CVE List

Id CVE No. Status Description Phase Votes Comments Actions
5740  CVE-2002-1356  Candidate  Ethereal 0.9.7 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via malformed packets to the (1) LMP, (2) PPP, or (3) TDS dissectors, possibly related to a missing field for EndVerifyAck messages.  Proposed (20030317)  ACCEPT(2) Cole, Green | MODIFY(1) Cox  Cox> Addref: REDHAT:RHSA-2002:291  View
5739  CVE-2002-1355  Candidate  Multiple integer signedness errors in the BGP dissector in Ethereal 0.9.7 and earlier allow remote attackers to cause a denial of service (infinite loop) via malformed messages.  Proposed (20030317)  ACCEPT(2) Cole, Green | MODIFY(1) Cox  Cox> Addref: REDHAT:RHSA-2002:291  View
5738  CVE-2002-1354  Candidate  Directory traversal vulnerability in TYPSoft FTP Server 0.99.8 allows local users to list the contents of arbitrary directories via a ... (dot dot dot) in the cd/CWD command.  Assigned (20021213)  None (candidate not yet proposed)    View
5737  CVE-2002-1353  Candidate  LocalWEB2000 HTTP server 2.1.0 stores passwords in plain text under the web document root in users.lst, which allows remote attackers to obtain the passwords via a direct request to users.lst.  Assigned (20021213)  None (candidate not yet proposed)    View
5736  CVE-2002-1352  Candidate  Per Magne Knutsen"s CartMan shopping cart (cartman.php) 1.04 and earlier allows remote attackers to modify product prices by changing the price parameter.  Assigned (20021213)  None (candidate not yet proposed)    View

Page 19796 of 20943, showing 5 records out of 104715 total, starting on record 98976, ending on 98980

Actions