CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
6255 | CVE-2002-1873 | Candidate | Microsoft Exchange 2000, when used with Microsoft Remote Procedure Call (MSRPC), allows remote attackers to cause a denial of service (crash or memory consumption) via malformed MSRPC calls. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6254 | CVE-2002-1872 | Candidate | Microsoft SQL Server 6.0 through 2000, with SQL Authentication enabled, uses weak password encryption (XOR), which allows remote attackers to sniff and decrypt the password. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6253 | CVE-2002-1871 | Candidate | pkgadd in Sun Solaris 2.5.1 through 8 installs files setuid/setgid root if the pkgmap file contains a "?" (question mark) in the (1) mode, (2) owner, or (3) group fields, which allows attackers to elevate privileges. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6252 | CVE-2002-1870 | Candidate | Simple Web Server (SWS) 0.0.4 through 0.1.0 does not properly handle when the recv function call fails, which may allow remote attackers to overwrite program data or perform actions on an uninitialized heap, leading to a denial of service and possibly code execution. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6251 | CVE-2002-1869 | Candidate | Heysoft EventSave 5.1 and 5.2 and Heysoft EventSave+ 5.1 and 5.2 does not check whether the log file can be written to, which allows attackers to prevent events from being recorded by opening the log file using an application such as Microsoft"s Event Viewer. | Assigned (20050629) | None (candidate not yet proposed) | View |
Page 19693 of 20943, showing 5 records out of 104715 total, starting on record 98461, ending on 98465