CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
950 | CVE-1999-0970 | Candidate | The OmniHTTPD visadmin.exe program allows a remote attacker to conduct a denial of service via a malformed URL which causes a large number of temporary files to be created. | Modified (20020226-01) | ACCEPT(3) Baker, Blake, Stracener | MODIFY(1) Frech | NOOP(1) Christey | REVIEWING(1) Levy | Frech> XF:omnihttpd-dos | Christey> Some sort of confirmation might be findable at: | http://www.omnicron.ab.ca/httpd/docs/release.html | Christey> See http://www.omnicron.ab.ca/index.html | The August 16, 2000 news item says "This release fixes some | security problems." It"s for version 2.07, but the discloser | didn"t say what version was available. | | Other security fixes are in the release notes at | http://www.omnicron.ab.ca/httpd/docs/release.html Notes for | Professional Version 1.01 say "Patched up two security weaknesses." | Notes for version 2.07 say "Fixes dot-appending vulnerability." | Professional Alpha 7 says "Revamped CGI launching and security," | Professional Alpha 4 says "Fixed SSI path mapping and security | problems," Alpha 5 says "Security fixup." | | In other words, you can"t tell whether they"ve fixed this bug | or not. | Christey> BID:1808 | URL:http://www.securityfocus.com/bid/1808 | View |
862 | CVE-1999-0882 | Candidate | Falcon web server allows remote attackers to determine the absolute path of the web root via long file names. | Proposed (19991214) | ACCEPT(3) Baker, Blake, Stracener | MODIFY(1) Frech | NOOP(2) Armstrong, Cole | Frech> XF:falcon-server-long-filename | View |
658 | CVE-1999-0677 | Candidate | The WebRamp web administration utility has a default password. | Modified (19991228-01) | ACCEPT(3) Baker, Blake, Stracener | MODIFY(2) Cole, Frech | NOOP(2) Armstrong, Christey | Cole> I would add that is is not forced to be changed. | Frech> XF:webramp-default-password | Christey> This problem may have been detected in January 1999: | BUGTRAQ:19990121 Re: WebRamp M3 remote network access bug | http://marc.theaimsgroup.com/?l=bugtraq&m=91702375402055&w=2 | View |
5132 | CVE-2002-0742 | Candidate | Buffer overflow in pioout on AIX 4.3.3. | Proposed (20020726) | ACCEPT(3) Baker, Bollinger, Cole | NOOP(4) Armstrong, Cox, Foat, Wall | Bollinger> This is indeed a separate issue from CVE-2000-1123. Add AIX | 5.1 APAR IY29677 to the References for this candidate. | View |
5133 | CVE-2002-0743 | Candidate | mail and mailx in AIX 4.3.3 core dump when called with a very long argument, an indication of a buffer overflow. | Proposed (20020726) | ACCEPT(3) Baker, Bollinger, Cole | NOOP(4) Armstrong, Cox, Foat, Wall | Bollinger> IY29516 is the AIX 4.3 APAR for a variety of buffer | overflows in mail and mailx found during internal testing. (AIX 5.1 | APAR IY28170 needs to be added to the References.) I don"t know if | this is similar to CVE-2002-0041 or not due to the vague description | in the associated advisory. One of the overflows fixed is similar to | CVE-2001-0565, but CVE-2000-0545 does not apply here. | View |
Page 922 of 20943, showing 5 records out of 104715 total, starting on record 4606, ending on 4610