CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6267  CVE-2002-1885  Candidate  PHP remote file inclusion vulnerability in showhits.php3 for PowerPhlogger (PPhlogger) 2.0.9 through 2.2.2 allows remote attackers to execute arbitrary PHP code via the rel_path parameter.  Assigned (20050629)  None (candidate not yet proposed)    View
6268  CVE-2002-1886  Candidate  TightAuction 3.0 stores config.inc under the web document root with insufficient access control, which allows remote attackers to obtain the database username and password.  Assigned (20050629)  None (candidate not yet proposed)    View
6269  CVE-2002-1887  Candidate  PHP remote file inclusion vulnerability in customize.php for phpMyNewsletter 0.6.10 allows remote attackers to execute arbitrary PHP code via the l parameter.  Assigned (20050629)  None (candidate not yet proposed)    View
6270  CVE-2002-1888  Candidate  CommonName Toolbar 3.5.2.0 sends unqualified domain name requests to the CommonName organization and possibly other web servers for name resolution, which allows those organizations to obtain internal server names.  Assigned (20050629)  None (candidate not yet proposed)    View
6271  CVE-2002-1889  Candidate  Off-by-one buffer overflow in the context_action function in context.c of Logsurfer 1.41 through 1.5a allows remote attackers to cause a denial of service (crash) via a malformed log entry.  Assigned (20050629)  None (candidate not yet proposed)    View

Page 1730 of 20943, showing 5 records out of 104715 total, starting on record 8646, ending on 8650

Actions