CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4356  CVE-2001-1556  Candidate  The log files in Apache web server contain information directly supplied by clients and does not filter or quote control characters, which could allow remote attackers to hide HTTP requests and spoof source IP addresses when logs are viewed with UNIX programs such as cat, tail, and grep.  Assigned (20050714)  None (candidate not yet proposed)    View
4357  CVE-2001-1557  Candidate  Buffer overflow in ftpd in IBM AIX 4.3 and 5.1 allows attackers to gain privileges.  Assigned (20050714)  None (candidate not yet proposed)    View
4358  CVE-2001-1558  Candidate  Unknown vulnerability in IP defragmenter (frag2) in Snort before 1.8.3 allows attackers to cause a denial of service (crash).  Assigned (20050714)  None (candidate not yet proposed)    View
4359  CVE-2001-1559  Candidate  The uipc system calls (uipc_syscalls.c) in OpenBSD 2.9 and 3.0 provide user mode return instead of versus rval kernel mode values to the fdrelease function, which allows local users to cause a denial of service and trigger a null dereference.  Assigned (20050714)  None (candidate not yet proposed)    View
4360  CVE-2001-1560  Candidate  Win32k.sys (aka Graphics Device Interface (GDI)) in Windows 2000 and XP allows local users to cause a denial of service (system crash) by calling the ShowWindow function after receiving a WM_NCCREATE message.  Assigned (20050714)  None (candidate not yet proposed)    View

Page 872 of 20943, showing 5 records out of 104715 total, starting on record 4356, ending on 4360

Actions