CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
4848 | CVE-2002-0456 | Candidate | Eudora 5.1 and earlier versions stores attachments in a directory with a fixed name, which could make it easier for attackers to exploit vulnerabilities in other software that rely on installing and reading files from directories with known pathnames. | Proposed (20020611) | ACCEPT(3) Cole, Frech, Green | NOOP(3) Cox, Foat, Wall | REVIEWING(1) Christey | Green> INCLUSION RATIONALE IS A REASONABLE APPROACH | Christey> Overlap CVE-2002-1210 ? | View |
3931 | CVE-2001-1127 | Candidate | Buffer overflow in Progress database 8.3D and 9.1C could allow a local user to execute arbitrary code via (1) _proapsv, (2) _mprosrv, (3) _mprshut, (4) orarx, (5) sqlcpp, (6) _probrkr, (7) _sqlschema and (8) _sqldump. | Proposed (20020315) | ACCEPT(3) Cole, Frech, Green | NOOP(4) Armstrong, Foat, Wall, Ziese | Green> IN ONE VERSION, BUT NOT IN THE OTHER | View |
4536 | CVE-2002-0142 | Candidate | CGI handler in John Roy Pi3Web for Windows 2.0 beta 1 and 2 allows remote attackers to cause a denial of service (crash) via a series of requests whose physical path is exactly 260 characters long and ends in a series of . (dot) characters. | Proposed (20020315) | ACCEPT(3) Cole, Frech, Green | NOOP(4) Balinsky, Christey, Foat, Wall | Christey> VULNWATCH:20020113 Pi3Web Webserver v2.0 Buffer Overflow Vulnerability | URL:http://archives.neohapsis.com/archives/vulnwatch/2002-q1/0015.html | View |
2156 | CVE-2000-0580 | Candidate | Windows 2000 Server allows remote attackers to cause a denial of service by sending a continuous stream of binary zeros to various TCP and UDP ports, which significantly increases the CPU utilization. | Proposed (20000719) | ACCEPT(3) Cole, Frech, Levy | REJECT(2) LeBlanc, Magdych | REVIEWING(1) Wall | LeBlanc> Insufficient data. Most of their claims are not reproducible. You can, | however, DoS the telnet server this way. As far as I know, there is no repro | on any of the other ports. I am not sure of fix status at this time | (7/19/00). Also overlaps with CVE-2000-0581 | CHANGE> [Magdych changed vote from REVIEWING to REJECT] | Magdych> The only independent verification of these claims I have heard is for the Telnet denial of service, which is already defined in CVE candidate CVE-2000-0581. | Frech> Replace win2k-cpu-overload-dos(4824) with win2k-telnetserver-dos(4823) | View |
2632 | CVE-2000-1063 | Candidate | Buffer overflow in the Telnet service in HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service. | Proposed (20001129) | ACCEPT(3) Cole, Frech, Mell | View |
Page 974 of 20943, showing 5 records out of 104715 total, starting on record 4866, ending on 4870