CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6527  CVE-2002-2145  Candidate  Savant Web Server 3.1 and earlier allows remote attackers to bypass authentication for password protected user folders via a URL with a hex encoded space (%20) and a "." (%2e) at the end of the filename.  Assigned (20051116)  None (candidate not yet proposed)    View
8063  CVE-2003-1239  Candidate  Directory traversal vulnerability in sendphoto.php in WihPhoto 0.86 allows remote attackers to read arbitrary files via .. specifiers in the album parameter, and the target filename in the pic parameter.  Assigned (20051116)  None (candidate not yet proposed)    View
6528  CVE-2002-2146  Candidate  cgitest.exe in Savant Web Server 3.1 and earlier allows remote attackers to cause a denial of service (crash) via a long HTTP request.  Assigned (20051116)  None (candidate not yet proposed)    View
8064  CVE-2003-1240  Candidate  PHP remote file inclusion vulnerability in CuteNews 0.88 allows remote attackers to execute arbitrary PHP code via a URL in the cutepath parameter in (1) shownews.php, (2) search.php, or (3) comments.php.  Assigned (20051116)  None (candidate not yet proposed)    View
6529  CVE-2002-2147  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2002-1828. Reason: This candidate is a duplicate of CVE-2002-1828. Notes: All CVE users should reference CVE-2002-1828 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20051116)  None (candidate not yet proposed)    View

Page 18723 of 20943, showing 5 records out of 104715 total, starting on record 93611, ending on 93615

Actions