CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4236  CVE-2001-1433  Candidate  Cherokee web server before 0.2.7 does not properly drop root privileges after binding to port 80, which could allow remote attackers to gain privileges via other vulnerabilities.  Assigned (20050324)  None (candidate not yet proposed)    View
4237  CVE-2001-1434  Candidate  Cisco IOS 12.0(5)XU through 12.1(2) allows remote attackers to read system administration and topology information via an "snmp-server host" command, which creates a readable "community" community string if one has not been previously created.  Assigned (20050421)  None (candidate not yet proposed)    View
4238  CVE-2001-1435  Candidate  inetd in Compaq Tru64 UNIX 5.1 allows attackers to cause a denial of service (network connection loss) by causing one of the services handled by inetd to core dump during startup, which causes inetd to stop accepting connections to all of its services.  Assigned (20050421)  None (candidate not yet proposed)    View
4239  CVE-2001-1436  Candidate  Dallas Semiconductor iButton DS1991 returns predictable values when given an incorrect password, which makes it easier for users with physical access to conduct dictionary attacks against the device password.  Assigned (20050421)  None (candidate not yet proposed)    View
4240  CVE-2001-1437  Candidate  easyScripts easyNews 1.5 allows remote attackers to obtain the full path of the web root via a view request with a non-integer news message id field, which leaks the path in a PHP error message when the script times out.  Assigned (20050421)  None (candidate not yet proposed)    View

Page 848 of 20943, showing 5 records out of 104715 total, starting on record 4236, ending on 4240

Actions