CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
6354 | CVE-2002-1972 | Candidate | Unknown vulnerability in Parallel port powerSwitch (aka pp_powerSwitch) 0.1 does not properly enforce access controls, which allows local users to access arbitrary ports. | Assigned (20050629) | None (candidate not yet proposed) | View | |
13266 | CVE-2005-2060 | Candidate | Multiple HTTP Response Splitting vulnerabilities in (1) toggleshow.php, (2) togglecats.php, and (3) showprofile.php in Infopop UBB.Threads before 6.5.2 Beta allow remote attackers to spoof web content and poison web caches via CRLF ("%0d%0a") sequences in the Cat parameter. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6355 | CVE-2002-1973 | Candidate | Buffer overflow in CHttpServer::OnParseError in the ISAPI extension (Isapi.cpp) when built using Microsoft Foundation Class (MFC) static libraries in Visual C++ 5.0, and 6.0 before SP3, as used in multiple products including BadBlue, allows remote attackers to cause a denial of service (access violation and crash) and possibly execute arbitrary code via a long query string that causes a parsing error. | Assigned (20050629) | None (candidate not yet proposed) | View | |
13267 | CVE-2005-2061 | Candidate | Infopop UBB.Threads before 6.5.2 Beta allows remote attackers to include arbitrary files via the language parameter in a cookie followed by a null (%00) byte. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6356 | CVE-2002-1974 | Candidate | The FTP service in Zaurus PDAs SL-5000D and SL-5500 does not require authentication, which allows remote attackers to access the file system as root. | Assigned (20050629) | None (candidate not yet proposed) | View |
Page 19228 of 20943, showing 5 records out of 104715 total, starting on record 96136, ending on 96140