CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6410  CVE-2002-2028  Candidate  The screensaver on Windows NT 4.0, 2000, XP, and 2002 does not verify if a domain account has already been locked when a valid password is provided, which makes it easier for users with physical access to conduct brute force password guessing.  Assigned (20050714)  None (candidate not yet proposed)    View
4363  CVE-2001-1563  Candidate  Unknown vulnerability in Tomcat 3.2.1 running on HP Secure OS for Linux 1.0 allows attackers to access servlet resources. NOTE: due to the vagueness of the vendor advisory, it is not clear whether this issue is already covered by other CVE identifiers.  Assigned (20050714)  None (candidate not yet proposed)    View
6411  CVE-2002-2029  Candidate  PHP, when installed on Windows with Apache and ScriptAlias for /php/ set to c:/php/, allows remote attackers to read arbitrary files and possibly execute arbitrary programs via an HTTP request for php.exe with a filename in the query string.  Assigned (20050714)  None (candidate not yet proposed)    View
4364  CVE-2001-1564  Candidate  setrlimit in HP-UX 10.01, 10.10, 10.24, 10.20, 11.00, 11.04 and 11.11 does not properly enforce core file size on processes after setuid or setgid privileges are dropeed, which could allow local users to cause a denial of service by exhausting available disk space.  Assigned (20050714)  None (candidate not yet proposed)    View
6412  CVE-2002-2030  Candidate  Stack-based buffer overflow in SQLData Enterprise Server 3.0 allows remote attacker to execute arbitrary code and cause a denial of service via a long HTTP request.  Assigned (20050714)  None (candidate not yet proposed)    View

Page 19104 of 20943, showing 5 records out of 104715 total, starting on record 95516, ending on 95520

Actions