CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
6620 | CVE-2002-2238 | Candidate | Directory traversal vulnerability in the Kunani ODBC FTP Server 1.0.10 allows remote attackers to read arbitrary files via a ".." (dot dot backslash) in a GET request. | Assigned (20071014) | None (candidate not yet proposed) | View | |
6619 | CVE-2002-2237 | Candidate | tftp32 TFTP server 2.21 and earlier allows remote attackers to cause a denial of service via a GET request with a DOS device name such as com1 or aux. | Assigned (20071014) | None (candidate not yet proposed) | View | |
6618 | CVE-2002-2236 | Candidate | Format string vulnerability in the awp_log function in apt-www-proxy 0.1 allows remote attackers to execute arbitrary code. | Assigned (20071014) | None (candidate not yet proposed) | View | |
6617 | CVE-2002-2235 | Candidate | member2.php in vBulletin 2.2.9 and earlier does not properly restrict the $perpage variable to be an integer, which causes an error message to be reflected back to the user without quoting, which facilitates cross-site scripting (XSS) and possibly other attacks. | Assigned (20071014) | None (candidate not yet proposed) | View | |
6616 | CVE-2002-2234 | Candidate | NetScreen ScreenOS before 4.0.1 allows remote attackers to bypass the Malicious-URL blocking feature by splitting the URL into fragmented IP requests. | Assigned (20071014) | None (candidate not yet proposed) | View |
Page 19620 of 20943, showing 5 records out of 104715 total, starting on record 98096, ending on 98100