CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6230  CVE-2002-1848  Candidate  TightVNC before 1.2.4 running on Windows stores unencrypted passwords in the password text control of the WinVNC Properties dialog, which could allow local users to access passwords.  Assigned (20050629)  None (candidate not yet proposed)    View
6231  CVE-2002-1849  Candidate  ParaChat Server 4.0 does not log users off if the browser"s back button is used, which allows remote attackers to cause a denial of service by repeatedly logging into a chat room, hitting the back button, then logging into the same chat room as a different user, which fills the chat room with invalid users.  Assigned (20050629)  None (candidate not yet proposed)    View
6232  CVE-2002-1850  Candidate  mod_cgi in Apache 2.0.39 and 2.0.40 allows local users and possibly remote attackers to cause a denial of service (hang and memory consumption) by causing a CGI script to send a large amount of data to stderr, which results in a read/write deadlock between httpd and the CGI script.  Assigned (20050629)  None (candidate not yet proposed)    View
6233  CVE-2002-1851  Candidate  Buffer overflow in WS_FTP Pro 7.5 allows remote attackers to execute code on a client system via unknown attack vectors.  Assigned (20050629)  None (candidate not yet proposed)    View
6234  CVE-2002-1852  Candidate  Cross-site scripting (XSS) vulnerability in Monkey 0.5.0 allows remote attackers to inject arbitrary web script or HTML via (1) the URL or (2) a parameter to test2.pl.  Assigned (20050629)  None (candidate not yet proposed)    View

Page 19202 of 20943, showing 5 records out of 104715 total, starting on record 96006, ending on 96010

Actions