CVE List

Id CVE No. Status Description Phase Votes Comments Actions
1687  CVE-2000-0109  Candidate  The mcsp Client Site Processor system (MultiCSP) in Standard and Poor"s ComStock is installed with several accounts that have no passwords or easily guessable default passwords.  Proposed (20000208)  ACCEPT(2) Cole, Levy | MODIFY(1) Frech | NOOP(3) Baker, Christey, Wall  Christey> ADDREF BUGTRAQ:20000324 Security issues with S&P ComStock multiCSP (Linux) | http://marc.theaimsgroup.com/?l=bugtraq&m=95422382625409&w=2 | | Note: this posting was a repeat of the February 1 post, | saying that the problem still hadn"t been fixed. | Frech> XF:comstock-multicsp-passwords | Christey> ADDREF BID:1080 | URL:http://www.securityfocus.com/vdb/bottom.html?vid=1080  View
2193  CVE-2000-0617  Candidate  Buffer overflow in xconq and cconq game programs on Red Hat Linux allows local users to gain additional privileges via long USER environmental variable.  Proposed (20000719)  ACCEPT(2) Cole, Levy | MODIFY(1) Frech | NOOP(4) Christey, LeBlanc, Magdych, Wall  Frech> XF:xconq-elevate-privileges(4995) | Christey> ADDREF BID:1495 | ADDREF URL:http://www.securityfocus.com/bid/1495 | CHANGE> [Levy changed vote from REVIEWING to ACCEPT] | CHANGE> [Magdych changed vote from REVIEWING to NOOP]  View
2194  CVE-2000-0618  Candidate  Buffer overflow in xconq and cconq game programs on Red Hat Linux allows local users to gain additional privileges via long DISPLAY environmental variable.  Proposed (20000719)  ACCEPT(2) Cole, Levy | MODIFY(1) Frech | NOOP(4) Christey, LeBlanc, Magdych, Wall  Frech> XF:xconq-elevate-privileges(4995) | Christey> ADDREF BID:1495 | ADDREF URL:http://www.securityfocus.com/bid/1495 | CHANGE> [Levy changed vote from REVIEWING to ACCEPT] | CHANGE> [Magdych changed vote from REVIEWING to NOOP]  View
2131  CVE-2000-0554  Candidate  Ceilidh allows remote attackers to obtain the real path of the Ceilidh directory via the translated_path hidden form field.  Proposed (20000712)  ACCEPT(2) Cole, Levy | MODIFY(1) Frech | NOOP(4) Christey, LeBlanc, Ozancin, Wall  Christey> ADDREF XF:ceilidh-path-disclosure | Frech> XF:ceilidh-path-disclosure(4620)  View
1921  CVE-2000-0343  Candidate  Buffer overflow in Sniffit 0.3.x with the -L logging option enabled allows remote attackers to execute arbitrary commands via a long MAIL FROM mail header.  Proposed (20000518)  ACCEPT(2) Cole, Levy | MODIFY(2) Christey, Frech | NOOP(2) Armstrong, Wall  Frech> XF:sniffit-lmail-bo | Christey> This issue was rediscovered. | ADDREF BUGTRAQ:20020119 remote buffer overflow in sniffit | URL:http://marc.theaimsgroup.com/?l=bugtraq&m=101167452712383&w=2 | ADDREF BUGTRAQ:20000525 `sniffit -L mail" vulnerabilities | URL:http://marc.theaimsgroup.com/?l=bugtraq&m=95928090612990&w=2 | | I reviewed the patch that was claimed in the 20020119 Bugtraq | post, and it could well address the issue. However, since the | patch is also dated around the time of the original Bugtraq | post, *and* it says that it"s addressing an issue that"s | discussed on Bugtraq, that is sufficient to establish | acknowledgement. | CHANGE> [Christey changed vote from NOOP to MODIFY] | Christey> XF:sniffit-normmail-l-bo(7933) | URL:http://www.iss.net/security_center/static/7933.php  View

Page 845 of 20943, showing 5 records out of 104715 total, starting on record 4221, ending on 4225

Actions