CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6255  CVE-2002-1873  Candidate  Microsoft Exchange 2000, when used with Microsoft Remote Procedure Call (MSRPC), allows remote attackers to cause a denial of service (crash or memory consumption) via malformed MSRPC calls.  Assigned (20050629)  None (candidate not yet proposed)    View
6254  CVE-2002-1872  Candidate  Microsoft SQL Server 6.0 through 2000, with SQL Authentication enabled, uses weak password encryption (XOR), which allows remote attackers to sniff and decrypt the password.  Assigned (20050629)  None (candidate not yet proposed)    View
6253  CVE-2002-1871  Candidate  pkgadd in Sun Solaris 2.5.1 through 8 installs files setuid/setgid root if the pkgmap file contains a "?" (question mark) in the (1) mode, (2) owner, or (3) group fields, which allows attackers to elevate privileges.  Assigned (20050629)  None (candidate not yet proposed)    View
6252  CVE-2002-1870  Candidate  Simple Web Server (SWS) 0.0.4 through 0.1.0 does not properly handle when the recv function call fails, which may allow remote attackers to overwrite program data or perform actions on an uninitialized heap, leading to a denial of service and possibly code execution.  Assigned (20050629)  None (candidate not yet proposed)    View
6251  CVE-2002-1869  Candidate  Heysoft EventSave 5.1 and 5.2 and Heysoft EventSave+ 5.1 and 5.2 does not check whether the log file can be written to, which allows attackers to prevent events from being recorded by opening the log file using an application such as Microsoft"s Event Viewer.  Assigned (20050629)  None (candidate not yet proposed)    View

Page 19693 of 20943, showing 5 records out of 104715 total, starting on record 98461, ending on 98465

Actions