CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4681  CVE-2002-0289  Candidate  Buffer overflow in Phusion web server 1.0 allows remote attackers to cause a denial of service and execute arbitrary code via a long HTTP request.  Proposed (20020502)  MODIFY(1) Frech | NOOP(5) Armstrong, Cole, Cox, Foat, Wall  Frech> XF:phusion-get-bo(8215) | XF:phusion-long-url-dos(8213)  View
5248  CVE-2002-0858  Candidate  catsnmp in Oracle 9i and 8i is installed with a dbsnmp user with a default dbsnmp password, which allows attackers to perform restricted database operations and possibly gain other privileges.  Modified (20071101)  MODIFY(1) Frech | NOOP(5) Armstrong, Cole, Cox, Foat, Wall  Frech> XF:oracle-catsnmp-default-account(9932)  View
5065  CVE-2002-0675  Candidate  Pingtel xpressa SIP-based voice-over-IP phone 1.2.5 through 1.2.7.4 does not require administrative privileges to perform a firmware upgrade, which allows unauthorized users to upgrade the phone.  Modified (20050610)  MODIFY(1) Frech | NOOP(5) Armstrong, Cole, Cox, Foat, Wall  Frech> XF:pingtel-xpressa-firmware-upgrade(9570)  View
4685  CVE-2002-0293  Candidate  FTP service in Alcatel OmniPCX 4400 allows the "halt" user to gain root privileges by modifying root"s .profile file.  Modified (20050527)  MODIFY(1) Frech | NOOP(5) Christey, Cole, Cox, Foat, Wall  Frech> XF:omnipcx-ftp-root-access(8225) | Christey> Acknowledged by Alcatel via email October 4, 2002  View
4686  CVE-2002-0294  Candidate  Alcatel 4400 installs the /chetc/shutdown command with setgid privileges, which allows many different local users to shut down the system.  Proposed (20020502)  MODIFY(1) Frech | NOOP(5) Christey, Cole, Cox, Foat, Wall  Frech> XF:omnipcx-shutdown-permissions(8226) | REASON: LIKELY | Christey> Acknowledged by Alcatel via email October 4, 2002  View

Page 1151 of 20943, showing 5 records out of 104715 total, starting on record 5751, ending on 5755

Actions