Show filters
38 Total Results
Displaying 21-30 of 38
Sort by:
Attacker Value
Unknown
CVE-2003-1108
Disclosure Date: December 31, 2003 (last updated February 22, 2025)
The Session Initiation Protocol (SIP) implementation in Alcatel OmniPCX Enterprise 5.0 Lx allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted INVITE messages, as demonstrated by the OUSPG PROTOS c07-sip test suite.
0
Attacker Value
Unknown
CVE-2002-2149
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Buffer overflow in Lucent Access Point 300, 600, and 1500 Service Routers allows remote attackers to cause a denial of service (reboot) via a long HTTP request to the administrative interface.
0
Attacker Value
Unknown
CVE-2002-2148
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Lucent Ascend MAX Router 5.0 and earlier, Lucent Ascend Pipeline Router 6.0.2 and earlier and Lucent DSLTerminator allows remote attackers to obtain sensitive information such as hostname, MAC, and IP address of the Ethernet interface via a discard (UDP port 9) packet, which causes the device to leak the information in the response.
0
Attacker Value
Unknown
CVE-2002-1691
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Alcatel OmniPCX 4400 installs known user accounts and passwords in the /etc/password file by default, which allows remote attackers to gain unauthorized access.
0
Attacker Value
Unknown
CVE-2002-0293
Disclosure Date: May 31, 2002 (last updated February 22, 2025)
FTP service in Alcatel OmniPCX 4400 allows the "halt" user to gain root privileges by modifying root's .profile file.
0
Attacker Value
Unknown
CVE-2002-0294
Disclosure Date: May 31, 2002 (last updated February 22, 2025)
Alcatel 4400 installs the /chetc/shutdown command with setgid privileges, which allows many different local users to shut down the system.
0
Attacker Value
Unknown
CVE-2002-0295
Disclosure Date: May 31, 2002 (last updated February 22, 2025)
Alcatel OmniPCX 4400 installs files with world-writable permissions, which allows local users to reconfigure the system and possibly gain privileges.
0
Attacker Value
Unknown
CVE-2002-0236
Disclosure Date: May 29, 2002 (last updated February 22, 2025)
Lucent VitalSuite 8.0 through 8.2, including VitalNet, VitalEvent, and VitalHelp/VitalAnalysis, allows remote attackers to bypass authentication via a direct HTTP request to the VsSetCookie.exe program, which returns a valid cookie for the desired user.
0
Attacker Value
Unknown
CVE-2001-1377
Disclosure Date: March 04, 2002 (last updated February 22, 2025)
Multiple RADIUS implementations do not properly validate the Vendor-Length of the Vendor-Specific attribute, which allows remote attackers to cause a denial of service (crash) via a Vendor-Length that is less than 2.
0
Attacker Value
Unknown
CVE-2001-1376
Disclosure Date: March 04, 2002 (last updated February 22, 2025)
Buffer overflow in digest calculation function of multiple RADIUS implementations allows remote attackers to cause a denial of service and possibly execute arbitrary code via shared secret data.
0