CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
3147 | CVE-2001-0326 | Entry | Oracle Java Virtual Machine (JVM ) for Oracle 8.1.7 and Oracle Application Server 9iAS Release 1.0.2.0.1 allows remote attackers to read arbitrary files via the .jsp and .sqljsp file extensions when the server is configured to use the <<ALL FILES>> FilePermission. | View | |||
3403 | CVE-2001-0590 | Entry | Apache Software Foundation Tomcat Servlet prior to 3.2.2 allows a remote attacker to read the source code to arbitrary "jsp" files via a malformed URL request which does not end with an HTTP protocol specification (i.e. HTTP/1.0). | View | |||
4171 | CVE-2001-1367 | Entry | The checkAccess function in PHPSlice 0.1.4, and all other versions between 0.1.1 and 0.1.6, does not properly verify the administrative access level, which could allow remote attackers to gain privileges. | View | |||
4427 | CVE-2002-0033 | Entry | Heap-based buffer overflow in cfsd_calloc function of Solaris cachefsd allows remote attackers to execute arbitrary code via a request with a long directory and cache name. | View | |||
5195 | CVE-2002-0805 | Entry | Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, (1) creates new directories with world-writable permissions, and (2) creates the params file with world-writable permissions, which allows local users to modify the files and execute code. | View |
Page 180 of 20943, showing 5 records out of 104715 total, starting on record 896, ending on 900