CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
6180 | CVE-2002-1798 | Candidate | MidiCart PHP, PHP Plus, and PHP Maxi allows remote attackers to (1) upload arbitrary php files via a direct request to admin/upload.php or (2) access sensitive information via a direct request to admin/credit_card_info.php. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6179 | CVE-2002-1797 | Candidate | ChaiVM for HP color LaserJet 4500 and 4550 or HP LaserJet 4100 and 8150 does not properly enforce access control restrictions, which could allow local users to add, delete, or modify any services hosted by the ChaiServer. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6178 | CVE-2002-1796 | Candidate | ChaiVM EZloader for HP color LaserJet 4500 and 4550 and HP LaserJet 4100 and 8150 does not properly verify JAR signatures for new services, which allows local users to load unauthorized Chai services. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6177 | CVE-2002-1795 | Candidate | Cross-site scripting (XSS) vulnerability in connect.asp in Microsoft Terminal Services Advanced Client (TSAC) ActiveX control allows remote attackers to inject arbitrary web script or HTML via unknown vectors. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6176 | CVE-2002-1794 | Candidate | Unknown vulnerability in pam_authz in the LDAP-UX Integration product on HP-UX 11.00 and 11.11 allows remote attackers to execute r-commands with privileges of other users. | Assigned (20050629) | None (candidate not yet proposed) | View |
Page 19708 of 20943, showing 5 records out of 104715 total, starting on record 98536, ending on 98540