CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
6013 | CVE-2002-1629 | Candidate | Multi-Tech ProxyServer products MTPSR1-100, MTPSR1-120, MTPSR1-202ST, MTPSR2-201, and MTPSR3-200 ship with a null password, which allows remote attackers to gain administrative privileges via Telnet or HTTP. | Assigned (20050326) | None (candidate not yet proposed) | View | |
6014 | CVE-2002-1630 | Candidate | The sendmail.jsp sample page in Oracle 9i Application Server (9iAS) allows remote attackers to send arbitrary emails. | Assigned (20050326) | None (candidate not yet proposed) | View | |
6015 | CVE-2002-1631 | Candidate | SQL injection vulnerability in the query.xsql sample page in Oracle 9i Application Server (9iAS) allows remote attackers to execute arbitrary code via the sql parameter. | Assigned (20050326) | None (candidate not yet proposed) | View | |
6016 | CVE-2002-1632 | Candidate | Oracle 9i Application Server (9iAS) installs multiple sample pages that allow remote attackers to obtain environment variables and other sensitive information via (1) info.jsp, (2) printenv, (3) echo, or (4) echo2. | Assigned (20050326) | None (candidate not yet proposed) | View | |
6017 | CVE-2002-1633 | Candidate | Multiple buffer overflows in QNX 4.25 may allow local users to execute arbitrary code via long command line arguments to (1) sample, (2) ex, (3) du, (4) find, (5) lex, (6) mkdir, (7) rm, (8) serserv, (9) tcpserv, (10) termdef, (11) time, (12) unzip, (13) use, (14) wcc, (15) wcc386, (16) wd, (17) wdisasm, (18) which, (19) wlib, (20) wlink, (21) wpp, (22) wpp386, (23) wprof, (24) write, or (25) wstrip. | Assigned (20050326) | None (candidate not yet proposed) | View |
Page 1338 of 20943, showing 5 records out of 104715 total, starting on record 6686, ending on 6690