CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6220  CVE-2002-1838  Candidate  Charities.cron 1.0.2 through 1.6.0 allows local users to write to arbitrary files via a symlink attack on temporary files.  Assigned (20050629)  None (candidate not yet proposed)    View
6219  CVE-2002-1837  Candidate  The getAlbumToDisplay function in idsShared.pm for Image Display System (IDS) 0.81 allows remote attackers to determine the existence of arbitrary directories via ".." sequences in the album parameter, which generates different error messages depending on whether the directory exists or not.  Assigned (20050629)  None (candidate not yet proposed)    View
6218  CVE-2002-1836  Candidate  The default configuration of Xerox DocuTech 6110 and DocuTech 6115 exports certain NFS shares to the world with world writable permissions, which may allow remote attackers to modify sensitive files.  Assigned (20050629)  None (candidate not yet proposed)    View
6217  CVE-2002-1835  Candidate  The default configuration of Xerox DocuTech 6110 and DocuTech 6115 running Solaris 8.0 has a large number of unnecessary services enabled such as RPC and sprayd, which could allow remote attackers to obtain access to the device.  Assigned (20050629)  None (candidate not yet proposed)    View
6216  CVE-2002-1834  Candidate  The default configuration of Xerox DocuTech 6110 and DocuTech 6115 allows remote attackers to connect to the web server and (1) submit print jobs directly into the "print now" queue or (2) read the scanner job history.  Assigned (20050629)  None (candidate not yet proposed)    View

Page 19700 of 20943, showing 5 records out of 104715 total, starting on record 98496, ending on 98500

Actions