CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6731  CVE-2002-2349  Candidate  phpinfo.php in phpBBmod 1.3.3 executes the phpinfo function, which allows remote attackers to obtain sensitive environment information.  Assigned (20071029)  None (candidate not yet proposed)    View
6732  CVE-2002-2350  Candidate  Cross-site scripting (XSS) vulnerability in z_user_show.php in dbtreelistproperty_method.php in Zorum 2.4 allows remote attackers to inject arbitrary web script or HTML via the class parameter.  Assigned (20071029)  None (candidate not yet proposed)    View
6733  CVE-2002-2351  Candidate  Eudora 5.1 allows remote attackers to bypass security warnings and possibly execute arbitrary code via attachments with names containing a trailing "." (dot).  Assigned (20071029)  None (candidate not yet proposed)    View
6734  CVE-2002-2352  Candidate  The NBActiveX.ocx ActiveX control in NeoBook 4 allows remote attackers to install and execute arbitrary programs.  Assigned (20071029)  None (candidate not yet proposed)    View
6735  CVE-2002-2353  Candidate  tftpd32 2.50 and 2.50.2 allows remote attackers to read or write arbitrary files via a full pathname in GET and PUT requests.  Assigned (20071029)  None (candidate not yet proposed)    View

Page 1347 of 20943, showing 5 records out of 104715 total, starting on record 6731, ending on 6735

Actions