CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
4734 | CVE-2002-0342 | Candidate | Kmail 1.2 on KDE 2.1.1 allows remote attackers to cause a denial of service (crash) via an email message whose body is approximately 55 K long. | Proposed (20020502) | ACCEPT(1) Frech | NOOP(4) Cole, Cox, Foat, Wall | View | |
4735 | CVE-2002-0343 | Candidate | Hotline Client 1.8.5 stores sensitive user information, including passwords, in plaintext in the bookmarks file, which could allow local users with access to the bookmarks file to gain privileges by extracting the passwords. | Proposed (20020502) | ACCEPT(1) Frech | NOOP(4) Cole, Cox, Foat, Wall | View | |
4736 | CVE-2002-0344 | Candidate | Symantec LiveUpdate 1.5 and earlier in Norton Antivirus stores usernames and passwords for a local LiveUpdate server in cleartext in the registry, which may allow remote attackers to impersonate the LiveUpdate server. | Proposed (20020502) | ACCEPT(4) Baker, Cole, Frech, Prosser | NOOP(3) Cox, Foat, Wall | Prosser> http://securityresponse.symantec.com/avcenter/security/Content/2002.02.28a.html | View |
4737 | CVE-2002-0345 | Candidate | Symantec Ghost 7.0 stores usernames and passwords in plaintext in the NGServerparams registry key, which could allow an attacker to gain privileges. | Proposed (20020502) | ACCEPT(2) Frech, Prosser | NOOP(4) Cole, Cox, Foat, Wall | Prosser> This was verified and responded to via BugTraq and fixed via | LiveUpdate http://online.securityfocus.com/archive/1/259559 | View |
4738 | CVE-2002-0346 | Candidate | Cross-site scripting vulnerability in Cobalt RAQ 4 allows remote attackers to execute arbitrary script as other Cobalt users via Javascript in a URL to (1) service.cgi or (2) alert.cgi. | Proposed (20020502) | ACCEPT(1) Frech | NOOP(4) Cole, Cox, Foat, Wall | View |
Page 141 of 20943, showing 5 records out of 104715 total, starting on record 701, ending on 705