CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4734  CVE-2002-0342  Candidate  Kmail 1.2 on KDE 2.1.1 allows remote attackers to cause a denial of service (crash) via an email message whose body is approximately 55 K long.  Proposed (20020502)  ACCEPT(1) Frech | NOOP(4) Cole, Cox, Foat, Wall    View
4735  CVE-2002-0343  Candidate  Hotline Client 1.8.5 stores sensitive user information, including passwords, in plaintext in the bookmarks file, which could allow local users with access to the bookmarks file to gain privileges by extracting the passwords.  Proposed (20020502)  ACCEPT(1) Frech | NOOP(4) Cole, Cox, Foat, Wall    View
4736  CVE-2002-0344  Candidate  Symantec LiveUpdate 1.5 and earlier in Norton Antivirus stores usernames and passwords for a local LiveUpdate server in cleartext in the registry, which may allow remote attackers to impersonate the LiveUpdate server.  Proposed (20020502)  ACCEPT(4) Baker, Cole, Frech, Prosser | NOOP(3) Cox, Foat, Wall  Prosser> http://securityresponse.symantec.com/avcenter/security/Content/2002.02.28a.html  View
4737  CVE-2002-0345  Candidate  Symantec Ghost 7.0 stores usernames and passwords in plaintext in the NGServerparams registry key, which could allow an attacker to gain privileges.  Proposed (20020502)  ACCEPT(2) Frech, Prosser | NOOP(4) Cole, Cox, Foat, Wall  Prosser> This was verified and responded to via BugTraq and fixed via | LiveUpdate http://online.securityfocus.com/archive/1/259559  View
4738  CVE-2002-0346  Candidate  Cross-site scripting vulnerability in Cobalt RAQ 4 allows remote attackers to execute arbitrary script as other Cobalt users via Javascript in a URL to (1) service.cgi or (2) alert.cgi.  Proposed (20020502)  ACCEPT(1) Frech | NOOP(4) Cole, Cox, Foat, Wall    View

Page 141 of 20943, showing 5 records out of 104715 total, starting on record 701, ending on 705

Actions