CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8135  CVE-2003-1311  Candidate  siteminderagent/SmMakeCookie.ccc in Netegrity SiteMinder does not ensure that the TARGET parameter names a valid redirection resource, which allows remote attackers to construct a URL that might trick users into visiting an arbitrary web site referenced by this parameter.  Assigned (20061215)  None (candidate not yet proposed)    View
8134  CVE-2003-1310  Candidate  The DeviceIoControl function in the Norton Device Driver (NAVAP.sys) in Symantec Norton AntiVirus 2002 allows local users to gain privileges by overwriting memory locations via certain control codes (aka "Device Driver Attack").  Assigned (20061130)  None (candidate not yet proposed)    View
8133  CVE-2003-1309  Candidate  The DeviceIoControl function in the TrueVector Device Driver (VSDATANT) in ZoneAlarm before 3.7.211, Pro before 4.0.146.029, and Plus before 4.0.146.029 allows local users to gain privileges via certain signals (aka "Device Driver Attack").  Assigned (20061130)  None (candidate not yet proposed)    View
8132  CVE-2003-1308  Candidate  CRLF injection vulnerability in fvwm-menu-directory for fvwm 2.5.x before 2.5.10 and 2.4.x before 2.4.18 allows local users to execute arbitrary commands via carriage returns in a filename.  Assigned (20061117)  None (candidate not yet proposed)    View
8131  CVE-2003-1307  Candidate  ** DISPUTED ** The mod_php module for the Apache HTTP Server allows local users with write access to PHP scripts to send signals to the server"s process group and use the server"s file descriptors, as demonstrated by sending a STOP signal, then intercepting incoming connections on the server"s TCP port. NOTE: the PHP developer has disputed this vulnerability, saying "The opened file descriptors are opened by Apache. It is the job of Apache to protect them ... Not a bug in PHP."  Assigned (20061023)  None (candidate not yet proposed)    View

Page 19317 of 20943, showing 5 records out of 104715 total, starting on record 96581, ending on 96585

Actions