CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
4681 | CVE-2002-0289 | Candidate | Buffer overflow in Phusion web server 1.0 allows remote attackers to cause a denial of service and execute arbitrary code via a long HTTP request. | Proposed (20020502) | MODIFY(1) Frech | NOOP(5) Armstrong, Cole, Cox, Foat, Wall | Frech> XF:phusion-get-bo(8215) | XF:phusion-long-url-dos(8213) | View |
5248 | CVE-2002-0858 | Candidate | catsnmp in Oracle 9i and 8i is installed with a dbsnmp user with a default dbsnmp password, which allows attackers to perform restricted database operations and possibly gain other privileges. | Modified (20071101) | MODIFY(1) Frech | NOOP(5) Armstrong, Cole, Cox, Foat, Wall | Frech> XF:oracle-catsnmp-default-account(9932) | View |
5065 | CVE-2002-0675 | Candidate | Pingtel xpressa SIP-based voice-over-IP phone 1.2.5 through 1.2.7.4 does not require administrative privileges to perform a firmware upgrade, which allows unauthorized users to upgrade the phone. | Modified (20050610) | MODIFY(1) Frech | NOOP(5) Armstrong, Cole, Cox, Foat, Wall | Frech> XF:pingtel-xpressa-firmware-upgrade(9570) | View |
4685 | CVE-2002-0293 | Candidate | FTP service in Alcatel OmniPCX 4400 allows the "halt" user to gain root privileges by modifying root"s .profile file. | Modified (20050527) | MODIFY(1) Frech | NOOP(5) Christey, Cole, Cox, Foat, Wall | Frech> XF:omnipcx-ftp-root-access(8225) | Christey> Acknowledged by Alcatel via email October 4, 2002 | View |
4686 | CVE-2002-0294 | Candidate | Alcatel 4400 installs the /chetc/shutdown command with setgid privileges, which allows many different local users to shut down the system. | Proposed (20020502) | MODIFY(1) Frech | NOOP(5) Christey, Cole, Cox, Foat, Wall | Frech> XF:omnipcx-shutdown-permissions(8226) | REASON: LIKELY | Christey> Acknowledged by Alcatel via email October 4, 2002 | View |
Page 1151 of 20943, showing 5 records out of 104715 total, starting on record 5751, ending on 5755