CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6615  CVE-2002-2233  Candidate  Directory traversal vulnerability in Enceladus Server Suite 3.9 allows remote attackers to list arbitrary directories and possibly cause a denial of service via "@" (at) characters in a CD (CWD) command, such as (1) "@/....", (2) "@@@/..c:", or (3) "@/..@/..".  Assigned (20071014)  None (candidate not yet proposed)    View
6614  CVE-2002-2232  Candidate  Buffer overflow in Enceladus Server Suite 3.9 allows remote attackers to execute arbitrary code via a long CD (CWD) command.  Assigned (20071014)  None (candidate not yet proposed)    View
6613  CVE-2002-2231  Candidate  Cross-site scripting (XSS) vulnerability in Ikonboard 3.1.1 allows remote attackers to inject arbitrary web script or HTML via (1) a javascript: URL in a photo URL or (2) an X-Forwarded-For: header.  Assigned (20071014)  None (candidate not yet proposed)    View
6612  CVE-2002-2230  Candidate  Cross-site scripting (XSS) vulnerability in Ikonboard 3.1.1 allows remote attackers to inject arbitrary web script or HTML via a private message with a javascript: URL in the IMG tag, in which the URL ends in a ".gif" or ".jpg" string, a variant of CVE-2002-0328.  Assigned (20071014)  None (candidate not yet proposed)    View
6611  CVE-2002-2229  Candidate  Directory traversal vulnerability in Sapio Design Ltd. WebReflex 1.53 allows remote attackers to read arbitrary files via a .. in an HTTP request.  Assigned (20071014)  None (candidate not yet proposed)    View

Page 19621 of 20943, showing 5 records out of 104715 total, starting on record 98101, ending on 98105

Actions