CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
5325 | CVE-2002-0937 | Candidate | The Java Server Pages (JSP) engine in JRun allows web page owners to cause a denial of service (engine crash) on the web server via a JSP page that calls WPrinterJob().pageSetup(null,null). | Proposed (20020830) | ACCEPT(2) Cole, Frech | NOOP(2) Foat, Wall | View | |
5324 | CVE-2002-0936 | Candidate | The Java Server Pages (JSP) engine in Tomcat allows web page owners to cause a denial of service (engine crash) on the web server via a JSP page that calls WPrinterJob().pageSetup(null,null). | Modified (20070509) | ACCEPT(2) Cole, Frech | NOOP(2) Foat, Wall | View | |
5323 | CVE-2002-0935 | Entry | Apache Tomcat 4.0.3, and possibly other versions before 4.1.3 beta, allows remote attackers to cause a denial of service (resource exhaustion) via a large number of requests to the server with null characters, which causes the working threads to hang. | View | |||
5322 | CVE-2002-0934 | Candidate | Directory traversal vulnerability in Jon Hedley AlienForm2 (typically installed as af.cgi or alienform.cgi) allows remote attackers to read or modify arbitrary files via an illegal character in the middle of a .. (dot dot) sequence in the parameters (1) _browser_out or (2) _out_file. | Proposed (20020830) | ACCEPT(2) Cole, Frech | NOOP(2) Foat, Wall | View | |
5321 | CVE-2002-0933 | Candidate | Datalex PLC BookIt! Consumer before 2.2 stores usernames and passwords in plaintext in a cookie, which could allow remote attackers to gain privileges via Cross-site scripting or sniffing attacks. | Proposed (20020830) | ACCEPT(2) Cole, Frech | NOOP(2) Foat, Wall | View |
Page 19879 of 20943, showing 5 records out of 104715 total, starting on record 99391, ending on 99395