CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
6320 | CVE-2002-1938 | Candidate | Virgil CGI Scanner 0.9 allows remote attackers to execute arbitrary commands via the (1) tar (TARGET) or (2) zielport (ZIELPORT) parameters. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6319 | CVE-2002-1937 | Candidate | Symantec Firewall/VPN Appliance 100 through 200R hardcodes the administrator"s MAC address inside the firewall"s configuration, which allows remote attackers to spoof the administrator"s MAC address and perform an ARP poisoning man-in-the-middle attack to obtain the administrator"s password. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6318 | CVE-2002-1936 | Candidate | UTStarcom BAS 1000 3.1.10 creates several default or back door accounts and passwords, which allows remote attackers to gain access via (1) field account with a password of "*field", (2) guru account with a password of "*3noguru", (3) snmp account with a password of "snmp", or (4) dbase account with a password of "dbase". | Assigned (20050629) | None (candidate not yet proposed) | View | |
6317 | CVE-2002-1935 | Candidate | Pingtel Xpressa 1.2.5 through 2.0.1 uses predictable (1) Call-ID, (2) CSeq, and (3) "To" and "From" SIP URL values in a Session Identification Protocol (SIP) request, which allows remote attackers to avoid registering with the SIP registrar. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6316 | CVE-2002-1934 | Candidate | Pingtel xpressa SIP-based voice-over-IP phone 1.2.5 through 2.0.1 leaks sensitive information during boot-up, which allows attackers to obtain the MD5 hash of the Admin password, MD5 hash of the physical password, and other registration information. | Assigned (20050629) | None (candidate not yet proposed) | View |
Page 19680 of 20943, showing 5 records out of 104715 total, starting on record 98396, ending on 98400