CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
3404 | CVE-2001-0591 | Entry | Directory traversal vulnerability in Oracle JSP 1.0.x through 1.1.1 and Oracle 8.1.7 iAS Release 1.0.2 can allow a remote attacker to read or execute arbitrary .jsp files via a ".." (dot dot) attack. | View | |||
4684 | CVE-2002-0292 | Entry | Cross-site scripting vulnerability in Slash before 2.2.5, as used in Slashcode and elsewhere, allows remote attackers to steal cookies and authentication information from other users via Javascript in a URL, possibly in the formkey field. | View | |||
5196 | CVE-2002-0806 | Entry | Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, allows authenticated users with editing privileges to delete other users by directly calling the editusers.cgi script with the "del" option. | View | |||
8524 | CVE-2004-0096 | Entry | Unknown vulnerability in mod_python 2.7.9 allows remote attackers to cause a denial of service (httpd crash) via a certain query string, a variant of CAN-2003-0973. | View | |||
77 | CVE-1999-0077 | Entry | Predictable TCP sequence numbers allow spoofing. | View |
Page 183 of 20943, showing 5 records out of 104715 total, starting on record 911, ending on 915