CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
5415 | CVE-2002-1027 | Candidate | Cross-site scripting vulnerability in the default HTTP 500 error script (500error.jsp) for Macromedia Sitespring 1.2.0 (277.1) allows remote attackers to execute arbitrary web script via a link to 500error.jsp with the script in 1the et parameter. | Proposed (20020830) | ACCEPT(1) Frech | NOOP(5) Christey, Cole, Cox, Foat, Wall | Christey> fix typo: "1the" | View |
5414 | CVE-2002-1026 | Candidate | Macromedia Sitespring 1.2.0 (277.1) using Sybase runtime engine 7.0.2.1480 allows remote attackers to cause a denial of service (crash) via a long malformed request to TCP port 2500, possibly triggering a buffer overflow. | Proposed (20020830) | ACCEPT(1) Frech | NOOP(4) Cole, Cox, Foat, Wall | View | |
5413 | CVE-2002-1025 | Entry | JRun 3.0 through 4.0 allows remote attackers to read JSP source code via an encoded null byte in an HTTP GET request, which causes the server to send the .JSP file unparsed. | View | |||
5412 | CVE-2002-1024 | Entry | Cisco IOS 12.0 through 12.2, when supporting SSH, allows remote attackers to cause a denial of service (CPU consumption) via a large packet that was designed to exploit the SSH CRC32 attack detection overflow (CVE-2001-0144). | View | |||
5411 | CVE-2002-1023 | Candidate | BadBlue server allows remote attackers to cause a denial of service (crash) via an HTTP GET request without a URI. | Modified (20050628) | ACCEPT(1) Frech | NOOP(4) Cole, Cox, Foat, Wall | View |
Page 19861 of 20943, showing 5 records out of 104715 total, starting on record 99301, ending on 99305