CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
5005 | CVE-2002-0614 | Candidate | PHP-Survey 20000615 and earlier stores the global.inc file under the web root, which allows remote attackers to obtain sensitive information, including database credentials, if .inc files are not preprocessed by the server. | Proposed (20020611) | ACCEPT(2) Cole, Frech | NOOP(3) Cox, Foat, Wall | View | |
5004 | CVE-2002-0613 | Entry | dnstools.php for DNSTools 2.0 beta 4 and earlier allows remote attackers to bypass authentication and gain privileges by setting the user_logged_in or user_dnstools_administrator parameters. | View | |||
5003 | CVE-2002-0612 | Candidate | FileSeek.cgi allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) head or (2) foot parameters. | Proposed (20020611) | ACCEPT(1) Frech | NOOP(4) Cole, Cox, Foat, Wall | View | |
5002 | CVE-2002-0611 | Candidate | Directory traversal vulnerability in FileSeek.cgi allows remote attackers to read arbitrary files via a ....// (modified dot dot) in the (1) head or (2) foot parameters, which are not properly filtered. | Proposed (20020611) | ACCEPT(1) Frech | NOOP(4) Cole, Cox, Foat, Wall | View | |
5001 | CVE-2002-0610 | Candidate | Vulnerability in FTPSRVR in HP MPE/iX 6.0 through 7.0 does not properly validate certain FTP commands, which allows attackers to gain privileges. | Modified (20050510) | ACCEPT(3) Baker, Cole, Frech | NOOP(3) Cox, Foat, Wall | View |
Page 19943 of 20943, showing 5 records out of 104715 total, starting on record 99711, ending on 99715