CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
5520 | CVE-2002-1133 | Candidate | Encoded directory traversal vulnerability in Dino"s web server 2.1 allows remote attackers to read arbitrary files via ".." (dot dot) sequences with URL-encoded (1) "/" (%2f") or (2) "" (%5c) characters. | Proposed (20030317) | ACCEPT(2) Armstrong, Cole | NOOP(3) Balinsky, Cox, Wall | Balinsky> No confirmation available. Software apparently no longer available. | View |
5519 | CVE-2002-1132 | Entry | SquirrelMail 1.2.7 and earlier allows remote attackers to determine the absolute pathname of the options.php script via a malformed optpage file argument, which generates an error message when the file cannot be included in the script. | View | |||
5518 | CVE-2002-1131 | Candidate | Cross-site scripting vulnerabilities in SquirrelMail 1.2.7 and earlier allows remote attackers to execute script as other web users via (1) addressbook.php, (2) options.php, (3) search.php, or (4) help.php. | Proposed (20030317) | ACCEPT(4) Armstrong, Cole, Cox, Green | View | |
5517 | CVE-2002-1130 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20020920) | None (candidate not yet proposed) | View | |
5516 | CVE-2002-1129 | Candidate | Buffer overflow in dxterm allows local users to execute arbitrary code via a long -xrm argument. | Modified (20050610) | ACCEPT(2) Armstrong, Cole | NOOP(2) Cox, Wall | View |
Page 19840 of 20943, showing 5 records out of 104715 total, starting on record 99196, ending on 99200