CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
6045 | CVE-2002-1661 | Candidate | The leafnode server in leafnode 1.9.20 to 1.9.29 allows remote attackers to cause a denial of service (infinite loop) when leafnode requests a cross-posted article to one group whose name is a prefix of another group. | Assigned (20050505) | None (candidate not yet proposed) | View | |
6044 | CVE-2002-1660 | Candidate | calendar.php in vBulletin before 2.2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the command parameter. | Assigned (20050504) | None (candidate not yet proposed) | View | |
6043 | CVE-2002-1659 | Candidate | user_profile.asp in PortalApp 2.2 allows local users to gain privileges by modifying the user_id variable. | Assigned (20050504) | None (candidate not yet proposed) | View | |
6042 | CVE-2002-1658 | Candidate | Buffer overflow in htdigest in Apache 1.3.26 and 1.3.27 may allow attackers to execute arbitrary code via a long user argument. NOTE: since htdigest is normally only locally accessible and not setuid or setgid, there are few attack vectors which would lead to an escalation of privileges, unless htdigest is executed from a CGI program. Therefore this may not be a vulnerability. | Assigned (20050427) | None (candidate not yet proposed) | View | |
6041 | CVE-2002-1657 | Candidate | PostgreSQL uses the username for a salt when generating passwords, which makes it easier for remote attackers to guess passwords via a brute force attack. | Assigned (20050422) | None (candidate not yet proposed) | View |
Page 19735 of 20943, showing 5 records out of 104715 total, starting on record 98671, ending on 98675