CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
6472 | CVE-2002-2090 | Candidate | Caucho Technology Resin server 2.1.1 to 2.1.2 allows remote attackers to obtain server"s root path via requests for MS-DOS device names such as lpt9.xtp. | Assigned (20050805) | None (candidate not yet proposed) | View | |
6473 | CVE-2002-2091 | Candidate | Format string vulnerability in Deception Finger Daemon, decfingerd, 0.7 may allow remote attackers to execute arbitrary code via the username of a finger request. | Assigned (20050805) | None (candidate not yet proposed) | View | |
6474 | CVE-2002-2092 | Candidate | Race condition in exec in OpenBSD 4.0 and earlier, NetBSD 1.5.2 and earlier, and FreeBSD 4.4 and earlier allows local users to gain privileges by attaching a debugger to a process before the kernel has determined that the process is setuid or setgid. | Assigned (20050805) | None (candidate not yet proposed) | View | |
6475 | CVE-2002-2093 | Candidate | The Video Control Panel on SGI O2/IRIX 6.5, when the Default Input is set to "Output Video", allows attackers to access a console session by running videoout then videoin. | Assigned (20050805) | None (candidate not yet proposed) | View | |
6476 | CVE-2002-2094 | Candidate | Joe Testa hellbent 01 allows remote attackers to determine the full path of the web root directory via a GET request with a relative path that includes the root"s parent, which generates a 403 error message if the parent is incorrect, but a normal response if the parent is correct. | Assigned (20050805) | None (candidate not yet proposed) | View |
Page 19034 of 20943, showing 5 records out of 104715 total, starting on record 95166, ending on 95170