CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
6405 | CVE-2002-2023 | Candidate | The get_parameter_from_freqency_source function in beep2 1.0, 1.1 and 1.2, when installed setuid root, allows local users to read arbitrary files via unknown attack vectors. | Assigned (20050714) | None (candidate not yet proposed) | View | |
4358 | CVE-2001-1558 | Candidate | Unknown vulnerability in IP defragmenter (frag2) in Snort before 1.8.3 allows attackers to cause a denial of service (crash). | Assigned (20050714) | None (candidate not yet proposed) | View | |
6406 | CVE-2002-2024 | Candidate | Horde IMP 2.2.7 allows remote attackers to obtain the full web root pathname via an HTTP request for (1) poppassd.php3, (2) login.php3?reason=chpass2, (3) spelling.php3, and (4) ldap.search.php3?ldap_serv=nonsense which leaks the information in error messages. | Assigned (20050714) | None (candidate not yet proposed) | View | |
4359 | CVE-2001-1559 | Candidate | The uipc system calls (uipc_syscalls.c) in OpenBSD 2.9 and 3.0 provide user mode return instead of versus rval kernel mode values to the fdrelease function, which allows local users to cause a denial of service and trigger a null dereference. | Assigned (20050714) | None (candidate not yet proposed) | View | |
6407 | CVE-2002-2025 | Candidate | Lotus Domino server 5.0.9a and earlier allows remote attackers to cause a denial of service by exhausting the number of working threads via a large number of HTTP requests for (1) an MS-DOS device name and (2) an MS-DOS device name with a large number of characters appended to the device name. | Assigned (20050714) | None (candidate not yet proposed) | View |
Page 19102 of 20943, showing 5 records out of 104715 total, starting on record 95506, ending on 95510