CiscoSecure Access Control Server for UNIX Remote Administration In CiscoSecure Access Control Server (CiscoSecure ACS) for UNIX, versions``1.0 through 2.3.2, there is a database access protocol that could permit``unauthorized remote users to read and write the server database without``authentication. Depending on the network environment, this might permit``unauthorized users to modify the access policies enforced by the``CiscoSecure ACS. http://www.cisco.com/warp/public/770/csecure-dbaccess.shtml
IN-99-06: Distributed Network Sniffer We have received reports of intruders using distributed network sniffers to capture usernames and passwords. The distributed sniffer consists of a client and a server portion. The sniffer clients have been found exclusively on compromised Linux hosts. http://www.cert.org/incident_notes/IN-99-06.html
J-065: Wu-ftpd Vulnerability The WU-FTPD Development Group has been informed there is a `` vulnerability in some versions of wu-ftpd. http://ciac.llnl.gov/ciac/bulletins/j-065.shtml
J-071: Buffer Overflow Vulnerability in amd There is a buffer overflow vulnerability in the amd daemon `` that could allow remote users to execute arbitrary code `` as root. http://ciac.llnl.gov/ciac/bulletins/j-071.shtml
J-072: IBM AIX Buffer Overflow Vulnerability A buffer overflow vulnerability has been found in the AIX 4.3.x `` ftpd daemon that allows remote attackers to gain root access. http://ciac.llnl.gov/ciac/bulletins/j-072.shtml