CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6354  CVE-2002-1972  Candidate  Unknown vulnerability in Parallel port powerSwitch (aka pp_powerSwitch) 0.1 does not properly enforce access controls, which allows local users to access arbitrary ports.  Assigned (20050629)  None (candidate not yet proposed)    View
13266  CVE-2005-2060  Candidate  Multiple HTTP Response Splitting vulnerabilities in (1) toggleshow.php, (2) togglecats.php, and (3) showprofile.php in Infopop UBB.Threads before 6.5.2 Beta allow remote attackers to spoof web content and poison web caches via CRLF ("%0d%0a") sequences in the Cat parameter.  Assigned (20050629)  None (candidate not yet proposed)    View
6355  CVE-2002-1973  Candidate  Buffer overflow in CHttpServer::OnParseError in the ISAPI extension (Isapi.cpp) when built using Microsoft Foundation Class (MFC) static libraries in Visual C++ 5.0, and 6.0 before SP3, as used in multiple products including BadBlue, allows remote attackers to cause a denial of service (access violation and crash) and possibly execute arbitrary code via a long query string that causes a parsing error.  Assigned (20050629)  None (candidate not yet proposed)    View
13267  CVE-2005-2061  Candidate  Infopop UBB.Threads before 6.5.2 Beta allows remote attackers to include arbitrary files via the language parameter in a cookie followed by a null (%00) byte.  Assigned (20050629)  None (candidate not yet proposed)    View
6356  CVE-2002-1974  Candidate  The FTP service in Zaurus PDAs SL-5000D and SL-5500 does not require authentication, which allows remote attackers to access the file system as root.  Assigned (20050629)  None (candidate not yet proposed)    View

Page 19228 of 20943, showing 5 records out of 104715 total, starting on record 96136, ending on 96140

Actions