CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
6350 | CVE-2002-1968 | Candidate | Com21 DOXport 1100 series cable modem running firmware 2.1.1.106, and possibly other versions before 2.1.1.108.003, downloads a DOCSIS configuration file from a TFTP server running on the internal network, which allows local users to modify configuration of the modem via a malicious TFTP server. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6349 | CVE-2002-1967 | Candidate | Buffer overflow in XiRCON 1.0 Beta 4 allows remote attackers to cause a denial of service (disconnect) via a long (1) ctcp, (2) primsg, (3) msg, or (4) notice command. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6348 | CVE-2002-1966 | Candidate | Directory traversal vulnerability in magiccard.cgi in My Postcards Platinum 5.0 and 6.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the page parameter. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6347 | CVE-2002-1965 | Candidate | Cross-site scripting (XSS) vulnerability in Errors.gsl in Imatix Xitami 2.5b4 and 2.5b5 allows remote attackers to inject arbitrary web script or HTML via the (1) Javascript events, as demonstrated via an onerror event in an IMG SRC tag or (2) User-Agent field in an HTTP GET request. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6346 | CVE-2002-1964 | Candidate | Unknown vulnerability in WesMo phpEventCalendar 1.1 allows remote attackers to execute arbitrary commands via unknown attack vectors. | Assigned (20050629) | None (candidate not yet proposed) | View |
Page 19674 of 20943, showing 5 records out of 104715 total, starting on record 98366, ending on 98370