CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
6305 | CVE-2002-1923 | Candidate | The default configuration in MySQL 3.20.32 through 3.23.52, when running on Windows, does not have logging enabled, which could allow remote attackers to conduct activities without detection. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6304 | CVE-2002-1922 | Candidate | Cross-site scripting (XSS) vulnerability in global.php in Jelsoft vBulletin 2.0.0 through 2.2.8 allows remote attackers to inject arbitrary web script or HTML via the (1) $scriptpath or (2) $url variables. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6303 | CVE-2002-1921 | Candidate | The default configuration of MySQL 3.20.32 through 3.23.52, when running on Windows, does set the bind address to the loopback interface, which allows remote attackers to connect to the database. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6302 | CVE-2002-1920 | Candidate | Buffer overflow in FtpXQ 2.5 allows remote attackers to cause a denial of service (crash) via a MKD command with a long directory name. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6301 | CVE-2002-1919 | Candidate | SQL injection vulnerability in shopadmin.asp in VP-ASP 4.0 allows remote attackers to execute arbitrary SQL commands and bypass authentication via the (1) username or (2) password fields. | Assigned (20050629) | None (candidate not yet proposed) | View |
Page 19683 of 20943, showing 5 records out of 104715 total, starting on record 98411, ending on 98415