CVE List

Id CVE No. Status Description Phase Votes Comments Actions
5530  CVE-2002-1143  Candidate  Microsoft Word and Excel allow remote attackers to steal sensitive information via certain field codes that insert the information when the document is returned to the attacker, as demonstrated in Word using (1) INCLUDETEXT or (2) INCLUDEPICTURE, aka "Flaw in Word Fields and Excel External Updates Could Lead to Information Disclosure."  Assigned (20020923)  NOOP(1) Christey  Christey> ADDREF CERT-VN:VU#899713 | URL:http://www.kb.cert.org/vuls/id/899713  View
5529  CVE-2002-1142  Entry  Heap-based buffer overflow in the Remote Data Services (RDS) component of Microsoft Data Access Components (MDAC) 2.1 through 2.6, and Internet Explorer 5.01 through 6.0, allows remote attackers to execute code via a malformed HTTP request to the Data Stub.        View
5528  CVE-2002-1141  Entry  An input validation error in the Sun Microsystems RPC library Services for Unix 3.0 Interix SD, as implemented on Microsoft Windows NT4, 2000, and XP, allows remote attackers to cause a denial of service via malformed fragmented RPC client packets, aka "Denial of service by sending an invalid RPC request."        View
5527  CVE-2002-1140  Entry  The Sun Microsystems RPC library Services for Unix 3.0 Interix SD, as implemented on Microsoft Windows NT4, 2000, and XP, allows remote attackers to cause a denial of service (service hang) via malformed packet fragments, aka "Improper parameter size check leading to denial of service."        View
5526  CVE-2002-1139  Entry  The Compressed Folders feature in Microsoft Windows 98 with Plus! Pack, Windows Me, and Windows XP does not properly check the destination folder during the decompression of ZIP files, which allows attackers to place an executable file in a known location on a user"s system, aka "Incorrect Target Path for Zipped File Decompression."        View

Page 19838 of 20943, showing 5 records out of 104715 total, starting on record 99186, ending on 99190

Actions