CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
6485 | CVE-2002-2103 | Candidate | Apache before 1.3.24, when writing to the log file, records a spoofed hostname from the reverse lookup of an IP address, even when a double-reverse lookup fails, which allows remote attackers to hide the original source of activities. | Assigned (20050805) | None (candidate not yet proposed) | View | |
6484 | CVE-2002-2102 | Candidate | InfBlocks.java in JCraft JZlib before 0.0.7 allow remote attackers to cause a denial of service (NullPointerException) via an invalid block of deflated data. | Assigned (20050805) | None (candidate not yet proposed) | View | |
6483 | CVE-2002-2101 | Candidate | Microsoft Outlook 2002 allows remote attackers to execute arbitrary JavaScript code, even when scripting is disabled, via an "about:" or "javascript:" URI in the href attribute of an "a" tag. | Assigned (20050805) | None (candidate not yet proposed) | View | |
6482 | CVE-2002-2100 | Candidate | Microsoft Outlook 2002 allows remote attackers to embed bypass the file download restrictions for attachments via an HTML email message that uses an IFRAME to reference malicious content. | Assigned (20050805) | None (candidate not yet proposed) | View | |
6481 | CVE-2002-2099 | Candidate | Buffer overflow in the GNU DataDisplay Debugger (DDD) 3.3.1 allows local users to execute arbitrary code and possibly gain privileges via a long HOME environment variable. NOTE: since DDD is not installed setuid or setgid, perhaps this issue should not be included in CVE. | Assigned (20050805) | None (candidate not yet proposed) | View |
Page 19647 of 20943, showing 5 records out of 104715 total, starting on record 98231, ending on 98235