Show filters
77 Total Results
Displaying 71-77 of 77
Sort by:
Attacker Value
Unknown

CVE-2000-1076

Disclosure Date: December 11, 2000 (last updated February 22, 2025)
Netscape (iPlanet) Certificate Management System 4.2 and Directory Server 4.12 stores the administrative password in plaintext, which could allow local and possibly remote attackers to gain administrative privileges on the server.
0
Attacker Value
Unknown

CVE-2000-1072

Disclosure Date: December 11, 2000 (last updated February 22, 2025)
iCal 2.1 Patch 2 installs many files with world-writeable permissions, which allows local users to modify the iCal configuration and execute arbitrary commands by replacing the iplncal.sh program with a Trojan horse.
0
Attacker Value
Unknown

CVE-2000-1071

Disclosure Date: December 11, 2000 (last updated February 22, 2025)
The GUI installation for iCal 2.1 Patch 2 disables access control for the X server using an "xhost +" command, which allows remote attackers to monitor X Windows events and gain privileges.
0
Attacker Value
Unknown

CVE-2000-1075

Disclosure Date: December 11, 2000 (last updated February 22, 2025)
Directory traversal vulnerability in iPlanet Certificate Management System 4.2 and Directory Server 4.12 allows remote attackers to read arbitrary files via a .. (dot dot) attack in the Agent, End Entity, or Administrator services.
0
Attacker Value
Unknown

CVE-2000-1073

Disclosure Date: December 11, 2000 (last updated February 22, 2025)
csstart program in iCal 2.1 Patch 2 searches for the cshttpd program in the current working directory, which allows local users to gain root privileges by creating a Trojan Horse cshttpd program in a directory and calling csstart from that directory.
0
Attacker Value
Unknown

CVE-2000-1074

Disclosure Date: December 11, 2000 (last updated February 22, 2025)
csstart program in iCal 2.1 Patch 2 uses relative pathnames to install the libsocket and libnsl libraries, which could allow the icsuser account to gain root privileges by creating a Trojan Horse library in the current or parent directory.
0
Attacker Value
Unknown

CVE-2000-0182

Disclosure Date: February 23, 2000 (last updated February 22, 2025)
iPlanet Web Server 4.1 allows remote attackers to cause a denial of service via a large number of GET commands, which consumes memory and causes a kernel panic.
0