CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3404  CVE-2001-0591  Entry  Directory traversal vulnerability in Oracle JSP 1.0.x through 1.1.1 and Oracle 8.1.7 iAS Release 1.0.2 can allow a remote attacker to read or execute arbitrary .jsp files via a ".." (dot dot) attack.        View
4684  CVE-2002-0292  Entry  Cross-site scripting vulnerability in Slash before 2.2.5, as used in Slashcode and elsewhere, allows remote attackers to steal cookies and authentication information from other users via Javascript in a URL, possibly in the formkey field.        View
5196  CVE-2002-0806  Entry  Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, allows authenticated users with editing privileges to delete other users by directly calling the editusers.cgi script with the "del" option.        View
8524  CVE-2004-0096  Entry  Unknown vulnerability in mod_python 2.7.9 allows remote attackers to cause a denial of service (httpd crash) via a certain query string, a variant of CAN-2003-0973.        View
77  CVE-1999-0077  Entry  Predictable TCP sequence numbers allow spoofing.        View

Page 183 of 20943, showing 5 records out of 104715 total, starting on record 911, ending on 915

Actions