CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
6395 | CVE-2002-2013 | Candidate | Mozilla 0.9.6 and earlier and Netscape 6.2 and earlier allows remote attackers to steal cookies from another domain via a link with a hex-encoded null character (%00) followed by the target domain. | Assigned (20050714) | None (candidate not yet proposed) | View | |
6394 | CVE-2002-2012 | Candidate | Unknown vulnerability in Apache 1.3.19 running on HP Secure OS for Linux 1.0 allows remote attackers to cause "unexpected results" via an HTTP request. | Assigned (20050714) | None (candidate not yet proposed) | View | |
6393 | CVE-2002-2011 | Candidate | Cross-site scripting (XSS) vulnerability in the fom CGI program (fom.cgi) in Faq-O-Matic 2.711 and 2.712 allows remote attackers to inject arbitrary web script or HTML via the file parameter. | Assigned (20050714) | None (candidate not yet proposed) | View | |
6392 | CVE-2002-2010 | Candidate | Cross-site scripting (XSS) vulnerability in htsearch.cgi in htdig (ht://Dig) 3.1.5, 3.1.6, and 3.2 allows remote attackers to inject arbitrary web script or HTML via the words parameter. | Assigned (20050714) | None (candidate not yet proposed) | View | |
6391 | CVE-2002-2009 | Candidate | Apache Tomcat 4.0.1 allows remote attackers to obtain the web root path via HTTP requests for JSP files preceded by (1) +/, (2) >/, (3) </, and (4) %20/, which leaks the pathname in an error message. | Assigned (20050714) | None (candidate not yet proposed) | View |
Page 19665 of 20943, showing 5 records out of 104715 total, starting on record 98321, ending on 98325