CVE List

Id CVE No. Status Description Phase Votes Comments Actions
5176  CVE-2002-0786  Candidate  iCon administrative web server for Critical Path inJoin Directory Server 4.0 allows authenticated inJoin administrators to read arbitrary files by specifying the target file in the LOG parameter.  Proposed (20020726)  NOOP(5) Armstrong, Cole, Cox, Foat, Wall    View
5177  CVE-2002-0787  Candidate  Cross-site scripting vulnerabilities in iCon administrative web server for Critical Path inJoin Directory Server 4.0 allow remote attackers to execute script as the administrator via administrator URLs with modified (1) LOCID or (2) OC parameters.  Proposed (20020726)  NOOP(5) Armstrong, Cole, Cox, Foat, Wall    View
5178  CVE-2002-0788  Entry  An interaction between PGP 7.0.3 with the "wipe deleted files" option, when used on Windows Encrypted File System (EFS), creates a cleartext temporary files that cannot be wiped or deleted due to strong permissions, which could allow certain local users or attackers with physical access to obtain cleartext information.        View
5179  CVE-2002-0789  Entry  Buffer overflow in search.cgi in mnoGoSearch 3.1.19 and earlier allows remote attackers to execute arbitrary code via a long query (q) parameter.        View
5180  CVE-2002-0790  Entry  clchkspuser and clpasswdremote in AIX expose an encrypted password in the cspoc.log file, which could allow local users to gain privileges.        View

Page 1036 of 20943, showing 5 records out of 104715 total, starting on record 5176, ending on 5180

Actions