CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3648  CVE-2001-0842  Candidate  Directory traversal vulnerability in Search.cgi in Leoboard LB5000 LB5000II 1029 and earlier allows remote attackers to overwrite files and gain privileges via .. (dot dot) sequences in the amembernamecookie cookie.  Modified (20050703)  MODIFY(1) Frech | NOOP(5) Armstrong, Bishop, Cole, Foat, Wall  Frech> XF:leoboard-cookie-auth-privileges(7436)  View
3650  CVE-2001-0844  Candidate  Vulnerability in (1) Book of guests and (2) Post it! allows remote attackers to execute arbitrary code via shell metacharacters in the email parameter.  Modified (20050702)  MODIFY(1) Frech | NOOP(5) Armstrong, Bishop, Cole, Foat, Wall  Frech> XF:bookofguests-cgi-command-execution(7434) | XF:postit-cgi-command-execution(7435)  View
3655  CVE-2001-0849  Candidate  viralator CGI script in Viralator 0.9pre1 and earlier allows remote attackers to execute arbitrary code via a URL for a file being downloaded, which is insecurely passed to a call to wget.  Modified (20050528)  MODIFY(1) Frech | NOOP(5) Armstrong, Bishop, Cole, Foat, Wall  Frech> XF:viralator-cgi-command-execution(7440)  View
3660  CVE-2001-0854  Candidate  PHP-Nuke 5.2 allows remote attackers to copy and delete arbitrary files by calling case.filemanager.php with admin.php as an argument, which sets the $PHP_SELF variable and makes it appear that case.filemanager.php is being called by admin.php instead of the user.  Modified (20050703)  MODIFY(1) Frech | NOOP(5) Armstrong, Bishop, Cole, Foat, Wall  Frech> XF:phpnuke-filemanager-gain-privileges(7478)  View
3661  CVE-2001-0855  Candidate  Buffer overflow in db_loader in ClearCase 4.2 and earlier allows local users to gain root privileges via a long TERM environment variable.  Modified (20050703)  MODIFY(1) Frech | NOOP(5) Armstrong, Bishop, Cole, Foat, Wall  Frech> XF:clearcase-dbloader-term-bo(7488)  View

Page 19798 of 20943, showing 5 records out of 104715 total, starting on record 98986, ending on 98990

Actions