CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
5965 | CVE-2002-1581 | Candidate | Directory traversal vulnerability in nph-mr.cgi in Mailreader.com 2.3.20 through 2.3.31 allows remote attackers to view arbitrary files via .. (dot dot) sequences and a null byte (%00) in the configLanguage parameter. | Assigned (20040630) | None (candidate not yet proposed) | View | |
5966 | CVE-2002-1582 | Candidate | compose.cgi in Mailreader.com 2.3.30 and 2.3.31, when using Sendmail as the Mail Transfer Agent, allows remote attackers to execute arbitrary commands via shell metacharacters in the RealEmail configuration variable, which is used to call Sendmail in network.cgi. | Assigned (20040630) | None (candidate not yet proposed) | View | |
9054 | CVE-2004-0626 | Candidate | The tcp_find_option function of the netfilter subsystem in Linux kernel 2.6, when using iptables and TCP options rules, allows remote attackers to cause a denial of service (CPU consumption by infinite loop) via a large option length that produces a negative integer after a casting operation to the char type. | Assigned (20040630) | None (candidate not yet proposed) | View | |
9031 | CVE-2004-0603 | Candidate | gzexe in gzip 1.3.3 and earlier will execute an argument when the creation of a temp file fails instead of exiting the program, which could allow remote attackers or local users to execute arbitrary commands, a different vulnerability than CVE-1999-1332. | Assigned (20040629) | None (candidate not yet proposed) | View | |
9032 | CVE-2004-0604 | Candidate | The HTTP client and server in giFT-FastTrack 0.8.6 and earlier allows remote attackers to cause a denial of service (crash), possibly via an empty search query, which triggers a NULL dereference. | Assigned (20040629) | None (candidate not yet proposed) | View |
Page 20045 of 20943, showing 5 records out of 104715 total, starting on record 100221, ending on 100225