CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2619  CVE-2000-1050  Entry  Allaire JRun 3.0 http servlet server allows remote attackers to directly access the WEB-INF directory via a URL request that contains an extra "/" in the beginning of the request (aka the "extra leading slash").        View
2875  CVE-2001-0054  Entry  Directory traversal vulnerability in FTP Serv-U before 2.5i allows remote attackers to escape the FTP root and read arbitrary files by appending a string such as "/..%20." to a CD command, a variant of a .. (dot dot) attack.        View
3131  CVE-2001-0310  Entry  sort in FreeBSD 4.1.1 and earlier, and possibly other operating systems, uses predictable temporary file names and does not properly handle when the temporary file already exists, which causes sort to crash and possibly impacts security-sensitive scripts.        View
3387  CVE-2001-0574  Entry  Directory traversal vulnerability in MP3Mystic prior to 1.04b3 allows a remote attacker to download arbitrary files via a ".." (dot dot) in the URL.        View
3643  CVE-2001-0837  Entry  DeltaThree Pc-To-Phone 3.0.3 places sensitive data in world-readable locations in the installation directory, which allows local users to read the information in (1) temp.html, (2) the log folder, and (3) the PhoneBook folder.        View

Page 140 of 20943, showing 5 records out of 104715 total, starting on record 696, ending on 700

Actions