CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6013  CVE-2002-1629  Candidate  Multi-Tech ProxyServer products MTPSR1-100, MTPSR1-120, MTPSR1-202ST, MTPSR2-201, and MTPSR3-200 ship with a null password, which allows remote attackers to gain administrative privileges via Telnet or HTTP.  Assigned (20050326)  None (candidate not yet proposed)    View
6014  CVE-2002-1630  Candidate  The sendmail.jsp sample page in Oracle 9i Application Server (9iAS) allows remote attackers to send arbitrary emails.  Assigned (20050326)  None (candidate not yet proposed)    View
6015  CVE-2002-1631  Candidate  SQL injection vulnerability in the query.xsql sample page in Oracle 9i Application Server (9iAS) allows remote attackers to execute arbitrary code via the sql parameter.  Assigned (20050326)  None (candidate not yet proposed)    View
6016  CVE-2002-1632  Candidate  Oracle 9i Application Server (9iAS) installs multiple sample pages that allow remote attackers to obtain environment variables and other sensitive information via (1) info.jsp, (2) printenv, (3) echo, or (4) echo2.  Assigned (20050326)  None (candidate not yet proposed)    View
6017  CVE-2002-1633  Candidate  Multiple buffer overflows in QNX 4.25 may allow local users to execute arbitrary code via long command line arguments to (1) sample, (2) ex, (3) du, (4) find, (5) lex, (6) mkdir, (7) rm, (8) serserv, (9) tcpserv, (10) termdef, (11) time, (12) unzip, (13) use, (14) wcc, (15) wcc386, (16) wd, (17) wdisasm, (18) which, (19) wlib, (20) wlink, (21) wpp, (22) wpp386, (23) wprof, (24) write, or (25) wstrip.  Assigned (20050326)  None (candidate not yet proposed)    View

Page 1338 of 20943, showing 5 records out of 104715 total, starting on record 6686, ending on 6690

Actions