CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4813  CVE-2002-0421  Candidate  IIS 4.0 allows local users to bypass the "User cannot change password" policy for Windows NT by directly calling .htr password changing programs in the /iisadmpwd directory, including (1) aexp2.htr, (2) aexp2b.htr, (3) aexp3.htr , or (4) aexp4.htr.  Proposed (20020611)  ACCEPT(3) Alderson, Cole, Frech | NOOP(2) Cox, Foat | REVIEWING(1) Wall    View
4818  CVE-2002-0426  Candidate  VPN Server module in Linksys EtherFast BEFVP41 Cable/DSL VPN Router before 1.40.1 reduces the key lengths for keys that are supplied via manual key entry, which makes it easier for attackers to crack the keys.  Proposed (20020611)  ACCEPT(2) Cole, Frech | NOOP(3) Cox, Foat, Wall | REVIEWING(1) Alderson    View
4819  CVE-2002-0427  Candidate  Buffer overflows in fpexec in mod_frontpage before 1.6.1 may allow attackers to gain root privileges.  Proposed (20020611)  ACCEPT(4) Alderson, Baker, Cole, Frech | MODIFY(1) Cox | NOOP(2) Foat, Wall  Cox> The description should say "improved mod_frontpage" as there | are two Frontpage modules for Apache, the offical one and this one.  View
4820  CVE-2002-0428  Candidate  Check Point FireWall-1 SecuRemote/SecuClient 4.0 and 4.1 allows clients to bypass the "authentication timeout" by modifying the to_expire or expire values in the client"s users.C configuration file.  Proposed (20020611)  ACCEPT(2) Cole, Frech | NOOP(3) Cox, Foat, Wall | REVIEWING(1) Alderson    View
4822  CVE-2002-0430  Candidate  MultiFileUploadHandler.php in the Sun Cobalt RaQ XTR administration interface allows local users to bypass authentication and overwrite arbitrary files via a symlink attack on a temporary file, followed by a request to MultiFileUpload.php.  Proposed (20020611)  MODIFY(1) Frech | NOOP(4) Cole, Cox, Foat, Wall | REVIEWING(1) Alderson  Frech> XF:cobalt-multifileupload-bypass-auth(8395)  View

Page 112 of 20943, showing 5 records out of 104715 total, starting on record 556, ending on 560

Actions