CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6315  CVE-2002-1933  Candidate  The terminal services screensaver for Microsoft Windows 2000 does not automatically lock the terminal window if the window is minimized, which could allow local users to gain access to the terminal server window.  Assigned (20050629)  None (candidate not yet proposed)    View
6316  CVE-2002-1934  Candidate  Pingtel xpressa SIP-based voice-over-IP phone 1.2.5 through 2.0.1 leaks sensitive information during boot-up, which allows attackers to obtain the MD5 hash of the Admin password, MD5 hash of the physical password, and other registration information.  Assigned (20050629)  None (candidate not yet proposed)    View
6317  CVE-2002-1935  Candidate  Pingtel Xpressa 1.2.5 through 2.0.1 uses predictable (1) Call-ID, (2) CSeq, and (3) "To" and "From" SIP URL values in a Session Identification Protocol (SIP) request, which allows remote attackers to avoid registering with the SIP registrar.  Assigned (20050629)  None (candidate not yet proposed)    View
6318  CVE-2002-1936  Candidate  UTStarcom BAS 1000 3.1.10 creates several default or back door accounts and passwords, which allows remote attackers to gain access via (1) field account with a password of "*field", (2) guru account with a password of "*3noguru", (3) snmp account with a password of "snmp", or (4) dbase account with a password of "dbase".  Assigned (20050629)  None (candidate not yet proposed)    View
6319  CVE-2002-1937  Candidate  Symantec Firewall/VPN Appliance 100 through 200R hardcodes the administrator"s MAC address inside the firewall"s configuration, which allows remote attackers to spoof the administrator"s MAC address and perform an ARP poisoning man-in-the-middle attack to obtain the administrator"s password.  Assigned (20050629)  None (candidate not yet proposed)    View

Page 19219 of 20943, showing 5 records out of 104715 total, starting on record 96091, ending on 96095

Actions