CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6250  CVE-2002-1868  Candidate  Dispair 0.1 and 0.2 allows remote attackers to execute arbitrary shell commands via certain form fields.  Assigned (20050629)  None (candidate not yet proposed)    View
6251  CVE-2002-1869  Candidate  Heysoft EventSave 5.1 and 5.2 and Heysoft EventSave+ 5.1 and 5.2 does not check whether the log file can be written to, which allows attackers to prevent events from being recorded by opening the log file using an application such as Microsoft"s Event Viewer.  Assigned (20050629)  None (candidate not yet proposed)    View
6252  CVE-2002-1870  Candidate  Simple Web Server (SWS) 0.0.4 through 0.1.0 does not properly handle when the recv function call fails, which may allow remote attackers to overwrite program data or perform actions on an uninitialized heap, leading to a denial of service and possibly code execution.  Assigned (20050629)  None (candidate not yet proposed)    View
6253  CVE-2002-1871  Candidate  pkgadd in Sun Solaris 2.5.1 through 8 installs files setuid/setgid root if the pkgmap file contains a "?" (question mark) in the (1) mode, (2) owner, or (3) group fields, which allows attackers to elevate privileges.  Assigned (20050629)  None (candidate not yet proposed)    View
6254  CVE-2002-1872  Candidate  Microsoft SQL Server 6.0 through 2000, with SQL Authentication enabled, uses weak password encryption (XOR), which allows remote attackers to sniff and decrypt the password.  Assigned (20050629)  None (candidate not yet proposed)    View

Page 19206 of 20943, showing 5 records out of 104715 total, starting on record 96026, ending on 96030

Actions