CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6532  CVE-2002-2150  Candidate  Firewalls from multiple vendors empty state tables more slowly than they are filled, which allows remote attackers to flood state tables with packet flooding attacks such as (1) TCP SYN flood, (2) UDP flood, or (3) Crikey CRC Flood, which causes the firewall to refuse any new connections.  Assigned (20051116)  None (candidate not yet proposed)    View
8068  CVE-2003-1244  Candidate  SQL injection vulnerability in page_header.php in phpBB 2.0, 2.0.1 and 2.0.2 allows remote attackers to brute force user passwords and possibly gain unauthorized access to forums via the forum_id parameter to index.php.  Assigned (20051116)  None (candidate not yet proposed)    View
6533  CVE-2002-2151  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2002-1651. Reason: This candidate is a duplicate of CVE-2002-1651. Notes: All CVE users should reference CVE-2002-1651 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20051116)  None (candidate not yet proposed)    View
8069  CVE-2003-1245  Candidate  index2.php in Mambo 4.0.12 allows remote attackers to gain administrator access via a URL request where session_id is set to the MD5 hash of a session cookie.  Assigned (20051116)  None (candidate not yet proposed)    View
6534  CVE-2002-2152  Candidate  The Czech edition of Software602"s Web Server before 2002.0.02.0916 allows remote attackers to gain administrator privileges via direct HTTP requests to the /admin/ directory, which is not password protected.  Assigned (20051116)  None (candidate not yet proposed)    View

Page 18725 of 20943, showing 5 records out of 104715 total, starting on record 93621, ending on 93625

Actions