XF:ceilidh-path-disclosure(4620) | View |
1921 | CVE-2000-0343 | Candidate | Buffer overflow in Sniffit 0.3.x with the -L logging option enabled allows remote attackers to execute arbitrary commands via a long MAIL FROM mail header. | Proposed (20000518) | ACCEPT(2) Cole, Levy | MODIFY(2) Christey, Frech | NOOP(2) Armstrong, Wall | Frech> XF:sniffit-lmail-bo | Christey> This issue was rediscovered. | ADDREF BUGTRAQ:20020119 remote buffer overflow in sniffit | URL:http://marc.theaimsgroup.com/?l=bugtraq&m=101167452712383&w=2 | ADDREF BUGTRAQ:20000525 `sniffit -L mail" vulnerabilities | URL:http://marc.theaimsgroup.com/?l=bugtraq&m=95928090612990&w=2 | | I reviewed the patch that was claimed in the 20020119 Bugtraq | post, and it could well address the issue. However, since the | patch is also dated around the time of the original Bugtraq | post, *and* it says that it"s addressing an issue that"s | discussed on Bugtraq, that is sufficient to establish | acknowledgement. | CHANGE> [Christey changed vote from NOOP to MODIFY] | Christey> XF:sniffit-normmail-l-bo(7933) | URL:http://www.iss.net/security_center/static/7933.php | View |
Page 845 of 20943, showing 5 records out of 104715 total, starting on record 4221, ending on 4225