CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6620  CVE-2002-2238  Candidate  Directory traversal vulnerability in the Kunani ODBC FTP Server 1.0.10 allows remote attackers to read arbitrary files via a ".." (dot dot backslash) in a GET request.  Assigned (20071014)  None (candidate not yet proposed)    View
6619  CVE-2002-2237  Candidate  tftp32 TFTP server 2.21 and earlier allows remote attackers to cause a denial of service via a GET request with a DOS device name such as com1 or aux.  Assigned (20071014)  None (candidate not yet proposed)    View
6618  CVE-2002-2236  Candidate  Format string vulnerability in the awp_log function in apt-www-proxy 0.1 allows remote attackers to execute arbitrary code.  Assigned (20071014)  None (candidate not yet proposed)    View
6617  CVE-2002-2235  Candidate  member2.php in vBulletin 2.2.9 and earlier does not properly restrict the $perpage variable to be an integer, which causes an error message to be reflected back to the user without quoting, which facilitates cross-site scripting (XSS) and possibly other attacks.  Assigned (20071014)  None (candidate not yet proposed)    View
6616  CVE-2002-2234  Candidate  NetScreen ScreenOS before 4.0.1 allows remote attackers to bypass the Malicious-URL blocking feature by splitting the URL into fragmented IP requests.  Assigned (20071014)  None (candidate not yet proposed)    View

Page 19620 of 20943, showing 5 records out of 104715 total, starting on record 98096, ending on 98100

Actions