CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
4845 | CVE-2002-0453 | Candidate | The account lockout capability in Oblix NetPoint 5.2 and earlier only locks out users once for the specified lockout period, which makes it easier for remote attackers to conduct brute force password guessing by waiting until the lockout period ends, then guessing passwords without being locked out again. | Proposed (20020611) | ACCEPT(2) Frech, Green | NOOP(4) Cole, Cox, Foat, Wall | Green> A PATCH IS AVAILABLE, FINDING IT IS ANOTHER STORY | View |
4847 | CVE-2002-0455 | Candidate | IncrediMail stores attachments in a directory with a fixed name, which could make it easier for attackers to exploit vulnerabilities in other software that rely on installing and reading files from directories with known pathnames. | Proposed (20020611) | ACCEPT(2) Frech, Green | NOOP(4) Cole, Cox, Foat, Wall | Green> INCLUSION RATIONALE IS A REASONABLE APROACH | View |
4848 | CVE-2002-0456 | Candidate | Eudora 5.1 and earlier versions stores attachments in a directory with a fixed name, which could make it easier for attackers to exploit vulnerabilities in other software that rely on installing and reading files from directories with known pathnames. | Proposed (20020611) | ACCEPT(3) Cole, Frech, Green | NOOP(3) Cox, Foat, Wall | REVIEWING(1) Christey | Green> INCLUSION RATIONALE IS A REASONABLE APPROACH | Christey> Overlap CVE-2002-1210 ? | View |
4849 | CVE-2002-0457 | Candidate | Cross-site scripting vulnerability in signgbook.php for BG GuestBook 1.0 allows remote attackers to execute arbitrary Javascript via encoded tags such as <, >, and & in fields such as (1) name, (2) email, (3) AIM screen name, (4) website, (5) location, or (6) message. | Proposed (20020611) | ACCEPT(2) Cole, Frech | NOOP(4) Cox, Foat, Green, Wall | View | |
4851 | CVE-2002-0459 | Candidate | Cross-site scripting vulnerability in Board-TNK 1.3.1 and earlier allows remote attackers to execute arbitrary Javascript via the WEB parameter. | Proposed (20020611) | ACCEPT(4) Baker, Cole, Frech, Green | NOOP(3) Cox, Foat, Wall | View |
Page 115 of 20943, showing 5 records out of 104715 total, starting on record 571, ending on 575