CVE List

Id CVE No. Status Description Phase Votes Comments Actions
5540  CVE-2002-1153  Entry  IBM Websphere 4.0.3 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via an HTTP request with long HTTP headers, such as "Host".        View
5539  CVE-2002-1152  Entry  Konqueror in KDE 3.0 through 3.0.2 does not properly detect the "secure" flag in an HTTP cookie, which could cause Konqueror to send the cookie across an unencrypted channel, which could allow remote attackers to steal the cookie via sniffing.        View
5538  CVE-2002-1151  Entry  The cross-site scripting protection for Konqueror in KDE 2.2.2 and 3.0 through 3.0.3 does not properly initialize the domains on sub-frames and sub-iframes, which can allow remote attackers to execute script and steal cookies from subframes that are in other domains.        View
5537  CVE-2002-1150  Candidate  The Remote Desktop Sharing (RDS) Screen Saver Protection capability for Microsoft NetMeeting 3.01 through SP2 (4.4.3396) allows attackers with physical access to hijack remote sessions by entering certain logoff or shutdown sequences (such as CTRL-ALT-DEL) and canceling out of the resulting user confirmation prompts, such as when the remote user is editing a document.  Modified (20071101)  ACCEPT(1) Baker | NOOP(2) Cole, Cox | REVIEWING(1) Wall    View
5536  CVE-2002-1149  Candidate  The installation procedure for Invision Board suggests that users install the phpinfo.php program under the web root, which leaks sensitive information such as absolute pathnames, OS information, and PHP settings.  Modified (20050610)  ACCEPT(2) Baker, Cole | NOOP(2) Cox, Wall    View

Page 19836 of 20943, showing 5 records out of 104715 total, starting on record 99176, ending on 99180

Actions