CVE List

Id CVE No. Status Description Phase Votes Comments Actions
5188  CVE-2002-0798  Candidate  Vulnerability in swinstall for HP-UX 11.00 and 11.11 allows local users to view obtain data views for files that cannot be directly read by the user, which reportedly can be used to cause a denial of service.  Modified (20090302)  ACCEPT(3) Armstrong, Baker, Cole | NOOP(3) Cox, Foat, Wall    View
5870  CVE-2002-1486  Candidate  Multiple buffer overflows in the IRC component of Trillian 0.73 and 0.74 allows remote malicious IRC servers to cause a denial of service and possibly execute arbitrary code via (1) a large response from the server, (2) a JOIN with a long channel name, (3) a long "raw 221" message, (4) a PRIVMSG with a long nickname, or (5) a long response from an IDENT server.  Proposed (20030317)  ACCEPT(3) Armstrong, Baker, Cole | NOOP(3) Christey, Cox, Wall  Christey> XF:trillian-irc-privmsg-bo(10143) | URL:http://www.iss.net/security_center/static/10143.php | BID:5755 | URL:http://www.securityfocus.com/bid/5755  View
5622  CVE-2002-1238  Candidate  Peter Sandvik"s Simple Web Server 0.5.1 and earlier allows remote attackers to bypass access restrictions for files via an HTTP request with a sequence of multiple / (slash) characters such as http://www.example.com///file/.  Modified (20050610)  ACCEPT(3) Armstrong, Baker, Cole | NOOP(3) Balinsky, Cox, Wall  Balinsky> Software site http://linuxstuffs.cjb.net/ is down, and no information is available on the software. Cannot confirm.  View
5909  CVE-2002-1525  Candidate  Directory traversal vulnerability in ASTAware SearchDisk engine for Sun ONE Starter Kit 2.0 allows remote attackers to read arbitrary files via a .. (dot dot) attack on port (1) 6015 or (2) 6016, or (3) an absolute pathname to port 6017.  Proposed (20030317)  ACCEPT(3) Armstrong, Baker, Cole | NOOP(2) Cox, Wall | RECAST(1) Christey  Christey> This should probably be SPLIT (".." and absolute path are | typically different types of bugs.)  View
8718  CVE-2004-0290  Candidate  Buffer overflow in Purge Jihad 2.0.1 and earlier allows remote game servers to execute arbitrary code via an information packet that contains large (1) battle type and (2) map name fields.  Proposed (20040318)  ACCEPT(3) Armstrong, Baker, Cole | NOOP(2) Cox, Wall    View

Page 20041 of 20943, showing 5 records out of 104715 total, starting on record 100201, ending on 100205

Actions