CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6485  CVE-2002-2103  Candidate  Apache before 1.3.24, when writing to the log file, records a spoofed hostname from the reverse lookup of an IP address, even when a double-reverse lookup fails, which allows remote attackers to hide the original source of activities.  Assigned (20050805)  None (candidate not yet proposed)    View
6484  CVE-2002-2102  Candidate  InfBlocks.java in JCraft JZlib before 0.0.7 allow remote attackers to cause a denial of service (NullPointerException) via an invalid block of deflated data.  Assigned (20050805)  None (candidate not yet proposed)    View
6483  CVE-2002-2101  Candidate  Microsoft Outlook 2002 allows remote attackers to execute arbitrary JavaScript code, even when scripting is disabled, via an "about:" or "javascript:" URI in the href attribute of an "a" tag.  Assigned (20050805)  None (candidate not yet proposed)    View
6482  CVE-2002-2100  Candidate  Microsoft Outlook 2002 allows remote attackers to embed bypass the file download restrictions for attachments via an HTML email message that uses an IFRAME to reference malicious content.  Assigned (20050805)  None (candidate not yet proposed)    View
6481  CVE-2002-2099  Candidate  Buffer overflow in the GNU DataDisplay Debugger (DDD) 3.3.1 allows local users to execute arbitrary code and possibly gain privileges via a long HOME environment variable. NOTE: since DDD is not installed setuid or setgid, perhaps this issue should not be included in CVE.  Assigned (20050805)  None (candidate not yet proposed)    View

Page 19647 of 20943, showing 5 records out of 104715 total, starting on record 98231, ending on 98235

Actions