CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6305  CVE-2002-1923  Candidate  The default configuration in MySQL 3.20.32 through 3.23.52, when running on Windows, does not have logging enabled, which could allow remote attackers to conduct activities without detection.  Assigned (20050629)  None (candidate not yet proposed)    View
6304  CVE-2002-1922  Candidate  Cross-site scripting (XSS) vulnerability in global.php in Jelsoft vBulletin 2.0.0 through 2.2.8 allows remote attackers to inject arbitrary web script or HTML via the (1) $scriptpath or (2) $url variables.  Assigned (20050629)  None (candidate not yet proposed)    View
6303  CVE-2002-1921  Candidate  The default configuration of MySQL 3.20.32 through 3.23.52, when running on Windows, does set the bind address to the loopback interface, which allows remote attackers to connect to the database.  Assigned (20050629)  None (candidate not yet proposed)    View
6302  CVE-2002-1920  Candidate  Buffer overflow in FtpXQ 2.5 allows remote attackers to cause a denial of service (crash) via a MKD command with a long directory name.  Assigned (20050629)  None (candidate not yet proposed)    View
6301  CVE-2002-1919  Candidate  SQL injection vulnerability in shopadmin.asp in VP-ASP 4.0 allows remote attackers to execute arbitrary SQL commands and bypass authentication via the (1) username or (2) password fields.  Assigned (20050629)  None (candidate not yet proposed)    View

Page 19683 of 20943, showing 5 records out of 104715 total, starting on record 98411, ending on 98415

Actions