CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
5740 | CVE-2002-1356 | Candidate | Ethereal 0.9.7 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via malformed packets to the (1) LMP, (2) PPP, or (3) TDS dissectors, possibly related to a missing field for EndVerifyAck messages. | Proposed (20030317) | ACCEPT(2) Cole, Green | MODIFY(1) Cox | Cox> Addref: REDHAT:RHSA-2002:291 | View |
5739 | CVE-2002-1355 | Candidate | Multiple integer signedness errors in the BGP dissector in Ethereal 0.9.7 and earlier allow remote attackers to cause a denial of service (infinite loop) via malformed messages. | Proposed (20030317) | ACCEPT(2) Cole, Green | MODIFY(1) Cox | Cox> Addref: REDHAT:RHSA-2002:291 | View |
5738 | CVE-2002-1354 | Candidate | Directory traversal vulnerability in TYPSoft FTP Server 0.99.8 allows local users to list the contents of arbitrary directories via a ... (dot dot dot) in the cd/CWD command. | Assigned (20021213) | None (candidate not yet proposed) | View | |
5737 | CVE-2002-1353 | Candidate | LocalWEB2000 HTTP server 2.1.0 stores passwords in plain text under the web document root in users.lst, which allows remote attackers to obtain the passwords via a direct request to users.lst. | Assigned (20021213) | None (candidate not yet proposed) | View | |
5736 | CVE-2002-1352 | Candidate | Per Magne Knutsen"s CartMan shopping cart (cartman.php) 1.04 and earlier allows remote attackers to modify product prices by changing the price parameter. | Assigned (20021213) | None (candidate not yet proposed) | View |
Page 19796 of 20943, showing 5 records out of 104715 total, starting on record 98976, ending on 98980