CVE List

Id CVE No. Status Description Phase Votes Comments Actions
5345  CVE-2002-0957  Candidate  The default configuration of BlackICE Agent 3.1.eal and 3.1.ebh has a high tcp.maxconnections setting, which could allow remote attackers to cause a denial of service (memory consumption) via a large number of connections to the BlackICE system that consumes more resources than intended by the user.  Proposed (20020830)  ACCEPT(5) Baker, Cole, Frech, Green, Wall | NOOP(2) Cox, Foat    View
5344  CVE-2002-0956  Candidate  BlackICE Agent 3.1.eal does not always reactivate after a system standby, which could allow remote attackers and local users to bypass intended firewall restrictions.  Proposed (20020830)  ACCEPT(1) Frech | NOOP(2) Cole, Foat | REVIEWING(1) Wall    View
5343  CVE-2002-0955  Candidate  Cross-site scripting vulnerability in YaBB.cgi for Yet Another Bulletin Board (YaBB) 1 Gold SP1 and earlier allows remote attackers to execute arbitrary script as other web site visitors via script in the num parameter, which is not filtered in the resulting error message.  Proposed (20020830)  ACCEPT(1) Frech | NOOP(5) Cole, Cox, Foat, Green, Wall    View
5342  CVE-2002-0954  Candidate  The encryption algorithms for enable and passwd commands on Cisco PIX Firewall can be executed quickly due to a limited number of rounds, which make it easier for an attacker to decrypt the passwords using brute force techniques.  Proposed (20020830)  ACCEPT(2) Baker, Green | MODIFY(1) Frech | NOOP(4) Cole, Cox, Foat, Wall  Frech> XF:cisco-pix-weak-encryption(10368)  View
5341  CVE-2002-0953  Entry  globals.php in PHP Address before 0.2f, with the PHP allow_url_fopen and register_globals variables enabled, allows remote attackers to execute arbitrary PHP code via a URL to the code in the LangCookie parameter.        View

Page 19875 of 20943, showing 5 records out of 104715 total, starting on record 99371, ending on 99375

Actions