CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3728  CVE-2001-0922  Candidate  ndcgi.exe in Netdynamics 4.x through 5.x, and possibly earlier versions, allows remote attackers to steal session IDs and hijack user sessions by reading the SPIDERSESSION and uniqueValue variables from the login field, then using those variables after the next user logs in.  Modified (20050528)  MODIFY(1) Frech | NOOP(4) Armstrong, Cole, Foat, Wall  Frech> XF:netdynamics-session-hijacking(7620)  View
3736  CVE-2001-0930  Candidate  Sendpage.pl allows remote attackers to execute arbitrary commands via a message containing shell metacharacters.  Modified (20050702)  MODIFY(1) Frech | NOOP(4) Armstrong, Cole, Foat, Wall  Frech> XF:sendpage-message-command-execution(7609)  View
3744  CVE-2001-0938  Candidate  Directory traversal vulnerability in AspUpload 2.1, in certain configurations, allows remote attackers to upload and read arbitrary files, and list arbitrary directories, via a .. (dot dot) in the Filename parameter in (1) UploadScript11.asp or (2) DirectoryListing.asp.  Modified (20050703)  MODIFY(1) Frech | NOOP(4) Armstrong, Cole, Foat, Wall  Frech> XF:aspupload-upload-directory-traversal(7628) | XF:aspupload-directory-browsing-download(7629)  View
3549  CVE-2001-0742  Candidate  Buffer overflow in Computalynx CMail POP3 mail server 2.4.9 allows remote attackers to run arbitrary code via a long HELO command.  Proposed (20011012)  MODIFY(1) Frech | NOOP(4) Armstrong, Cole, Foat, Wall  Frech> XF:cmail-helo-bo(7406)  View
3562  CVE-2001-0755  Candidate  Buffer overflow in ftp daemon (ftpd) 6.2 in Debian GNU/Linux allows attackers to cause a denial of service and possibly execute arbitrary code via a long SITE command.  Modified (20041020)  MODIFY(1) Frech | NOOP(4) Armstrong, Cole, Foat, Wall  Frech> XF:linux-ftpd-site-bo(7414)  View

Page 1137 of 20943, showing 5 records out of 104715 total, starting on record 5681, ending on 5685

Actions