CVE List

Id CVE No. Status Description Phase Votes Comments Actions
5720  CVE-2002-1336  Entry  TightVNC before 1.2.6 generates the same challenge string for multiple connections, which allows remote attackers to bypass VNC authentication by sniffing the challenge and response of other users.        View
5719  CVE-2002-1335  Candidate  Cross-site scripting (XSS) vulnerability in w3m 0.3.2 does not escape an HTML tag in a frame, which allows remote attackers to insert arbitrary web script or HTML and access files or cookies.  Modified (20071129)  ACCEPT(2) Armstrong, Green | NOOP(2) Cole, Cox  Cox> The wording of the impact of this issue could be better, this is | just a cross-site scripting vulnerability | Addref: RHSA-2003:045 | Green> ACKNOWLEDGED IN THE SOURCEFORGE NOTES  View
5718  CVE-2002-1334  Candidate  Cross-site scripting (XSS) vulnerability in BizDesign ImageFolio 3.01 and earlier allows remote attackers to execute arbitrary web script as other users via (1) the direct parameter in imageFolio.cgi, or (2) nph-build.cgi.  Modified (20080226)  ACCEPT(1) Baker | NOOP(3) Cole, Cox, Wall | REVIEWING(1) Green    View
5717  CVE-2002-1333  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20021126)  None (candidate not yet proposed)    View
5716  CVE-2002-1332  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20021126)  None (candidate not yet proposed)    View

Page 19800 of 20943, showing 5 records out of 104715 total, starting on record 98996, ending on 99000

Actions