CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
5155 | CVE-2002-0765 | Entry | sshd in OpenSSH 3.2.2, when using YP with netgroups and under certain conditions, may allow users to successfully authenticate and log in with another user"s password. | View | |||
5154 | CVE-2002-0764 | Candidate | Phorum 3.3.2a allows remote attackers to execute arbitrary commands via an HTTP request to (1) plugin.php, (2) admin.php, or (3) del.php that modifies the PHORUM[settings_dir] variable to point to a directory that contains a PHP file with the commands. | Proposed (20020726) | ACCEPT(3) Armstrong, Baker, Cole | NOOP(3) Cox, Foat, Wall | View | |
5153 | CVE-2002-0763 | Candidate | Vulnerability in administration server for HP VirtualVault 4.5 on HP-UX 11.04 allows remote web servers or privileged external processes to bypass access restrictions and establish connections to the server. | Proposed (20020726) | ACCEPT(2) Baker, Cole | NOOP(4) Armstrong, Cox, Foat, Wall | View | |
5152 | CVE-2002-0762 | Entry | shadow package in SuSE 8.0 allows local users to destroy the /etc/passwd and /etc/shadow files or assign extra group privileges to some users by changing filesize limits before calling programs that modify the files. | View | |||
5151 | CVE-2002-0761 | Entry | bzip2 before 1.0.2 in FreeBSD 4.5 and earlier, OpenLinux 3.1 and 3.1.1, and possibly systems, uses the permissions of symbolic links instead of the actual files when creating an archive, which could cause the files to be extracted with less restrictive permissions than intended. | View |
Page 19913 of 20943, showing 5 records out of 104715 total, starting on record 99561, ending on 99565