| OSVDB ID | Disclosure Date | Title |
|
29234
Description:
Unknown / Incomplete
|
1997-04-30
|
CERN httpd Double Slash Protected Webpage Bypass
|
|
8217
Description:
(Description Provided by CVE) : Buffer overflow in (1) pluggable authentication module (PAM) on Solaris 2.5.1 and 2.5 and (2) unix_scheme in Solaris 2.4 and 2.3 allows local users to gain root privileges via programs that use these modules such as passwd, yppasswd, and nispasswd.
|
1997-04-27
|
Solaris unix_scheme Local Overflow
|
|
4894
Description:
A local overflow exists in MIT Kerberos 5 when utilizing the Kerberos 4 compatibility libraries. Several Kerberos related programs fail to perform proper boundry checking on the KRB_CONF environment variable. With a specially crafted request, an attacker can gain unauthorized root access to vulnerable systems. This compromise would result in a loss of confidentiality, integrity, and/or availability.
|
1997-04-27
|
MIT Kerberos 5 KRB_CONF Elevated Privilege
|
|
83
Description:
Guestbook CGI contains a flaw that may allow a remote attacker to arbitrary execute commands. The problem is that the script does not validate user-supplied input, which may allow a remote attacker to execute arbitrary commands with the privileges of the Web server resulting in a loss of integrity.
|
1997-04-24
|
Guestbook CGI Arbitrary Command Execution
|
|
1110
Description:
(Description Provided by CVE) : Buffer overflow in PHP cgi program, php.cgi allows shell access.
|
1997-04-17
|
PHP/FI php.cgi FixFilename() Function Remote Overflow
|
|
6787
Description:
(Description Provided by CVE) : Buffer overflow in Solaris fdformat command gives root access to local users.
|
1997-04-17
|
Solaris fdformat Local Overflow
|
|
11018
Description:
(Description Provided by CVE) : An interaction between the AS/400 shared folders feature and Microsoft SNA Server 3.0 and earlier allows users to view each other's folders when the users share the same Local APPC LU.
|
1997-04-17
|
Microsoft SNA Server AS/400 Local APPC LU Shared Folder Disclosure
|
|
88696
Description:
By default, Kentrox Pacesetter Router is distrubited with default user credentials (username/password combination). The supervisor account has a password of 'SECRET', which is publicly known and documented. This allows remote attackers to trivially access the program or system and gain privileged access.
|
1997-04-09
|
Kentrox Pacesetter Router Default Credentials
|
|
83672
Description:
Microsoft Internet Explorer contains a flaw that may lead to an unauthorized information disclosure. During NTLM authentication a remote attacker can set the negotiation between the NTLM authentication server and the client to a constant. This will allow an attacker to gain access to username, domain name, or workgroup and hostname information via a specially crafted request.
|
1997-04-09
|
Microsoft IE NTLM Authentication Remote Information Disclosure
|
|
83797
Description:
Microsoft Internet Explorer on Windows NT contains a flaw that is triggered when the program sends a hashed versions of the user's password during the authentication negotiation. This may allow a remote attacker to gain access to password information via a man-in-the-middle-attack.
|
1997-04-08
|
Microsoft IE on NT Hashed Password Remote Disclosure MiTM Weakness
|
|
2953
Description:
Norton Utilities contains a flaw that allows a remote attacker to send commands from a remote machine that will be executed on the target server. The issue is due to a flaw in the Active-X implementation in Internet Explorer and the way Norton Utilities uses it.
|
1997-04-08
|
Symantec Norton Utilities Active-X Remote Command Execution
|
|
6087
Description:
FreeBSD contains a flaw that may allow a malicious user to access the platform. The issue is triggered when a malicious user logs onto the victim system using a passwordless account "ftp" that is automatically created by sysinstall, while an authorized user is running the sysinstall utility. It is possible that the flaw may allow shell access (via /bin/date) resulting in a loss of integrity.
|
1997-04-07
|
FreeBSD Sysinstall Anonymous FTP Misconfiguration
|
|
82929
Description:
Digital Unix contains a flaw that may allow a malicious local user to overwrite arbitrary files on the system. The issue is due to SUID binaries creating temporary files insecurely. It is possible for a local attacker to use a symlink attack against a core dump to cause the program to unexpectedly write to, or overwrite an attacker specified file.
|
1997-04-06
|
Digital Unix SUID core File Symlink Arbitrary File Overwrite Local Privilege Escalation
|
|
3543
Description:
WebScripts WebBBS contains a non-descript flaw that allows users to include SSI in messages.
|
1997-04-06
|
WebScripts WebBBS Message SSI
|
|
83141
Description:
A local overflow exists in IBM AIX. The C Library (libc) fails to properly handle long values in the LC_MESSAGES environment variable resulting in a buffer overflow. With a specially crafted request, a local attacker can gain root access resulting in a loss of integrity. This can be exploited through binaries that use the library, such as /bin/host and /usr/sbin/mount.
|
1997-04-04
|
IBM AIX libc LC_MESSAGES Environment Variable Local Overflow
|
|
247
Description:
IRIX contains a flaw that allows a remote attacker to view files outside of the web path. The issue is due to the wrap script not properly sanitizing user input, specifically directory traversal style attacks (../../).
|
1997-04-02
|
IRIX wrap CGI Traversal Arbitrary Directory Listing
|
|
10615
Description:
(Description Provided by CVE) : Windows NT 4.0 SP2 allows remote attackers to cause a denial of service (crash), possibly via malformed inputs or packets, such as those generated by a Linux smbmount command that was compiled on the Linux 2.0.29 kernel but executed on Linux 2.0.25.
|
1997-04-02
|
Microsoft Windows NT linux smbmount Request DoS
|
|
1109
Description:
(Description Provided by CVE) : Buffer overflow in NLS (Natural Language Service).
|
1997-04-01
|
Multiple Vendor Natural Language Service (NLS) Local Overflow
|
|
10975
Description:
(Description Provided by CVE) : Denial of service through Winpopup using large user names.
|
1997-04-01
|
Microsoft Windows NT Winpopup Long Username DoS
|