CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
3392 | CVE-2001-0579 | Candidate | lpadmin in SCO OpenServer 5.0.6 can allow a local attacker to gain additional privileges via a buffer overflow attack in the first argument to the command. | Proposed (20010727) | ACCEPT(2) Frech, Williams | MODIFY(1) Bishop | NOOP(4) Cole, Foat, Wall, Ziese | RECAST(1) Baker | Bishop> recommend combining as stated in analysis | Baker> Merge with CVE-2001-0575, which has vendor acknowledgement, and includes this as one of the binaries with the same problem. | View |
2769 | CVE-2000-1202 | Candidate | ikeyman in IBM IBMHSSSB 1.0 sets the CLASSPATH environmental variable to include the user"s own CLASSPATH directories before the system"s directories, which allows a malicious local user to execute arbitrary code as root via a Trojan horse Ikeyman class. | Proposed (20010912) | ACCEPT(2) Frech, Williams | NOOP(4) Cole, Foat, Stracener, Wall | Williams> :%s/IBMHSSSB/IBMHSSB | View |
3390 | CVE-2001-0577 | Candidate | recon in SCO OpenServer 5.0 through 5.0.6 can allow a local attacker to gain additional privileges via a buffer overflow attack in the first command line argument. | Modified (20020225-01) | ACCEPT(2) Frech, Williams | NOOP(4) Cole, Foat, Wall, Ziese | RECAST(1) Baker | REVIEWING(1) Bishop | Baker> Merge with CVE-2001-0575, which has vendor acknowledgement, and includes this as one of the binaries with the same problem. | View |
3489 | CVE-2001-0681 | Candidate | Buffer overflow in ftpd in QPC QVT/Net 5.0 and QVT/Term 5.0 allows a remote attacker to cause a denial of service via a long (1) username or (2) password. | Proposed (20010829) | ACCEPT(2) Frech, Ziese | MODIFY(1) Christey | NOOP(3) Cole, Foat, Wall | Christey> Consider adding 4.3 as an affected version for QVT/Net, | as implied by the FTP banner in the Bugtraq post. | View |
3370 | CVE-2001-0557 | Candidate | T. Hauck Jana Webserver 1.46 and earlier allows a remote attacker to view arbitrary files via a ".." (dot dot) attack which is URL encoded (%2e%2e). | Modified (20050509) | ACCEPT(2) Frech, Ziese | NOOP(3) Cole, Foat, Wall | REVIEWING(1) Bishop | View |
Page 882 of 20943, showing 5 records out of 104715 total, starting on record 4406, ending on 4410