CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4286  CVE-2001-1483  Candidate  One-Time Passwords In Everything (a.k.a OPIE) 2.32 and 2.4 allows remote attackers to determine the existence of user accounts by printing random passphrases if the user account does not exist and static passphrases if the user account does exist.  Assigned (20050621)  None (candidate not yet proposed)    View
4287  CVE-2001-1484  Candidate  Alcatel ADSL modems allow remote attackers to access the Trivial File Transfer Protocol (TFTP) to modify firmware and configuration via a bounce attack from a system on the local area network (LAN) side, which is allowed to access TFTP without authentication.  Assigned (20050621)  None (candidate not yet proposed)    View
4288  CVE-2001-1487  Candidate  popauth utility in Qualcomm Qpopper 4.0 and earlier allows local users to overwrite arbitrary files and execute commands as the pop user via a symlink attack on the -trace file option.  Assigned (20050621)  None (candidate not yet proposed)    View
4289  CVE-2001-1488  Candidate  Open Projects Network Internet Relay Chat (IRC) daemon u2.10.05.18 does not perform a double-reverse DNS lookup, which allows remote attackers to spoof any valid hostname on the Internet. NOTE: a followup post suggests that this is not an issue in the daemon.  Assigned (20050621)  None (candidate not yet proposed)    View
4290  CVE-2001-1489  Candidate  Microsoft Internet Explorer 6 allows remote attackers to cause a denial of service (CPU consumption and memory leak) via a web page with a large number of images.  Assigned (20050621)  None (candidate not yet proposed)    View

Page 858 of 20943, showing 5 records out of 104715 total, starting on record 4286, ending on 4290

Actions