CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6390  CVE-2002-2008  Candidate  Apache Tomcat 4.0.3 for Windows allows remote attackers to obtain the web root path via an HTTP request for a resource that does not exist, such as lpt9, which leaks the information in an error message.  Assigned (20050714)  None (candidate not yet proposed)    View
6389  CVE-2002-2007  Candidate  The default installations of Apache Tomcat 3.2.3 and 3.2.4 allows remote attackers to obtain sensitive system information such as directory listings and web root path, via erroneous HTTP requests for Java Server Pages (JSP) in the (1) test/jsp, (2) samples/jsp and (3) examples/jsp directories, or the (4) test/realPath.jsp servlet, which leaks pathnames in error messages.  Assigned (20050714)  None (candidate not yet proposed)    View
6388  CVE-2002-2006  Candidate  The default installation of Apache Tomcat 4.0 through 4.1 and 3.0 through 3.3.1 allows remote attackers to obtain the installation path and other sensitive system information via the (1) SnoopServlet or (2) TroubleShooter example servlets.  Assigned (20050714)  None (candidate not yet proposed)    View
6387  CVE-2002-2005  Candidate  Unknown vulnerability in Java web start 1.0.1_01, 1.0.1, 1.0 and 1.0.1.01 (HP-UX 11.x only) allows attackers to gain access to restricted resources via unknown attack vectors.  Assigned (20050714)  None (candidate not yet proposed)    View
6386  CVE-2002-2004  Candidate  portmapper in Compaq Tru64 4.0G and 5.0A allows remote attackers to cause a denial of service via a flood of packets.  Assigned (20050714)  None (candidate not yet proposed)    View

Page 19666 of 20943, showing 5 records out of 104715 total, starting on record 98326, ending on 98330

Actions