CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6655  CVE-2002-2273  Candidate  Cross-site scripting (XSS) vulnerability in Webster HTTP Server allows remote attackers to inject arbitrary web script or HTML via the URL.  Assigned (20071017)  None (candidate not yet proposed)    View
6654  CVE-2002-2272  Candidate  Tomcat 4.0 through 4.1.12, using mod_jk 1.2.1 module on Apache 1.3 through 1.3.27, allows remote attackers to cause a denial of service (desynchronized communications) via an HTTP GET request with a Transfer-Encoding chunked field with invalid values.  Assigned (20071017)  None (candidate not yet proposed)    View
6653  CVE-2002-2271  Candidate  Buffer overflow in BigFun 1.51b IRC client, when the Direct Client Connection (DCC) option is used, allows remote attackers to cause a denial of service (crash) via a long string.  Assigned (20071017)  None (candidate not yet proposed)    View
6652  CVE-2002-2270  Candidate  Unspecified vulnerability in the ied command in HP-UX 10.10, 10.20, and 11.0 allows local users to view "normally invisible data" via unknown attack vectors.  Assigned (20071017)  None (candidate not yet proposed)    View
6651  CVE-2002-2269  Candidate  Directory traversal vulnerability in Webster HTTP Server allows remote attackers to read arbitrary files via a .. (dot dot) in the URL.  Assigned (20071017)  None (candidate not yet proposed)    View

Page 19613 of 20943, showing 5 records out of 104715 total, starting on record 98061, ending on 98065

Actions