NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
77115 | CVE-2000-0881 | The dccscan setuid program in LPPlus does not properly check if the user has the permissions to print the file that is specified to dccscan, which allows local users to print arbitrary files. | 2 | 2.1 | Low | 2017-01-05 | 2008-09-05 | View | |
77114 | CVE-2000-0880 | LPPlus creates the lpdprocess file with world-writeable permissions, which allows local users to kill arbitrary processes by specifying an alternate process ID and using the setuid dcclpdshut program to kill the process that was specified in the lpdprocess file. | 2 | 3.6 | Low | 2017-01-05 | 2008-09-05 | View | |
77113 | CVE-2000-0879 | LPPlus programs dccsched, dcclpdser, dccbkst, dccshut, dcclpdshut, and dccbkstshut are installed setuid root and world executable, which allows arbitrary local users to start and stop various LPD services. | 2 | 2.1 | Low | 2017-01-05 | 2008-09-05 | View | |
77112 | CVE-2000-0878 | The mailto CGI script allows remote attacker to execute arbitrary commands via shell metacharacters in the emailadd form field. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View | |
77111 | CVE-2000-0877 | mailform.pl CGI script in MailForm 2.0 allows remote attackers to read arbitrary files by specifying the file name in the XX-attach_file parameter, which MailForm then sends to the attacker. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View |
Page 17184 of 17672, showing 5 records out of 88360 total, starting on record 85916, ending on 85920