CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
6410 | CVE-2002-2028 | Candidate | The screensaver on Windows NT 4.0, 2000, XP, and 2002 does not verify if a domain account has already been locked when a valid password is provided, which makes it easier for users with physical access to conduct brute force password guessing. | Assigned (20050714) | None (candidate not yet proposed) | View | |
4363 | CVE-2001-1563 | Candidate | Unknown vulnerability in Tomcat 3.2.1 running on HP Secure OS for Linux 1.0 allows attackers to access servlet resources. NOTE: due to the vagueness of the vendor advisory, it is not clear whether this issue is already covered by other CVE identifiers. | Assigned (20050714) | None (candidate not yet proposed) | View | |
6411 | CVE-2002-2029 | Candidate | PHP, when installed on Windows with Apache and ScriptAlias for /php/ set to c:/php/, allows remote attackers to read arbitrary files and possibly execute arbitrary programs via an HTTP request for php.exe with a filename in the query string. | Assigned (20050714) | None (candidate not yet proposed) | View | |
4364 | CVE-2001-1564 | Candidate | setrlimit in HP-UX 10.01, 10.10, 10.24, 10.20, 11.00, 11.04 and 11.11 does not properly enforce core file size on processes after setuid or setgid privileges are dropeed, which could allow local users to cause a denial of service by exhausting available disk space. | Assigned (20050714) | None (candidate not yet proposed) | View | |
6412 | CVE-2002-2030 | Candidate | Stack-based buffer overflow in SQLData Enterprise Server 3.0 allows remote attacker to execute arbitrary code and cause a denial of service via a long HTTP request. | Assigned (20050714) | None (candidate not yet proposed) | View |
Page 19104 of 20943, showing 5 records out of 104715 total, starting on record 95516, ending on 95520