CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6670  CVE-2002-2288  Candidate  Mambo Site Server 4.0.11 allows remote attackers to obtain the physical path of the server via an HTTP request to index.php with a parameter that does not exist, which causes the path to be leaked in an error message.  Assigned (20071017)  None (candidate not yet proposed)    View
6669  CVE-2002-2287  Candidate  PHP remote file inclusion vulnerability in quick_reply.php for phpBB Advanced Quick Reply Hack 1.0.0 and 1.1.0 allows remote attackers to execute arbitrary PHP code via the phpbb_root_path parameter.  Assigned (20071017)  None (candidate not yet proposed)    View
6668  CVE-2002-2286  Candidate  The parse-get function in utils.c for apt-www-proxy 0.1 allows remote attackers to cause a denial of service (crash) via an empty HTTP request, which causes a null dereference.  Assigned (20071017)  None (candidate not yet proposed)    View
6667  CVE-2002-2285  Candidate  eTrust InoculateIT 6.0 with the "Incremental Scan" option enabled may certify that a file is free of viruses before the file has been completely downloaded, which allows remote attackers to bypass virus detection.  Assigned (20071017)  None (candidate not yet proposed)    View
6666  CVE-2002-2284  Candidate  Netscape Communicator 4.0 through 4.79 allows remote attackers to bypass JVM security and execute arbitrary Java code via an applet that loads user-supplied Java classes.  Assigned (20071017)  None (candidate not yet proposed)    View

Page 19610 of 20943, showing 5 records out of 104715 total, starting on record 98046, ending on 98050

Actions