CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
6267 | CVE-2002-1885 | Candidate | PHP remote file inclusion vulnerability in showhits.php3 for PowerPhlogger (PPhlogger) 2.0.9 through 2.2.2 allows remote attackers to execute arbitrary PHP code via the rel_path parameter. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6268 | CVE-2002-1886 | Candidate | TightAuction 3.0 stores config.inc under the web document root with insufficient access control, which allows remote attackers to obtain the database username and password. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6269 | CVE-2002-1887 | Candidate | PHP remote file inclusion vulnerability in customize.php for phpMyNewsletter 0.6.10 allows remote attackers to execute arbitrary PHP code via the l parameter. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6270 | CVE-2002-1888 | Candidate | CommonName Toolbar 3.5.2.0 sends unqualified domain name requests to the CommonName organization and possibly other web servers for name resolution, which allows those organizations to obtain internal server names. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6271 | CVE-2002-1889 | Candidate | Off-by-one buffer overflow in the context_action function in context.c of Logsurfer 1.41 through 1.5a allows remote attackers to cause a denial of service (crash) via a malformed log entry. | Assigned (20050629) | None (candidate not yet proposed) | View |
Page 1730 of 20943, showing 5 records out of 104715 total, starting on record 8646, ending on 8650