CVE List

Id CVE No. Status Description Phase Votes Comments Actions
5520  CVE-2002-1133  Candidate  Encoded directory traversal vulnerability in Dino"s web server 2.1 allows remote attackers to read arbitrary files via ".." (dot dot) sequences with URL-encoded (1) "/" (%2f") or (2) "" (%5c) characters.  Proposed (20030317)  ACCEPT(2) Armstrong, Cole | NOOP(3) Balinsky, Cox, Wall  Balinsky> No confirmation available. Software apparently no longer available.  View
5519  CVE-2002-1132  Entry  SquirrelMail 1.2.7 and earlier allows remote attackers to determine the absolute pathname of the options.php script via a malformed optpage file argument, which generates an error message when the file cannot be included in the script.        View
5518  CVE-2002-1131  Candidate  Cross-site scripting vulnerabilities in SquirrelMail 1.2.7 and earlier allows remote attackers to execute script as other web users via (1) addressbook.php, (2) options.php, (3) search.php, or (4) help.php.  Proposed (20030317)  ACCEPT(4) Armstrong, Cole, Cox, Green    View
5517  CVE-2002-1130  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20020920)  None (candidate not yet proposed)    View
5516  CVE-2002-1129  Candidate  Buffer overflow in dxterm allows local users to execute arbitrary code via a long -xrm argument.  Modified (20050610)  ACCEPT(2) Armstrong, Cole | NOOP(2) Cox, Wall    View

Page 19840 of 20943, showing 5 records out of 104715 total, starting on record 99196, ending on 99200

Actions