CVE List

Id CVE No. Status Description Phase Votes Comments Actions
5880  CVE-2002-1496  Entry  Heap-based buffer overflow in Null HTTP Server 0.5.0 and earlier allows remote attackers to execute arbitrary code via a negative value in the Content-Length HTTP header.        View
5879  CVE-2002-1495  Candidate  Cross-site scripting (XSS) vulnerability in JAWmail 1.0-rc1 allows remote attackers to insert arbitrary script or HTML via (1) attached file names in the Read Mail feature, (2) text/html mails that are displayed in a pop-up window, and (3) certain malicious attributes within otherwise safe tags, such as onMouseOver.  Proposed (20030317)  ACCEPT(3) Armstrong, Baker, Cole | NOOP(2) Cox, Wall    View
5878  CVE-2002-1494  Entry  Cross-site scripting (XSS) vulnerabilities in Aestiva HTML/OS allows remote attackers to insert arbitrary HTML or script by inserting the script after a trailing / character, which inserts the script into the resulting error message.        View
5877  CVE-2002-1493  Entry  Cross-site scripting (XSS) vulnerability in Lycos HTMLGear guestbook allows remote attackers to inject arbitrary script via (1) STYLE attributes or (2) SRC attributes in an IMG tag.        View
5876  CVE-2002-1492  Candidate  Buffer overflows in the Cisco VPN 5000 Client before 5.2.7 for Linux, and VPN 5000 Client before 5.2.8 for Solaris, allow local users to gain root privileges via (1) close_tunnel and (2) open_tunnel.  Proposed (20030317)  ACCEPT(4) Baker, Cole, Green, Jones | NOOP(1) Cox    View

Page 19768 of 20943, showing 5 records out of 104715 total, starting on record 98836, ending on 98840

Actions