CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6045  CVE-2002-1661  Candidate  The leafnode server in leafnode 1.9.20 to 1.9.29 allows remote attackers to cause a denial of service (infinite loop) when leafnode requests a cross-posted article to one group whose name is a prefix of another group.  Assigned (20050505)  None (candidate not yet proposed)    View
6044  CVE-2002-1660  Candidate  calendar.php in vBulletin before 2.2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the command parameter.  Assigned (20050504)  None (candidate not yet proposed)    View
6043  CVE-2002-1659  Candidate  user_profile.asp in PortalApp 2.2 allows local users to gain privileges by modifying the user_id variable.  Assigned (20050504)  None (candidate not yet proposed)    View
6042  CVE-2002-1658  Candidate  Buffer overflow in htdigest in Apache 1.3.26 and 1.3.27 may allow attackers to execute arbitrary code via a long user argument. NOTE: since htdigest is normally only locally accessible and not setuid or setgid, there are few attack vectors which would lead to an escalation of privileges, unless htdigest is executed from a CGI program. Therefore this may not be a vulnerability.  Assigned (20050427)  None (candidate not yet proposed)    View
6041  CVE-2002-1657  Candidate  PostgreSQL uses the username for a salt when generating passwords, which makes it easier for remote attackers to guess passwords via a brute force attack.  Assigned (20050422)  None (candidate not yet proposed)    View

Page 19735 of 20943, showing 5 records out of 104715 total, starting on record 98671, ending on 98675

Actions