CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6395  CVE-2002-2013  Candidate  Mozilla 0.9.6 and earlier and Netscape 6.2 and earlier allows remote attackers to steal cookies from another domain via a link with a hex-encoded null character (%00) followed by the target domain.  Assigned (20050714)  None (candidate not yet proposed)    View
6394  CVE-2002-2012  Candidate  Unknown vulnerability in Apache 1.3.19 running on HP Secure OS for Linux 1.0 allows remote attackers to cause "unexpected results" via an HTTP request.  Assigned (20050714)  None (candidate not yet proposed)    View
6393  CVE-2002-2011  Candidate  Cross-site scripting (XSS) vulnerability in the fom CGI program (fom.cgi) in Faq-O-Matic 2.711 and 2.712 allows remote attackers to inject arbitrary web script or HTML via the file parameter.  Assigned (20050714)  None (candidate not yet proposed)    View
6392  CVE-2002-2010  Candidate  Cross-site scripting (XSS) vulnerability in htsearch.cgi in htdig (ht://Dig) 3.1.5, 3.1.6, and 3.2 allows remote attackers to inject arbitrary web script or HTML via the words parameter.  Assigned (20050714)  None (candidate not yet proposed)    View
6391  CVE-2002-2009  Candidate  Apache Tomcat 4.0.1 allows remote attackers to obtain the web root path via HTTP requests for JSP files preceded by (1) +/, (2) >/, (3) </, and (4) %20/, which leaks the pathname in an error message.  Assigned (20050714)  None (candidate not yet proposed)    View

Page 19665 of 20943, showing 5 records out of 104715 total, starting on record 98321, ending on 98325

Actions