CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4104  CVE-2001-1300  Candidate  Directory traversal vulnerability in Dynu FTP server 1.05 and earlier allows remote attackers to read arbitrary files via a .. in the CD (CWD) command.  Proposed (20020502)  ACCEPT(2) Frech, Green | NOOP(4) Cole, Cox, Foat, Wall    View
4875  CVE-2002-0483  Candidate  index.php for PHP-Nuke 5.4 and earlier allows remote attackers to determine the physical pathname of the web server when the file parameter is set to index.php, which triggers an error message that leaks the pathname.  Proposed (20020611)  ACCEPT(2) Frech, Green | NOOP(4) Cole, Cox, Foat, Wall    View
4108  CVE-2001-1304  Candidate  Buffer overflow in SHOUTcast Server 1.8.2 allows remote attackers to cause a denial of service (crash) via several HTTP requests with a long (1) user-agent or (2) host HTTP header.  Proposed (20020502)  ACCEPT(2) Frech, Green | NOOP(4) Cole, Cox, Foat, Wall    View
4109  CVE-2001-1305  Candidate  ICQ 2001a Alpha and earlier allows remote attackers to automatically add arbitrary UINs to an ICQ user"s contact list via a URL to a web page with a Content-Type of application/x-icq, which is processed by Internet Explorer.  Proposed (20020502)  ACCEPT(2) Frech, Green | NOOP(4) Cole, Cox, Foat, Wall    View
5396  CVE-2002-1008  Candidate  Cross-site scripting vulnerability in PowerBASIC urlcount.cgi, as included in Lil" HTTP web server, allows remote attackers to execute arbitrary web script in other web browsers via a request to urlcount.cgi that contains the script, which is not filtered when the REPORT capability prints the original request.  Proposed (20020830)  ACCEPT(2) Frech, Green | NOOP(4) Cole, Cox, Foat, Wall  Green> PUBLISHER"S WEBSITE INDICATES SECURITY FIXES  View

Page 20076 of 20943, showing 5 records out of 104715 total, starting on record 100376, ending on 100380

Actions