CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4636  CVE-2002-0244  Candidate  Directory traversal vulnerability in chroot function in AtheOS 0.3.7 allows attackers to escape the jail via a .. (dot dot) in the pathname argument to chdir.  Modified (20050528)  MODIFY(1) Frech | NOOP(5) Armstrong, Cole, Cox, Foat, Wall  Frech> XF:atheos-dot-directory-traversal(8108)  View
4646  CVE-2002-0254  Candidate  ICQ 2001b Build 3659 allows remote attackers to cause a denial of service (crash) via a malformed picture that contains large height and width values, which causes the crash when viewed in Userdetails.  Proposed (20020502)  MODIFY(1) Frech | NOOP(5) Armstrong, Cole, Cox, Foat, Wall  Frech> XF:icq-large-jpg-bo(8159)  View
4650  CVE-2002-0258  Candidate  Merak Mail IceWarp Web Mail uses a static identifier as a user session ID that does not change across sessions, which could allow remote attackers with access to the ID to gain privileges as that user, e.g. by extracting the ID from the user"s answer or forward URLs.  Proposed (20020502)  MODIFY(1) Frech | NOOP(5) Armstrong, Cole, Cox, Foat, Wall  CHANGE> [Frech changed vote from REVIEWING to MODIFY] | Frech> XF:icewarp-static-sessionid(9807)  View
4656  CVE-2002-0264  Candidate  PowerFTP Personal FTP Server 2.03 through 2.10 stores sensitive account information in plaintext in the ftpserver.ini file, which allows attackers with access to the file to gain privileges.  Modified (20050707)  MODIFY(1) Frech | NOOP(5) Armstrong, Cole, Cox, Foat, Wall  Frech> XF:powerftp-ftpserver-ini-plaintext(8183)  View
4660  CVE-2002-0268  Candidate  Identix BioLogon 3 allows users with physical access to the system to gain administrative privileges by using CTRL-ALT-DEL and running a "Browse" function, which runs Explorer with SYSTEM privileges.  Modified (20050707)  MODIFY(1) Frech | NOOP(5) Armstrong, Cole, Cox, Foat, Wall  Frech> XF:biologon3-gina-bypass-authentication(8201) | CONFIRM:http://www.identix.com/support/sp_it.html  View

Page 1149 of 20943, showing 5 records out of 104715 total, starting on record 5741, ending on 5745

Actions