CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6350  CVE-2002-1968  Candidate  Com21 DOXport 1100 series cable modem running firmware 2.1.1.106, and possibly other versions before 2.1.1.108.003, downloads a DOCSIS configuration file from a TFTP server running on the internal network, which allows local users to modify configuration of the modem via a malicious TFTP server.  Assigned (20050629)  None (candidate not yet proposed)    View
6349  CVE-2002-1967  Candidate  Buffer overflow in XiRCON 1.0 Beta 4 allows remote attackers to cause a denial of service (disconnect) via a long (1) ctcp, (2) primsg, (3) msg, or (4) notice command.  Assigned (20050629)  None (candidate not yet proposed)    View
6348  CVE-2002-1966  Candidate  Directory traversal vulnerability in magiccard.cgi in My Postcards Platinum 5.0 and 6.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the page parameter.  Assigned (20050629)  None (candidate not yet proposed)    View
6347  CVE-2002-1965  Candidate  Cross-site scripting (XSS) vulnerability in Errors.gsl in Imatix Xitami 2.5b4 and 2.5b5 allows remote attackers to inject arbitrary web script or HTML via the (1) Javascript events, as demonstrated via an onerror event in an IMG SRC tag or (2) User-Agent field in an HTTP GET request.  Assigned (20050629)  None (candidate not yet proposed)    View
6346  CVE-2002-1964  Candidate  Unknown vulnerability in WesMo phpEventCalendar 1.1 allows remote attackers to execute arbitrary commands via unknown attack vectors.  Assigned (20050629)  None (candidate not yet proposed)    View

Page 19674 of 20943, showing 5 records out of 104715 total, starting on record 98366, ending on 98370

Actions