CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
6355 | CVE-2002-1973 | Candidate | Buffer overflow in CHttpServer::OnParseError in the ISAPI extension (Isapi.cpp) when built using Microsoft Foundation Class (MFC) static libraries in Visual C++ 5.0, and 6.0 before SP3, as used in multiple products including BadBlue, allows remote attackers to cause a denial of service (access violation and crash) and possibly execute arbitrary code via a long query string that causes a parsing error. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6354 | CVE-2002-1972 | Candidate | Unknown vulnerability in Parallel port powerSwitch (aka pp_powerSwitch) 0.1 does not properly enforce access controls, which allows local users to access arbitrary ports. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6353 | CVE-2002-1971 | Candidate | The ping utility in networking_utils.php in Sourcecraft Networking_Utils 1.0 allows remote attackers to read arbitrary files via shell metacharacters in the Domain name or IP address argument. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6352 | CVE-2002-1970 | Candidate | SnortCenter 0.9.5, when configured to push Snort rules, stores the rules in a temporary file with world-readable and world-writable permissions, which allows local users to obtain usernames and passwords for the alert database servers. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6351 | CVE-2002-1969 | Candidate | Magic Notebook 1.0b and 1.1b allows remote attackers to cause a denial of service (crash) via an invalid username during login. | Assigned (20050629) | None (candidate not yet proposed) | View |
Page 19673 of 20943, showing 5 records out of 104715 total, starting on record 98361, ending on 98365