CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6405  CVE-2002-2023  Candidate  The get_parameter_from_freqency_source function in beep2 1.0, 1.1 and 1.2, when installed setuid root, allows local users to read arbitrary files via unknown attack vectors.  Assigned (20050714)  None (candidate not yet proposed)    View
6404  CVE-2002-2022  Candidate  Format string vulnerability in Kaffe OpenVM 1.0.6 and earlier allows local users to execute arbitrary code, when a java.lang.NoClassDefFoundError is thrown, via format specifiers in the forName attribute.  Assigned (20050714)  None (candidate not yet proposed)    View
6403  CVE-2002-2021  Candidate  Cross-site scripting (XSS) vulnerability in WoltLab Burning Board (wbboard) 1.1.1 allows remote attackers to inject arbitrary web script or HTML via the message parameter.  Assigned (20050714)  None (candidate not yet proposed)    View
6402  CVE-2002-2020  Candidate  Netgear RP114 Cable/DSL Web Safe Router Firmware 3.26 uses a default administrator password and accepts admin logins on the external interface, which allows remote attackers to gain privileges if the password is not changed.  Assigned (20050714)  None (candidate not yet proposed)    View
6401  CVE-2002-2019  Candidate  PHP remote file inclusion vulnerability in include_once.php in osCommerce (a.k.a. Exchange Project) 2.1 allows remote attackers to execute arbitrary PHP code via the include_file parameter.  Assigned (20050714)  None (candidate not yet proposed)    View

Page 19663 of 20943, showing 5 records out of 104715 total, starting on record 98311, ending on 98315

Actions