CVE List

Id CVE No. Status Description Phase Votes Comments Actions
5415  CVE-2002-1027  Candidate  Cross-site scripting vulnerability in the default HTTP 500 error script (500error.jsp) for Macromedia Sitespring 1.2.0 (277.1) allows remote attackers to execute arbitrary web script via a link to 500error.jsp with the script in 1the et parameter.  Proposed (20020830)  ACCEPT(1) Frech | NOOP(5) Christey, Cole, Cox, Foat, Wall  Christey> fix typo: "1the"  View
5414  CVE-2002-1026  Candidate  Macromedia Sitespring 1.2.0 (277.1) using Sybase runtime engine 7.0.2.1480 allows remote attackers to cause a denial of service (crash) via a long malformed request to TCP port 2500, possibly triggering a buffer overflow.  Proposed (20020830)  ACCEPT(1) Frech | NOOP(4) Cole, Cox, Foat, Wall    View
5413  CVE-2002-1025  Entry  JRun 3.0 through 4.0 allows remote attackers to read JSP source code via an encoded null byte in an HTTP GET request, which causes the server to send the .JSP file unparsed.        View
5412  CVE-2002-1024  Entry  Cisco IOS 12.0 through 12.2, when supporting SSH, allows remote attackers to cause a denial of service (CPU consumption) via a large packet that was designed to exploit the SSH CRC32 attack detection overflow (CVE-2001-0144).        View
5411  CVE-2002-1023  Candidate  BadBlue server allows remote attackers to cause a denial of service (crash) via an HTTP GET request without a URI.  Modified (20050628)  ACCEPT(1) Frech | NOOP(4) Cole, Cox, Foat, Wall    View

Page 19861 of 20943, showing 5 records out of 104715 total, starting on record 99301, ending on 99305

Actions