CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4502  CVE-2002-0108  Candidate  Allaire Forums 2.0.4 and 2.0.5 and Forums! 3.0 and 3.1 allows remote authenticated users to spoof messages as other users by modifying the hidden form fields for the name and e-mail address.  Modified (20050313)  ACCEPT(2) Frech, Green | NOOP(4) Cole, Foat, Wall, Ziese    View
3991  CVE-2001-1187  Candidate  csvform.pl 0.1 allows remote attackers to execute arbitrary commands via metacharacters in the file parameter.  Proposed (20020315)  ACCEPT(2) Frech, Green | NOOP(4) Cole, Foat, Wall, Ziese    View
3993  CVE-2001-1189  Candidate  IBM Websphere Application Server 3.5.3 and earlier stores a password in cleartext in the sas.server.props file, which allows local users to obtain the passwords via a JSP script.  Proposed (20020315)  ACCEPT(2) Frech, Green | NOOP(4) Cole, Foat, Wall, Ziese    View
4002  CVE-2001-1198  Candidate  RLPDaemon in HP-UX 10.20 and 11.0 allows local users to overwrite arbitrary files and gain privileges by specifying the target file in the -L option.  Modified (20090302)  ACCEPT(2) Frech, Green | NOOP(4) Cole, Foat, Wall, Ziese    View
4015  CVE-2001-1211  Candidate  Ipswitch IMail 7.0.4 and earlier allows attackers with administrator privileges to read and modify user alias and mailing list information for other domains hosted by the same server via the (1) aliasadmin or (2) listadm1 CGI programs, which do not properly verify that an administrator is the administrator for the target domain.  Proposed (20020315)  ACCEPT(2) Frech, Green | NOOP(4) Cole, Foat, Wall, Ziese    View

Page 20073 of 20943, showing 5 records out of 104715 total, starting on record 100361, ending on 100365

Actions