CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
4236 | CVE-2001-1433 | Candidate | Cherokee web server before 0.2.7 does not properly drop root privileges after binding to port 80, which could allow remote attackers to gain privileges via other vulnerabilities. | Assigned (20050324) | None (candidate not yet proposed) | View | |
4237 | CVE-2001-1434 | Candidate | Cisco IOS 12.0(5)XU through 12.1(2) allows remote attackers to read system administration and topology information via an "snmp-server host" command, which creates a readable "community" community string if one has not been previously created. | Assigned (20050421) | None (candidate not yet proposed) | View | |
4238 | CVE-2001-1435 | Candidate | inetd in Compaq Tru64 UNIX 5.1 allows attackers to cause a denial of service (network connection loss) by causing one of the services handled by inetd to core dump during startup, which causes inetd to stop accepting connections to all of its services. | Assigned (20050421) | None (candidate not yet proposed) | View | |
4239 | CVE-2001-1436 | Candidate | Dallas Semiconductor iButton DS1991 returns predictable values when given an incorrect password, which makes it easier for users with physical access to conduct dictionary attacks against the device password. | Assigned (20050421) | None (candidate not yet proposed) | View | |
4240 | CVE-2001-1437 | Candidate | easyScripts easyNews 1.5 allows remote attackers to obtain the full path of the web root via a view request with a non-integer news message id field, which leaks the path in a PHP error message when the script times out. | Assigned (20050421) | None (candidate not yet proposed) | View |
Page 848 of 20943, showing 5 records out of 104715 total, starting on record 4236, ending on 4240