CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6015  CVE-2002-1631  Candidate  SQL injection vulnerability in the query.xsql sample page in Oracle 9i Application Server (9iAS) allows remote attackers to execute arbitrary code via the sql parameter.  Assigned (20050326)  None (candidate not yet proposed)    View
6014  CVE-2002-1630  Candidate  The sendmail.jsp sample page in Oracle 9i Application Server (9iAS) allows remote attackers to send arbitrary emails.  Assigned (20050326)  None (candidate not yet proposed)    View
6013  CVE-2002-1629  Candidate  Multi-Tech ProxyServer products MTPSR1-100, MTPSR1-120, MTPSR1-202ST, MTPSR2-201, and MTPSR3-200 ship with a null password, which allows remote attackers to gain administrative privileges via Telnet or HTTP.  Assigned (20050326)  None (candidate not yet proposed)    View
6012  CVE-2002-1628  Candidate  Directory traversal vulnerability in vote.cgi for Mike Spice Mike"s Vote CGI before 1.3 allows remote attackers to write arbitrary files via .. (dot dot) sequences in the type parameter.  Assigned (20050326)  None (candidate not yet proposed)    View
6011  CVE-2002-1627  Candidate  Directory traversal vulnerability in quiz.cgi for Mike Spice Quiz Me! before 0.6 allows remote attackers to write arbitrary files via .. (dot dot) sequences in the quiz parameter.  Assigned (20050326)  None (candidate not yet proposed)    View

Page 19741 of 20943, showing 5 records out of 104715 total, starting on record 98701, ending on 98705

Actions