CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3263  CVE-2001-0446  Candidate  IBM WCS (WebSphere Commerce Suite) 4.0.1 with Application Server 3.0.2 allows remote attackers to read source code for .jsp files by appending a / to the requested URL.  Proposed (20010524)  MODIFY(1) Frech | NOOP(3) Cole, Wall, Ziese  Frech> XF:ibm-wcs-view-jsp(6308) | CONFIRM:http://www-4.ibm.com/software/webservers/appserv/doc/ | v3024/EfixWeb3024.html | Comments are cryptic.  View
3283  CVE-2001-0466  Candidate  Directory traversal vulnerability in ustorekeeper 1.61 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.  Proposed (20010524)  MODIFY(1) Frech | NOOP(3) Cole, Wall, Ziese  Frech> XF:ustorekeeper-retrieve-files(6319)  View
3027  CVE-2001-0206  Candidate  Directory traversal vulnerability in Soft Lite ServerWorx 3.00 allows remote attackers to read arbitrary files by inserting a .. (dot dot) or ... into the requested pathname of an HTTP GET request.  Proposed (20010309)  MODIFY(1) Frech | NOOP(3) Cole, Lawler, Ziese  Frech> XF:serverworx-directory-traversal(6081)  View
3031  CVE-2001-0210  Candidate  Directory traversal vulnerability in commerce.cgi CGI program allows remote attackers to read arbitrary files via a .. (dot dot) attack in the page parameter.  Proposed (20010309)  MODIFY(1) Frech | NOOP(3) Cole, Lawler, Ziese  Frech> XF:commerce-cgi-view-files(6095)  View
3033  CVE-2001-0212  Candidate  Directory traversal vulnerability in HIS Auktion 1.62 allows remote attackers to read arbitrary files via a .. (dot dot) in the menue parameter, and possibly execute commands via shell metacharacters.  Proposed (20010309)  MODIFY(1) Frech | NOOP(3) Cole, Lawler, Ziese  Frech> XF:his-auktion-cgi-url(6090)  View

Page 19818 of 20943, showing 5 records out of 104715 total, starting on record 99086, ending on 99090

Actions