CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
121 | CVE-1999-0121 | Candidate | Buffer overflow in dtaction command gives root access. | Proposed (19990617) | ACCEPT(2) Dik, Northcutt | MODIFY(3) Baker, Frech, Prosser | REVIEWING(1) Christey | Frech> Reference: XF:dtaction-bo | Reference: XF:sun-dtaction | Prosser> Buffer overflow also affects /usr/dt/bin/dtaction in libDtSvc.a | library in AIX 4.x, but reference for this Sun vulnerability should | only reflect the Sun Bulletin or the CIAC I-032 version of the Sun | Bulletin | Christey> This is the Same Codebase as CVE-1999-0089, so the two entries | should be merged. | Frech> Replace sun-dtaction(732) with dtaction-bo(879) | Baker> Merge with 1999-0089 | View |
3789 | CVE-2001-0984 | Candidate | Password Safe 1.7(1) leaves cleartext passwords in memory when a user copies the password to the clipboard and minimizes Password Safe with the "Clear the password when minimized" and "Lock password database on minimize and promp on restore" options enabled, which could allow an attacker with access to the memory (e.g. an administrator) to read the passwords. | Proposed (20020131) | ACCEPT(2) Foat, Frech | MODIFY(1) Green | NOOP(2) Cole, Wall | Green> THE ISSUE OF WHETHER THIS IS PROGRAMMATIC OR OS RELATED SEEMS | UNSETTLED, AS DOES THE LEVEL OF PRIVILEGE THAT CAN BE OBTAINED | View |
1109 | CVE-1999-1129 | Candidate | Cisco Catalyst 2900 Virtual LAN (VLAN) switches allow remote attackers to inject 802.1q frames into another VLAN by forging the VLAN identifier in the trunking tag. | Proposed (20010912) | ACCEPT(2) Foat, Frech | NOOP(2) Cole, Wall | CHANGE> [Foat changed vote from NOOP to ACCEPT] | View |
3738 | CVE-2001-0932 | Candidate | Buffer overflow in Cooolsoft PowerFTP Server 2.03 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long command. | Proposed (20020131) | ACCEPT(2) Foat, Frech | NOOP(3) Armstrong, Cole, Wall | View | |
5410 | CVE-2002-1022 | Candidate | BadBlue server stores passwords in plaintext in the ext.ini file, which could allow local and possibly remote attackers to gain privileges. | Modified (20050628) | ACCEPT(2) Foat, Frech | NOOP(4) Christey, Cole, Cox, Wall | Christey> typo: "nad" (amazing that"s the only typo for "and" at this | time!) | View |
Page 851 of 20943, showing 5 records out of 104715 total, starting on record 4251, ending on 4255