CVE List

Id CVE No. Status Description Phase Votes Comments Actions
5975  CVE-2002-1591  Candidate  AOL Instant Messenger (AIM) 4.7.2480 adds free.aol.com to the Trusted Sites Zone in Internet Explorer without user approval, which could allow code from free.aol.com to bypass intended access restrictions.  Assigned (20050313)  None (candidate not yet proposed)    View
5976  CVE-2002-1592  Candidate  The ap_log_rerror function in Apache 2.0 through 2.035, when a CGI application encounters an error, sends error messages to the client that include the full path for the server, which allows remote attackers to obtain sensitive information.  Assigned (20050313)  None (candidate not yet proposed)    View
5977  CVE-2002-1593  Candidate  mod_dav in Apache before 2.0.42 does not properly handle versioning hooks, which may allow remote attackers to kill a child process via a null dereference and cause a denial of service (CPU consumption) in a preforked multi-processing module.  Assigned (20050313)  None (candidate not yet proposed)    View
5978  CVE-2002-1594  Candidate  Buffer overflow in (1) grpck and (2) pwck, if installed setuid on a system as recommended in some AIX documentation, may allow local users to gain privileges via a long command line argument.  Assigned (20050313)  None (candidate not yet proposed)    View
5979  CVE-2002-1595  Candidate  Cisco SN 5420 Storage Router 1.1(5) and earlier allows attackers to read configuration files without authorization.  Assigned (20050313)  None (candidate not yet proposed)    View

Page 19645 of 20943, showing 5 records out of 104715 total, starting on record 98221, ending on 98225

Actions