CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
6615 | CVE-2002-2233 | Candidate | Directory traversal vulnerability in Enceladus Server Suite 3.9 allows remote attackers to list arbitrary directories and possibly cause a denial of service via "@" (at) characters in a CD (CWD) command, such as (1) "@/....", (2) "@@@/..c:", or (3) "@/..@/..". | Assigned (20071014) | None (candidate not yet proposed) | View | |
6614 | CVE-2002-2232 | Candidate | Buffer overflow in Enceladus Server Suite 3.9 allows remote attackers to execute arbitrary code via a long CD (CWD) command. | Assigned (20071014) | None (candidate not yet proposed) | View | |
6613 | CVE-2002-2231 | Candidate | Cross-site scripting (XSS) vulnerability in Ikonboard 3.1.1 allows remote attackers to inject arbitrary web script or HTML via (1) a javascript: URL in a photo URL or (2) an X-Forwarded-For: header. | Assigned (20071014) | None (candidate not yet proposed) | View | |
6612 | CVE-2002-2230 | Candidate | Cross-site scripting (XSS) vulnerability in Ikonboard 3.1.1 allows remote attackers to inject arbitrary web script or HTML via a private message with a javascript: URL in the IMG tag, in which the URL ends in a ".gif" or ".jpg" string, a variant of CVE-2002-0328. | Assigned (20071014) | None (candidate not yet proposed) | View | |
6611 | CVE-2002-2229 | Candidate | Directory traversal vulnerability in Sapio Design Ltd. WebReflex 1.53 allows remote attackers to read arbitrary files via a .. in an HTTP request. | Assigned (20071014) | None (candidate not yet proposed) | View |
Page 19621 of 20943, showing 5 records out of 104715 total, starting on record 98101, ending on 98105